Zdravím, jsem tu poprve jelikož se mi to taky poprvé stalo.
nevím proč ale misto třeba D s háčkem mi to napíše ˇˇD.
zatím jsem spustil Malwarebytes Anti-Malware a nechávám projet počítač.
Hodím sem potom log a snad mi nekdo poradí.

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
PC mi píše ˇˇ misto pismenka s háčkem
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: PC mi píše ˇˇ misto pismenka s háčkem
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 21.4.2014
Scan Time: 1:14:32
Logfile:
Administrator: Yes
Version: 2.00.1.1004
Malware Database: v2014.04.20.07
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Adam
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 249205
Time Elapsed: 6 min, 56 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled
Processes: 6
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\updatePlurPush.exe, 760, , [c0d7240806752a0ca2497dde36cb946c]
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\bin\utilPlurPush.exe, 3496, , [207751db700b241208e32d2ee81919e7]
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\WinRST.exe, 2192, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c]
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe, 4820, , [890eb7753a4140f69c112343ac56916f]
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe, 2060, , [890eb7753a4140f69c112343ac56916f]
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemku.exe, 2148, , [890eb7753a4140f69c112343ac56916f]
Modules: 17
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\msvcp100.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\msvcr100.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\QtCore4.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\QtNetwork4.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
Registry Keys: 56
PUP.Optional.PlurPush.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update PlurPush, , [c0d7240806752a0ca2497dde36cb946c],
PUP.Optional.PlurPush.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Util PlurPush, , [207751db700b241208e32d2ee81919e7],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\Linkey.Linkey, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Linkey.Linkey, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{726E90BE-DC22-4965-B215-E0784DC26F47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{4613B1C1-FBC0-43C3-A4B9-B1D6CD360BB3}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{4613B1C1-FBC0-43C3-A4B9-B1D6CD360BB3}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{726E90BE-DC22-4965-B215-E0784DC26F47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}\INPROCSERVER32, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\APPID\{6A7CD9EC-D8BD-4340-BCD0-77C09A282921}, , [385f8d9fdaa1cd69511ebc5ab052ea16],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{6A7CD9EC-D8BD-4340-BCD0-77C09A282921}, , [385f8d9fdaa1cd69511ebc5ab052ea16],
PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, , [d5c244e86c0f8fa7d2d684c821e13ac6],
PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, , [d5c244e86c0f8fa7d2d684c821e13ac6],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{82249076-d5c8-431d-982b-023779779587}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{089EDE16-F82F-4CB5-B64E-433860459D81}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6A9F605F-89D1-4AF7-8747-2A17F002E20E}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{6A9F605F-89D1-4AF7-8747-2A17F002E20E}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{089EDE16-F82F-4CB5-B64E-433860459D81}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{82249076-D5C8-431D-982B-023779779587}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{82249076-D5C8-431D-982B-023779779587}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.ShopperPro.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}, , [b3e4d6567cff1521082afc5315edbc44],
PUP.Optional.WinRST.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WinRST, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.Linkey.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Linkey, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PlurPush, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\LINKEY, , [8413e04c3447b284313dd59d986a629e],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\PlurPush, , [6a2d56d6e19ab77fd4da534ad52eb050],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\LINKEY, , [dcbb19130378082e412d284ab9496b95],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SYSTEMK\General, , [c5d23bf194e7072f02eb9ed349b91ce4],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SYSTEMK, , [5740f13bef8c88aeffef650c46bc966a],
PUP.Optional.iWebar.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\iWebar, , [f5a27fad4d2ef83e04f8661482804fb1],
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, , [8a0d77b5b1cab581360d22753bc88b75],
Malware.Trace, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DC3_FEXEC, , [3a5dd05c8cefb77f62c1071b3bc8a060],
PUP.Optional.PlurPush.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\PlurPush, , [a4f3e5477209c2745e4fe1bce12259a7],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, , [a7f0d4589cdf85b15e20aa0032d1a858],
PUP.Optional.RegCleanerPro.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SYSTWEAK\RegClean Pro, , [4f483fed6714999dc9dc63385da69d63],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{54739D49-AC03-4C57-9264-C5195596B3A1}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\SettingsManagerIEHelper.DNSGuard, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\SettingsManagerIEHelper.DNSGuard.1, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SettingsManagerIEHelper.DNSGuard, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SettingsManagerIEHelper.DNSGuard.1, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\CLSID\{54739D49-AC03-4C57-9264-C5195596B3A1}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\CLSID\{E1842850-FB16-4471-B327-7343FBAED55C}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E1842850-FB16-4471-B327-7343FBAED55C}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{54739D49-AC03-4C57-9264-C5195596B3A1}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{93D511B5-143B-4A99-ABFC-B5B78AD0AE1B}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{AA760BA8-5862-4BC5-9263-4452CBC0B264}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{AA760BA8-5862-4BC5-9263-4452CBC0B264}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{93D511B5-143B-4A99-ABFC-B5B78AD0AE1B}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SystemkService, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Settings Manager, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\F06DEFF2-5B9C-490D-910F-35D3A9119622, , [890eb7753a4140f69c112343ac56916f],
Registry Values: 4
PUP.Optional.Linkey.A, HKLM\SOFTWARE\LINKEY|ie_jsurl, http://app.linkeyproject.com/popup/IE/background.js, , [8413e04c3447b284313dd59d986a629e]
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\LINKEY|ie_jsurl, http://app.linkeyproject.com/popup/IE/background.js, , [dcbb19130378082e412d284ab9496b95]
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SYSTEMK|browser, ie ff cr, , [5740f13bef8c88aeffef650c46bc966a]
PUP.Optional.WinRST.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WINRST|ImagePath, C:\Program Files (x86)\WinRST\WinRST.exe, , [badd6cc0d3a891a5595078f615ed1ce4]
Registry Data: 2
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|AppInit_DLLs, C:\PROGRA~2\Linkey\IEEXTE~1\iedll.dll , Good: (), Bad: (C:\PROGRA~2\Linkey\IEEXTE~1\iedll.dll),,[e4b32dffeb9039fd08999bcae61ba060]
PUP.Optional.Linkey.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|AppInit_DLLs, C:\PROGRA~2\Linkey\IEEXTE~1\iedll64.dll , Good: (), Bad: (C:\PROGRA~2\Linkey\IEEXTE~1\iedll64.dll),,[e4b32dffeb9039fd08999bcae61ba060]
Folders: 13
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.SystemK.A, C:\ProgramData\systemk, , [1780d5575e1dad89eda1d19f21e1d62a],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\ChromeExtension, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\IEExtension, , [178069c3fe7dde58b8b3363c2ad8d42c],
Stolen.Data, C:\Users\Adam\AppData\Roaming\dclogs, , [2a6d63c9e49783b3687f0f4110f315eb],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\bin, , [6631191367144bebb0fce8b5e02353ad],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463, , [22753bf1bdbef83e5594fc5d14ee8878],
PUP.Optional.OpenCandy, C:\Users\Adam\AppData\Roaming\OpenCandy, , [b1e650dc37446acc6bf8322d6f9336ca],
PUP.Optional.OpenCandy, C:\Users\Adam\AppData\Roaming\OpenCandy\DB067091F488466BA2BF374D58444B1F, , [b1e650dc37446acc6bf8322d6f9336ca],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64, , [890eb7753a4140f69c112343ac56916f],
Files: 63
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\updatePlurPush.exe, , [c0d7240806752a0ca2497dde36cb946c],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\bin\utilPlurPush.exe, , [207751db700b241208e32d2ee81919e7],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\IEExtension\iedll64.dll, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\IEExtension\iedll.dll, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\PlurPushBHO.dll, , [9007111b6219f343e93a5cf223df03fd],
PUP.HackTool.HotKeysHook, C:\Users\Adam\Desktop\Konung.exe, , [108777b59ae18caac9772db1dd268e72],
HackTool.HotKeyHook, C:\Windows\SysWOW64\H@tKeysH@@k.DLL, , [5344fb31473463d31cdcc3d7f50b4cb4],
Adware.Downloader, C:\Windows\SysWOW64\rp.dll, , [098e0824502bd56173db66196e93659b],
PUP.Optional.OutBrowse, C:\Users\Adam\AppData\Local\Temp\instructions.exe, , [c2d557d51a6162d48f0c24fac0444bb5],
PUP.HackTool.HotKeysHook, C:\Users\Adam\Downloads\trainer_1775_konung_2_bot_+2_trainer.zip, , [f2a5fa3296e5c2740838f7e71fe4f40c],
Trojan.Agent.CK, C:\Users\Adam\Downloads\Call-of-Duty-4-Keygen.rar, , [b3e4aa82433896a0911c684aa35ee61a],
Misused.Legit.AI, C:\Users\Adam\PFFRX\Autoit3.873689.exe, , [1f787bb1e7942610b6d9d18529d81be5],
PUP.Optional.CrossRider.A, C:\Users\Adam\AppData\Local\Installer\Install_10563\cr.exe, , [d8bf58d48af11f17a20a05394ab62dd3],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\msvcp100.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\msvcr100.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\QtCore4.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\QtNetwork4.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\WinRST.exe, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.SystemK.A, C:\ProgramData\systemk\general.cfg, , [1780d5575e1dad89eda1d19f21e1d62a],
PUP.Optional.SystemK.A, C:\ProgramData\systemk\coordinator.cfg, , [1780d5575e1dad89eda1d19f21e1d62a],
PUP.Optional.SystemK.A, C:\ProgramData\systemk\S-1-5-21-615243006-2590396880-1291460942-1002.cfg, , [1780d5575e1dad89eda1d19f21e1d62a],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\log.log, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\Helper.dll, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\Uninstall.exe, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\ChromeExtension\ChromeExtension.crx, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot64.exe, , [5b3c89a33e3da29489e8512816ece917],
Stolen.Data, C:\Users\Adam\AppData\Roaming\dclogs\2014-04-19-7.dc, , [2a6d63c9e49783b3687f0f4110f315eb],
Stolen.Data, C:\Users\Adam\AppData\Roaming\dclogs\2014-04-20-1.dc, , [2a6d63c9e49783b3687f0f4110f315eb],
Stolen.Data, C:\Users\Adam\AppData\Roaming\dclogs\2014-04-21-2.dc, , [2a6d63c9e49783b3687f0f4110f315eb],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\PlurPush.ico, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\7za.exe, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\PlurPush.FirstRun.exe, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\PlurPushUninstall.exe, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\updatePlurPush.InstallState, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\bin\utilPlurPush.InstallState, , [6631191367144bebb0fce8b5e02353ad],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\AKV.exe, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.001, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.002, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.006, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.007, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.exe, , [22753bf1bdbef83e5594fc5d14ee8878],
PUP.Optional.OpenCandy, C:\Users\Adam\AppData\Roaming\OpenCandy\DB067091F488466BA2BF374D58444B1F\avg_tuht_stf_cs_2014_206_CZ.exe, , [b1e650dc37446acc6bf8322d6f9336ca],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\favicon.ico, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\Helper.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\Internet Explorer Settings.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr_u.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemk.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemkbho.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\systemkbho.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemkChrome.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemkmgrc1.cfg, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemku.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\tbicon.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\Uninstall.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\Internet Explorer Settings.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\syskldr_u.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\systemk.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\systemkmgrc1.cfg, , [890eb7753a4140f69c112343ac56916f],
Physical Sectors: 0
(No malicious items detected)
(end)
www.malwarebytes.org
Scan Date: 21.4.2014
Scan Time: 1:14:32
Logfile:
Administrator: Yes
Version: 2.00.1.1004
Malware Database: v2014.04.20.07
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Adam
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 249205
Time Elapsed: 6 min, 56 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled
Processes: 6
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\updatePlurPush.exe, 760, , [c0d7240806752a0ca2497dde36cb946c]
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\bin\utilPlurPush.exe, 3496, , [207751db700b241208e32d2ee81919e7]
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\WinRST.exe, 2192, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c]
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe, 4820, , [890eb7753a4140f69c112343ac56916f]
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe, 2060, , [890eb7753a4140f69c112343ac56916f]
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemku.exe, 2148, , [890eb7753a4140f69c112343ac56916f]
Modules: 17
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\msvcp100.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\msvcr100.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\QtCore4.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\QtNetwork4.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
Registry Keys: 56
PUP.Optional.PlurPush.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update PlurPush, , [c0d7240806752a0ca2497dde36cb946c],
PUP.Optional.PlurPush.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Util PlurPush, , [207751db700b241208e32d2ee81919e7],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\Linkey.Linkey, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Linkey.Linkey, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{726E90BE-DC22-4965-B215-E0784DC26F47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{4613B1C1-FBC0-43C3-A4B9-B1D6CD360BB3}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{4613B1C1-FBC0-43C3-A4B9-B1D6CD360BB3}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{726E90BE-DC22-4965-B215-E0784DC26F47}, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}\INPROCSERVER32, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\APPID\{6A7CD9EC-D8BD-4340-BCD0-77C09A282921}, , [385f8d9fdaa1cd69511ebc5ab052ea16],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{6A7CD9EC-D8BD-4340-BCD0-77C09A282921}, , [385f8d9fdaa1cd69511ebc5ab052ea16],
PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, , [d5c244e86c0f8fa7d2d684c821e13ac6],
PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, , [d5c244e86c0f8fa7d2d684c821e13ac6],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{82249076-d5c8-431d-982b-023779779587}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{089EDE16-F82F-4CB5-B64E-433860459D81}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6A9F605F-89D1-4AF7-8747-2A17F002E20E}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{6A9F605F-89D1-4AF7-8747-2A17F002E20E}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{089EDE16-F82F-4CB5-B64E-433860459D81}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{82249076-D5C8-431D-982B-023779779587}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.PlurPush.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{82249076-D5C8-431D-982B-023779779587}, , [9007111b6219f343e93a5cf223df03fd],
PUP.Optional.ShopperPro.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}, , [b3e4d6567cff1521082afc5315edbc44],
PUP.Optional.WinRST.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WinRST, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.Linkey.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Linkey, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PlurPush, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\LINKEY, , [8413e04c3447b284313dd59d986a629e],
PUP.Optional.PlurPush.A, HKLM\SOFTWARE\WOW6432NODE\PlurPush, , [6a2d56d6e19ab77fd4da534ad52eb050],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\LINKEY, , [dcbb19130378082e412d284ab9496b95],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SYSTEMK\General, , [c5d23bf194e7072f02eb9ed349b91ce4],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SYSTEMK, , [5740f13bef8c88aeffef650c46bc966a],
PUP.Optional.iWebar.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\iWebar, , [f5a27fad4d2ef83e04f8661482804fb1],
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, , [8a0d77b5b1cab581360d22753bc88b75],
Malware.Trace, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DC3_FEXEC, , [3a5dd05c8cefb77f62c1071b3bc8a060],
PUP.Optional.PlurPush.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\PlurPush, , [a4f3e5477209c2745e4fe1bce12259a7],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, , [a7f0d4589cdf85b15e20aa0032d1a858],
PUP.Optional.RegCleanerPro.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SYSTWEAK\RegClean Pro, , [4f483fed6714999dc9dc63385da69d63],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{54739D49-AC03-4C57-9264-C5195596B3A1}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\SettingsManagerIEHelper.DNSGuard, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\SettingsManagerIEHelper.DNSGuard.1, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SettingsManagerIEHelper.DNSGuard, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SettingsManagerIEHelper.DNSGuard.1, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\CLSID\{54739D49-AC03-4C57-9264-C5195596B3A1}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\CLSID\{E1842850-FB16-4471-B327-7343FBAED55C}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E1842850-FB16-4471-B327-7343FBAED55C}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKU\S-1-5-21-615243006-2590396880-1291460942-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{54739D49-AC03-4C57-9264-C5195596B3A1}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{93D511B5-143B-4A99-ABFC-B5B78AD0AE1B}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{AA760BA8-5862-4BC5-9263-4452CBC0B264}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{AA760BA8-5862-4BC5-9263-4452CBC0B264}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{93D511B5-143B-4A99-ABFC-B5B78AD0AE1B}, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SystemkService, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Settings Manager, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\F06DEFF2-5B9C-490D-910F-35D3A9119622, , [890eb7753a4140f69c112343ac56916f],
Registry Values: 4
PUP.Optional.Linkey.A, HKLM\SOFTWARE\LINKEY|ie_jsurl, http://app.linkeyproject.com/popup/IE/background.js, , [8413e04c3447b284313dd59d986a629e]
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\LINKEY|ie_jsurl, http://app.linkeyproject.com/popup/IE/background.js, , [dcbb19130378082e412d284ab9496b95]
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SYSTEMK|browser, ie ff cr, , [5740f13bef8c88aeffef650c46bc966a]
PUP.Optional.WinRST.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WINRST|ImagePath, C:\Program Files (x86)\WinRST\WinRST.exe, , [badd6cc0d3a891a5595078f615ed1ce4]
Registry Data: 2
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|AppInit_DLLs, C:\PROGRA~2\Linkey\IEEXTE~1\iedll.dll , Good: (), Bad: (C:\PROGRA~2\Linkey\IEEXTE~1\iedll.dll),,[e4b32dffeb9039fd08999bcae61ba060]
PUP.Optional.Linkey.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|AppInit_DLLs, C:\PROGRA~2\Linkey\IEEXTE~1\iedll64.dll , Good: (), Bad: (C:\PROGRA~2\Linkey\IEEXTE~1\iedll64.dll),,[e4b32dffeb9039fd08999bcae61ba060]
Folders: 13
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.SystemK.A, C:\ProgramData\systemk, , [1780d5575e1dad89eda1d19f21e1d62a],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\ChromeExtension, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\IEExtension, , [178069c3fe7dde58b8b3363c2ad8d42c],
Stolen.Data, C:\Users\Adam\AppData\Roaming\dclogs, , [2a6d63c9e49783b3687f0f4110f315eb],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\bin, , [6631191367144bebb0fce8b5e02353ad],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463, , [22753bf1bdbef83e5594fc5d14ee8878],
PUP.Optional.OpenCandy, C:\Users\Adam\AppData\Roaming\OpenCandy, , [b1e650dc37446acc6bf8322d6f9336ca],
PUP.Optional.OpenCandy, C:\Users\Adam\AppData\Roaming\OpenCandy\DB067091F488466BA2BF374D58444B1F, , [b1e650dc37446acc6bf8322d6f9336ca],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64, , [890eb7753a4140f69c112343ac56916f],
Files: 63
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\updatePlurPush.exe, , [c0d7240806752a0ca2497dde36cb946c],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\bin\utilPlurPush.exe, , [207751db700b241208e32d2ee81919e7],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\IEExtension\iedll64.dll, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\IEExtension\iedll.dll, , [e4b32dffeb9039fd08999bcae61ba060],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\PlurPushBHO.dll, , [9007111b6219f343e93a5cf223df03fd],
PUP.HackTool.HotKeysHook, C:\Users\Adam\Desktop\Konung.exe, , [108777b59ae18caac9772db1dd268e72],
HackTool.HotKeyHook, C:\Windows\SysWOW64\H@tKeysH@@k.DLL, , [5344fb31473463d31cdcc3d7f50b4cb4],
Adware.Downloader, C:\Windows\SysWOW64\rp.dll, , [098e0824502bd56173db66196e93659b],
PUP.Optional.OutBrowse, C:\Users\Adam\AppData\Local\Temp\instructions.exe, , [c2d557d51a6162d48f0c24fac0444bb5],
PUP.HackTool.HotKeysHook, C:\Users\Adam\Downloads\trainer_1775_konung_2_bot_+2_trainer.zip, , [f2a5fa3296e5c2740838f7e71fe4f40c],
Trojan.Agent.CK, C:\Users\Adam\Downloads\Call-of-Duty-4-Keygen.rar, , [b3e4aa82433896a0911c684aa35ee61a],
Misused.Legit.AI, C:\Users\Adam\PFFRX\Autoit3.873689.exe, , [1f787bb1e7942610b6d9d18529d81be5],
PUP.Optional.CrossRider.A, C:\Users\Adam\AppData\Local\Installer\Install_10563\cr.exe, , [d8bf58d48af11f17a20a05394ab62dd3],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\msvcp100.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\msvcr100.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\QtCore4.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\QtNetwork4.dll, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.WinRST.A, C:\Program Files (x86)\WinRST\WinRST.exe, , [dfb8cc60cbb0280e2d7d8ce2e81ae41c],
PUP.Optional.SystemK.A, C:\ProgramData\systemk\general.cfg, , [1780d5575e1dad89eda1d19f21e1d62a],
PUP.Optional.SystemK.A, C:\ProgramData\systemk\coordinator.cfg, , [1780d5575e1dad89eda1d19f21e1d62a],
PUP.Optional.SystemK.A, C:\ProgramData\systemk\S-1-5-21-615243006-2590396880-1291460942-1002.cfg, , [1780d5575e1dad89eda1d19f21e1d62a],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\log.log, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\Helper.dll, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\Uninstall.exe, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.Linkey.A, C:\Program Files (x86)\Linkey\ChromeExtension\ChromeExtension.crx, , [178069c3fe7dde58b8b3363c2ad8d42c],
PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot64.exe, , [5b3c89a33e3da29489e8512816ece917],
Stolen.Data, C:\Users\Adam\AppData\Roaming\dclogs\2014-04-19-7.dc, , [2a6d63c9e49783b3687f0f4110f315eb],
Stolen.Data, C:\Users\Adam\AppData\Roaming\dclogs\2014-04-20-1.dc, , [2a6d63c9e49783b3687f0f4110f315eb],
Stolen.Data, C:\Users\Adam\AppData\Roaming\dclogs\2014-04-21-2.dc, , [2a6d63c9e49783b3687f0f4110f315eb],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\PlurPush.ico, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\7za.exe, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\PlurPush.FirstRun.exe, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\PlurPushUninstall.exe, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\updatePlurPush.InstallState, , [6631191367144bebb0fce8b5e02353ad],
PUP.Optional.PlurPush.A, C:\Program Files (x86)\PlurPush\bin\utilPlurPush.InstallState, , [6631191367144bebb0fce8b5e02353ad],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\AKV.exe, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.001, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.002, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.006, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.007, , [22753bf1bdbef83e5594fc5d14ee8878],
Keylogger.Ardamax, C:\Windows\SysWOW64\28463\JGTG.exe, , [22753bf1bdbef83e5594fc5d14ee8878],
PUP.Optional.OpenCandy, C:\Users\Adam\AppData\Roaming\OpenCandy\DB067091F488466BA2BF374D58444B1F\avg_tuht_stf_cs_2014_206_CZ.exe, , [b1e650dc37446acc6bf8322d6f9336ca],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\favicon.ico, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\Helper.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\Internet Explorer Settings.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\syskldr_u.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemk.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemkbho.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\systemkbho.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemkChrome.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemkmgrc1.cfg, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\systemku.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\tbicon.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\Uninstall.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\Internet Explorer Settings.exe, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\sysapcrt.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\syskldr.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\syskldr_u.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\systemk.dll, , [890eb7753a4140f69c112343ac56916f],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\systemk\x64\systemkmgrc1.cfg, , [890eb7753a4140f69c112343ac56916f],
Physical Sectors: 0
(No malicious items detected)
(end)
Re: PC mi píše ˇˇ misto pismenka s háčkem
Dal jsem vše do karanteny a restartoval pc, nainstaluju aviru ( jel jsem bez antiviraku )
zatím to píše ĎŤŇ jak má, ale když jsem zapnul pc Vyskočili na mě 2 červene hlášky
zatím to píše ĎŤŇ jak má, ale když jsem zapnul pc Vyskočili na mě 2 červene hlášky

Re: PC mi píše ˇˇ misto pismenka s háčkem
Zdravim 
Byl tam Keylogger.Ardamax, cili pc je/byl sledovan. Mohl tam byt nainstalovany i zamerne, je to volne dostupny program http://www.studna.cz/ardamax-keylogger-p-5613.html
Jedna se o domaci pc? Jste jediny uzivatel?
Jake hlasky se objevily? Vyskoci pri kazdem zapnuti? Pokud ano, udelejte screen a poslete mi je.
Dejte log z RSITx64 http://images.malwareremoval.com/random/RSITx64.exe , navod je zde http://forum.viry.cz/viewtopic.php?f=13&t=130786

Byl tam Keylogger.Ardamax, cili pc je/byl sledovan. Mohl tam byt nainstalovany i zamerne, je to volne dostupny program http://www.studna.cz/ardamax-keylogger-p-5613.html



Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: PC mi píše ˇˇ misto pismenka s háčkem
LOG:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Adam at 2014-04-21 15:11:28
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 652 GB (68%) free of 954 GB
Total RAM: 4042 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:11:35, on 21.4.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files\trend micro\Adam.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.default-search.net?sid=498&a ... 22&src=hmp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=http://127.0.0.1:9880
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 216.239.32.20 google.com www.google.com
O1 - Hosts: 216.239.32.20 google.com www.google.ad
O1 - Hosts: 216.239.32.20 google.com www.google.ae
O1 - Hosts: 216.239.32.20 google.com www.google.com.af
O1 - Hosts: 216.239.32.20 google.com www.google.com.ag
O1 - Hosts: 216.239.32.20 google.com www.google.com.ai
O1 - Hosts: 216.239.32.20 google.com www.google.al
O1 - Hosts: 216.239.32.20 google.com www.google.am
O1 - Hosts: 216.239.32.20 google.com www.google.co.ao
O1 - Hosts: 216.239.32.20 google.com www.google.com.ar
O1 - Hosts: 216.239.32.20 google.com www.google.as
O1 - Hosts: 216.239.32.20 google.com www.google.at
O1 - Hosts: 216.239.32.20 google.com www.google.com.au
O1 - Hosts: 216.239.32.20 google.com www.google.az
O1 - Hosts: 216.239.32.20 google.com www.google.ba
O1 - Hosts: 216.239.32.20 google.com www.google.com.bd
O1 - Hosts: 216.239.32.20 google.com www.google.be
O1 - Hosts: 216.239.32.20 google.com www.google.bf
O1 - Hosts: 216.239.32.20 google.com www.google.bg
O1 - Hosts: 216.239.32.20 google.com www.google.com.bh
O1 - Hosts: 216.239.32.20 google.com www.google.bi
O1 - Hosts: 216.239.32.20 google.com www.google.bj
O1 - Hosts: 216.239.32.20 google.com www.google.com.bn
O1 - Hosts: 216.239.32.20 google.com www.google.com.bo
O1 - Hosts: 216.239.32.20 google.com www.google.com.br
O1 - Hosts: 216.239.32.20 google.com www.google.bs
O1 - Hosts: 216.239.32.20 google.com www.google.bt
O1 - Hosts: 216.239.32.20 google.com www.google.co.bw
O1 - Hosts: 216.239.32.20 google.com www.google.by
O1 - Hosts: 216.239.32.20 google.com www.google.com.bz
O1 - Hosts: 216.239.32.20 google.com www.google.ca
O1 - Hosts: 216.239.32.20 google.com www.google.cd
O1 - Hosts: 216.239.32.20 google.com www.google.cf
O1 - Hosts: 216.239.32.20 google.com www.google.cg
O1 - Hosts: 216.239.32.20 google.com www.google.ch
O1 - Hosts: 216.239.32.20 google.com www.google.ci
O1 - Hosts: 216.239.32.20 google.com www.google.co.ck
O1 - Hosts: 216.239.32.20 google.com www.google.cl
O1 - Hosts: 216.239.32.20 google.com www.google.cm
O1 - Hosts: 216.239.32.20 google.com www.google.cn
O1 - Hosts: 216.239.32.20 google.com www.google.com.co
O1 - Hosts: 216.239.32.20 google.com www.google.co.cr
O1 - Hosts: 216.239.32.20 google.com www.google.com.cu
O1 - Hosts: 216.239.32.20 google.com www.google.cv
O1 - Hosts: 216.239.32.20 google.com www.google.com.cy
O1 - Hosts: 216.239.32.20 google.com www.google.cz
O1 - Hosts: 216.239.32.20 google.com www.google.de
O1 - Hosts: 216.239.32.20 google.com www.google.dj
O1 - Hosts: 216.239.32.20 google.com www.google.dk
O1 - Hosts: 216.239.32.20 google.com www.google.dm
O1 - Hosts: 216.239.32.20 google.com www.google.com.do
O1 - Hosts: 216.239.32.20 google.com www.google.dz
O1 - Hosts: 216.239.32.20 google.com www.google.com.ec
O1 - Hosts: 216.239.32.20 google.com www.google.ee
O1 - Hosts: 216.239.32.20 google.com www.google.com.eg
O1 - Hosts: 216.239.32.20 google.com www.google.es
O1 - Hosts: 216.239.32.20 google.com www.google.com.et
O1 - Hosts: 216.239.32.20 google.com www.google.fi
O1 - Hosts: 216.239.32.20 google.com www.google.com.fj
O1 - Hosts: 216.239.32.20 google.com www.google.fm
O1 - Hosts: 216.239.32.20 google.com www.google.fr
O1 - Hosts: 216.239.32.20 google.com www.google.ga
O1 - Hosts: 216.239.32.20 google.com www.google.ge
O1 - Hosts: 216.239.32.20 google.com www.google.gg
O1 - Hosts: 216.239.32.20 google.com www.google.com.gh
O1 - Hosts: 216.239.32.20 google.com www.google.com.gi
O1 - Hosts: 216.239.32.20 google.com www.google.gl
O1 - Hosts: 216.239.32.20 google.com www.google.gm
O1 - Hosts: 216.239.32.20 google.com www.google.gp
O1 - Hosts: 216.239.32.20 google.com www.google.gr
O1 - Hosts: 216.239.32.20 google.com www.google.com.gt
O1 - Hosts: 216.239.32.20 google.com www.google.gy
O1 - Hosts: 216.239.32.20 google.com www.google.com.hk
O1 - Hosts: 216.239.32.20 google.com www.google.hn
O1 - Hosts: 216.239.32.20 google.com www.google.hr
O1 - Hosts: 216.239.32.20 google.com www.google.ht
O1 - Hosts: 216.239.32.20 google.com www.google.hu
O1 - Hosts: 216.239.32.20 google.com www.google.co.id
O1 - Hosts: 216.239.32.20 google.com www.google.ie
O1 - Hosts: 216.239.32.20 google.com www.google.co.il
O1 - Hosts: 216.239.32.20 google.com www.google.im
O1 - Hosts: 216.239.32.20 google.com www.google.co.in
O1 - Hosts: 216.239.32.20 google.com www.google.iq
O1 - Hosts: 216.239.32.20 google.com www.google.is
O1 - Hosts: 216.239.32.20 google.com www.google.it
O1 - Hosts: 216.239.32.20 google.com www.google.je
O1 - Hosts: 216.239.32.20 google.com www.google.com.jm
O1 - Hosts: 216.239.32.20 google.com www.google.jo
O1 - Hosts: 216.239.32.20 google.com www.google.co.jp
O1 - Hosts: 216.239.32.20 google.com www.google.co.ke
O1 - Hosts: 216.239.32.20 google.com www.google.com.kh
O1 - Hosts: 216.239.32.20 google.com www.google.ki
O1 - Hosts: 216.239.32.20 google.com www.google.kg
O1 - Hosts: 216.239.32.20 google.com www.google.co.kr
O1 - Hosts: 216.239.32.20 google.com www.google.com.kw
O1 - Hosts: 216.239.32.20 google.com www.google.kz
O1 - Hosts: 216.239.32.20 google.com www.google.la
O1 - Hosts: 216.239.32.20 google.com www.google.com.lb
O1 - Hosts: 216.239.32.20 google.com www.google.li
O1 - Hosts: 216.239.32.20 google.com www.google.lk
O1 - Hosts: 216.239.32.20 google.com www.google.co.ls
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - mscoree.dll (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range: http://10.0.0.138
O15 - ESC Trusted IP range: http://10.0.0.138
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: MgAssist Service (MgAssistService) - Unknown owner - C:\Program Files (x86)\Mobogenie\MgAssist.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PirritUpdater - Unknown owner - C:\Program Files (x86)\Pirrit\AutoUpdater.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Systemk Service (SystemkService) - Unknown owner - C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14994 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Mobogenie\MgAssist.exe"
"C:\Program Files (x86)\Pirrit\AutoUpdater.exe"
atieclxx
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Mobogenie\DaemonProcess.exe"
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\system32\wbem\wmiprvse.exe
HydraDM64.exe -h:65920 "Maximalizovat na celou plochu" "Maximalizovat k rohům okna" "Obnovit pracovní plochu"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d3f26cde-4aed-4ba4-8092-2eb2c5c02bbc -SystemEventPortName:HostProcess-0145c789-fe55-4a06-9f5d-2bc1c2036d71 -IoCancelEventPortName:HostProcess-5cfc7dcc-5b6c-4f1a-913a-243843667f25 -NonStateChangingEventPortName:HostProcess-f2d9483a-7c4c-45e0-92eb-a3bf649b0f4a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:12c135c6-4546-4d64-bcca-bd44cc05c70a -DeviceGroupId:WpdFsGroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe" /ignoreRunningInstances
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min /NOSPLASH /SETUPSTART
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000fb0
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Steam\Steam.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\SysWOW64\PnkBstrB.exe
C:\Windows\system32\svchost.exe -k defragsvc
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --profile-directory=Default
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --type=gpu-process --channel="5568.0.402780591\1712467408" --disable-image-transport-surface --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,1,14,27 --gpu-vendor-id=0x1002 --gpu-device-id=0x9442 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=8.970.100.1100 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserPreReadExperiment/100-pct-default/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_50/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/ --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --disable-client-side-phishing-detection --enable-software-compositing --channel="5568.4.229165543\1664240811" /prefetch:673131151
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --type=plugin --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll" --lang=cs --channel="5568.5.1606574284\283716129" /prefetch:-390060480
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserPreReadExperiment/100-pct-default/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_50/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/ --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --disable-client-side-phishing-detection --enable-software-compositing --channel="5568.6.1855798768\1504580948" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe23_ Global\UsGthrCtrlFltPipeMssGthrPipe23 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
"C:\Users\Adam\Downloads\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-31 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-31 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-17 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d40c654d-7c51-4eb3-95b2-1e23905c2a2d}]
IEExtension.Extension - C:\Windows\system32\mscoree.dll [2010-11-21 444752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-17 171944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Client Manager"=C:\Program Files\Update Software\winclient32.exe [2014-02-19 639488]
"Fences"=C:\Program Files (x86)\Stardock\Fences\Fences.exe [2013-11-26 4031152]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2012-11-16 393216]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Adam\AppData\Roaming\Seznam.cz\szninstall.exe -c []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Adam\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\JGTG Agent]
C:\Windows\SysWOW64\28463\JGTG.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\Windows\system32\NvCpl.dll,NvStartup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SandboxieControl]
C:\Program Files\Sandboxie\SbieCtrl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VoipBuster]
C:\Program Files (x86)\VoipBuster.com\VoipBuster\VoipBuster.exe -nosplash -minimized []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FastMediaConverter.lnk]
C:\PROGRA~2\FASTME~1\FASTME~1.EXE []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2013-12-06 766208]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [2014-04-08 748736]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2014-04-15 180304]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-02-25 689744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
FencesShellExt - {1984DD45-52CF-49cd-AB77-18F378FEA264} - C:\Program Files (x86)\Stardock\Fences\FencesMenu64.dll [2013-11-26 521904]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-04-21 15:11:28 ----D---- C:\rsit
2014-04-21 15:11:28 ----D---- C:\Program Files\trend micro
2014-04-21 07:23:49 ----A---- C:\Windows\system32\drivers\avnetflt.sys
2014-04-21 01:24:44 ----D---- C:\Users\Adam\AppData\Roaming\Avira
2014-04-21 01:20:48 ----A---- C:\Windows\system32\drivers\avkmgr.sys
2014-04-21 01:20:48 ----A---- C:\Windows\system32\drivers\avipbb.sys
2014-04-21 01:20:48 ----A---- C:\Windows\system32\drivers\avgntflt.sys
2014-04-21 01:19:29 ----D---- C:\ProgramData\Avira
2014-04-21 01:19:29 ----D---- C:\Program Files (x86)\Avira
2014-04-21 01:07:16 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-04-21 01:06:54 ----D---- C:\ProgramData\Malwarebytes
2014-04-21 01:06:54 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-21 01:06:54 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-04-21 01:06:54 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-04-21 01:06:54 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-04-21 00:45:04 ----D---- C:\Program Files (x86)\Dotjosh Studios
2014-04-21 00:41:47 ----D---- C:\ProgramData\Bohemia Interactive Studio
2014-04-20 15:35:15 ----D---- C:\Program Files (x86)\1C
2014-04-19 04:07:09 ----D---- C:\Windows\SYSWOW64\lib
2014-04-19 04:07:09 ----D---- C:\Windows\SYSWOW64\coremods
2014-04-19 03:58:37 ----D---- C:\Program Files (x86)\PlurPush
2014-04-19 03:58:24 ----D---- C:\Program Files (x86)\Mobogenie
2014-04-19 03:45:29 ----D---- C:\Windows\Simple Port Forwarding
2014-04-19 03:45:29 ----D---- C:\Program Files (x86)\Simple Port Forwarding
2014-04-19 03:45:27 ----A---- C:\Windows\Simple Port Forwarding Setup Log.txt
2014-04-19 03:38:35 ----D---- C:\Program Files (x86)\PFConfig
2014-04-19 03:28:10 ----D---- C:\Program Files (x86)\PFPortChecker
2014-04-19 03:27:46 ----D---- C:\Program Files (x86)\Settings Manager
2014-04-19 03:27:44 ----D---- C:\ProgramData\systemk
2014-04-19 02:48:59 ----D---- C:\Users\Adam\AppData\Roaming\.minecraft
2014-04-17 23:11:35 ----D---- C:\Program Files (x86)\505 Games
2014-04-17 21:32:34 ----D---- C:\Program Files (x86)\Adobe
2014-04-17 21:31:48 ----D---- C:\ProgramData\Adobe
2014-04-17 20:35:35 ----D---- C:\Program Files (x86)\Guild Wars 2
2014-04-17 20:35:09 ----D---- C:\Users\Adam\AppData\Roaming\Guild Wars 2
2014-04-17 09:35:21 ----D---- C:\ProgramData\SystemRequirementsLab
2014-04-17 09:34:41 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-04-17 09:34:37 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-04-17 09:34:37 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-04-17 09:34:37 ----A---- C:\Windows\SYSWOW64\java.exe
2014-04-17 09:34:32 ----D---- C:\Program Files (x86)\Java
2014-04-17 09:31:59 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2014-04-17 05:40:22 ----D---- C:\ProgramData\Martau
2014-04-17 05:40:20 ----D---- C:\Program Files\Total Uninstall 6
2014-04-17 05:22:38 ----D---- C:\Windows\pss
2014-04-17 05:15:13 ----D---- C:\Program Files\CCleaner
2014-04-17 04:58:24 ----D---- C:\p
2014-04-15 10:17:45 ----D---- C:\WinDDK
2014-04-14 22:36:36 ----RD---- C:\Sandbox
2014-04-14 22:36:06 ----A---- C:\Windows\Sandboxie.ini
2014-04-14 22:36:01 ----D---- C:\Program Files\Sandboxie
2014-04-13 04:45:07 ----D---- C:\Users\Adam\AppData\Roaming\SketchUp
2014-04-13 04:44:11 ----D---- C:\ProgramData\SketchUp
2014-04-12 23:14:25 ----D---- C:\Users\Adam\AppData\Roaming\OpenVPN Technologies
2014-04-12 23:14:06 ----D---- C:\Program Files (x86)\OpenVPN Technologies
2014-04-12 22:08:27 ----D---- C:\Users\Adam\AppData\Roaming\TS3Client
2014-04-12 22:08:25 ----D---- C:\Program Files (x86)\TeamSpeak 3 Client
2014-04-12 20:21:54 ----A---- C:\Windows\game.ini
2014-04-12 20:18:17 ----D---- C:\Program Files (x86)\Activision
2014-04-12 20:16:26 ----SHD---- C:\Windows\ftpcache
2014-04-12 02:47:14 ----D---- C:\ProgramData\[Manufacturer]
2014-04-12 02:47:14 ----D---- C:\4GF.CZ
2014-04-12 02:46:12 ----D---- C:\Users\Adam\AppData\Roaming\4GF.CZ
2014-04-11 07:50:17 ----D---- C:\Users\Adam\AppData\Roaming\VoipBuster
2014-04-10 01:48:31 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-04-10 01:48:31 ----A---- C:\Windows\system32\mshtml.dll
2014-04-10 01:48:16 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2014-04-10 01:48:16 ----A---- C:\Windows\system32\iologmsg.dll
2014-04-10 01:48:16 ----A---- C:\Windows\system32\drivers\storport.sys
2014-04-10 01:48:16 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-04-10 01:48:16 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\user.exe
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-04-10 01:48:15 ----A---- C:\Windows\system32\wow64win.dll
2014-04-10 01:48:15 ----A---- C:\Windows\system32\wow64cpu.dll
2014-04-10 01:48:15 ----A---- C:\Windows\system32\wow64.dll
2014-04-10 01:48:15 ----A---- C:\Windows\system32\ntvdm64.dll
2014-04-10 01:48:15 ----A---- C:\Windows\system32\kernel32.dll
2014-04-10 01:48:14 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-04-09 22:17:39 ----D---- C:\Users\Adam\AppData\Roaming\Seznam.cz
2014-04-09 19:35:31 ----A---- C:\Windows\BlendSettings.ini
2014-04-09 12:31:09 ----D---- C:\Users\Adam\AppData\Roaming\ValuSoft
2014-04-09 12:26:19 ----D---- C:\Program Files (x86)\DaeMUSeason4
2014-04-09 04:46:34 ----A---- C:\debugInstaller.txt
2014-04-09 00:12:17 ----A---- C:\Windows\system32\binkw32.dll
2014-04-08 23:55:23 ----D---- C:\Sierra
2014-04-08 21:53:20 ----D---- C:\Program Files (x86)\GOG.com
2014-04-08 04:30:09 ----D---- C:\Program Files (x86)\SRWare Iron
2014-04-08 04:16:19 ----D---- C:\Windows\system32\appmgmt
2014-04-08 03:56:55 ----D---- C:\Users\Adam\AppData\Roaming\TERA
2014-04-07 16:57:57 ----A---- C:\Windows\options.dat
2014-04-07 00:59:37 ----D---- C:\ProgramData\Caphyon
2014-04-07 00:56:59 ----D---- C:\Users\Adam\AppData\Roaming\Quadcore Games
2014-04-07 00:09:55 ----D---- C:\Users\Adam\AppData\Roaming\The Creative Assembly
2014-04-06 22:16:18 ----D---- C:\Users\Adam\AppData\Roaming\systweak
2014-04-06 22:16:07 ----D---- C:\Users\Adam\AppData\Roaming\Pirrit
2014-04-06 22:16:03 ----D---- C:\Program Files (x86)\Pirrit
2014-04-06 21:51:15 ----D---- C:\Trezor
2014-04-06 15:11:28 ----D---- C:\Users\Adam\AppData\Roaming\TeamViewer
2014-04-06 14:38:44 ----D---- C:\Program Files\PCDApp
2014-04-06 14:33:53 ----D---- C:\Program Files\Windows Vista - 7 - 8 - 8.1 KMS Activator Ultimate 2014 v1.8
2014-04-04 17:09:32 ----D---- C:\ProgramData\Bohemia Interactive
2014-04-04 17:06:44 ----A---- C:\Windows\SYSWOW64\pbsvc_blr.exe
2014-04-04 17:06:40 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-04-03 21:51:50 ----D---- C:\Program Files\Microsoft Synchronization Services
2014-04-03 21:51:50 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2014-04-03 21:51:41 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2014-04-03 21:51:41 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-04-03 21:49:42 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 10.0
2014-04-03 21:49:20 ----D---- C:\Windows\symbols
2014-04-03 21:49:20 ----D---- C:\Program Files\Microsoft Visual Studio 10.0
2014-04-03 21:49:20 ----D---- C:\Program Files\Microsoft Help Viewer
2014-04-03 21:49:20 ----D---- C:\Program Files (x86)\Microsoft SDKs
2014-04-02 23:28:49 ----D---- C:\ProgramData\Stardock
2014-04-02 23:28:16 ----D---- C:\Users\Adam\AppData\Roaming\Stardock
2014-04-02 23:28:12 ----D---- C:\Program Files (x86)\Stardock
2014-04-02 23:18:10 ----D---- C:\Windows\W7SBC
2014-04-02 23:18:10 ----A---- C:\Windows\explorer_edit_w7sbc.exe
2014-04-02 23:18:10 ----A---- C:\Windows\explorer_backup_w7sbc.exe
2014-04-02 23:18:10 ----A---- C:\Windows\explorer.exe
2014-04-02 23:17:23 ----D---- C:\W7SBC
2014-04-02 23:10:03 ----D---- C:\Grafika
2014-04-02 21:05:24 ----D---- C:\ProgramData\Steam
2014-04-02 03:01:03 ----D---- C:\Program Files\Microsoft Silverlight
2014-04-02 03:01:02 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-04-02 01:32:57 ----D---- C:\Users\Adam\AppData\Roaming\Skype
2014-04-02 01:32:41 ----RD---- C:\Program Files (x86)\Skype
2014-04-02 01:32:34 ----D---- C:\ProgramData\Skype
2014-04-01 01:01:20 ----D---- C:\Users\Adam\AppData\Roaming\Applian FLV and Media Player
2014-04-01 01:00:06 ----D---- C:\ProgramData\Uniblue
2014-04-01 00:57:14 ----D---- C:\Program Files (x86)\Applian Technologies
2014-04-01 00:54:14 ----D---- C:\ProgramData\APN
2014-03-31 17:17:11 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2014-03-31 16:36:06 ----D---- C:\Users\Adam\AppData\Roaming\Mozilla
2014-03-31 16:36:00 ----D---- C:\ProgramData\Mozilla
2014-03-31 16:35:58 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-03-31 16:26:06 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-03-31 16:26:05 ----D---- C:\Windows\system32\Macromed
2014-03-31 16:26:03 ----D---- C:\Windows\SYSWOW64\Macromed
2014-03-31 16:25:44 ----A---- C:\Windows\SYSWOW64\ssinstall-uninstall.bat
2014-03-31 16:25:44 ----A---- C:\Windows\SYSWOW64\ssins.exe
2014-03-31 16:23:00 ----A---- C:\Windows\system32\javaws.exe
2014-03-31 16:22:55 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2014-03-31 16:22:55 ----A---- C:\Windows\system32\javaw.exe
2014-03-31 16:22:55 ----A---- C:\Windows\system32\java.exe
2014-03-31 16:22:48 ----D---- C:\Program Files\Java
2014-03-31 16:21:19 ----D---- C:\Users\Adam\AppData\Roaming\Opera Software
2014-03-31 16:21:16 ----D---- C:\Program Files (x86)\Opera
2014-03-31 14:16:14 ----D---- C:\Users\Adam\AppData\Roaming\LolClient
2014-03-31 14:16:12 ----D---- C:\Users\Adam\AppData\Roaming\Macromedia
2014-03-31 04:22:21 ----D---- C:\ProgramData\TEMP
2014-03-31 03:48:33 ----D---- C:\ProgramData\PC Optimizer Pro
2014-03-30 22:59:51 ----D---- C:\Windows\SYSWOW64\mailoutput
2014-03-30 22:36:44 ----D---- C:\Users\Adam\AppData\Roaming\PSpad
2014-03-30 22:36:41 ----D---- C:\Program Files (x86)\PSPad editor
2014-03-30 22:25:13 ----D---- C:\xampp
2014-03-30 22:23:51 ----A---- C:\Windows\SYSWOW64\libmysql_d.dll
2014-03-30 22:23:48 ----D---- C:\Program Files (x86)\PremiumSoft
2014-03-30 21:57:12 ----D---- C:\Program Files\TAP-Windows
2014-03-30 21:57:11 ----D---- C:\Program Files\OpenVPN
2014-03-30 21:03:56 ----D---- C:\Program Files\Update Software
2014-03-30 21:03:50 ----A---- C:\ProgramData\spds90.txt
2014-03-29 14:33:44 ----RHD---- C:\Users\Adam\AppData\Roaming\SecuROM
2014-03-29 14:21:18 ----D---- C:\ProgramData\Electronic Arts
2014-03-28 21:10:15 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-03-28 21:10:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-03-28 21:10:14 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-03-28 21:09:28 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2014-03-28 21:09:25 ----D---- C:\Riot Games
2014-03-28 21:08:42 ----D---- C:\Program Files (x86)\Steam
2014-03-28 21:06:01 ----D---- C:\ProgramData\PMB Files
2014-03-28 21:05:54 ----D---- C:\Program Files (x86)\Pando Networks
2014-03-28 21:05:36 ----D---- C:\Users\Adam\AppData\Roaming\Riot Games
2014-03-28 20:55:44 ----D---- C:\Users\Adam\AppData\Roaming\Battle.net
2014-03-28 20:55:36 ----D---- C:\ProgramData\Blizzard Entertainment
2014-03-28 20:49:24 ----D---- C:\ProgramData\Battle.net
2014-03-28 16:40:01 ----D---- C:\Fraps
2014-03-28 16:30:41 ----D---- C:\Program Files\CPUID
2014-03-28 15:22:42 ----D---- C:\Program Files (x86)\Microsoft Works
2014-03-28 15:22:33 ----D---- C:\Windows\PCHEALTH
2014-03-28 15:21:14 ----D---- C:\Program Files\Microsoft Office
2014-03-28 15:20:56 ----D---- C:\ProgramData\Microsoft Help
2014-03-28 15:20:56 ----D---- C:\Program Files (x86)\Microsoft Office
2014-03-28 15:20:25 ----RHD---- C:\MSOCache
2014-03-28 14:54:21 ----D---- C:\Portable Photoshop CS5
2014-03-28 12:43:41 ----D---- C:\Program Files (x86)\AMD APP
2014-03-27 19:13:55 ----D---- C:\ProgramData\RELOADED
2014-03-27 19:04:30 ----SHD---- C:\ProgramData\SecuROM
2014-03-27 18:36:31 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-03-27 18:36:21 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-03-27 18:36:05 ----D---- C:\ProgramData\Orbit
2014-03-27 18:02:59 ----A---- C:\Windows\SYSWOW64\CmdLineExt_x64.dll
2014-03-27 18:01:45 ----D---- C:\Windows\SYSWOW64\xlive
2014-03-27 18:01:45 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\vb40032.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcrt10.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcr71.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcr70.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcp71.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcp70.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvci70.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvbvm50.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msstkprp.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msstdfmt.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71u.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71kor.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71jpn.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71ita.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71cht.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71chs.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71fra.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71esp.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71enu.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71deu.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70u.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70kor.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70jpn.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70ita.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70cht.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70chs.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70fra.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70esp.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70enu.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70deu.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\atl71.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\atl70.dll
2014-03-27 13:04:48 ----D---- C:\Program Files (x86)\Microsoft WSE
2014-03-27 13:03:30 ----RA---- C:\Windows\SYSWOW64\tmpC332.tmp
2014-03-27 13:01:35 ----A---- C:\Windows\system32\drivers\atksgt.sys
2014-03-27 13:01:10 ----A---- C:\Windows\system32\drivers\lirsgt.sys
2014-03-27 09:37:47 ----D---- C:\Users\Adam\AppData\Roaming\Mount&Blade Warband
2014-03-27 00:33:17 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-03-27 00:33:17 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-03-27 00:33:17 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-03-27 00:33:17 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-03-27 00:33:17 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-03-27 00:33:17 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-03-27 00:33:13 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-03-27 00:33:13 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-03-27 00:33:13 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-03-27 00:33:13 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-03-27 00:33:11 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-03-27 00:33:11 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-03-27 00:33:11 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-03-27 00:32:38 ----D---- C:\Program Files (x86)\Realtek Sound Manager
2014-03-27 00:32:37 ----D---- C:\Program Files (x86)\AvRack
2014-03-27 00:32:37 ----A---- C:\Windows\avrack.ini
2014-03-27 00:32:32 ----D---- C:\Program Files (x86)\Realtek AC97
2014-03-27 00:31:42 ----D---- C:\Dell
2014-03-27 00:31:35 ----HD---- C:\Windows\msdownld.tmp
2014-03-27 00:31:29 ----D---- C:\Windows\SYSWOW64\directx
2014-03-27 00:18:54 ----D---- C:\Program Files (x86)\OpenAL
2014-03-27 00:18:54 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2014-03-27 00:18:54 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2014-03-27 00:18:54 ----A---- C:\Windows\system32\wrap_oal.dll
2014-03-27 00:18:54 ----A---- C:\Windows\system32\OpenAL32.dll
2014-03-27 00:04:47 ----D---- C:\Windows\Migration
2014-03-26 23:49:23 ----A---- C:\Windows\RtlExUpd.dll
2014-03-26 23:49:23 ----A---- C:\Windows\HideWin.exe
2014-03-26 23:43:16 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-03-26 23:43:16 ----A---- C:\Windows\system32\wmploc.DLL
2014-03-26 23:43:15 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-03-26 23:43:14 ----A---- C:\Windows\system32\wmp.dll
2014-03-26 23:38:51 ----D---- C:\Windows\system32\MRT
2014-03-26 23:38:09 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-03-26 23:38:09 ----A---- C:\Windows\system32\vbscript.dll
2014-03-26 23:37:20 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-03-26 23:37:20 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-03-26 23:37:20 ----A---- C:\Windows\system32\iertutil.dll
2014-03-26 23:37:20 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-03-26 23:37:19 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-03-26 23:37:19 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-03-26 23:37:19 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-03-26 23:37:18 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-03-26 23:37:18 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-03-26 23:37:18 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-03-26 23:37:18 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-03-26 23:37:18 ----A---- C:\Windows\system32\urlmon.dll
2014-03-26 23:37:18 ----A---- C:\Windows\system32\iernonce.dll
2014-03-26 23:37:18 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-03-26 23:37:17 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-03-26 23:37:17 ----A---- C:\Windows\system32\msfeeds.dll
2014-03-26 23:37:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-03-26 23:37:16 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-03-26 23:37:16 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-03-26 23:37:16 ----A---- C:\Windows\system32\iesetup.dll
2014-03-26 23:37:16 ----A---- C:\Windows\system32\ie4uinit.exe
2014-03-26 23:37:15 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-03-26 23:37:15 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\jsproxy.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\jscript9diag.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\ieUnatt.exe
2014-03-26 23:37:15 ----A---- C:\Windows\system32\ieui.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\ieframe.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-03-26 23:37:14 ----A---- C:\Windows\system32\wininet.dll
2014-03-26 23:37:14 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-26 23:37:14 ----A---- C:\Windows\system32\msrating.dll
2014-03-26 23:37:14 ----A---- C:\Windows\system32\jscript9.dll
2014-03-26 23:37:14 ----A---- C:\Windows\system32\ieapfltr.dll
2014-03-26 23:36:38 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-03-26 23:36:38 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-03-26 23:36:38 ----A---- C:\Windows\system32\d3d10warp.dll
2014-03-26 23:36:38 ----A---- C:\Windows\system32\d2d1.dll
2014-03-26 23:36:37 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-03-26 23:36:37 ----A---- C:\Windows\system32\drivers\netio.sys
2014-03-26 23:36:36 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-03-26 23:36:36 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-03-26 23:36:36 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-03-26 23:36:36 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-03-26 23:36:36 ----A---- C:\Windows\system32\tdh.dll
2014-03-26 23:36:36 ----A---- C:\Windows\system32\ntdll.dll
2014-03-26 23:36:36 ----A---- C:\Windows\system32\advapi32.dll
2014-03-26 23:36:35 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-03-26 23:36:35 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-03-26 23:36:35 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-03-26 23:36:35 ----A---- C:\Windows\system32\msxml3r.dll
2014-03-26 23:36:35 ----A---- C:\Windows\system32\msxml3.dll
2014-03-26 23:36:33 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-03-26 23:36:33 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-03-26 23:36:33 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-03-26 23:36:33 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-03-26 23:36:33 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-03-26 23:36:33 ----A---- C:\Windows\system32\RMActivate.exe
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\secproc_isv.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\secproc.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-03-26 23:36:32 ----A---- C:\Windows\system32\msdrm.dll
2014-03-26 23:36:31 ----A---- C:\Windows\system32\win32k.sys
2014-03-26 23:36:25 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-03-26 23:36:25 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-03-26 23:36:25 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-03-26 23:36:25 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\sspisrv.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\sspicli.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\schannel.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\secur32.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\ncrypt.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\lsass.exe
2014-03-26 23:36:25 ----A---- C:\Windows\system32\lsasrv.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-03-26 23:36:25 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-03-26 23:36:25 ----A---- C:\Windows\system32\drivers\cng.sys
2014-03-26 23:36:23 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-03-26 23:36:23 ----A---- C:\Windows\system32\wwansvc.dll
2014-03-26 23:36:23 ----A---- C:\Windows\system32\wer.dll
2014-03-26 23:36:21 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-03-26 23:36:21 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-03-26 23:36:20 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-03-26 23:36:20 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-03-26 23:36:20 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-03-26 23:36:20 ----A---- C:\Windows\system32\rdpcorets.dll
2014-03-26 23:36:20 ----A---- C:\Windows\system32\qedit.dll
2014-03-26 23:36:20 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-03-26 23:36:19 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-03-26 23:36:19 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-03-26 23:36:19 ----A---- C:\Windows\system32\nshwfp.dll
2014-03-26 23:36:19 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-03-26 23:36:19 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-03-26 23:32:51 ----HD---- C:\Program Files (x86)\Temp
2014-03-26 23:31:38 ----A---- C:\Windows\AlcUpd64.exe
2014-03-26 23:31:38 ----A---- C:\Windows\AlcRmv64.exe
2014-03-26 23:16:06 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-03-26 23:11:44 ----AD---- C:\Windows\SYSWOW64\oem
2014-03-26 22:42:44 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-03-26 22:42:44 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-03-26 22:42:44 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-03-26 22:42:44 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-03-26 22:42:44 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-03-26 22:42:44 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-03-26 22:42:41 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-03-26 22:42:41 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-03-26 22:42:41 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-03-26 22:42:41 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-03-26 22:42:41 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-03-26 22:42:41 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-03-26 22:42:41 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-03-26 22:42:41 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-03-26 22:42:39 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-03-26 22:42:39 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-03-26 22:42:39 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-03-26 22:42:38 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-03-26 22:42:38 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-03-26 22:42:38 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-03-26 22:42:38 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-03-26 22:42:38 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-03-26 22:42:35 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-03-26 22:42:35 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-03-26 22:42:35 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-03-26 22:42:35 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-03-26 22:42:35 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-03-26 22:42:35 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-03-26 22:42:35 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-03-26 22:42:35 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-03-26 22:42:34 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-03-26 22:42:34 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-03-26 22:42:34 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-03-26 22:42:34 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-03-26 22:42:32 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-03-26 22:42:32 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\system32\xinput1_3.dll
2014-03-26 22:42:32 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-03-26 22:42:31 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-03-26 22:42:31 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-03-26 22:42:31 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-03-26 22:42:30 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-03-26 22:42:30 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-03-26 22:42:30 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-03-26 22:42:30 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-03-26 22:42:30 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-03-26 22:42:30 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-03-26 22:42:30 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-03-26 22:42:30 ----A---- C:\Windows\system32\d3dx10.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xinput1_2.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xinput1_1.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-03-26 22:42:28 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-03-26 22:42:28 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-03-26 22:42:27 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-03-26 22:42:27 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-03-26 22:42:26 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-03-26 22:42:26 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-03-26 22:42:26 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-03-26 22:42:26 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-03-26 22:42:26 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-03-26 22:42:26 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-03-26 22:42:26 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-03-26 22:42:26 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-03-26 22:42:25 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-03-26 22:42:25 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-03-26 22:42:25 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-03-26 22:42:25 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-03-26 22:42:25 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-03-26 22:42:25 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-03-26 22:42:24 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-03-26 22:42:24 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-03-26 22:27:35 ----D---- C:\Program Files (x86)\The Elder Scrolls V Skyrim LE
2014-03-26 22:10:59 ----D---- C:\Windows\Sun
2014-03-26 22:05:58 ----D---- C:\Users\Adam\AppData\Roaming\ATI
2014-03-26 22:05:58 ----D---- C:\ProgramData\ATI
2014-03-26 21:15:20 ----D---- C:\Obrázky
2014-03-26 20:56:42 ----D---- C:\Hry
2014-03-26 20:51:27 ----D---- C:\Program Files (x86)\AMD AVT
2014-03-26 20:51:25 ----D---- C:\Program Files (x86)\AMD
2014-03-26 20:50:31 ----D---- C:\ProgramData\AMD
2014-03-26 20:50:14 ----D---- C:\Program Files\AMD
2014-03-26 20:49:49 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-03-26 20:49:42 ----D---- C:\Program Files (x86)\ATI Technologies
2014-03-26 20:47:04 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-03-26 20:46:07 ----D---- C:\Users\Adam\AppData\Roaming\Oracle
2014-03-26 20:45:52 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-03-26 20:43:42 ----D---- C:\ProgramData\Package Cache
2014-03-26 20:43:22 ----D---- C:\Program Files\ATI Technologies
2014-03-26 20:43:20 ----D---- C:\Program Files\ATI
2014-03-26 20:42:53 ----D---- C:\ProgramData\Oracle
2014-03-26 20:42:33 ----D---- C:\AMD
2014-03-26 20:42:07 ----D---- C:\ProgramData\Sun
2014-03-26 20:32:07 ----D---- C:\Users\Adam\AppData\Roaming\uTorrent
2014-03-26 20:31:41 ----D---- C:\Users\Adam\AppData\Roaming\AVG
2014-03-26 20:28:47 ----D---- C:\ProgramData\AVG
2014-03-26 20:28:43 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-03-26 20:28:43 ----HD---- C:\ProgramData\Common Files
2014-03-26 20:28:35 ----D---- C:\Users\Adam\AppData\Roaming\WinRAR
2014-03-26 20:27:46 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2014-03-26 20:27:43 ----D---- C:\Users\Adam\AppData\Roaming\DAEMON Tools Lite
2014-03-26 20:27:42 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2014-03-26 20:27:11 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-03-26 20:26:57 ----D---- C:\Program Files (x86)\WinRAR
2014-03-26 20:04:59 ----D---- C:\Program Files (x86)\Google
2014-03-26 20:02:45 ----A---- C:\Windows\system32\RTNUninst64.dll
2014-03-26 20:02:45 ----A---- C:\Windows\system32\RtNicProp64.dll
2014-03-26 20:02:45 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2014-03-26 20:02:41 ----D---- C:\Program Files (x86)\Realtek
2014-03-26 19:26:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-03-26 19:26:25 ----D---- C:\SWTOOLS
2014-03-26 18:31:30 ----D---- C:\Users\Adam\AppData\Roaming\Adobe
2014-03-26 18:31:22 ----D---- C:\Users\Adam\AppData\Roaming\Identities
2014-03-26 18:31:14 ----SD---- C:\Users\Adam\AppData\Roaming\Microsoft
2014-03-26 18:31:14 ----D---- C:\Users\Adam\AppData\Roaming\Media Center Programs
2014-03-26 18:31:10 ----SHD---- C:\Recovery
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Šablony
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Plocha
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Oblíbené položky
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Nabídka Start
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Dokumenty
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Data aplikací
2014-03-26 18:31:10 ----SHD---- C:\Documents and Settings
2014-03-26 18:31:05 ----D---- C:\Windows\SoftwareDistribution
2014-03-26 17:56:07 ----SHD---- C:\System Volume Information
2014-03-26 17:56:03 ----D---- C:\Windows\CSC
2014-03-26 17:55:42 ----ASH---- C:\pagefile.sys
2014-03-26 17:55:41 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2014-04-21 15:11:34 ----D---- C:\Windows\Temp
2014-04-21 15:11:28 ----RD---- C:\Program Files
2014-04-21 15:07:11 ----D---- C:\Windows\system32\config
2014-04-21 07:23:49 ----D---- C:\Windows\system32\drivers
2014-04-21 02:19:28 ----SHD---- C:\Windows\Installer
2014-04-21 02:19:24 ----D---- C:\Windows\winsxs
2014-04-21 02:18:11 ----RSD---- C:\Windows\assembly
2014-04-21 02:01:41 ----D---- C:\Windows\SysWOW64
2014-04-21 01:58:14 ----D---- C:\Windows\Logs
2014-04-21 01:25:17 ----D---- C:\Windows\System32
2014-04-21 01:25:17 ----D---- C:\Windows\inf
2014-04-21 01:25:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-04-21 01:21:09 ----D---- C:\Windows\Prefetch
2014-04-21 01:21:01 ----D---- C:\Windows\system32\catroot
2014-04-21 01:20:57 ----D---- C:\Windows\system32\catroot2
2014-04-21 01:19:29 ----RD---- C:\Program Files (x86)
2014-04-21 01:19:29 ----HD---- C:\ProgramData
2014-04-19 03:45:29 ----D---- C:\Windows
2014-04-17 09:34:47 ----D---- C:\Program Files (x86)\Common Files
2014-04-17 05:48:59 ----D---- C:\Windows\system32\DriverStore
2014-04-17 05:44:43 ----D---- C:\Windows\system32\Tasks
2014-04-17 05:44:41 ----D---- C:\Windows\Tasks
2014-04-17 05:40:22 ----D---- C:\Windows\system
2014-04-17 05:31:25 ----D---- C:\Windows\Help
2014-04-17 05:31:25 ----D---- C:\ProgramData\NVIDIA
2014-04-17 05:19:55 ----D---- C:\Windows\Panther
2014-04-17 05:19:55 ----D---- C:\Windows\debug
2014-04-17 05:05:06 ----A---- C:\Windows\system32\uxtheme.dll
2014-04-17 05:05:04 ----A---- C:\Windows\system32\themeui.dll
2014-04-17 05:05:02 ----A---- C:\Windows\system32\themeservice.dll
2014-04-15 13:14:15 ----D---- C:\Windows\Microsoft.NET
2014-04-15 10:18:28 ----SD---- C:\ProgramData\Microsoft
2014-04-10 07:56:18 ----D---- C:\Windows\rescache
2014-04-10 07:18:33 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-04-10 07:18:33 ----D---- C:\Windows\system32\cs-CZ
2014-04-10 07:18:33 ----D---- C:\Windows\AppPatch
2014-04-10 03:01:11 ----A---- C:\Windows\system32\MRT.exe
2014-04-06 22:07:08 ----D---- C:\Windows\system32\drivers\etc
2014-04-03 21:49:42 ----D---- C:\Program Files (x86)\MSBuild
2014-04-03 21:49:21 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-04-02 23:28:15 ----RSD---- C:\Windows\Fonts
2014-03-31 09:35:08 ----N---- C:\Windows\system32\MpSigStub.exe
2014-03-31 04:22:17 ----HD---- C:\Windows\system32\GroupPolicy
2014-03-31 04:22:17 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2014-03-31 03:31:11 ----D---- C:\Windows\system32\LogFiles
2014-03-30 21:04:23 ----D---- C:\Program Files\Common Files\System
2014-03-28 15:21:11 ----D---- C:\Windows\ShellNew
2014-03-28 12:17:14 ----D---- C:\Windows\system32\wdi
2014-03-26 23:44:04 ----D---- C:\Program Files\Windows Media Player
2014-03-26 23:44:04 ----D---- C:\Program Files (x86)\Windows Media Player
2014-03-26 23:44:03 ----D---- C:\Program Files\Internet Explorer
2014-03-26 23:44:03 ----D---- C:\Program Files (x86)\Internet Explorer
2014-03-26 23:11:44 ----AD---- C:\Windows\SYSWOW64\oobe
2014-03-26 20:49:49 ----D---- C:\Program Files\Common Files
2014-03-26 20:46:02 ----D---- C:\Windows\SYSWOW64\en-US
2014-03-26 20:46:02 ----D---- C:\Windows\system32\en-US
2014-03-26 20:03:49 ----D---- C:\Windows\system32\NDF
2014-03-26 18:48:14 ----D---- C:\Windows\system32\restore
2014-03-26 18:31:20 ----SHD---- C:\$Recycle.Bin
2014-03-26 18:31:14 ----RD---- C:\Users
2014-03-26 18:31:10 ----D---- C:\Windows\system32\Recovery
2014-03-26 18:31:10 ----D---- C:\Program Files\Windows NT
2014-03-26 17:54:44 ----D---- C:\Windows\system32\oem
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2014-02-25 131576]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2014-02-25 28600]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-03-26 283064]
R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2013-09-20 59648]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2014-02-25 108440]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-04-30 359936]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-09-24 94208]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-02-18 901848]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2014-03-27 303616]
S2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2014-03-27 35328]
S3 Alpham2;Ideazon ZBoard MM USB Human Interface Device; C:\Windows\system32\DRIVERS\Alpham264.sys [2007-03-20 21760]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2013-08-05 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2013-08-05 80384]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-04-03 25816]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-21 20992]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 rismxdp;rismxdp; C:\Windows\system32\drivers\rixdpx64.sys [2006-11-18 55296]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\SmSerl64.sys [2009-06-10 1227776]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver; C:\Windows\system32\drivers\Synth3dVsc.sys [2010-11-21 88960]
S3 tap0901;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 tapoas;TAP-Win32 Adapter OAS; C:\Windows\system32\DRIVERS\tapoas.sys [2010-08-03 30720]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;Remote Deskotop USB Hub; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-04-30 238080]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-12-06 344064]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-02-25 440400]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-02-25 440400]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-04-15 122448]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 MgAssistService;MgAssist Service; C:\Program Files (x86)\Mobogenie\MgAssist.exe [2014-04-08 70848]
R2 PirritUpdater;PirritUpdater; C:\Program Files (x86)\Pirrit\AutoUpdater.exe [2014-02-20 59904]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-04-21 76888]
R2 PnkBstrB;PnkBstrB; C:\Windows\syswow64\PnkBstrB.exe [2014-04-21 291128]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-04-03 857912]
S2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-04-03 1809720]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S2 SystemkService;Systemk Service; C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-31 257928]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2014-03-31 49152]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 111616]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-02-08 569024]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-07 1255736]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [2014-02-25 1017424]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Adam at 2014-04-21 15:11:28
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 652 GB (68%) free of 954 GB
Total RAM: 4042 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:11:35, on 21.4.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files (x86)\SRWare Iron\chrome.exe
C:\Program Files\trend micro\Adam.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.default-search.net?sid=498&a ... 22&src=hmp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=http://127.0.0.1:9880
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 216.239.32.20 google.com www.google.com
O1 - Hosts: 216.239.32.20 google.com www.google.ad
O1 - Hosts: 216.239.32.20 google.com www.google.ae
O1 - Hosts: 216.239.32.20 google.com www.google.com.af
O1 - Hosts: 216.239.32.20 google.com www.google.com.ag
O1 - Hosts: 216.239.32.20 google.com www.google.com.ai
O1 - Hosts: 216.239.32.20 google.com www.google.al
O1 - Hosts: 216.239.32.20 google.com www.google.am
O1 - Hosts: 216.239.32.20 google.com www.google.co.ao
O1 - Hosts: 216.239.32.20 google.com www.google.com.ar
O1 - Hosts: 216.239.32.20 google.com www.google.as
O1 - Hosts: 216.239.32.20 google.com www.google.at
O1 - Hosts: 216.239.32.20 google.com www.google.com.au
O1 - Hosts: 216.239.32.20 google.com www.google.az
O1 - Hosts: 216.239.32.20 google.com www.google.ba
O1 - Hosts: 216.239.32.20 google.com www.google.com.bd
O1 - Hosts: 216.239.32.20 google.com www.google.be
O1 - Hosts: 216.239.32.20 google.com www.google.bf
O1 - Hosts: 216.239.32.20 google.com www.google.bg
O1 - Hosts: 216.239.32.20 google.com www.google.com.bh
O1 - Hosts: 216.239.32.20 google.com www.google.bi
O1 - Hosts: 216.239.32.20 google.com www.google.bj
O1 - Hosts: 216.239.32.20 google.com www.google.com.bn
O1 - Hosts: 216.239.32.20 google.com www.google.com.bo
O1 - Hosts: 216.239.32.20 google.com www.google.com.br
O1 - Hosts: 216.239.32.20 google.com www.google.bs
O1 - Hosts: 216.239.32.20 google.com www.google.bt
O1 - Hosts: 216.239.32.20 google.com www.google.co.bw
O1 - Hosts: 216.239.32.20 google.com www.google.by
O1 - Hosts: 216.239.32.20 google.com www.google.com.bz
O1 - Hosts: 216.239.32.20 google.com www.google.ca
O1 - Hosts: 216.239.32.20 google.com www.google.cd
O1 - Hosts: 216.239.32.20 google.com www.google.cf
O1 - Hosts: 216.239.32.20 google.com www.google.cg
O1 - Hosts: 216.239.32.20 google.com www.google.ch
O1 - Hosts: 216.239.32.20 google.com www.google.ci
O1 - Hosts: 216.239.32.20 google.com www.google.co.ck
O1 - Hosts: 216.239.32.20 google.com www.google.cl
O1 - Hosts: 216.239.32.20 google.com www.google.cm
O1 - Hosts: 216.239.32.20 google.com www.google.cn
O1 - Hosts: 216.239.32.20 google.com www.google.com.co
O1 - Hosts: 216.239.32.20 google.com www.google.co.cr
O1 - Hosts: 216.239.32.20 google.com www.google.com.cu
O1 - Hosts: 216.239.32.20 google.com www.google.cv
O1 - Hosts: 216.239.32.20 google.com www.google.com.cy
O1 - Hosts: 216.239.32.20 google.com www.google.cz
O1 - Hosts: 216.239.32.20 google.com www.google.de
O1 - Hosts: 216.239.32.20 google.com www.google.dj
O1 - Hosts: 216.239.32.20 google.com www.google.dk
O1 - Hosts: 216.239.32.20 google.com www.google.dm
O1 - Hosts: 216.239.32.20 google.com www.google.com.do
O1 - Hosts: 216.239.32.20 google.com www.google.dz
O1 - Hosts: 216.239.32.20 google.com www.google.com.ec
O1 - Hosts: 216.239.32.20 google.com www.google.ee
O1 - Hosts: 216.239.32.20 google.com www.google.com.eg
O1 - Hosts: 216.239.32.20 google.com www.google.es
O1 - Hosts: 216.239.32.20 google.com www.google.com.et
O1 - Hosts: 216.239.32.20 google.com www.google.fi
O1 - Hosts: 216.239.32.20 google.com www.google.com.fj
O1 - Hosts: 216.239.32.20 google.com www.google.fm
O1 - Hosts: 216.239.32.20 google.com www.google.fr
O1 - Hosts: 216.239.32.20 google.com www.google.ga
O1 - Hosts: 216.239.32.20 google.com www.google.ge
O1 - Hosts: 216.239.32.20 google.com www.google.gg
O1 - Hosts: 216.239.32.20 google.com www.google.com.gh
O1 - Hosts: 216.239.32.20 google.com www.google.com.gi
O1 - Hosts: 216.239.32.20 google.com www.google.gl
O1 - Hosts: 216.239.32.20 google.com www.google.gm
O1 - Hosts: 216.239.32.20 google.com www.google.gp
O1 - Hosts: 216.239.32.20 google.com www.google.gr
O1 - Hosts: 216.239.32.20 google.com www.google.com.gt
O1 - Hosts: 216.239.32.20 google.com www.google.gy
O1 - Hosts: 216.239.32.20 google.com www.google.com.hk
O1 - Hosts: 216.239.32.20 google.com www.google.hn
O1 - Hosts: 216.239.32.20 google.com www.google.hr
O1 - Hosts: 216.239.32.20 google.com www.google.ht
O1 - Hosts: 216.239.32.20 google.com www.google.hu
O1 - Hosts: 216.239.32.20 google.com www.google.co.id
O1 - Hosts: 216.239.32.20 google.com www.google.ie
O1 - Hosts: 216.239.32.20 google.com www.google.co.il
O1 - Hosts: 216.239.32.20 google.com www.google.im
O1 - Hosts: 216.239.32.20 google.com www.google.co.in
O1 - Hosts: 216.239.32.20 google.com www.google.iq
O1 - Hosts: 216.239.32.20 google.com www.google.is
O1 - Hosts: 216.239.32.20 google.com www.google.it
O1 - Hosts: 216.239.32.20 google.com www.google.je
O1 - Hosts: 216.239.32.20 google.com www.google.com.jm
O1 - Hosts: 216.239.32.20 google.com www.google.jo
O1 - Hosts: 216.239.32.20 google.com www.google.co.jp
O1 - Hosts: 216.239.32.20 google.com www.google.co.ke
O1 - Hosts: 216.239.32.20 google.com www.google.com.kh
O1 - Hosts: 216.239.32.20 google.com www.google.ki
O1 - Hosts: 216.239.32.20 google.com www.google.kg
O1 - Hosts: 216.239.32.20 google.com www.google.co.kr
O1 - Hosts: 216.239.32.20 google.com www.google.com.kw
O1 - Hosts: 216.239.32.20 google.com www.google.kz
O1 - Hosts: 216.239.32.20 google.com www.google.la
O1 - Hosts: 216.239.32.20 google.com www.google.com.lb
O1 - Hosts: 216.239.32.20 google.com www.google.li
O1 - Hosts: 216.239.32.20 google.com www.google.lk
O1 - Hosts: 216.239.32.20 google.com www.google.co.ls
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - mscoree.dll (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range: http://10.0.0.138
O15 - ESC Trusted IP range: http://10.0.0.138
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: MgAssist Service (MgAssistService) - Unknown owner - C:\Program Files (x86)\Mobogenie\MgAssist.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PirritUpdater - Unknown owner - C:\Program Files (x86)\Pirrit\AutoUpdater.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Systemk Service (SystemkService) - Unknown owner - C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14994 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Mobogenie\MgAssist.exe"
"C:\Program Files (x86)\Pirrit\AutoUpdater.exe"
atieclxx
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Mobogenie\DaemonProcess.exe"
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\system32\wbem\wmiprvse.exe
HydraDM64.exe -h:65920 "Maximalizovat na celou plochu" "Maximalizovat k rohům okna" "Obnovit pracovní plochu"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d3f26cde-4aed-4ba4-8092-2eb2c5c02bbc -SystemEventPortName:HostProcess-0145c789-fe55-4a06-9f5d-2bc1c2036d71 -IoCancelEventPortName:HostProcess-5cfc7dcc-5b6c-4f1a-913a-243843667f25 -NonStateChangingEventPortName:HostProcess-f2d9483a-7c4c-45e0-92eb-a3bf649b0f4a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:12c135c6-4546-4d64-bcca-bd44cc05c70a -DeviceGroupId:WpdFsGroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe" /ignoreRunningInstances
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min /NOSPLASH /SETUPSTART
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000fb0
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Steam\Steam.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\SysWOW64\PnkBstrB.exe
C:\Windows\system32\svchost.exe -k defragsvc
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --profile-directory=Default
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --type=gpu-process --channel="5568.0.402780591\1712467408" --disable-image-transport-surface --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,1,14,27 --gpu-vendor-id=0x1002 --gpu-device-id=0x9442 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=8.970.100.1100 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserPreReadExperiment/100-pct-default/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_50/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/ --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --disable-client-side-phishing-detection --enable-software-compositing --channel="5568.4.229165543\1664240811" /prefetch:673131151
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --type=plugin --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll" --lang=cs --channel="5568.5.1606574284\283716129" /prefetch:-390060480
"C:\Program Files (x86)\SRWare Iron\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserPreReadExperiment/100-pct-default/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_50/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/ --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --disable-client-side-phishing-detection --enable-software-compositing --channel="5568.6.1855798768\1504580948" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe23_ Global\UsGthrCtrlFltPipeMssGthrPipe23 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
"C:\Users\Adam\Downloads\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-31 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-31 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-17 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d40c654d-7c51-4eb3-95b2-1e23905c2a2d}]
IEExtension.Extension - C:\Windows\system32\mscoree.dll [2010-11-21 444752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-17 171944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Client Manager"=C:\Program Files\Update Software\winclient32.exe [2014-02-19 639488]
"Fences"=C:\Program Files (x86)\Stardock\Fences\Fences.exe [2013-11-26 4031152]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2012-11-16 393216]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Adam\AppData\Roaming\Seznam.cz\szninstall.exe -c []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Adam\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\JGTG Agent]
C:\Windows\SysWOW64\28463\JGTG.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\Windows\system32\NvCpl.dll,NvStartup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SandboxieControl]
C:\Program Files\Sandboxie\SbieCtrl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VoipBuster]
C:\Program Files (x86)\VoipBuster.com\VoipBuster\VoipBuster.exe -nosplash -minimized []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FastMediaConverter.lnk]
C:\PROGRA~2\FASTME~1\FASTME~1.EXE []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2013-12-06 766208]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [2014-04-08 748736]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2014-04-15 180304]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-02-25 689744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
FencesShellExt - {1984DD45-52CF-49cd-AB77-18F378FEA264} - C:\Program Files (x86)\Stardock\Fences\FencesMenu64.dll [2013-11-26 521904]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-04-21 15:11:28 ----D---- C:\rsit
2014-04-21 15:11:28 ----D---- C:\Program Files\trend micro
2014-04-21 07:23:49 ----A---- C:\Windows\system32\drivers\avnetflt.sys
2014-04-21 01:24:44 ----D---- C:\Users\Adam\AppData\Roaming\Avira
2014-04-21 01:20:48 ----A---- C:\Windows\system32\drivers\avkmgr.sys
2014-04-21 01:20:48 ----A---- C:\Windows\system32\drivers\avipbb.sys
2014-04-21 01:20:48 ----A---- C:\Windows\system32\drivers\avgntflt.sys
2014-04-21 01:19:29 ----D---- C:\ProgramData\Avira
2014-04-21 01:19:29 ----D---- C:\Program Files (x86)\Avira
2014-04-21 01:07:16 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-04-21 01:06:54 ----D---- C:\ProgramData\Malwarebytes
2014-04-21 01:06:54 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-21 01:06:54 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-04-21 01:06:54 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-04-21 01:06:54 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-04-21 00:45:04 ----D---- C:\Program Files (x86)\Dotjosh Studios
2014-04-21 00:41:47 ----D---- C:\ProgramData\Bohemia Interactive Studio
2014-04-20 15:35:15 ----D---- C:\Program Files (x86)\1C
2014-04-19 04:07:09 ----D---- C:\Windows\SYSWOW64\lib
2014-04-19 04:07:09 ----D---- C:\Windows\SYSWOW64\coremods
2014-04-19 03:58:37 ----D---- C:\Program Files (x86)\PlurPush
2014-04-19 03:58:24 ----D---- C:\Program Files (x86)\Mobogenie
2014-04-19 03:45:29 ----D---- C:\Windows\Simple Port Forwarding
2014-04-19 03:45:29 ----D---- C:\Program Files (x86)\Simple Port Forwarding
2014-04-19 03:45:27 ----A---- C:\Windows\Simple Port Forwarding Setup Log.txt
2014-04-19 03:38:35 ----D---- C:\Program Files (x86)\PFConfig
2014-04-19 03:28:10 ----D---- C:\Program Files (x86)\PFPortChecker
2014-04-19 03:27:46 ----D---- C:\Program Files (x86)\Settings Manager
2014-04-19 03:27:44 ----D---- C:\ProgramData\systemk
2014-04-19 02:48:59 ----D---- C:\Users\Adam\AppData\Roaming\.minecraft
2014-04-17 23:11:35 ----D---- C:\Program Files (x86)\505 Games
2014-04-17 21:32:34 ----D---- C:\Program Files (x86)\Adobe
2014-04-17 21:31:48 ----D---- C:\ProgramData\Adobe
2014-04-17 20:35:35 ----D---- C:\Program Files (x86)\Guild Wars 2
2014-04-17 20:35:09 ----D---- C:\Users\Adam\AppData\Roaming\Guild Wars 2
2014-04-17 09:35:21 ----D---- C:\ProgramData\SystemRequirementsLab
2014-04-17 09:34:41 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-04-17 09:34:37 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-04-17 09:34:37 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-04-17 09:34:37 ----A---- C:\Windows\SYSWOW64\java.exe
2014-04-17 09:34:32 ----D---- C:\Program Files (x86)\Java
2014-04-17 09:31:59 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2014-04-17 05:40:22 ----D---- C:\ProgramData\Martau
2014-04-17 05:40:20 ----D---- C:\Program Files\Total Uninstall 6
2014-04-17 05:22:38 ----D---- C:\Windows\pss
2014-04-17 05:15:13 ----D---- C:\Program Files\CCleaner
2014-04-17 04:58:24 ----D---- C:\p
2014-04-15 10:17:45 ----D---- C:\WinDDK
2014-04-14 22:36:36 ----RD---- C:\Sandbox
2014-04-14 22:36:06 ----A---- C:\Windows\Sandboxie.ini
2014-04-14 22:36:01 ----D---- C:\Program Files\Sandboxie
2014-04-13 04:45:07 ----D---- C:\Users\Adam\AppData\Roaming\SketchUp
2014-04-13 04:44:11 ----D---- C:\ProgramData\SketchUp
2014-04-12 23:14:25 ----D---- C:\Users\Adam\AppData\Roaming\OpenVPN Technologies
2014-04-12 23:14:06 ----D---- C:\Program Files (x86)\OpenVPN Technologies
2014-04-12 22:08:27 ----D---- C:\Users\Adam\AppData\Roaming\TS3Client
2014-04-12 22:08:25 ----D---- C:\Program Files (x86)\TeamSpeak 3 Client
2014-04-12 20:21:54 ----A---- C:\Windows\game.ini
2014-04-12 20:18:17 ----D---- C:\Program Files (x86)\Activision
2014-04-12 20:16:26 ----SHD---- C:\Windows\ftpcache
2014-04-12 02:47:14 ----D---- C:\ProgramData\[Manufacturer]
2014-04-12 02:47:14 ----D---- C:\4GF.CZ
2014-04-12 02:46:12 ----D---- C:\Users\Adam\AppData\Roaming\4GF.CZ
2014-04-11 07:50:17 ----D---- C:\Users\Adam\AppData\Roaming\VoipBuster
2014-04-10 01:48:31 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-04-10 01:48:31 ----A---- C:\Windows\system32\mshtml.dll
2014-04-10 01:48:16 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2014-04-10 01:48:16 ----A---- C:\Windows\system32\iologmsg.dll
2014-04-10 01:48:16 ----A---- C:\Windows\system32\drivers\storport.sys
2014-04-10 01:48:16 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-04-10 01:48:16 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\user.exe
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-04-10 01:48:15 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-04-10 01:48:15 ----A---- C:\Windows\system32\wow64win.dll
2014-04-10 01:48:15 ----A---- C:\Windows\system32\wow64cpu.dll
2014-04-10 01:48:15 ----A---- C:\Windows\system32\wow64.dll
2014-04-10 01:48:15 ----A---- C:\Windows\system32\ntvdm64.dll
2014-04-10 01:48:15 ----A---- C:\Windows\system32\kernel32.dll
2014-04-10 01:48:14 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-04-09 22:17:39 ----D---- C:\Users\Adam\AppData\Roaming\Seznam.cz
2014-04-09 19:35:31 ----A---- C:\Windows\BlendSettings.ini
2014-04-09 12:31:09 ----D---- C:\Users\Adam\AppData\Roaming\ValuSoft
2014-04-09 12:26:19 ----D---- C:\Program Files (x86)\DaeMUSeason4
2014-04-09 04:46:34 ----A---- C:\debugInstaller.txt
2014-04-09 00:12:17 ----A---- C:\Windows\system32\binkw32.dll
2014-04-08 23:55:23 ----D---- C:\Sierra
2014-04-08 21:53:20 ----D---- C:\Program Files (x86)\GOG.com
2014-04-08 04:30:09 ----D---- C:\Program Files (x86)\SRWare Iron
2014-04-08 04:16:19 ----D---- C:\Windows\system32\appmgmt
2014-04-08 03:56:55 ----D---- C:\Users\Adam\AppData\Roaming\TERA
2014-04-07 16:57:57 ----A---- C:\Windows\options.dat
2014-04-07 00:59:37 ----D---- C:\ProgramData\Caphyon
2014-04-07 00:56:59 ----D---- C:\Users\Adam\AppData\Roaming\Quadcore Games
2014-04-07 00:09:55 ----D---- C:\Users\Adam\AppData\Roaming\The Creative Assembly
2014-04-06 22:16:18 ----D---- C:\Users\Adam\AppData\Roaming\systweak
2014-04-06 22:16:07 ----D---- C:\Users\Adam\AppData\Roaming\Pirrit
2014-04-06 22:16:03 ----D---- C:\Program Files (x86)\Pirrit
2014-04-06 21:51:15 ----D---- C:\Trezor
2014-04-06 15:11:28 ----D---- C:\Users\Adam\AppData\Roaming\TeamViewer
2014-04-06 14:38:44 ----D---- C:\Program Files\PCDApp
2014-04-06 14:33:53 ----D---- C:\Program Files\Windows Vista - 7 - 8 - 8.1 KMS Activator Ultimate 2014 v1.8
2014-04-04 17:09:32 ----D---- C:\ProgramData\Bohemia Interactive
2014-04-04 17:06:44 ----A---- C:\Windows\SYSWOW64\pbsvc_blr.exe
2014-04-04 17:06:40 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-04-03 21:51:50 ----D---- C:\Program Files\Microsoft Synchronization Services
2014-04-03 21:51:50 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2014-04-03 21:51:41 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2014-04-03 21:51:41 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-04-03 21:49:42 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 10.0
2014-04-03 21:49:20 ----D---- C:\Windows\symbols
2014-04-03 21:49:20 ----D---- C:\Program Files\Microsoft Visual Studio 10.0
2014-04-03 21:49:20 ----D---- C:\Program Files\Microsoft Help Viewer
2014-04-03 21:49:20 ----D---- C:\Program Files (x86)\Microsoft SDKs
2014-04-02 23:28:49 ----D---- C:\ProgramData\Stardock
2014-04-02 23:28:16 ----D---- C:\Users\Adam\AppData\Roaming\Stardock
2014-04-02 23:28:12 ----D---- C:\Program Files (x86)\Stardock
2014-04-02 23:18:10 ----D---- C:\Windows\W7SBC
2014-04-02 23:18:10 ----A---- C:\Windows\explorer_edit_w7sbc.exe
2014-04-02 23:18:10 ----A---- C:\Windows\explorer_backup_w7sbc.exe
2014-04-02 23:18:10 ----A---- C:\Windows\explorer.exe
2014-04-02 23:17:23 ----D---- C:\W7SBC
2014-04-02 23:10:03 ----D---- C:\Grafika
2014-04-02 21:05:24 ----D---- C:\ProgramData\Steam
2014-04-02 03:01:03 ----D---- C:\Program Files\Microsoft Silverlight
2014-04-02 03:01:02 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-04-02 01:32:57 ----D---- C:\Users\Adam\AppData\Roaming\Skype
2014-04-02 01:32:41 ----RD---- C:\Program Files (x86)\Skype
2014-04-02 01:32:34 ----D---- C:\ProgramData\Skype
2014-04-01 01:01:20 ----D---- C:\Users\Adam\AppData\Roaming\Applian FLV and Media Player
2014-04-01 01:00:06 ----D---- C:\ProgramData\Uniblue
2014-04-01 00:57:14 ----D---- C:\Program Files (x86)\Applian Technologies
2014-04-01 00:54:14 ----D---- C:\ProgramData\APN
2014-03-31 17:17:11 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2014-03-31 16:36:06 ----D---- C:\Users\Adam\AppData\Roaming\Mozilla
2014-03-31 16:36:00 ----D---- C:\ProgramData\Mozilla
2014-03-31 16:35:58 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-03-31 16:26:06 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-03-31 16:26:05 ----D---- C:\Windows\system32\Macromed
2014-03-31 16:26:03 ----D---- C:\Windows\SYSWOW64\Macromed
2014-03-31 16:25:44 ----A---- C:\Windows\SYSWOW64\ssinstall-uninstall.bat
2014-03-31 16:25:44 ----A---- C:\Windows\SYSWOW64\ssins.exe
2014-03-31 16:23:00 ----A---- C:\Windows\system32\javaws.exe
2014-03-31 16:22:55 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2014-03-31 16:22:55 ----A---- C:\Windows\system32\javaw.exe
2014-03-31 16:22:55 ----A---- C:\Windows\system32\java.exe
2014-03-31 16:22:48 ----D---- C:\Program Files\Java
2014-03-31 16:21:19 ----D---- C:\Users\Adam\AppData\Roaming\Opera Software
2014-03-31 16:21:16 ----D---- C:\Program Files (x86)\Opera
2014-03-31 14:16:14 ----D---- C:\Users\Adam\AppData\Roaming\LolClient
2014-03-31 14:16:12 ----D---- C:\Users\Adam\AppData\Roaming\Macromedia
2014-03-31 04:22:21 ----D---- C:\ProgramData\TEMP
2014-03-31 03:48:33 ----D---- C:\ProgramData\PC Optimizer Pro
2014-03-30 22:59:51 ----D---- C:\Windows\SYSWOW64\mailoutput
2014-03-30 22:36:44 ----D---- C:\Users\Adam\AppData\Roaming\PSpad
2014-03-30 22:36:41 ----D---- C:\Program Files (x86)\PSPad editor
2014-03-30 22:25:13 ----D---- C:\xampp
2014-03-30 22:23:51 ----A---- C:\Windows\SYSWOW64\libmysql_d.dll
2014-03-30 22:23:48 ----D---- C:\Program Files (x86)\PremiumSoft
2014-03-30 21:57:12 ----D---- C:\Program Files\TAP-Windows
2014-03-30 21:57:11 ----D---- C:\Program Files\OpenVPN
2014-03-30 21:03:56 ----D---- C:\Program Files\Update Software
2014-03-30 21:03:50 ----A---- C:\ProgramData\spds90.txt
2014-03-29 14:33:44 ----RHD---- C:\Users\Adam\AppData\Roaming\SecuROM
2014-03-29 14:21:18 ----D---- C:\ProgramData\Electronic Arts
2014-03-28 21:10:15 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-03-28 21:10:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-03-28 21:10:14 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-03-28 21:09:28 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2014-03-28 21:09:25 ----D---- C:\Riot Games
2014-03-28 21:08:42 ----D---- C:\Program Files (x86)\Steam
2014-03-28 21:06:01 ----D---- C:\ProgramData\PMB Files
2014-03-28 21:05:54 ----D---- C:\Program Files (x86)\Pando Networks
2014-03-28 21:05:36 ----D---- C:\Users\Adam\AppData\Roaming\Riot Games
2014-03-28 20:55:44 ----D---- C:\Users\Adam\AppData\Roaming\Battle.net
2014-03-28 20:55:36 ----D---- C:\ProgramData\Blizzard Entertainment
2014-03-28 20:49:24 ----D---- C:\ProgramData\Battle.net
2014-03-28 16:40:01 ----D---- C:\Fraps
2014-03-28 16:30:41 ----D---- C:\Program Files\CPUID
2014-03-28 15:22:42 ----D---- C:\Program Files (x86)\Microsoft Works
2014-03-28 15:22:33 ----D---- C:\Windows\PCHEALTH
2014-03-28 15:21:14 ----D---- C:\Program Files\Microsoft Office
2014-03-28 15:20:56 ----D---- C:\ProgramData\Microsoft Help
2014-03-28 15:20:56 ----D---- C:\Program Files (x86)\Microsoft Office
2014-03-28 15:20:25 ----RHD---- C:\MSOCache
2014-03-28 14:54:21 ----D---- C:\Portable Photoshop CS5
2014-03-28 12:43:41 ----D---- C:\Program Files (x86)\AMD APP
2014-03-27 19:13:55 ----D---- C:\ProgramData\RELOADED
2014-03-27 19:04:30 ----SHD---- C:\ProgramData\SecuROM
2014-03-27 18:36:31 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-03-27 18:36:21 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-03-27 18:36:05 ----D---- C:\ProgramData\Orbit
2014-03-27 18:02:59 ----A---- C:\Windows\SYSWOW64\CmdLineExt_x64.dll
2014-03-27 18:01:45 ----D---- C:\Windows\SYSWOW64\xlive
2014-03-27 18:01:45 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\vb40032.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcrt10.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcr71.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcr70.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcp71.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvcp70.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvci70.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msvbvm50.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msstkprp.dll
2014-03-27 17:46:07 ----A---- C:\Windows\SYSWOW64\msstdfmt.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71u.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71kor.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71jpn.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71ita.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71cht.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71chs.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71fra.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71esp.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71enu.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71deu.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc71.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70u.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70kor.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70jpn.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70ita.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70cht.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70chs.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70fra.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70esp.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70enu.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70deu.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\mfc70.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\atl71.dll
2014-03-27 17:46:06 ----A---- C:\Windows\SYSWOW64\atl70.dll
2014-03-27 13:04:48 ----D---- C:\Program Files (x86)\Microsoft WSE
2014-03-27 13:03:30 ----RA---- C:\Windows\SYSWOW64\tmpC332.tmp
2014-03-27 13:01:35 ----A---- C:\Windows\system32\drivers\atksgt.sys
2014-03-27 13:01:10 ----A---- C:\Windows\system32\drivers\lirsgt.sys
2014-03-27 09:37:47 ----D---- C:\Users\Adam\AppData\Roaming\Mount&Blade Warband
2014-03-27 00:33:17 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-03-27 00:33:17 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-03-27 00:33:17 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-03-27 00:33:17 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-03-27 00:33:17 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-03-27 00:33:17 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-03-27 00:33:16 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-03-27 00:33:13 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-03-27 00:33:13 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-03-27 00:33:13 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-03-27 00:33:13 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-03-27 00:33:11 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-03-27 00:33:11 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-03-27 00:33:11 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-03-27 00:32:38 ----D---- C:\Program Files (x86)\Realtek Sound Manager
2014-03-27 00:32:37 ----D---- C:\Program Files (x86)\AvRack
2014-03-27 00:32:37 ----A---- C:\Windows\avrack.ini
2014-03-27 00:32:32 ----D---- C:\Program Files (x86)\Realtek AC97
2014-03-27 00:31:42 ----D---- C:\Dell
2014-03-27 00:31:35 ----HD---- C:\Windows\msdownld.tmp
2014-03-27 00:31:29 ----D---- C:\Windows\SYSWOW64\directx
2014-03-27 00:18:54 ----D---- C:\Program Files (x86)\OpenAL
2014-03-27 00:18:54 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2014-03-27 00:18:54 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2014-03-27 00:18:54 ----A---- C:\Windows\system32\wrap_oal.dll
2014-03-27 00:18:54 ----A---- C:\Windows\system32\OpenAL32.dll
2014-03-27 00:04:47 ----D---- C:\Windows\Migration
2014-03-26 23:49:23 ----A---- C:\Windows\RtlExUpd.dll
2014-03-26 23:49:23 ----A---- C:\Windows\HideWin.exe
2014-03-26 23:43:16 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-03-26 23:43:16 ----A---- C:\Windows\system32\wmploc.DLL
2014-03-26 23:43:15 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-03-26 23:43:14 ----A---- C:\Windows\system32\wmp.dll
2014-03-26 23:38:51 ----D---- C:\Windows\system32\MRT
2014-03-26 23:38:09 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-03-26 23:38:09 ----A---- C:\Windows\system32\vbscript.dll
2014-03-26 23:37:20 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-03-26 23:37:20 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-03-26 23:37:20 ----A---- C:\Windows\system32\iertutil.dll
2014-03-26 23:37:20 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-03-26 23:37:19 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-03-26 23:37:19 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-03-26 23:37:19 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-03-26 23:37:18 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-03-26 23:37:18 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-03-26 23:37:18 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-03-26 23:37:18 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-03-26 23:37:18 ----A---- C:\Windows\system32\urlmon.dll
2014-03-26 23:37:18 ----A---- C:\Windows\system32\iernonce.dll
2014-03-26 23:37:18 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-03-26 23:37:17 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-03-26 23:37:17 ----A---- C:\Windows\system32\msfeeds.dll
2014-03-26 23:37:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-03-26 23:37:16 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-03-26 23:37:16 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-03-26 23:37:16 ----A---- C:\Windows\system32\iesetup.dll
2014-03-26 23:37:16 ----A---- C:\Windows\system32\ie4uinit.exe
2014-03-26 23:37:15 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-03-26 23:37:15 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\jsproxy.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\jscript9diag.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\ieUnatt.exe
2014-03-26 23:37:15 ----A---- C:\Windows\system32\ieui.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\ieframe.dll
2014-03-26 23:37:15 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-03-26 23:37:14 ----A---- C:\Windows\system32\wininet.dll
2014-03-26 23:37:14 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-26 23:37:14 ----A---- C:\Windows\system32\msrating.dll
2014-03-26 23:37:14 ----A---- C:\Windows\system32\jscript9.dll
2014-03-26 23:37:14 ----A---- C:\Windows\system32\ieapfltr.dll
2014-03-26 23:36:38 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-03-26 23:36:38 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-03-26 23:36:38 ----A---- C:\Windows\system32\d3d10warp.dll
2014-03-26 23:36:38 ----A---- C:\Windows\system32\d2d1.dll
2014-03-26 23:36:37 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-03-26 23:36:37 ----A---- C:\Windows\system32\drivers\netio.sys
2014-03-26 23:36:36 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-03-26 23:36:36 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-03-26 23:36:36 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-03-26 23:36:36 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-03-26 23:36:36 ----A---- C:\Windows\system32\tdh.dll
2014-03-26 23:36:36 ----A---- C:\Windows\system32\ntdll.dll
2014-03-26 23:36:36 ----A---- C:\Windows\system32\advapi32.dll
2014-03-26 23:36:35 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-03-26 23:36:35 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-03-26 23:36:35 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-03-26 23:36:35 ----A---- C:\Windows\system32\msxml3r.dll
2014-03-26 23:36:35 ----A---- C:\Windows\system32\msxml3.dll
2014-03-26 23:36:33 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-03-26 23:36:33 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-03-26 23:36:33 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-03-26 23:36:33 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-03-26 23:36:33 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-03-26 23:36:33 ----A---- C:\Windows\system32\RMActivate.exe
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-03-26 23:36:32 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\secproc_isv.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\secproc.dll
2014-03-26 23:36:32 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-03-26 23:36:32 ----A---- C:\Windows\system32\msdrm.dll
2014-03-26 23:36:31 ----A---- C:\Windows\system32\win32k.sys
2014-03-26 23:36:25 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-03-26 23:36:25 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-03-26 23:36:25 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-03-26 23:36:25 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\sspisrv.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\sspicli.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\schannel.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\secur32.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\ncrypt.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\lsass.exe
2014-03-26 23:36:25 ----A---- C:\Windows\system32\lsasrv.dll
2014-03-26 23:36:25 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-03-26 23:36:25 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-03-26 23:36:25 ----A---- C:\Windows\system32\drivers\cng.sys
2014-03-26 23:36:23 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-03-26 23:36:23 ----A---- C:\Windows\system32\wwansvc.dll
2014-03-26 23:36:23 ----A---- C:\Windows\system32\wer.dll
2014-03-26 23:36:21 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-03-26 23:36:21 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-03-26 23:36:20 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-03-26 23:36:20 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-03-26 23:36:20 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-03-26 23:36:20 ----A---- C:\Windows\system32\rdpcorets.dll
2014-03-26 23:36:20 ----A---- C:\Windows\system32\qedit.dll
2014-03-26 23:36:20 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-03-26 23:36:19 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-03-26 23:36:19 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-03-26 23:36:19 ----A---- C:\Windows\system32\nshwfp.dll
2014-03-26 23:36:19 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-03-26 23:36:19 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-03-26 23:36:19 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-03-26 23:32:51 ----HD---- C:\Program Files (x86)\Temp
2014-03-26 23:31:38 ----A---- C:\Windows\AlcUpd64.exe
2014-03-26 23:31:38 ----A---- C:\Windows\AlcRmv64.exe
2014-03-26 23:16:06 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-03-26 23:11:44 ----AD---- C:\Windows\SYSWOW64\oem
2014-03-26 22:42:44 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-03-26 22:42:44 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-03-26 22:42:44 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-03-26 22:42:44 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-03-26 22:42:44 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-03-26 22:42:44 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-03-26 22:42:43 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-03-26 22:42:42 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-03-26 22:42:41 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-03-26 22:42:41 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-03-26 22:42:41 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-03-26 22:42:41 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-03-26 22:42:41 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-03-26 22:42:41 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-03-26 22:42:41 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-03-26 22:42:41 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-03-26 22:42:40 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-03-26 22:42:40 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-03-26 22:42:39 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-03-26 22:42:39 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-03-26 22:42:39 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-03-26 22:42:39 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-03-26 22:42:38 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-03-26 22:42:38 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-03-26 22:42:38 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-03-26 22:42:38 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-03-26 22:42:38 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-03-26 22:42:37 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-03-26 22:42:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-03-26 22:42:36 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-03-26 22:42:35 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-03-26 22:42:35 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-03-26 22:42:35 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-03-26 22:42:35 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-03-26 22:42:35 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-03-26 22:42:35 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-03-26 22:42:35 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-03-26 22:42:35 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-03-26 22:42:34 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-03-26 22:42:34 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-03-26 22:42:34 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-03-26 22:42:34 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-03-26 22:42:33 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-03-26 22:42:32 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-03-26 22:42:32 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\system32\xinput1_3.dll
2014-03-26 22:42:32 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-03-26 22:42:32 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-03-26 22:42:31 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-03-26 22:42:31 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-03-26 22:42:31 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-03-26 22:42:31 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-03-26 22:42:30 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-03-26 22:42:30 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-03-26 22:42:30 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-03-26 22:42:30 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-03-26 22:42:30 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-03-26 22:42:30 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-03-26 22:42:30 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-03-26 22:42:30 ----A---- C:\Windows\system32\d3dx10.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-03-26 22:42:29 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xinput1_2.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xinput1_1.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-03-26 22:42:29 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-03-26 22:42:28 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-03-26 22:42:28 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-03-26 22:42:27 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-03-26 22:42:27 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-03-26 22:42:26 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-03-26 22:42:26 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-03-26 22:42:26 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-03-26 22:42:26 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-03-26 22:42:26 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-03-26 22:42:26 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-03-26 22:42:26 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-03-26 22:42:26 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-03-26 22:42:25 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-03-26 22:42:25 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-03-26 22:42:25 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-03-26 22:42:25 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-03-26 22:42:25 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-03-26 22:42:25 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-03-26 22:42:24 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-03-26 22:42:24 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-03-26 22:27:35 ----D---- C:\Program Files (x86)\The Elder Scrolls V Skyrim LE
2014-03-26 22:10:59 ----D---- C:\Windows\Sun
2014-03-26 22:05:58 ----D---- C:\Users\Adam\AppData\Roaming\ATI
2014-03-26 22:05:58 ----D---- C:\ProgramData\ATI
2014-03-26 21:15:20 ----D---- C:\Obrázky
2014-03-26 20:56:42 ----D---- C:\Hry
2014-03-26 20:51:27 ----D---- C:\Program Files (x86)\AMD AVT
2014-03-26 20:51:25 ----D---- C:\Program Files (x86)\AMD
2014-03-26 20:50:31 ----D---- C:\ProgramData\AMD
2014-03-26 20:50:14 ----D---- C:\Program Files\AMD
2014-03-26 20:49:49 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-03-26 20:49:42 ----D---- C:\Program Files (x86)\ATI Technologies
2014-03-26 20:47:04 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-03-26 20:46:07 ----D---- C:\Users\Adam\AppData\Roaming\Oracle
2014-03-26 20:45:52 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-03-26 20:43:42 ----D---- C:\ProgramData\Package Cache
2014-03-26 20:43:22 ----D---- C:\Program Files\ATI Technologies
2014-03-26 20:43:20 ----D---- C:\Program Files\ATI
2014-03-26 20:42:53 ----D---- C:\ProgramData\Oracle
2014-03-26 20:42:33 ----D---- C:\AMD
2014-03-26 20:42:07 ----D---- C:\ProgramData\Sun
2014-03-26 20:32:07 ----D---- C:\Users\Adam\AppData\Roaming\uTorrent
2014-03-26 20:31:41 ----D---- C:\Users\Adam\AppData\Roaming\AVG
2014-03-26 20:28:47 ----D---- C:\ProgramData\AVG
2014-03-26 20:28:43 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-03-26 20:28:43 ----HD---- C:\ProgramData\Common Files
2014-03-26 20:28:35 ----D---- C:\Users\Adam\AppData\Roaming\WinRAR
2014-03-26 20:27:46 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2014-03-26 20:27:43 ----D---- C:\Users\Adam\AppData\Roaming\DAEMON Tools Lite
2014-03-26 20:27:42 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2014-03-26 20:27:11 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-03-26 20:26:57 ----D---- C:\Program Files (x86)\WinRAR
2014-03-26 20:04:59 ----D---- C:\Program Files (x86)\Google
2014-03-26 20:02:45 ----A---- C:\Windows\system32\RTNUninst64.dll
2014-03-26 20:02:45 ----A---- C:\Windows\system32\RtNicProp64.dll
2014-03-26 20:02:45 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2014-03-26 20:02:41 ----D---- C:\Program Files (x86)\Realtek
2014-03-26 19:26:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-03-26 19:26:25 ----D---- C:\SWTOOLS
2014-03-26 18:31:30 ----D---- C:\Users\Adam\AppData\Roaming\Adobe
2014-03-26 18:31:22 ----D---- C:\Users\Adam\AppData\Roaming\Identities
2014-03-26 18:31:14 ----SD---- C:\Users\Adam\AppData\Roaming\Microsoft
2014-03-26 18:31:14 ----D---- C:\Users\Adam\AppData\Roaming\Media Center Programs
2014-03-26 18:31:10 ----SHD---- C:\Recovery
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Šablony
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Plocha
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Oblíbené položky
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Nabídka Start
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Dokumenty
2014-03-26 18:31:10 ----SHD---- C:\ProgramData\Data aplikací
2014-03-26 18:31:10 ----SHD---- C:\Documents and Settings
2014-03-26 18:31:05 ----D---- C:\Windows\SoftwareDistribution
2014-03-26 17:56:07 ----SHD---- C:\System Volume Information
2014-03-26 17:56:03 ----D---- C:\Windows\CSC
2014-03-26 17:55:42 ----ASH---- C:\pagefile.sys
2014-03-26 17:55:41 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2014-04-21 15:11:34 ----D---- C:\Windows\Temp
2014-04-21 15:11:28 ----RD---- C:\Program Files
2014-04-21 15:07:11 ----D---- C:\Windows\system32\config
2014-04-21 07:23:49 ----D---- C:\Windows\system32\drivers
2014-04-21 02:19:28 ----SHD---- C:\Windows\Installer
2014-04-21 02:19:24 ----D---- C:\Windows\winsxs
2014-04-21 02:18:11 ----RSD---- C:\Windows\assembly
2014-04-21 02:01:41 ----D---- C:\Windows\SysWOW64
2014-04-21 01:58:14 ----D---- C:\Windows\Logs
2014-04-21 01:25:17 ----D---- C:\Windows\System32
2014-04-21 01:25:17 ----D---- C:\Windows\inf
2014-04-21 01:25:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-04-21 01:21:09 ----D---- C:\Windows\Prefetch
2014-04-21 01:21:01 ----D---- C:\Windows\system32\catroot
2014-04-21 01:20:57 ----D---- C:\Windows\system32\catroot2
2014-04-21 01:19:29 ----RD---- C:\Program Files (x86)
2014-04-21 01:19:29 ----HD---- C:\ProgramData
2014-04-19 03:45:29 ----D---- C:\Windows
2014-04-17 09:34:47 ----D---- C:\Program Files (x86)\Common Files
2014-04-17 05:48:59 ----D---- C:\Windows\system32\DriverStore
2014-04-17 05:44:43 ----D---- C:\Windows\system32\Tasks
2014-04-17 05:44:41 ----D---- C:\Windows\Tasks
2014-04-17 05:40:22 ----D---- C:\Windows\system
2014-04-17 05:31:25 ----D---- C:\Windows\Help
2014-04-17 05:31:25 ----D---- C:\ProgramData\NVIDIA
2014-04-17 05:19:55 ----D---- C:\Windows\Panther
2014-04-17 05:19:55 ----D---- C:\Windows\debug
2014-04-17 05:05:06 ----A---- C:\Windows\system32\uxtheme.dll
2014-04-17 05:05:04 ----A---- C:\Windows\system32\themeui.dll
2014-04-17 05:05:02 ----A---- C:\Windows\system32\themeservice.dll
2014-04-15 13:14:15 ----D---- C:\Windows\Microsoft.NET
2014-04-15 10:18:28 ----SD---- C:\ProgramData\Microsoft
2014-04-10 07:56:18 ----D---- C:\Windows\rescache
2014-04-10 07:18:33 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-04-10 07:18:33 ----D---- C:\Windows\system32\cs-CZ
2014-04-10 07:18:33 ----D---- C:\Windows\AppPatch
2014-04-10 03:01:11 ----A---- C:\Windows\system32\MRT.exe
2014-04-06 22:07:08 ----D---- C:\Windows\system32\drivers\etc
2014-04-03 21:49:42 ----D---- C:\Program Files (x86)\MSBuild
2014-04-03 21:49:21 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-04-02 23:28:15 ----RSD---- C:\Windows\Fonts
2014-03-31 09:35:08 ----N---- C:\Windows\system32\MpSigStub.exe
2014-03-31 04:22:17 ----HD---- C:\Windows\system32\GroupPolicy
2014-03-31 04:22:17 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2014-03-31 03:31:11 ----D---- C:\Windows\system32\LogFiles
2014-03-30 21:04:23 ----D---- C:\Program Files\Common Files\System
2014-03-28 15:21:11 ----D---- C:\Windows\ShellNew
2014-03-28 12:17:14 ----D---- C:\Windows\system32\wdi
2014-03-26 23:44:04 ----D---- C:\Program Files\Windows Media Player
2014-03-26 23:44:04 ----D---- C:\Program Files (x86)\Windows Media Player
2014-03-26 23:44:03 ----D---- C:\Program Files\Internet Explorer
2014-03-26 23:44:03 ----D---- C:\Program Files (x86)\Internet Explorer
2014-03-26 23:11:44 ----AD---- C:\Windows\SYSWOW64\oobe
2014-03-26 20:49:49 ----D---- C:\Program Files\Common Files
2014-03-26 20:46:02 ----D---- C:\Windows\SYSWOW64\en-US
2014-03-26 20:46:02 ----D---- C:\Windows\system32\en-US
2014-03-26 20:03:49 ----D---- C:\Windows\system32\NDF
2014-03-26 18:48:14 ----D---- C:\Windows\system32\restore
2014-03-26 18:31:20 ----SHD---- C:\$Recycle.Bin
2014-03-26 18:31:14 ----RD---- C:\Users
2014-03-26 18:31:10 ----D---- C:\Windows\system32\Recovery
2014-03-26 18:31:10 ----D---- C:\Program Files\Windows NT
2014-03-26 17:54:44 ----D---- C:\Windows\system32\oem
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2014-02-25 131576]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2014-02-25 28600]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-03-26 283064]
R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2013-09-20 59648]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2014-02-25 108440]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-04-30 359936]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-09-24 94208]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-02-18 901848]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2014-03-27 303616]
S2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2014-03-27 35328]
S3 Alpham2;Ideazon ZBoard MM USB Human Interface Device; C:\Windows\system32\DRIVERS\Alpham264.sys [2007-03-20 21760]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2013-08-05 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2013-08-05 80384]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-04-03 25816]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-21 20992]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 rismxdp;rismxdp; C:\Windows\system32\drivers\rixdpx64.sys [2006-11-18 55296]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\SmSerl64.sys [2009-06-10 1227776]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver; C:\Windows\system32\drivers\Synth3dVsc.sys [2010-11-21 88960]
S3 tap0901;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 tapoas;TAP-Win32 Adapter OAS; C:\Windows\system32\DRIVERS\tapoas.sys [2010-08-03 30720]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;Remote Deskotop USB Hub; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-04-30 238080]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-12-06 344064]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-02-25 440400]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-02-25 440400]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-04-15 122448]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 MgAssistService;MgAssist Service; C:\Program Files (x86)\Mobogenie\MgAssist.exe [2014-04-08 70848]
R2 PirritUpdater;PirritUpdater; C:\Program Files (x86)\Pirrit\AutoUpdater.exe [2014-02-20 59904]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-04-21 76888]
R2 PnkBstrB;PnkBstrB; C:\Windows\syswow64\PnkBstrB.exe [2014-04-21 291128]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-04-03 857912]
S2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-04-03 1809720]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S2 SystemkService;Systemk Service; C:\Program Files (x86)\Settings Manager\systemk\SystemkService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-31 257928]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2014-03-31 49152]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 111616]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-02-08 569024]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-07 1255736]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [2014-02-25 1017424]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: PC mi píše ˇˇ misto pismenka s háčkem
Hlášky už mi to neháže
Re: PC mi píše ˇˇ misto pismenka s háčkem
Nejak mi chybi odpoved na tu prvni otazku
Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
11.5. pro neaktivitu
http://forum.viry.cz/viewtopic.php?f=12&t=123975



Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text
Kód: Vybrat vše
CREATERESTOREPOINT
netsvcs
drivers32
savembr:0
/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop
%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5
*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
11.5. pro neaktivitu

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).