Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosim o kontrolu,nefunguje nudzovy režim,

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
ringov
Návštěvník
Návštěvník
Příspěvky: 313
Registrován: 04 dub 2011 14:21
Bydliště: Cejkov

prosim o kontrolu,nefunguje nudzovy režim,

#1 Příspěvek od ringov »

Prijemnu nedelu prajem,nefunguje mi nudzovy režim a neda sa otvorit ovladaci panel nvidia//////////////////////////////////////////Logfile of random's system information tool 1.09 (written by random/random)
Run by Marek at 2014-04-27 07:43:26
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 575 GB (61%) free of 946 GB
Total RAM: 8149 MB (81% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:43:36, on 27. 4. 2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\trend micro\Marek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Ultra Agent] "C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Disc Soft Bus Service - Disc Soft Ltd - C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Windows Download Module - Unknown owner - C:\Windows\SysWOW64\winmodule.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Ashampoo LiveTuner 2 Service (WO_LiveService2) - Unknown owner - C:\Moje Subory\Programy\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe

--
End of file - 6176 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Windows\SysWOW64\winmodule.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-c8284fb9-11cd-4678-9f8f-4310463c5b5d -SystemEventPortName:HostProcess-bbd19415-7c42-4fd7-9861-faaafc0fea32 -IoCancelEventPortName:HostProcess-84663335-1e2e-4df3-854b-b1ec1025a49e -NonStateChangingEventPortName:HostProcess-f409f9f0-7678-4ba1-8317-db737287569b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:76582f66-bf13-4175-a0d6-dc14eb78abe4 -DeviceGroupId:WpdFsGroup
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
"C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe" -autorun
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 820 824 832 65536 828
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
"C:\Moje Subory\Zaloha\Cleanery\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\One-Click Optimizer WO11.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-27 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-27 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2014-03-25 1275608]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Ultra Agent"=C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [2014-02-12 3195096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Ultra Agent]
C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [2014-02-12 3195096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-02-05 2234144]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2014-02-05 1179576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files (x86)\Steam\Steam.exe [2014-02-25 1821888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2014-01-06 6563608]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-04-27 07:43:26 ----D---- C:\rsit
2014-04-27 07:43:26 ----D---- C:\Program Files\trend micro
2014-04-27 07:38:53 ----A---- C:\Windows\ntbtlog.txt
2014-04-27 07:29:45 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-04-27 07:29:40 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-04-27 07:29:40 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-04-27 07:29:40 ----A---- C:\Windows\SYSWOW64\java.exe
2014-04-27 07:29:33 ----D---- C:\Program Files (x86)\Java
2014-04-27 07:27:53 ----D---- C:\ProgramData\Oracle
2014-04-27 07:27:51 ----D---- C:\ProgramData\Sun
2014-04-26 19:58:50 ----D---- C:\ProgramData\Ashampoo
2014-04-26 19:58:43 ----A---- C:\Windows\system32\DfSdkBt.exe
2014-04-26 19:16:46 ----RHD---- C:\Users\Marek\AppData\Roaming\SecuROM
2014-04-26 19:13:40 ----A---- C:\Windows\SYSWOW64\CmdLineExt_x64.dll
2014-04-26 19:11:38 ----D---- C:\Windows\SYSWOW64\xlive
2014-04-26 19:11:37 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-04-22 08:44:47 ----D---- C:\Users\Marek\AppData\Roaming\Macromedia
2014-04-22 08:42:02 ----D---- C:\Users\Marek\AppData\Roaming\HTML Executable
2014-04-22 08:16:57 ----A---- C:\Windows\system32\drivers\dtscsibus.sys
2014-04-22 08:16:38 ----D---- C:\Users\Marek\AppData\Roaming\DAEMON Tools Ultra
2014-04-22 08:16:37 ----D---- C:\ProgramData\DAEMON Tools Ultra
2014-04-22 08:16:37 ----D---- C:\Program Files (x86)\DAEMON Tools Ultra
2014-04-22 08:09:06 ----D---- C:\Program Files (x86)\MSXML 4.0
2014-04-22 08:08:51 ----D---- C:\Windows\SYSWOW64\Macromed
2014-04-22 06:36:15 ----D---- C:\Program Files (x86)\VITSOFT
2014-04-20 07:02:11 ----A---- C:\Windows\whoami.ini
2014-04-19 08:56:18 ----D---- C:\SUPERDelete
2014-04-19 06:04:11 ----D---- C:\Program Files (x86)\Steam
2014-04-19 05:55:00 ----D---- C:\ProgramData\Steam
2014-04-18 10:49:01 ----D---- C:\ProgramData\Origin
2014-04-18 10:42:59 ----D---- C:\Users\Marek\AppData\Roaming\SUPERAntiSpyware.com
2014-04-18 10:42:45 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2014-04-18 10:42:45 ----D---- C:\Program Files\SUPERAntiSpyware
2014-04-17 20:36:18 ----A---- C:\Windows\SYSWOW64\winmodule.exe
2014-04-17 20:36:17 ----A---- C:\Windows\SYSWOW64\winupdater.exe
2014-04-16 21:46:14 ----D---- C:\ProgramData\Orbit
2014-04-16 21:42:21 ----D---- C:\Users\Marek\AppData\Roaming\Far Cry 3
2014-04-16 21:41:32 ----D---- C:\ProgramData\Package Cache
2014-04-15 19:52:07 ----D---- C:\Users\Marek\AppData\Roaming\SketchUp
2014-04-15 19:51:19 ----D---- C:\ProgramData\SketchUp
2014-04-15 19:51:19 ----D---- C:\Program Files (x86)\SketchUp
2014-04-15 07:11:54 ----D---- C:\Program Files (x86)\Cheat Engine 6.2
2014-04-12 09:05:23 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-12 09:05:23 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-04-12 09:05:23 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-04-12 08:50:17 ----D---- C:\ProgramData\Malwarebytes
2014-04-12 08:50:14 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-04-12 08:50:14 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-04-12 08:44:55 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-04-10 04:07:52 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2014-04-10 04:07:52 ----A---- C:\Windows\system32\iologmsg.dll
2014-04-10 04:07:52 ----A---- C:\Windows\system32\drivers\storport.sys
2014-04-10 04:07:52 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-04-10 04:07:52 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-04-10 04:07:51 ----A---- C:\Windows\system32\mshtml.dll
2014-04-10 04:07:50 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-04-10 04:07:49 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-04-10 04:07:49 ----A---- C:\Windows\system32\wow64.dll
2014-04-10 04:07:49 ----A---- C:\Windows\system32\kernel32.dll
2014-04-10 04:07:48 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-04-10 04:07:48 ----A---- C:\Windows\SYSWOW64\user.exe
2014-04-10 04:07:48 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-04-10 04:07:48 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-04-10 04:07:48 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-04-10 04:07:48 ----A---- C:\Windows\system32\wow64win.dll
2014-04-10 04:07:48 ----A---- C:\Windows\system32\wow64cpu.dll
2014-04-10 04:07:48 ----A---- C:\Windows\system32\ntvdm64.dll
2014-04-10 04:07:23 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-04-09 22:03:53 ----D---- C:\ProgramData\Electronic Arts
2014-04-06 01:04:14 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-04-06 01:04:14 ----A---- C:\Windows\system32\vbscript.dll
2014-04-05 18:33:14 ----A---- C:\Windows\explorer.exe
2014-04-05 18:33:13 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-04-05 18:33:13 ----A---- C:\Windows\SYSWOW64\explorer.exe
2014-04-05 18:33:13 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-04-05 18:33:13 ----A---- C:\Windows\system32\WMPhoto.dll
2014-04-05 18:33:12 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-04-05 18:33:12 ----A---- C:\Windows\system32\d3d10warp.dll
2014-04-05 18:33:12 ----A---- C:\Windows\system32\d2d1.dll
2014-04-05 18:33:10 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-04-05 18:33:10 ----A---- C:\Windows\system32\iertutil.dll
2014-04-05 18:33:09 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-04-05 18:33:09 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-04-05 18:33:09 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-04-05 18:33:09 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-04-05 18:33:09 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-04-05 18:33:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-04-05 18:33:08 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-04-05 18:33:08 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-04-05 18:33:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-04-05 18:33:08 ----A---- C:\Windows\system32\urlmon.dll
2014-04-05 18:33:08 ----A---- C:\Windows\system32\iernonce.dll
2014-04-05 18:33:08 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-04-05 18:33:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-04-05 18:33:07 ----A---- C:\Windows\system32\msfeeds.dll
2014-04-05 18:33:07 ----A---- C:\Windows\system32\iesetup.dll
2014-04-05 18:33:07 ----A---- C:\Windows\system32\ie4uinit.exe
2014-04-05 18:33:06 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-04-05 18:33:06 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-04-05 18:33:06 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-04-05 18:33:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-04-05 18:33:06 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-04-05 18:33:06 ----A---- C:\Windows\system32\jsproxy.dll
2014-04-05 18:33:06 ----A---- C:\Windows\system32\ieui.dll
2014-04-05 18:33:06 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-04-05 18:33:05 ----A---- C:\Windows\system32\jscript9diag.dll
2014-04-05 18:33:05 ----A---- C:\Windows\system32\jscript9.dll
2014-04-05 18:33:05 ----A---- C:\Windows\system32\ieUnatt.exe
2014-04-05 18:33:05 ----A---- C:\Windows\system32\ieframe.dll
2014-04-05 18:33:04 ----A---- C:\Windows\system32\wininet.dll
2014-04-05 18:33:04 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-04-05 18:33:04 ----A---- C:\Windows\system32\msrating.dll
2014-04-05 18:33:04 ----A---- C:\Windows\system32\ieapfltr.dll
2014-04-05 18:32:42 ----A---- C:\Windows\system32\fsutil.exe
2014-04-05 18:32:42 ----A---- C:\Windows\system32\esent.dll
2014-04-05 18:32:42 ----A---- C:\Windows\system32\drivers\amdxata.sys
2014-04-05 18:32:41 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2014-04-05 18:32:41 ----A---- C:\Windows\SYSWOW64\esent.dll
2014-04-05 18:32:41 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2014-04-05 18:32:41 ----A---- C:\Windows\system32\drivers\nvstor.sys
2014-04-05 18:32:41 ----A---- C:\Windows\system32\drivers\nvraid.sys
2014-04-05 18:32:41 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2014-04-05 18:32:41 ----A---- C:\Windows\system32\drivers\amdsata.sys
2014-04-05 18:32:37 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-04-05 18:32:37 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-04-05 18:32:37 ----A---- C:\Windows\system32\spoolsv.exe
2014-04-05 18:32:37 ----A---- C:\Windows\splwow64.exe
2014-04-05 10:19:35 ----A---- C:\Windows\system32\wmploc.DLL
2014-04-05 10:19:34 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-04-05 10:19:34 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-04-05 10:19:33 ----A---- C:\Windows\system32\wmp.dll
2014-04-05 10:06:35 ----D---- C:\Users\Marek\AppData\Roaming\Adobe
2014-04-05 08:46:11 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-04-05 08:46:11 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-04-05 08:46:09 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2014-04-05 08:46:09 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-04-05 08:46:05 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-04-05 08:46:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-04-05 08:46:05 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-04-05 08:46:05 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-04-05 08:46:05 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-04-05 08:46:05 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-04-05 08:46:03 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-04-05 08:46:03 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-04-05 08:46:02 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-04-05 08:46:02 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-04-05 08:46:01 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-04-05 08:46:01 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-04-05 08:46:01 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-04-05 08:46:01 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-04-05 08:46:00 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-04-05 08:46:00 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-04-05 08:45:59 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-04-05 08:45:59 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-04-05 08:45:58 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-04-05 08:45:58 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-04-05 08:45:57 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-04-05 08:45:57 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-04-05 08:45:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-04-05 08:45:57 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-04-05 08:45:57 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-04-05 08:45:57 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-04-05 08:45:56 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-04-05 08:45:56 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-04-05 08:45:56 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-04-05 08:45:56 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-04-05 08:45:55 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-04-05 08:45:55 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-04-05 08:45:55 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-04-05 08:45:55 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-04-05 08:45:54 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-04-05 08:45:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-04-05 08:45:54 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-04-05 08:45:54 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-04-05 08:45:53 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-04-05 08:45:53 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-04-05 08:45:53 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-04-05 08:45:53 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-04-05 08:45:53 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-04-05 08:45:53 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-04-05 08:45:52 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-04-05 08:45:52 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-04-05 08:45:51 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-04-05 08:45:51 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-04-05 08:45:50 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-04-05 08:45:50 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-04-05 08:45:50 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-04-05 08:45:50 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-04-05 08:45:49 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-04-05 08:45:49 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-04-05 08:45:49 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-04-05 08:45:49 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-04-05 08:45:49 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-04-05 08:45:49 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-04-05 08:45:48 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-04-05 08:45:48 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-04-05 08:45:47 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-04-05 08:45:47 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-04-05 08:45:47 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-04-05 08:45:47 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-04-05 08:45:46 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-04-05 08:45:46 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-04-05 08:45:45 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-04-05 08:45:45 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-04-05 08:45:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-04-05 08:45:45 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-04-05 08:45:45 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-04-05 08:45:45 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-04-05 08:45:44 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-04-05 08:45:44 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-04-05 08:45:44 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-04-05 08:45:44 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-04-05 08:45:43 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-04-05 08:45:43 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-04-05 08:45:42 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-04-05 08:45:42 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-04-05 08:45:40 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-04-05 08:45:40 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-04-05 08:45:40 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-04-05 08:45:40 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-04-05 08:45:37 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-04-05 08:45:37 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-04-05 08:45:35 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-04-05 08:45:35 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-04-05 08:45:33 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-04-05 08:45:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-04-05 08:45:33 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-04-05 08:45:33 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-04-05 08:45:30 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-04-05 08:45:30 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-04-05 08:45:29 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-04-05 08:45:29 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-04-05 08:45:28 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-04-05 08:45:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-04-05 08:45:28 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-04-05 08:45:28 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-04-05 08:45:27 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-04-05 08:45:27 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-04-05 08:45:24 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-04-05 08:45:24 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-04-05 08:45:24 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-04-05 08:45:24 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-04-05 08:45:23 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-04-05 08:45:23 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-04-05 08:45:23 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-04-05 08:45:23 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-04-05 08:45:22 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-04-05 08:45:22 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-04-05 08:45:21 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-04-05 08:45:21 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-04-05 08:45:21 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-04-05 08:45:21 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-04-05 08:45:21 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-04-05 08:45:21 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-04-05 08:45:20 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-04-05 08:45:20 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-04-05 08:45:19 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-04-05 08:45:19 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-04-05 08:45:18 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-04-05 08:45:18 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-04-05 08:45:18 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-04-05 08:45:18 ----A---- C:\Windows\system32\d3dx10.dll
2014-04-05 08:45:17 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-04-05 08:45:17 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-04-05 08:45:16 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-04-05 08:45:16 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-04-05 08:45:16 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-04-05 08:45:16 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-04-05 08:45:16 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-04-05 08:45:16 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-04-05 08:45:15 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-04-05 08:45:15 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-04-05 08:45:13 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-04-05 08:45:13 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-04-05 08:45:13 ----A---- C:\Windows\system32\xinput1_2.dll
2014-04-05 08:45:13 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-04-05 08:45:12 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-04-05 08:45:12 ----A---- C:\Windows\system32\xinput1_1.dll
2014-04-05 08:45:11 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-04-05 08:45:11 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-04-05 08:45:06 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-04-05 08:45:06 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-04-05 08:45:04 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-04-05 08:45:04 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-04-05 08:45:04 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-04-05 08:45:04 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-04-05 08:45:01 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-04-05 08:45:01 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-04-05 08:44:59 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-04-05 08:44:59 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-04-05 08:44:59 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-04-05 08:44:59 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-04-05 08:44:58 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-04-05 08:44:58 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-04-05 08:44:58 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-04-05 08:44:58 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-04-05 08:44:57 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-04-05 08:44:57 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-04-05 08:40:51 ----D---- C:\Windows\Migration
2014-04-05 08:35:07 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-04-05 08:27:51 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-04-05 08:27:45 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-04-05 08:27:45 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-04-05 08:27:45 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-04-05 08:27:45 ----A---- C:\Windows\system32\elshyph.dll
2014-04-05 08:27:43 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-04-05 08:27:42 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-04-05 08:27:41 ----A---- C:\Windows\SYSWOW64\url.dll
2014-04-05 08:27:41 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-04-05 08:27:41 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-04-05 08:27:41 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-04-05 08:27:40 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-04-05 08:27:40 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-04-05 08:27:40 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-04-05 08:27:40 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-04-05 08:27:39 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-04-05 08:27:39 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-04-05 08:27:39 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-04-05 08:27:39 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-04-05 08:27:38 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-04-05 08:27:37 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-04-05 08:27:37 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-04-05 08:27:37 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-04-05 08:27:37 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-04-05 08:27:36 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-04-05 08:27:36 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-04-05 08:27:36 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-04-05 08:27:36 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-04-05 08:27:35 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-04-05 08:27:35 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-04-05 08:27:35 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-04-05 08:27:34 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\wextract.exe
2014-04-05 08:27:29 ----A---- C:\Windows\system32\webcheck.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\url.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-04-05 08:27:29 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-05 08:27:29 ----A---- C:\Windows\system32\pngfilt.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\occache.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\msls31.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\mshtmler.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\mshtmled.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\mshta.exe
2014-04-05 08:27:29 ----A---- C:\Windows\system32\msfeedssync.exe
2014-04-05 08:27:29 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\licmgr10.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\jsIntl.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\jscript.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\inseng.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\imgutil.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\iexpress.exe
2014-04-05 08:27:29 ----A---- C:\Windows\system32\iesysprep.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\iepeers.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\iedkcs32.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\ieapfltr.dat
2014-04-05 08:27:29 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\icardie.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\dxtrans.dll
2014-04-05 08:27:29 ----A---- C:\Windows\system32\dxtmsft.dll
2014-04-05 08:26:13 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-05 08:26:13 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-05 08:26:13 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-05 08:26:13 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-05 08:26:13 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-05 08:26:13 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-05 08:26:13 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-05 08:26:13 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-05 08:26:12 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-05 08:26:12 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-04-05 08:26:12 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-04-05 08:26:12 ----A---- C:\Windows\system32\XpsPrint.dll
2014-04-05 08:26:12 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-04-05 08:26:11 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-04-05 08:26:11 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-04-05 08:26:11 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-04-05 08:26:11 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-04-05 08:26:11 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-04-05 08:26:11 ----A---- C:\Windows\system32\FntCache.dll
2014-04-05 08:26:11 ----A---- C:\Windows\system32\dxgi.dll
2014-04-05 08:26:10 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-04-05 08:26:10 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-04-05 08:26:10 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-04-05 08:26:10 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-04-05 08:26:10 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-04-05 08:26:10 ----A---- C:\Windows\system32\DWrite.dll
2014-04-05 08:26:10 ----A---- C:\Windows\system32\d3d10level9.dll
2014-04-05 08:26:10 ----A---- C:\Windows\system32\d3d10core.dll
2014-04-05 08:26:10 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-04-05 08:26:10 ----A---- C:\Windows\system32\d3d10_1.dll
2014-04-05 08:26:10 ----A---- C:\Windows\system32\d3d10.dll
2014-04-05 08:26:09 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-04-05 08:26:09 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-04-05 08:26:09 ----A---- C:\Windows\system32\UIAnimation.dll
2014-04-05 08:22:25 ----D---- C:\Windows\SYSWOW64\Wat
2014-04-05 08:22:25 ----D---- C:\Windows\system32\Wat
2014-04-05 08:22:08 ----D---- C:\ProgramData\VS Revo Group
2014-04-05 08:22:08 ----A---- C:\Windows\system32\drivers\revoflt.sys
2014-04-05 02:43:50 ----D---- C:\Windows\system32\OEM
2014-04-05 02:43:50 ----D---- C:\Windows\panther
2014-04-05 02:30:20 ----D---- C:\Windows.old
2014-04-04 23:33:12 ----A---- C:\Windows\system32\browserchoice.exe
2014-04-04 23:09:18 ----D---- C:\Windows\system32\MRT
2014-04-04 23:09:16 ----A---- C:\Windows\system32\MRT.exe
2014-04-04 23:05:30 ----A---- C:\Windows\system32\WUDFx.dll
2014-04-04 23:05:30 ----A---- C:\Windows\system32\WUDFSvc.dll
2014-04-04 23:05:30 ----A---- C:\Windows\system32\WUDFPlatform.dll
2014-04-04 23:05:30 ----A---- C:\Windows\system32\WUDFHost.exe
2014-04-04 23:05:30 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2014-04-04 23:05:30 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2014-04-04 23:05:30 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2014-04-04 22:51:27 ----A---- C:\Windows\SYSWOW64\wmi.dll
2014-04-04 22:51:27 ----A---- C:\Windows\system32\wmi.dll
2014-04-04 22:51:27 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2014-04-04 22:44:19 ----A---- C:\Windows\system32\mstscax.dll
2014-04-04 22:44:18 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-04-04 22:44:18 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-04-04 22:44:18 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2014-04-04 22:44:18 ----A---- C:\Windows\system32\tsgqec.dll
2014-04-04 22:44:18 ----A---- C:\Windows\system32\aaclient.dll
2014-04-04 22:44:00 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2014-04-04 22:44:00 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2014-04-04 22:44:00 ----A---- C:\Windows\system32\mfc42u.dll
2014-04-04 22:44:00 ----A---- C:\Windows\system32\mfc42.dll
2014-04-04 22:43:59 ----A---- C:\Windows\system32\drivers\partmgr.sys
2014-04-04 22:43:47 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-04-04 22:43:47 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-04-04 22:43:47 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-04-04 22:43:47 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-04-04 22:43:47 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-04-04 22:43:47 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-04-04 22:43:47 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-04-04 22:43:47 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-04-04 22:43:47 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-04-04 22:43:47 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-04-04 22:43:47 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-04-04 22:43:47 ----A---- C:\Windows\system32\secproc_isv.dll
2014-04-04 22:43:47 ----A---- C:\Windows\system32\secproc.dll
2014-04-04 22:43:47 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-04-04 22:43:47 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-04-04 22:43:47 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-04-04 22:43:47 ----A---- C:\Windows\system32\RMActivate.exe
2014-04-04 22:43:47 ----A---- C:\Windows\system32\msdrm.dll
2014-04-04 22:43:33 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-04-04 22:43:33 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-04-04 22:43:33 ----A---- C:\Windows\system32\tdh.dll
2014-04-04 22:43:33 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-04-04 22:43:33 ----A---- C:\Windows\system32\ntdll.dll
2014-04-04 22:43:33 ----A---- C:\Windows\system32\advapi32.dll
2014-04-04 22:43:32 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-04-04 22:43:32 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-04-04 22:43:32 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-04-04 22:43:27 ----A---- C:\Windows\SYSWOW64\gameux.dll
2014-04-04 22:43:27 ----A---- C:\Windows\system32\Wpc.dll
2014-04-04 22:43:27 ----A---- C:\Windows\system32\gameux.dll
2014-04-04 22:43:26 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-04-04 22:43:21 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-04-04 22:43:21 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-04-04 22:43:21 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-04-04 22:43:21 ----A---- C:\Windows\system32\winsrv.dll
2014-04-04 22:43:21 ----A---- C:\Windows\system32\smss.exe
2014-04-04 22:43:21 ----A---- C:\Windows\system32\KernelBase.dll
2014-04-04 22:43:21 ----A---- C:\Windows\system32\csrsrv.dll
2014-04-04 22:43:21 ----A---- C:\Windows\system32\conhost.exe
2014-04-04 22:43:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-04-04 22:43:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-04-04 22:43:20 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-04-04 22:43:20 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-04-04 22:43:20 ----A---- C:\Windows\system32\apisetschema.dll
2014-04-04 22:43:12 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-04-04 22:43:12 ----A---- C:\Windows\system32\d3d11.dll
2014-04-04 22:43:11 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-04-04 22:42:59 ----A---- C:\Windows\SYSWOW64\sbe.dll
2014-04-04 22:42:59 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2014-04-04 22:42:59 ----A---- C:\Windows\system32\sbe.dll
2014-04-04 22:42:59 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-04-04 22:42:59 ----A---- C:\Windows\system32\drivers\netio.sys
2014-04-04 22:42:59 ----A---- C:\Windows\system32\CPFilters.dll
2014-04-04 22:42:58 ----A---- C:\Windows\system32\mswsock.dll
2014-04-04 22:42:57 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-04-04 22:42:56 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-04-04 22:42:56 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-04-04 22:42:56 ----A---- C:\Windows\system32\shell32.dll
2014-04-04 22:42:56 ----A---- C:\Windows\system32\shdocvw.dll
2014-04-04 22:42:49 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-04-04 22:42:49 ----A---- C:\Windows\SYSWOW64\netevent.dll
2014-04-04 22:42:49 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2014-04-04 22:42:49 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-04-04 22:42:49 ----A---- C:\Windows\system32\nlasvc.dll
2014-04-04 22:42:49 ----A---- C:\Windows\system32\nlaapi.dll
2014-04-04 22:42:49 ----A---- C:\Windows\system32\netevent.dll
2014-04-04 22:42:49 ----A---- C:\Windows\system32\netcorehc.dll
2014-04-04 22:42:49 ----A---- C:\Windows\system32\ncsi.dll
2014-04-04 22:42:49 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-04-04 22:42:49 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-04-04 22:42:46 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-04-04 22:42:46 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-04-04 22:42:46 ----A---- C:\Windows\system32\schannel.dll
2014-04-04 22:42:46 ----A---- C:\Windows\system32\ncrypt.dll
2014-04-04 22:42:46 ----A---- C:\Windows\system32\lsasrv.dll
2014-04-04 22:42:46 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-04-04 22:42:46 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-04-04 22:42:46 ----A---- C:\Windows\system32\drivers\cng.sys
2014-04-04 22:42:45 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-04-04 22:42:45 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-04-04 22:42:45 ----A---- C:\Windows\system32\sspisrv.dll
2014-04-04 22:42:45 ----A---- C:\Windows\system32\sspicli.dll
2014-04-04 22:42:45 ----A---- C:\Windows\system32\secur32.dll
2014-04-04 22:42:45 ----A---- C:\Windows\system32\lsass.exe
2014-04-04 22:42:43 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-04-04 22:42:43 ----A---- C:\Windows\system32\win32spl.dll
2014-04-04 22:42:35 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2014-04-04 22:42:35 ----A---- C:\Windows\system32\cryptdlg.dll
2014-04-04 22:42:27 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-04-04 22:42:27 ----A---- C:\Windows\system32\msxml6.dll
2014-04-04 22:42:26 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-04-04 22:42:26 ----A---- C:\Windows\system32\poqexec.exe
2014-04-04 22:42:25 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-04-04 22:42:25 ----A---- C:\Windows\system32\msi.dll
2014-04-04 22:42:21 ----A---- C:\Windows\system32\consent.exe
2014-04-04 22:42:21 ----A---- C:\Windows\system32\appinfo.dll
2014-04-04 22:42:17 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2014-04-04 22:42:17 ----A---- C:\Windows\system32\cdosys.dll
2014-04-04 22:42:14 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-04-04 22:42:14 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-04-04 22:42:14 ----A---- C:\Windows\system32\certutil.exe
2014-04-04 22:42:14 ----A---- C:\Windows\system32\certenc.dll
2014-04-04 22:42:10 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-04-04 22:42:10 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-04-04 22:42:10 ----A---- C:\Windows\system32\drivers\srv.sys
2014-04-04 22:42:09 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-04-04 22:42:09 ----A---- C:\Windows\system32\inetcomm.dll
2014-04-04 22:42:08 ----A---- C:\Windows\SYSWOW64\tquery.dll
2014-04-04 22:42:08 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2014-04-04 22:42:08 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2014-04-04 22:42:08 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2014-04-04 22:42:08 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2014-04-04 22:42:08 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2014-04-04 22:42:08 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2014-04-04 22:42:08 ----A---- C:\Windows\SYSWOW64\mssph.dll
2014-04-04 22:42:08 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2014-04-04 22:42:08 ----A---- C:\Windows\system32\tquery.dll
2014-04-04 22:42:08 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2014-04-04 22:42:08 ----A---- C:\Windows\system32\SearchIndexer.exe
2014-04-04 22:42:08 ----A---- C:\Windows\system32\SearchFilterHost.exe
2014-04-04 22:42:08 ----A---- C:\Windows\system32\mssvp.dll
2014-04-04 22:42:08 ----A---- C:\Windows\system32\mssrch.dll
2014-04-04 22:42:08 ----A---- C:\Windows\system32\mssphtb.dll
2014-04-04 22:42:08 ----A---- C:\Windows\system32\mssph.dll
2014-04-04 22:42:08 ----A---- C:\Windows\system32\msscntrs.dll
2014-04-04 22:42:07 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-04-04 22:42:07 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-04-04 22:42:06 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-04-04 22:42:06 ----A---- C:\Windows\system32\rpcrt4.dll
2014-04-04 22:42:04 ----A---- C:\Windows\system32\Wdfres.dll
2014-04-04 22:42:04 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-04-04 22:42:04 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-04-04 22:42:03 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-04-04 22:42:03 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-04-04 22:42:03 ----A---- C:\Windows\system32\msxml3r.dll
2014-04-04 22:42:03 ----A---- C:\Windows\system32\msxml3.dll
2014-04-04 22:42:02 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-04-04 22:42:02 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-04-04 22:42:02 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-04-04 22:42:02 ----A---- C:\Windows\system32\cryptsvc.dll
2014-04-04 22:42:02 ----A---- C:\Windows\system32\cryptnet.dll
2014-04-04 22:42:02 ----A---- C:\Windows\system32\crypt32.dll
2014-04-04 22:42:00 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-04-04 22:42:00 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-04-04 22:42:00 ----A---- C:\Windows\system32\wscript.exe
2014-04-04 22:42:00 ----A---- C:\Windows\system32\scrrun.dll
2014-04-04 22:42:00 ----A---- C:\Windows\system32\cscript.exe
2014-04-04 22:41:59 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2014-04-04 22:41:59 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-04-04 22:41:59 ----A---- C:\Windows\system32\xmllite.dll
2014-04-04 22:41:58 ----A---- C:\Windows\SYSWOW64\webio.dll
2014-04-04 22:41:58 ----A---- C:\Windows\system32\webio.dll
2014-04-04 22:41:57 ----A---- C:\Windows\system32\taskhost.exe
2014-04-04 22:41:56 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-04-04 22:41:56 ----A---- C:\Windows\system32\wintrust.dll
2014-04-04 22:41:53 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-04-04 22:41:53 ----A---- C:\Windows\system32\kerberos.dll
2014-04-04 22:41:51 ----A---- C:\Windows\system32\OxpsConverter.exe
2014-04-04 22:41:50 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-04-04 22:41:50 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-04-04 22:41:50 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-04-04 22:41:50 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-04-04 22:41:50 ----A---- C:\Windows\system32\credui.dll
2014-04-04 22:41:50 ----A---- C:\Windows\system32\authui.dll
2014-04-04 22:41:47 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2014-04-04 22:41:47 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-04-04 22:41:47 ----A---- C:\Windows\system32\psisdecd.dll
2014-04-04 22:41:47 ----A---- C:\Windows\system32\comctl32.dll
2014-04-04 22:41:45 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-04-04 22:41:45 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-04-04 22:41:43 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2014-04-04 22:41:43 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-04-04 22:41:43 ----A---- C:\Windows\system32\ntshrui.dll
2014-04-04 22:41:43 ----A---- C:\Windows\system32\gdi32.dll
2014-04-04 22:41:41 ----A---- C:\Windows\system32\win32k.sys
2014-04-04 22:41:38 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2014-04-04 22:41:38 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2014-04-04 22:41:38 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2014-04-04 22:41:38 ----A---- C:\Windows\system32\dhcpcore6.dll
2014-04-04 22:41:36 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2014-04-04 22:41:36 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2014-04-04 22:41:36 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2014-04-04 22:41:36 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2014-04-04 22:41:36 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2014-04-04 22:41:36 ----A---- C:\Windows\system32\odbctrac.dll
2014-04-04 22:41:36 ----A---- C:\Windows\system32\odbccu32.dll
2014-04-04 22:41:36 ----A---- C:\Windows\system32\odbccr32.dll
2014-04-04 22:41:36 ----A---- C:\Windows\system32\odbccp32.dll
2014-04-04 22:41:35 ----A---- C:\Windows\system32\winresume.exe
2014-04-04 22:41:35 ----A---- C:\Windows\system32\winload.exe
2014-04-04 22:41:35 ----A---- C:\Windows\system32\kdusb.dll
2014-04-04 22:41:35 ----A---- C:\Windows\system32\kdcom.dll
2014-04-04 22:41:35 ----A---- C:\Windows\system32\kd1394.dll
2014-04-04 22:41:34 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-04-04 22:41:34 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2014-04-04 22:41:34 ----A---- C:\Windows\SYSWOW64\devobj.dll
2014-04-04 22:41:34 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2014-04-04 22:41:34 ----A---- C:\Windows\system32\umpnpmgr.dll
2014-04-04 22:41:31 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2014-04-04 22:41:31 ----A---- C:\Windows\system32\EncDec.dll
2014-04-04 22:41:31 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2014-04-04 22:41:31 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-04-04 22:41:31 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-04-04 22:41:31 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-04-04 22:41:31 ----A---- C:\Windows\system32\cdd.dll
2014-04-04 22:41:30 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2014-04-04 22:41:30 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2014-04-04 22:41:30 ----A---- C:\Windows\system32\dnsrslvr.dll
2014-04-04 22:41:30 ----A---- C:\Windows\system32\dnscacheugc.exe
2014-04-04 22:41:30 ----A---- C:\Windows\system32\dnsapi.dll
2014-04-04 22:41:29 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2014-04-04 22:41:29 ----A---- C:\Windows\SYSWOW64\browcli.dll
2014-04-04 22:41:29 ----A---- C:\Windows\system32\netapi32.dll
2014-04-04 22:41:29 ----A---- C:\Windows\system32\browser.dll
2014-04-04 22:41:29 ----A---- C:\Windows\system32\browcli.dll
2014-04-04 22:41:25 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-04-04 22:41:25 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-04-04 22:41:25 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-04-04 22:41:25 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-04-04 22:41:25 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-04-04 22:41:23 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-04-04 22:41:23 ----A---- C:\Windows\system32\wer.dll
2014-04-04 22:41:18 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-04-04 22:41:18 ----A---- C:\Windows\system32\tzres.dll
2014-04-04 22:41:15 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-04-04 22:41:15 ----A---- C:\Windows\system32\qedit.dll
2014-04-04 22:41:15 ----A---- C:\Windows\system32\profsvc.dll
2014-04-04 22:41:13 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-04-04 22:41:13 ----A---- C:\Windows\system32\msieftp.dll
2014-04-04 22:41:13 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-04-04 22:41:09 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-04-04 22:41:09 ----A---- C:\Windows\system32\usp10.dll
2014-04-04 22:41:08 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-04-04 22:41:08 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-04-04 22:41:08 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-04-04 22:41:08 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-04-04 22:41:08 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-04-04 22:41:08 ----A---- C:\Windows\system32\lpk.dll
2014-04-04 22:41:08 ----A---- C:\Windows\system32\fontsub.dll
2014-04-04 22:41:08 ----A---- C:\Windows\system32\dciman32.dll
2014-04-04 22:41:08 ----A---- C:\Windows\system32\atmlib.dll
2014-04-04 22:41:08 ----A---- C:\Windows\system32\atmfd.dll
2014-04-04 22:41:06 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-04-04 22:41:06 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2014-04-04 22:41:06 ----A---- C:\Windows\system32\oleaut32.dll
2014-04-04 22:41:06 ----A---- C:\Windows\system32\oleacc.dll
2014-04-04 22:41:05 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-04-04 22:41:05 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-04-04 22:41:04 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-04-04 22:41:04 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-04-04 22:41:02 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-04-04 22:41:02 ----A---- C:\Windows\system32\srcore.dll
2014-04-04 22:41:02 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-04-04 22:41:02 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2014-04-04 22:41:02 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-04-04 22:41:00 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-04-04 22:41:00 ----A---- C:\Windows\system32\imagehlp.dll
2014-04-04 22:40:59 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-04-04 22:40:59 ----A---- C:\Windows\system32\WebClnt.dll
2014-04-04 22:40:59 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-04-04 22:40:58 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-04-04 22:40:58 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-04-04 22:40:58 ----A---- C:\Windows\system32\drivers\bowser.sys
2014-04-04 22:40:58 ----A---- C:\Windows\system32\davclnt.dll
2014-04-04 22:40:57 ----A---- C:\Windows\system32\drivers\afd.sys
2014-04-04 22:40:56 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-04-04 22:40:56 ----A---- C:\Windows\system32\dpnet.dll
2014-04-04 22:40:55 ----A---- C:\Windows\system32\wwansvc.dll
2014-04-04 22:40:55 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-04-04 22:40:54 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-04-04 22:40:54 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2014-04-04 22:40:54 ----A---- C:\Windows\system32\synceng.dll
2014-04-04 22:40:54 ----A---- C:\Windows\system32\msvcrt.dll
2014-04-04 22:40:53 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-04-04 22:40:52 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-04-04 22:40:52 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-04-04 22:40:51 ----A---- C:\Windows\SYSWOW64\quartz.dll
2014-04-04 22:40:51 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-04-04 22:40:51 ----A---- C:\Windows\system32\quartz.dll
2014-04-04 22:40:51 ----A---- C:\Windows\system32\qdvd.dll
2014-04-04 22:40:51 ----A---- C:\Windows\system32\FXSCOVER.exe
2014-04-04 22:40:50 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-04-04 22:40:49 ----A---- C:\Windows\system32\rdrmemptylst.exe
2014-04-04 22:40:49 ----A---- C:\Windows\system32\rdpwsx.dll
2014-04-04 22:40:49 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-04-04 22:40:49 ----A---- C:\Windows\system32\localspl.dll
2014-04-04 22:40:48 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2014-04-04 22:40:48 ----A---- C:\Windows\system32\prevhost.exe
2014-04-04 22:40:30 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-04-04 22:40:30 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-04-04 22:40:30 ----A---- C:\Windows\system32\nshwfp.dll
2014-04-04 22:40:30 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-04-04 22:40:30 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-04-04 22:24:14 ----A---- C:\Windows\system32\scavengeui.dll
2014-04-04 22:23:52 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-04-04 22:23:52 ----A---- C:\Windows\system32\packager.dll
2014-04-04 22:14:19 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-04-04 22:14:19 ----A---- C:\Windows\system32\rdpcore.dll
2014-04-04 22:14:19 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2014-04-04 22:10:07 ----A---- C:\Windows\system32\wups2.dll
2014-04-04 22:10:07 ----A---- C:\Windows\system32\wucltux.dll
2014-04-04 22:10:07 ----A---- C:\Windows\system32\wuaueng.dll
2014-04-04 22:10:07 ----A---- C:\Windows\system32\wuauclt.exe
2014-04-04 22:10:00 ----A---- C:\Windows\system32\wups.dll
2014-04-04 22:10:00 ----A---- C:\Windows\system32\wudriver.dll
2014-04-04 22:10:00 ----A---- C:\Windows\system32\wuapi.dll
2014-04-04 22:09:51 ----A---- C:\Windows\system32\wuwebv.dll
2014-04-04 22:09:51 ----A---- C:\Windows\system32\wuapp.exe
2014-04-04 19:26:54 ----D---- C:\ProgramData\IObit
2014-04-04 18:49:07 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2014-04-04 18:49:07 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2014-04-04 18:49:07 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-04-04 18:49:07 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-04-04 18:48:48 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2014-04-04 18:48:48 ----A---- C:\Windows\system32\nvspcap64.dll
2014-04-04 18:47:43 ----D---- C:\Program Files (x86)\AGEIA Technologies
2014-04-04 18:46:57 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2014-04-04 18:43:24 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-04-04 18:39:56 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-04-04 18:37:57 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2014-04-04 18:37:57 ----A---- C:\Windows\system32\nvaudcap64v.dll
2014-04-04 18:37:57 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-04-04 18:37:56 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvwgf2umx.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvopencl.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvoglv64.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvoglshim64.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvinitx.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\NvIFR64.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvhdap64.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\NvFBC64.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvdispgenco6433523.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvdispco6433523.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvcuvid.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvcuvenc.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\nvcuda.dll
2014-04-04 18:37:56 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-04-04 18:37:56 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2014-04-04 18:37:55 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2014-04-04 18:37:55 ----A---- C:\Windows\system32\nvcompiler.dll
2014-04-04 18:37:48 ----D---- C:\Windows\pss
2014-04-04 18:32:44 ----D---- C:\Users\Marek\AppData\Roaming\GRETECH
2014-04-04 18:25:29 ----D---- C:\Users\Marek\AppData\Roaming\NVIDIA
2014-04-04 18:23:01 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-04-04 18:23:01 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-04-04 18:22:57 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-04-04 18:22:52 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-04-04 18:22:48 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-04-04 18:22:42 ----A---- C:\Windows\system32\xinput1_3.dll
2014-04-04 18:21:21 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-04-04 18:21:21 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-04-04 18:21:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2014-04-04 18:21:17 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2014-04-04 18:21:15 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-04-04 18:21:13 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-04-04 17:35:34 ----D---- C:\Users\Marek\AppData\Roaming\uTorrent
2014-04-04 17:30:29 ----D---- C:\Users\Marek\AppData\Roaming\Notepad++
2014-04-04 17:23:46 ----D---- C:\Users\Marek\AppData\Roaming\DAEMON Tools Lite
2014-04-04 17:23:46 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-04-04 17:22:28 ----A---- C:\Windows\SYSWOW64\msvcr71.dll
2014-04-04 17:22:28 ----A---- C:\Windows\SYSWOW64\mfc71.dll
2014-04-04 17:22:28 ----A---- C:\Windows\SYSWOW64\gdiplus.dll
2014-04-04 17:21:44 ----A---- C:\Windows\system32\drivers\sfi.dat
2014-04-04 17:20:50 ----SD---- C:\ProgramData\Shared Space
2014-04-04 17:20:46 ----D---- C:\Program Files\COMODO
2014-04-04 17:20:39 ----D---- C:\ProgramData\Comodo
2014-04-04 17:20:34 ----D---- C:\first_launch
2014-04-04 17:20:32 ----A---- C:\Windows\SYSWOW64\certsentry.dll
2014-04-04 17:20:32 ----A---- C:\Windows\system32\certsentry.dll
2014-04-04 17:20:28 ----D---- C:\Program Files (x86)\Comodo
2014-04-04 17:20:25 ----D---- C:\ProgramData\Comodo Downloader
2014-04-04 17:16:50 ----D---- C:\Program Files (x86)\Google
2014-04-04 17:08:38 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2014-04-04 17:08:37 ----A---- C:\Windows\system32\RTNUninst64.dll
2014-04-04 17:08:37 ----A---- C:\Windows\system32\RtNicProp64.dll
2014-04-04 17:08:32 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-04-04 17:08:32 ----D---- C:\Program Files (x86)\Realtek
2014-04-04 17:05:10 ----A---- C:\Windows\Language_trs.ini
2014-04-04 17:05:06 ----A---- C:\Windows\Ascd_tmp.ini
2014-04-04 16:59:51 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2014-04-04 16:59:11 ----SHD---- C:\Windows\Installer
2014-04-04 16:59:06 ----D---- C:\ProgramData\NVIDIA
2014-04-04 16:58:50 ----A---- C:\Windows\system32\nvvsvc.exe
2014-04-04 16:58:50 ----A---- C:\Windows\system32\nvsvcr.dll
2014-04-04 16:58:50 ----A---- C:\Windows\system32\nvsvc64.dll
2014-04-04 16:58:50 ----A---- C:\Windows\system32\nvshext.dll
2014-04-04 16:58:50 ----A---- C:\Windows\system32\nvmctray.dll
2014-04-04 16:58:50 ----A---- C:\Windows\system32\nvcpl.dll
2014-04-04 16:58:41 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-04-04 16:58:41 ----A---- C:\Windows\system32\OpenCL.dll
2014-04-04 16:58:37 ----D---- C:\ProgramData\NVIDIA Corporation
2014-04-04 16:58:35 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-04-04 16:58:27 ----A---- C:\Windows\system32\nvgenco64.dll
2014-04-04 16:58:27 ----A---- C:\Windows\system32\nvdispco64.dll
2014-04-04 16:58:10 ----A---- C:\Windows\system32\nvumdshimx.dll
2014-04-04 16:58:06 ----A---- C:\Windows\SYSWOW64\nvdecodemft.dll
2014-04-04 16:58:06 ----A---- C:\Windows\system32\nvdecodemft.dll
2014-04-04 16:58:03 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2014-04-04 16:57:49 ----A---- C:\Windows\system32\nvapi64.dll
2014-04-04 16:56:59 ----D---- C:\Program Files\NVIDIA Corporation
2014-04-04 16:55:26 ----D---- C:\Users\Marek\AppData\Roaming\Identities
2014-04-04 16:55:01 ----SD---- C:\Users\Marek\AppData\Roaming\Microsoft
2014-04-04 16:55:01 ----D---- C:\Users\Marek\AppData\Roaming\Media Center Programs
2014-04-04 16:48:00 ----D---- C:\Windows\SoftwareDistribution
2014-04-04 16:45:22 ----D---- C:\Windows\Prefetch
2014-03-31 00:19:35 ----A---- C:\UsbFix [Scan 1] MAREK-PC.txt
2014-03-31 00:19:26 ----RASHD---- C:\Autorun.inf
2014-03-30 23:51:28 ----D---- C:\UsbFix
2014-03-30 20:52:12 ----A---- C:\log.txt
2014-03-30 20:27:46 ----D---- C:\AdwCleaner
2014-03-29 11:39:49 ----A---- C:\ntuser.dat

======List of files/folders modified in the last 1 month======

2014-04-27 07:43:26 ----RD---- C:\Program Files
2014-04-27 07:38:53 ----D---- C:\Windows
2014-04-27 07:38:13 ----D---- C:\Windows\system32\config
2014-04-27 07:29:54 ----D---- C:\Program Files (x86)\Common Files
2014-04-27 07:29:45 ----D---- C:\Windows\SysWOW64
2014-04-27 07:29:33 ----RD---- C:\Program Files (x86)
2014-04-27 07:29:27 ----SHD---- C:\System Volume Information
2014-04-27 07:27:53 ----HD---- C:\ProgramData
2014-04-27 06:46:24 ----D---- C:\Windows\System32
2014-04-27 06:46:24 ----D---- C:\Windows\inf
2014-04-27 06:46:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-04-26 23:40:13 ----D---- C:\Windows\Temp
2014-04-26 19:59:31 ----D---- C:\Windows\system32\Tasks
2014-04-26 19:59:30 ----D---- C:\Windows\Tasks
2014-04-26 19:48:16 ----D---- C:\Windows\Logs
2014-04-26 19:13:06 ----RSD---- C:\Windows\assembly
2014-04-26 19:11:56 ----D---- C:\Windows\winsxs
2014-04-23 16:23:28 ----D---- C:\Windows\system32\catroot2
2014-04-22 13:09:43 ----RD---- C:\Moje Subory
2014-04-22 08:17:18 ----D---- C:\Windows\system32\drivers
2014-04-13 10:20:45 ----D---- C:\Windows\system32\wdi
2014-04-10 22:26:27 ----D---- C:\Windows\debug
2014-04-10 06:47:12 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-04-10 06:47:12 ----D---- C:\Windows\SYSWOW64\en-US
2014-04-10 06:47:12 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-04-10 06:47:12 ----D---- C:\Windows\system32\pl-PL
2014-04-10 06:47:12 ----D---- C:\Windows\system32\en-US
2014-04-10 06:47:12 ----D---- C:\Windows\system32\cs-CZ
2014-04-10 06:47:11 ----D---- C:\Windows\AppPatch
2014-04-10 06:47:10 ----D---- C:\Windows\system32\DriverStore
2014-04-10 04:07:43 ----D---- C:\Windows\system32\catroot
2014-04-06 19:09:10 ----D---- C:\Windows\Microsoft.NET
2014-04-06 01:23:39 ----D---- C:\Program Files\Internet Explorer
2014-04-06 01:23:39 ----D---- C:\Program Files (x86)\Internet Explorer
2014-04-05 10:20:19 ----D---- C:\Program Files\Windows Media Player
2014-04-05 10:20:19 ----D---- C:\Program Files (x86)\Windows Media Player
2014-04-05 10:20:18 ----D---- C:\Windows\ehome
2014-04-05 10:20:18 ----D---- C:\Program Files\Common Files\System
2014-04-05 10:20:15 ----D---- C:\Windows\SYSWOW64\sk-SK
2014-04-05 10:20:14 ----D---- C:\Windows\system32\sk-SK
2014-04-05 10:20:13 ----RSD---- C:\Windows\Fonts
2014-04-05 10:20:13 ----D---- C:\Windows\system32\drivers\pl-PL
2014-04-05 10:20:13 ----D---- C:\Windows\system32\drivers\en-US
2014-04-05 10:20:13 ----D---- C:\Windows\system32\drivers\cs-CZ
2014-04-05 10:20:13 ----D---- C:\Program Files\Windows Defender
2014-04-05 10:20:13 ----D---- C:\Program Files (x86)\Windows Defender
2014-04-05 10:03:34 ----D---- C:\Windows\SYSWOW64\migration
2014-04-05 10:03:33 ----D---- C:\Windows\system32\migration
2014-04-05 10:03:33 ----D---- C:\Windows\PolicyDefinitions
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\it-IT
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\es-ES
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\el-GR
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\de-DE
2014-04-05 10:03:32 ----D---- C:\Windows\SYSWOW64\da-DK
2014-04-05 10:03:32 ----D---- C:\Windows\system32\zh-TW
2014-04-05 10:03:32 ----D---- C:\Windows\system32\zh-HK
2014-04-05 10:03:32 ----D---- C:\Windows\system32\zh-CN
2014-04-05 10:03:32 ----D---- C:\Windows\system32\tr-TR
2014-04-05 10:03:32 ----D---- C:\Windows\system32\sv-SE
2014-04-05 10:03:32 ----D---- C:\Windows\system32\ru-RU
2014-04-05 10:03:32 ----D---- C:\Windows\system32\pt-PT
2014-04-05 10:03:32 ----D---- C:\Windows\system32\pt-BR
2014-04-05 10:03:32 ----D---- C:\Windows\system32\nl-NL
2014-04-05 10:03:32 ----D---- C:\Windows\system32\nb-NO
2014-04-05 10:03:32 ----D---- C:\Windows\system32\ko-KR
2014-04-05 10:03:32 ----D---- C:\Windows\system32\ja-JP
2014-04-05 10:03:32 ----D---- C:\Windows\system32\it-IT
2014-04-05 10:03:32 ----D---- C:\Windows\system32\hu-HU
2014-04-05 10:03:32 ----D---- C:\Windows\system32\fr-FR
2014-04-05 10:03:32 ----D---- C:\Windows\system32\fi-FI
2014-04-05 10:03:32 ----D---- C:\Windows\system32\es-ES
2014-04-05 10:03:32 ----D---- C:\Windows\system32\el-GR
2014-04-05 10:03:32 ----D---- C:\Windows\system32\de-DE
2014-04-05 10:03:32 ----D---- C:\Windows\system32\da-DK
2014-04-05 08:40:51 ----SD---- C:\ProgramData\Microsoft
2014-04-05 02:44:07 ----RASH---- C:\BOOTSECT.BAK
2014-04-05 02:44:05 ----SHD---- C:\Boot
2014-04-04 23:43:05 ----D---- C:\Windows\system32\wbem
2014-04-04 23:42:53 ----D---- C:\Windows\system32\Boot
2014-04-04 23:42:52 ----D---- C:\Program Files\Windows Journal
2014-04-04 18:47:25 ----D---- C:\Temp
2014-04-04 17:10:33 ----D---- C:\Windows\system32\CodeIntegrity
2014-04-04 17:08:21 ----D---- C:\Windows\system32\restore
2014-04-04 17:05:06 ----D---- C:\Windows\SYSWOW64\drivers
2014-04-04 16:59:05 ----RD---- C:\Users
2014-04-04 16:58:48 ----D---- C:\Windows\Help
2014-04-04 16:55:24 ----SHD---- C:\$Recycle.Bin
2014-04-04 16:54:55 ----D---- C:\Recovery
2014-04-04 16:54:54 ----D---- C:\Windows\rescache
2014-04-04 16:49:09 ----D---- C:\Windows\system32\sysprep
2014-04-04 16:47:40 ----D---- C:\Windows\system32\drivers\UMDF
2014-03-30 20:23:46 ----D---- C:\Qoobox
2014-03-28 22:09:07 ----D---- C:\Games

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2014-04-16 23168]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\system32\DRIVERS\cmdguard.sys [2014-04-16 738472]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2014-04-16 48360]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-04-04 283064]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2014-04-16 105552]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R2 LiveTuner2PM;Ashampoo LiveTuner 2 Driver; \??\C:\Moje Subory\Programy\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner64.sys [2014-03-20 14320]
R3 dtscsibus;DAEMON Tools Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtscsibus.sys [2014-04-22 29696]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-19 56344]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-11-28 197408]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2013-12-27 39200]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-02-03 677480]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-04-18 119512]
S3 MSICDSetup;MSICDSetup; \??\D:\CDriver64.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 Revoflt;Revoflt; C:\Windows\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S4 IObitUnlocker;IObitUnlocker; \??\C:\Moje Subory\Programy\iobit\IObit Unlocker\IObitUnlocker.sys [2014-03-04 36944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2013-10-11 144152]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2014-04-16 6817544]
R3 Disc Soft Bus Service;Disc Soft Bus Service; C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe [2014-02-12 753880]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 Windows Download Module;Windows Download Module; C:\Windows\SysWOW64\winmodule.exe [2014-04-17 780075]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2014-03-25 2264280]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-04 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 111616]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-02-25 568512]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-04-05 1255736]
S3 WO_LiveService2;Ashampoo LiveTuner 2 Service; C:\Moje Subory\Programy\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe [2014-04-11 223624]
S4 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-01-28 2135232]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-04 116648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-02-05 1593632]
S4 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-02-05 16941856]
S4 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-03-04 922968]
S4 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-03-04 411936]

-----------------EOF-----------------

ringov
Návštěvník
Návštěvník
Příspěvky: 313
Registrován: 04 dub 2011 14:21
Bydliště: Cejkov

Re: prosim o kontrolu,nefunguje nudzovy režim,

#2 Příspěvek od ringov »

mbam antirootkit niečo našiel/////////////////////Malwarebytes Anti-Rootkit BETA 1.07.0.1008
www.malwarebytes.org

Database version: v2014.04.27.01

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16659
Marek :: MAREK-PC [administrator]

27. 4. 2014 7:52:39
mbar-log-2014-04-27 (07-52-39).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 264928
Time elapsed: 12 minute(s), 2 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 1
C:\Windows\SysWOW64\WINUPDATER.EXE (Backdoor.Rbot) -> Delete on reboot.

Physical Sectors Detected: 0
(No malicious items detected)

(end)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu,nefunguje nudzovy režim,

#3 Příspěvek od motji »

Dobrý večer :)
V mbamu nechejte smazat.

:arrow: Otestujte na www.virustotal.com
C:\Windows\system32\DfSdkBt.exe


:arrow: stáhněte
http://www.slunecnice.cz/sw/crystaldiskinfo/
- spusťte ho a v nabídce zvolte Kopírovat.
-Data ze schránky sem pak vložte pomocí Ctrl+V
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

ringov
Návštěvník
Návštěvník
Příspěvky: 313
Registrován: 04 dub 2011 14:21
Bydliště: Cejkov

Re: prosim o kontrolu,nefunguje nudzovy režim,

#4 Příspěvek od ringov »

na virustotal nenašlo nič ----------------------------------------------------------------------------
CrystalDiskInfo 6.1.9 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Home Premium SP1 [6.1 Build 7601] (x64)
Date : 2014/04/27 23:13:44

-- Controller Map ----------------------------------------------------------
+ Standard AHCI 1.0 Serial ATA Controller [ATA]
+ ATA Channel 0 (0)
- WDC WD10EZEX-00KUWA0 ATA Device
+ ATA Channel 1 (1)
- TSSTcorp CDDVDW SH-224BB ATA Device
- DAEMON Tools Virtual SCSI Bus [SCSI]

-- Disk List ---------------------------------------------------------------
(1) WDC WD10EZEX-00KUWA0 : 1000,2 GB [0/0/0, pd1] - wd

----------------------------------------------------------------------------
(1) WDC WD10EZEX-00KUWA0
----------------------------------------------------------------------------
Model : WDC WD10EZEX-00KUWA0
Firmware : 15.01H15
Serial Number : WD-WCC1S0675122
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : Unknown
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : Unknown
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300 | SATA/600
Power On Hours : 6244 hours
Power On Count : 1195 count
Temperature : 36 C (96 F)
Health Status : Good
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Read Error Rate
03 174 173 _21 0000000008DA Spin-Up Time
04 _99 _99 __0 0000000004BD Start/Stop Count
05 200 200 140 000000000000 Reallocated Sectors Count
07 200 200 __0 000000000000 Seek Error Rate
09 _92 _92 __0 000000001864 Power-On Hours
0A 100 100 __0 000000000000 Spin Retry Count
0B 100 100 __0 000000000000 Recalibration Retries
0C _99 _99 __0 0000000004AB Power Cycle Count
C0 200 200 __0 000000000041 Power-off Retract Count
C1 200 200 __0 00000000047B Load/Unload Cycle Count
C2 107 100 __0 000000000024 Temperature
C4 200 200 __0 000000000000 Reallocation Event Count
C5 200 200 __0 000000000000 Current Pending Sector Count
C6 200 200 __0 000000000000 Uncorrectable Sector Count
C7 200 200 __0 000000000000 UltraDMA CRC Error Count
C8 200 200 __0 000000000000 Write Error Rate

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2057 442D 5743 4331 5330 3637 3531 3232
020: 0000 0000 0000 3135 2E30 3148 3135 5744 4320 5744
030: 3130 455A 4558 2D30 304B 5557 4130 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 970E 0004 0044 0040
080: 01FE 0000 746B 7D61 4123 7469 BC41 4123 207F 0037
090: 0037 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 5001 4EE2
110: 077D 9067 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 30B5 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 BEA5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 C8 C8 00 00 00 00 00 00 00 03 27
010: 00 AE AD DA 08 00 00 00 00 00 04 32 00 63 63 BD
020: 04 00 00 00 00 00 05 33 00 C8 C8 00 00 00 00 00
030: 00 00 07 2E 00 C8 C8 00 00 00 00 00 00 00 09 32
040: 00 5C 5C 64 18 00 00 00 00 00 0A 32 00 64 64 00
050: 00 00 00 00 00 00 0B 32 00 64 64 00 00 00 00 00
060: 00 00 0C 32 00 63 63 AB 04 00 00 00 00 00 C0 32
070: 00 C8 C8 41 00 00 00 00 00 00 C1 32 00 C8 C8 7B
080: 04 00 00 00 00 00 C2 22 00 6B 64 24 00 00 00 00
090: 00 00 C4 32 00 C8 C8 00 00 00 00 00 00 00 C5 32
0A0: 00 C8 C8 00 00 00 00 00 00 00 C6 30 00 C8 C8 00
0B0: 00 00 00 00 00 00 C7 32 00 C8 C8 00 00 00 00 00
0C0: 00 00 C8 08 00 C8 C8 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 84 00 6C 2A 01 7B
170: 03 00 01 00 02 77 05 00 00 00 00 00 00 00 00 00
180: 00 00 01 02 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 C8 C8 00 00 00 00 00 00 00 00 03 15
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00
030: 00 00 07 00 C8 C8 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00
050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00
060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 C0 00
070: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C4 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 C8 C8 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0D

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu,nefunguje nudzovy režim,

#5 Příspěvek od motji »

:arrow: Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

ringov
Návštěvník
Návštěvník
Příspěvky: 313
Registrován: 04 dub 2011 14:21
Bydliště: Cejkov

Re: prosim o kontrolu,nefunguje nudzovy režim,

#6 Příspěvek od ringov »

prepačte že tak neskoro bol som v praci,ten crystal disk je v poriadku?-----------ComboFix 14-04-26.01 - Marek . 04. 2014 15:57:44.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.421.1051.18.8149.6781 [GMT 2:00]
Running from: c:\users\Marek\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
FW: COMODO Firewall *Enabled* {8F7746F7-FE68-E084-3B6C-7404A51E8FB3}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: COMODO Antivirus *Disabled/Outdated* {0C2D2636-923D-EE52-2A83-E643204A8275}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Files Created from 2014-03-28 to 2014-04-28 )))))))))))))))))))))))))))))))
.
.
2014-04-28 14:04 . 2014-04-28 14:04 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-04-27 21:13 . 2014-04-27 21:13 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2014-04-27 11:57 . 2014-04-17 03:31 10651704 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{635867B1-26DB-4826-B6D4-87C1C626A96F}\mpengine.dll
2014-04-27 10:02 . 2014-04-27 10:02 85328 ----a-w- c:\windows\system32\drivers\aswStm.sys
2014-04-27 10:02 . 2014-04-27 10:02 208416 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-04-27 10:02 . 2014-04-27 10:02 1039096 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2014-04-27 10:02 . 2014-04-27 10:02 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-04-27 10:02 . 2014-04-27 10:02 423240 ----a-w- c:\windows\system32\drivers\aswSP.sys
2014-04-27 10:02 . 2014-04-27 10:02 79184 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-04-27 10:02 . 2014-04-27 10:02 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-04-27 10:02 . 2014-04-27 10:02 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-04-27 10:02 . 2014-04-27 10:02 334648 ----a-w- c:\windows\system32\aswBoot.exe
2014-04-27 10:02 . 2014-04-27 10:02 43152 ----a-w- c:\windows\avastSS.scr
2014-04-27 10:02 . 2014-04-27 10:02 -------- d-----w- c:\program files\AVAST Software
2014-04-27 10:01 . 2014-04-27 10:01 -------- d-----w- c:\programdata\AVAST Software
2014-04-27 06:13 . 2010-08-30 06:34 536576 ----a-w- c:\windows\SysWow64\sqlite3.dll
2014-04-27 05:43 . 2014-04-27 05:43 -------- d-----w- C:\rsit
2014-04-27 05:43 . 2014-04-27 05:43 -------- d-----w- c:\program files\trend micro
2014-04-27 05:29 . 2014-04-27 05:29 -------- d-----w- c:\program files (x86)\Common Files\Java
2014-04-27 05:29 . 2014-04-27 05:29 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-04-27 05:29 . 2014-04-27 05:29 -------- d-----w- c:\program files (x86)\Java
2014-04-27 05:27 . 2014-04-27 05:30 -------- d-----w- c:\programdata\Oracle
2014-04-26 17:58 . 2014-04-26 17:58 -------- d-----w- c:\programdata\Ashampoo
2014-04-26 17:58 . 2009-08-24 20:13 34304 ----a-w- c:\windows\system32\DfSdkBt.exe
2014-04-26 17:13 . 2014-04-26 17:13 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll
2014-04-26 17:11 . 2014-04-26 17:11 -------- d-----w- c:\windows\SysWow64\xlive
2014-04-26 17:11 . 2014-04-26 17:11 -------- d-----w- c:\program files (x86)\Microsoft Games for Windows - LIVE
2014-04-22 06:16 . 2014-04-22 06:17 29696 ----a-w- c:\windows\system32\drivers\dtscsibus.sys
2014-04-22 06:16 . 2014-04-22 06:17 -------- d-----w- c:\programdata\DAEMON Tools Ultra
2014-04-22 06:16 . 2014-04-22 06:16 -------- d-----w- c:\program files (x86)\DAEMON Tools Ultra
2014-04-22 06:11 . 2014-04-22 06:13 -------- d-----w- c:\program files (x86)\Common Files\Nero
2014-04-22 06:09 . 2014-04-22 06:09 -------- d-----w- c:\program files (x86)\MSXML 4.0
2014-04-22 06:08 . 2014-04-22 06:08 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-04-22 06:08 . 2014-04-22 06:08 -------- d-----w- c:\windows\SysWow64\Macromed
2014-04-22 04:36 . 2014-04-22 04:36 -------- d-----w- c:\program files (x86)\VITSOFT
2014-04-19 06:56 . 2014-04-19 06:56 -------- d-----w- C:\SUPERDelete
2014-04-19 04:04 . 2014-04-19 04:21 -------- d-----w- c:\program files (x86)\Common Files\Steam
2014-04-19 04:04 . 2014-04-19 20:32 -------- d-----w- c:\program files (x86)\Steam
2014-04-19 03:55 . 2014-04-19 03:55 -------- d-----w- c:\programdata\Steam
2014-04-18 08:49 . 2014-04-18 08:49 -------- d-----w- c:\programdata\Origin
2014-04-18 08:42 . 2014-04-18 08:42 -------- d-----w- c:\program files\SUPERAntiSpyware
2014-04-18 08:42 . 2014-04-18 08:42 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2014-04-17 18:36 . 2014-04-17 19:11 780075 ----a-w- c:\windows\SysWow64\winmodule.exe
2014-04-16 19:46 . 2014-04-22 07:53 -------- d-----w- c:\programdata\Orbit
2014-04-16 19:41 . 2014-04-16 19:42 -------- d-----w- c:\programdata\Package Cache
2014-04-15 17:51 . 2014-04-15 17:51 -------- d-----w- c:\programdata\SketchUp
2014-04-15 17:51 . 2014-04-15 17:51 -------- d-----w- c:\program files (x86)\SketchUp
2014-04-15 05:11 . 2014-04-15 05:11 -------- d-----w- c:\program files (x86)\Cheat Engine 6.2
2014-04-12 07:05 . 2014-04-12 07:08 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2014-04-12 07:05 . 2014-04-03 07:51 63192 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-04-12 07:05 . 2014-04-03 07:50 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-04-12 06:50 . 2014-04-12 07:05 -------- d-----w- c:\programdata\Malwarebytes
2014-04-12 06:50 . 2014-04-28 13:54 119512 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-04-12 06:44 . 2014-04-27 05:50 89304 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-04-09 20:03 . 2014-04-09 20:03 -------- d-----w- c:\programdata\Electronic Arts
2014-04-05 23:04 . 2013-12-21 09:53 548864 ----a-w- c:\windows\system32\vbscript.dll
2014-04-05 23:04 . 2013-12-21 08:56 454656 ----a-w- c:\windows\SysWow64\vbscript.dll
2014-04-05 16:32 . 2011-03-11 06:41 27008 ----a-w- c:\windows\system32\drivers\amdxata.sys
2014-04-05 08:19 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL
2014-04-05 08:19 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2014-04-05 08:19 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe
2014-04-05 08:19 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL
2014-04-05 08:19 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll
2014-04-05 08:13 . 2012-07-26 07:40 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\wdf01000.sys.mui
2014-04-05 08:13 . 2012-07-26 05:05 2560 ----a-w- c:\windows\system32\drivers\pl-PL\wdf01000.sys.mui
2014-04-05 08:13 . 2012-07-26 04:47 2560 ----a-w- c:\windows\system32\drivers\en-US\wdf01000.sys.mui
2014-04-05 06:48 . 2014-04-05 06:48 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller
2014-04-05 06:45 . 2009-09-04 15:29 453456 ----a-w- c:\windows\SysWow64\d3dx10_42.dll
2014-04-05 06:44 . 2005-12-05 16:09 3815120 ----a-w- c:\windows\system32\d3dx9_28.dll
2014-04-05 06:44 . 2005-07-22 17:59 3807440 ----a-w- c:\windows\system32\d3dx9_27.dll
2014-04-05 06:44 . 2005-05-26 13:34 3767504 ----a-w- c:\windows\system32\d3dx9_26.dll
2014-04-05 06:44 . 2005-05-26 13:34 2297552 ----a-w- c:\windows\SysWow64\d3dx9_26.dll
2014-04-05 06:44 . 2005-03-18 15:19 3823312 ----a-w- c:\windows\system32\d3dx9_25.dll
2014-04-05 06:44 . 2005-02-05 17:45 3544272 ----a-w- c:\windows\system32\d3dx9_24.dll
2014-04-05 06:40 . 2014-04-05 06:40 -------- d-----w- c:\windows\Migration
2014-04-05 06:35 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2014-04-05 06:26 . 2014-04-05 06:26 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-05 06:22 . 2014-04-05 06:22 -------- d-----w- c:\windows\SysWow64\Wat
2014-04-05 06:22 . 2014-04-05 06:22 -------- d-----w- c:\windows\system32\Wat
2014-04-05 06:22 . 2014-04-05 06:22 -------- d-----w- c:\programdata\VS Revo Group
2014-04-05 06:22 . 2009-12-30 08:21 31800 ----a-w- c:\windows\system32\drivers\revoflt.sys
2014-04-05 00:43 . 2014-04-26 18:02 -------- d-----w- c:\windows\panther
2014-04-05 00:43 . 2014-04-05 00:43 -------- d-----w- c:\windows\system32\OEM
2014-04-04 21:33 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2014-04-04 21:09 . 2014-04-10 04:42 -------- d-----w- c:\windows\system32\MRT
2014-04-04 21:05 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2014-04-04 21:05 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2014-04-04 21:05 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2014-04-04 21:05 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2014-04-04 21:05 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2014-04-04 21:05 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2014-04-04 21:05 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2014-04-04 20:51 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2014-04-04 20:51 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2014-04-04 20:51 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2014-04-04 20:44 . 2013-02-15 06:06 3717632 ----a-w- c:\windows\system32\mstscax.dll
2014-04-04 20:44 . 2013-02-15 06:08 44032 ----a-w- c:\windows\system32\tsgqec.dll
2014-04-04 20:44 . 2013-02-15 06:02 158720 ----a-w- c:\windows\system32\aaclient.dll
2014-04-04 20:44 . 2013-02-15 04:37 3217408 ----a-w- c:\windows\SysWow64\mstscax.dll
2014-04-04 20:44 . 2013-02-15 04:34 131584 ----a-w- c:\windows\SysWow64\aaclient.dll
2014-04-04 20:44 . 2013-02-15 03:25 36864 ----a-w- c:\windows\SysWow64\tsgqec.dll
2014-04-04 20:44 . 2011-03-11 06:34 1359872 ----a-w- c:\windows\system32\mfc42u.dll
2014-04-04 20:44 . 2011-03-11 06:34 1395712 ----a-w- c:\windows\system32\mfc42.dll
2014-04-04 20:44 . 2011-03-11 05:33 1164288 ----a-w- c:\windows\SysWow64\mfc42u.dll
2014-04-04 20:44 . 2011-03-11 05:33 1137664 ----a-w- c:\windows\SysWow64\mfc42.dll
2014-04-04 20:42 . 2013-11-26 11:40 376768 ----a-w- c:\windows\system32\drivers\netio.sys
2014-04-04 20:41 . 2013-10-12 01:15 126976 ----a-w- c:\windows\SysWow64\cscript.exe
2014-04-04 20:40 . 2013-08-05 02:25 155584 ----a-w- c:\windows\system32\drivers\ataport.sys
2014-04-04 20:24 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2014-04-04 20:23 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2014-04-04 20:23 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll
2014-04-04 20:14 . 2012-02-17 06:38 1031680 ----a-w- c:\windows\system32\rdpcore.dll
2014-04-04 20:14 . 2012-02-17 05:34 826880 ----a-w- c:\windows\SysWow64\rdpcore.dll
2014-04-04 20:14 . 2012-02-17 04:57 23552 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2014-04-04 20:10 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2014-04-04 20:10 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe
2014-04-04 20:10 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll
2014-04-04 20:10 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll
2014-04-04 20:10 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll
2014-04-04 20:10 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll
2014-04-04 20:10 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll
2014-04-04 20:09 . 2012-06-02 13:19 186752 ----a-w- c:\windows\system32\wuwebv.dll
2014-04-04 20:09 . 2012-06-02 13:15 36864 ----a-w- c:\windows\system32\wuapp.exe
2014-04-04 17:26 . 2014-04-04 17:26 -------- d-----w- c:\programdata\IObit
2014-04-04 16:49 . 2010-05-26 09:41 511328 ----a-w- c:\windows\system32\d3dx10_43.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-04-16 21:12 . 2013-09-24 08:54 105552 ----a-w- c:\windows\system32\drivers\inspect.sys
2014-04-16 21:12 . 2013-09-24 08:54 48360 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2014-04-16 21:12 . 2013-11-14 09:38 738472 ----a-w- c:\windows\system32\drivers\cmdguard.sys
2014-04-16 21:12 . 2013-09-24 08:54 23168 ----a-w- c:\windows\system32\drivers\cmderd.sys
2014-04-05 06:27 . 2014-04-05 06:27 208384 ----a-w- c:\windows\SysWow64\webcheck.dll
2014-04-05 06:27 . 2014-04-05 06:27 243200 ----a-w- c:\windows\system32\webcheck.dll
2014-04-04 15:23 . 2013-12-19 16:06 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2014-03-31 07:35 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-25 19:22 . 2013-11-14 09:38 43216 ----a-w- c:\windows\system32\cmdcsr.dll
2014-03-25 19:22 . 2013-09-24 08:53 363504 ----a-w- c:\windows\SysWow64\guard32.dll
2014-03-25 19:22 . 2013-09-24 08:53 453680 ----a-w- c:\windows\system32\guard64.dll
2014-03-25 19:22 . 2013-09-24 08:53 352984 ----a-w- c:\windows\system32\cmdvrt64.dll
2014-03-25 19:22 . 2013-09-24 08:53 45784 ----a-w- c:\windows\system32\cmdkbd64.dll
2014-03-25 19:22 . 2013-09-24 08:53 284888 ----a-w- c:\windows\SysWow64\cmdvrt32.dll
2014-03-25 19:22 . 2013-09-24 08:53 40664 ----a-w- c:\windows\SysWow64\cmdkbd32.dll
2014-03-04 09:17 . 2014-04-10 02:07 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2014-02-19 06:28 . 2014-02-19 06:28 644400 ----a-w- c:\windows\SysWow64\mscomct2.ocx
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Marek\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Marek\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Marek\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Ultra Agent"="c:\program files (x86)\DAEMON Tools Ultra\DTAgent.exe" [2014-02-12 3195096]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-04-27 3873704]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 Windows Download Module;Windows Download Module;c:\windows\SysWOW64\winmodule.exe;c:\windows\SysWOW64\winmodule.exe [x]
R3 cmdvirth;COMODO Virtual Service Manager;c:\program files\COMODO\COMODO Internet Security\cmdvirth.exe;c:\program files\COMODO\COMODO Internet Security\cmdvirth.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MSICDSetup;MSICDSetup;d:\cdriver64.sys;d:\CDriver64.sys [x]
R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys;c:\windows\SYSNATIVE\DRIVERS\revoflt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 DragonUpdater;COMODO Dragon Update Service;c:\program files (x86)\Comodo\Dragon\dragon_updater.exe;c:\program files (x86)\Comodo\Dragon\dragon_updater.exe [x]
R4 IObitUnlocker;IObitUnlocker;c:\moje subory\Programy\iobit\IObit Unlocker\IObitUnlocker.sys;c:\moje subory\Programy\iobit\IObit Unlocker\IObitUnlocker.sys [x]
R4 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
R4 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
R4 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 cmderd;COMODO Internet Security Eradication Driver;c:\windows\system32\DRIVERS\cmderd.sys;c:\windows\SYSNATIVE\DRIVERS\cmderd.sys [x]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys;c:\windows\SYSNATIVE\DRIVERS\cmdguard.sys [x]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys;c:\windows\SYSNATIVE\DRIVERS\cmdhlp.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 LiveTuner2PM;Ashampoo LiveTuner 2 Driver;c:\moje subory\Programy\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner64.sys;c:\moje subory\Programy\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner64.sys [x]
S2 WO_LiveService2;Ashampoo LiveTuner 2 Service;c:\moje subory\Programy\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe;c:\moje subory\Programy\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe [x]
S3 Disc Soft Bus Service;Disc Soft Bus Service;c:\program files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe;c:\program files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe [x]
S3 dtscsibus;DAEMON Tools Virtual SCSI Bus;c:\windows\system32\DRIVERS\dtscsibus.sys;c:\windows\SYSNATIVE\DRIVERS\dtscsibus.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - MBAMWEBACCESSCONTROL
*Deregistered* - MBAMWebAccessControl
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-04-04 15:17 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.154\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2014-04-04 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-04-04 15:16]
.
2014-04-04 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-04-04 15:16]
.
2014-04-27 c:\windows\Tasks\One-Click Optimizer WO11.job
- c:\moje subory\Programy\Ashampoo\Ashampoo WinOptimizer 11\WO11.exe [2014-04-26 06:10]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-04-27 10:02 290888 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Marek\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Marek\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Marek\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Marek\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cistray.exe" [2014-03-25 1275608]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
TCP: DhcpNameServer = 188.120.1.2 188.120.0.122
.
- - - - ORPHANS REMOVED - - - -
.
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-2468926179-2108990477-635923805-1000\Software\SecuROM\License information*]
"datasecu"=hex:6d,f8,96,a8,47,07,68,2e,38,f3,bf,17,4e,1f,68,df,c6,ba,c0,e5,1c,
d6,a8,12,c0,bd,d4,1b,97,ea,de,d3,73,29,58,d0,b5,39,6b,8a,6b,c6,5d,12,e6,66,\
"rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11c_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11c_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\COMODO\CIS\Installer\Sym_Cam\CIS]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\cmdAgent\Mode\Configurations]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,59,00,53,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\cmdAgent\Mode\Data]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\cmdAgent\Mode\Options]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\Software\COMODO\Cam]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\Software\COMODO\Firewall Pro]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,59,00,53,00,\
.
Completion time: 2014-04-28 16:07:36
ComboFix-quarantined-files.txt 2014-04-28 14:07
.
Pre-Run: 599 620 665 344 bytes free
Post-Run: 599 215 939 584 bytes free
.
- - End Of File - - 880E6365BEBAE3F8DC41E165B4A437CC
A36C5E4F47E84449FF07ED3517B43A31

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu,nefunguje nudzovy režim,

#7 Příspěvek od motji »

Ano, disk je uplně v pořádku. Ani v combofixu nic nevidím, po jeho použití se něco změnilo?
Odkdy se vyskytl tento problém? Vidím že máte Aschampoo optimalizer, nebylo to třeba po jeho použití?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

ringov
Návštěvník
Návštěvník
Příspěvky: 313
Registrován: 04 dub 2011 14:21
Bydliště: Cejkov

Re: prosim o kontrolu,nefunguje nudzovy režim,

#8 Příspěvek od ringov »

Ashampoo som odinstaloval a stale sa neda otvorit nvidia

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu,nefunguje nudzovy režim,

#9 Příspěvek od motji »

Počkejte, já chci vědět, odkdy to dělá? Jestli to nebylo po použití toho programu, že by třeba poškodil nějaké registry.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

ringov
Návštěvník
Návštěvník
Příspěvky: 313
Registrován: 04 dub 2011 14:21
Bydliště: Cejkov

Re: prosim o kontrolu,nefunguje nudzovy režim,

#10 Příspěvek od ringov »

nie to robilo ešte pred tym,stale sa neda ist do nudzoveho režimu.Nvidiu som preinstaloval už funguje,len ten nudzovy režim :?:

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu,nefunguje nudzovy režim,

#11 Příspěvek od motji »

Zkuste jedině opravu systému :?:
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

ringov
Návštěvník
Návštěvník
Příspěvky: 313
Registrován: 04 dub 2011 14:21
Bydliště: Cejkov

Re: prosim o kontrolu,nefunguje nudzovy režim,

#12 Příspěvek od ringov »

Date my navod? :)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu,nefunguje nudzovy režim,

#13 Příspěvek od motji »

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět