Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Neustálé hlášení Avast!u

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Neustálé hlášení Avast!u

#16 Příspěvek od motji »

Kde na ty viry chodíte? :D
Zkuste najít tento soubor, klikněte na něj pravým myšítkem a zvolte otevřít v notepadu. Text sem pak vložte.
c:\progra~3\ocbiwa.bat
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Petan999
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 27 kvě 2014 14:59

Re: Neustálé hlášení Avast!u

#17 Příspěvek od Petan999 »

Takový soubor v pc nemam :/

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Neustálé hlášení Avast!u

#18 Příspěvek od motji »

Ani tu složku? ten soubor může být skrytý. Ale pokud jí opravdu nenajdete (zajímá mě co v ní je napsáno), pokračujeme s mazáním:

:arrow: Pokud nemáte, přesuňte Combofix na plochu
-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka

Kód: Vybrat vše

Folder::
c:\users\Krkinho\AppData\Roaming\wfirewall

File::
c:\progra~3\ocbiwa.bat

Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"Shell"="Explorer.exe"


-uložte Vámi vytvořený TXT soubor jako CFScript.txt na plochu
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

Obrázek


-po aplikaci na Vás vypadne další log,vložte ho sem

Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Neustálé hlášení Avast!u

#19 Příspěvek od motji »

Jak to vypadá?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Petan999
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 27 kvě 2014 14:59

Re: Neustálé hlášení Avast!u

#20 Příspěvek od Petan999 »

Strašně se omlouvám neměl sem teď moc času být na pc tak to udělám dnes večer nebo až zitra..

Petan999
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 27 kvě 2014 14:59

Re: Neustálé hlášení Avast!u

#21 Příspěvek od Petan999 »

ComboFix 14-05-29.01 - Krkinho 01.06.2014 19:57:43.2.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4030.2259 [GMT 2:00]
Spuštěný z: c:\users\Krkinho\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Krkinho\Desktop\CFScript.txt.txt
AV: Microsoft Security Essentials *Enabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Enabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\progra~3\ocbiwa.bat"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Krkinho\AppData\Roaming\wfirewall
c:\users\Krkinho\AppData\Roaming\wfirewall\ind.dat
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-01 do 2014-06-01 )))))))))))))))))))))))))))))))
.
.
2014-06-01 18:10 . 2014-06-01 18:10 -------- d-----w- c:\users\Guest\AppData\Local\temp
2014-06-01 18:10 . 2014-06-01 18:10 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-06-01 18:10 . 2014-06-01 18:10 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2014-05-31 10:57 . 2014-05-31 10:57 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{10F802E6-2865-4A54-9B29-8DCD02D97649}\offreg.dll
2014-05-31 10:56 . 2014-04-30 23:20 10702536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{10F802E6-2865-4A54-9B29-8DCD02D97649}\mpengine.dll
2014-05-29 17:17 . 2014-05-29 17:17 -------- d-----w- C:\rsit
2014-05-29 17:17 . 2014-05-29 17:17 -------- d-----w- c:\program files\trend micro
2014-05-27 17:34 . 2014-05-27 17:36 -------- d-----w- C:\AdwCleaner
2014-05-27 17:23 . 2014-05-27 17:23 -------- d-----w- c:\windows\ERUNT
2014-05-21 16:03 . 2014-05-21 16:03 -------- d-----w- c:\program files (x86)\Common Files\Skype
2014-05-19 11:28 . 2014-05-19 11:28 -------- d-----w- c:\windows\system32\SPReview
2014-05-19 11:19 . 2014-05-19 11:19 -------- d-----w- c:\windows\system32\EventProviders
2014-05-19 05:24 . 2010-11-20 13:27 444416 ----a-w- c:\windows\system32\winhttp.dll
2014-05-19 05:23 . 2010-11-20 13:27 475136 ----a-w- c:\windows\system32\wlangpui.dll
2014-05-19 05:22 . 2010-11-20 13:27 71680 ----a-w- c:\windows\system32\wkscli.dll
2014-05-19 05:21 . 2010-11-20 13:33 6656 ----a-w- c:\windows\system32\drivers\cs-CZ\rdvgkmd.sys.mui
2014-05-19 05:21 . 2010-11-20 13:25 4096 ----a-w- c:\windows\system32\drivers\cs-CZ\tsusbhub.sys.mui
2014-05-19 05:21 . 2010-11-20 13:32 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\rdpwd.sys.mui
2014-05-19 05:21 . 2010-11-20 13:26 3584 ----a-w- c:\windows\system32\drivers\cs-CZ\tsusbflt.sys.mui
2014-05-19 05:21 . 2010-11-20 13:32 4608 ----a-w- c:\windows\system32\drivers\cs-CZ\kbdclass.sys.mui
2014-05-19 05:21 . 2010-11-20 13:31 3072 ----a-w- c:\windows\system32\drivers\cs-CZ\GAGP30KX.SYS.mui
2014-05-19 05:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\wdscore.dll
2014-05-19 05:21 . 2010-11-20 13:26 399872 ----a-w- c:\windows\system32\dpx.dll
2014-05-19 05:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\sqmapi.dll
2014-05-19 05:20 . 2010-11-20 12:21 363008 ----a-w- c:\windows\SysWow64\wbemcomn.dll
2014-05-19 05:20 . 2010-11-20 12:21 189952 ----a-w- c:\program files (x86)\Windows Portable Devices\sqmapi.dll
2014-05-19 05:20 . 2010-11-20 12:19 606208 ----a-w- c:\windows\SysWow64\wbem\fastprox.dll
2014-05-19 05:17 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2014-05-19 05:17 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2014-05-19 05:17 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2014-05-19 04:39 . 2012-07-26 07:40 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\wdf01000.sys.mui
2014-05-19 04:39 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2014-05-19 04:39 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2014-05-19 04:39 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
2014-05-19 04:24 . 2013-02-22 06:29 10925568 ----a-w- c:\windows\system32\ieframe.dll
2014-05-19 04:23 . 2012-12-16 17:11 46080 ----a-w- c:\windows\system32\atmlib.dll
2014-05-19 04:23 . 2012-12-16 14:45 367616 ----a-w- c:\windows\system32\atmfd.dll
2014-05-19 04:23 . 2012-12-16 14:13 295424 ----a-w- c:\windows\SysWow64\atmfd.dll
2014-05-19 04:23 . 2012-12-16 14:13 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2014-05-19 04:23 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2014-05-19 04:23 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2014-05-19 04:23 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2014-05-19 04:23 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2014-05-19 04:23 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2014-05-19 04:23 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2014-05-19 04:23 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2014-05-19 04:16 . 2014-05-19 04:16 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2014-05-16 13:15 . 2012-08-02 17:58 574464 ----a-w- c:\windows\system32\d3d10level9.dll
2014-05-16 13:15 . 2012-08-02 16:57 490496 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2014-05-16 13:15 . 2012-11-22 05:44 800768 ----a-w- c:\windows\system32\usp10.dll
2014-05-16 13:15 . 2012-11-22 04:45 626688 ----a-w- c:\windows\SysWow64\usp10.dll
2014-05-16 13:13 . 2012-11-30 05:41 424448 ----a-w- c:\windows\system32\KernelBase.dll
2014-05-16 13:10 . 2013-01-24 06:01 223752 ----a-w- c:\windows\system32\drivers\fvevol.sys
2014-05-15 18:58 . 2012-11-09 05:45 750592 ----a-w- c:\windows\system32\win32spl.dll
2014-05-15 18:58 . 2012-11-09 04:43 492032 ----a-w- c:\windows\SysWow64\win32spl.dll
2014-05-15 18:58 . 2013-02-15 06:06 3717632 ----a-w- c:\windows\system32\mstscax.dll
2014-05-15 18:58 . 2013-02-15 04:37 3217408 ----a-w- c:\windows\SysWow64\mstscax.dll
2014-05-15 18:58 . 2013-02-15 06:02 158720 ----a-w- c:\windows\system32\aaclient.dll
2014-05-15 18:58 . 2013-02-15 06:08 44032 ----a-w- c:\windows\system32\tsgqec.dll
2014-05-15 18:58 . 2013-02-15 04:34 131584 ----a-w- c:\windows\SysWow64\aaclient.dll
2014-05-15 18:58 . 2013-02-15 03:25 36864 ----a-w- c:\windows\SysWow64\tsgqec.dll
2014-05-15 18:58 . 2012-11-09 05:45 2048 ----a-w- c:\windows\system32\tzres.dll
2014-05-15 18:58 . 2012-11-09 04:42 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2014-05-15 18:57 . 2013-03-01 03:36 3153408 ----a-w- c:\windows\system32\win32k.sys
2014-05-15 18:56 . 2013-04-12 14:45 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys
2014-05-15 18:56 . 2013-02-12 04:12 19968 ----a-w- c:\windows\system32\drivers\usb8023.sys
2014-05-15 18:56 . 2012-11-01 05:43 2002432 ----a-w- c:\windows\system32\msxml6.dll
2014-05-15 18:56 . 2012-11-01 05:43 1882624 ----a-w- c:\windows\system32\msxml3.dll
2014-05-15 18:56 . 2012-11-01 04:47 1389568 ----a-w- c:\windows\SysWow64\msxml6.dll
2014-05-15 18:56 . 2012-11-01 04:47 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2014-05-15 18:54 . 2013-01-03 06:00 288088 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2014-05-15 18:54 . 2012-08-22 18:12 376688 ----a-w- c:\windows\system32\drivers\netio.sys
2014-05-15 18:54 . 2012-08-11 00:56 715776 ----a-w- c:\windows\system32\kerberos.dll
2014-05-15 18:54 . 2012-08-10 23:56 542208 ----a-w- c:\windows\SysWow64\kerberos.dll
2014-05-15 18:54 . 2012-09-25 22:47 78336 ----a-w- c:\windows\SysWow64\synceng.dll
2014-05-15 18:54 . 2012-09-25 22:46 95744 ----a-w- c:\windows\system32\synceng.dll
2014-05-15 18:54 . 2013-03-19 06:04 5550424 ----a-w- c:\windows\system32\ntoskrnl.exe
2014-05-15 18:54 . 2013-03-19 05:04 3968856 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2014-05-15 18:54 . 2013-03-19 05:04 3913560 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2014-05-15 18:54 . 2013-03-19 05:46 43520 ----a-w- c:\windows\system32\csrsrv.dll
2014-05-15 18:54 . 2013-03-19 03:06 112640 ----a-w- c:\windows\system32\smss.exe
2014-05-15 18:54 . 2013-03-19 04:47 6656 ----a-w- c:\windows\SysWow64\apisetschema.dll
2014-05-15 18:53 . 2012-06-02 05:41 1464320 ----a-w- c:\windows\system32\crypt32.dll
2014-05-15 18:53 . 2012-06-02 05:41 184320 ----a-w- c:\windows\system32\cryptsvc.dll
2014-05-15 18:53 . 2012-06-02 05:41 140288 ----a-w- c:\windows\system32\cryptnet.dll
2014-05-15 18:53 . 2012-06-02 04:36 1159680 ----a-w- c:\windows\SysWow64\crypt32.dll
2014-05-15 18:53 . 2012-06-02 04:36 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll
2014-05-15 18:53 . 2012-06-02 04:36 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
2014-05-15 18:14 . 2014-05-22 05:11 -------- d-----w- c:\program files (x86)\GOTCHA!
2014-05-14 18:50 . 2014-05-14 18:50 17938608 ----a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe
2014-05-12 13:40 . 2014-05-12 13:40 -------- d-----w- c:\users\Krkinho\AppData\Roaming\Opera Software
2014-05-12 13:40 . 2014-05-12 13:40 -------- d-----w- c:\users\Krkinho\AppData\Local\Opera Software
2014-05-11 19:51 . 2014-05-11 19:51 -------- d-----w- c:\users\Krkinho\AppData\Roaming\Sony Creative Software
2014-05-11 19:11 . 2014-05-11 19:11 -------- d-----w- c:\programdata\Sony
2014-05-11 18:49 . 2014-05-11 18:49 -------- d-----w- c:\programdata\Pinnacle
2014-05-11 18:49 . 2014-05-11 18:49 -------- d-----w- c:\users\Krkinho\AppData\Local\Downloaded Installations
2014-05-07 04:56 . 2014-05-07 04:56 -------- d-----w- c:\programdata\webcam 7
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-05-19 11:41 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2014-05-19 11:41 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2014-05-17 10:29 . 2013-12-20 17:02 85328 ----a-w- c:\windows\system32\drivers\aswstm.sys
2014-05-17 10:29 . 2013-11-20 17:00 423240 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-05-17 10:29 . 2013-11-20 17:00 1039096 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2014-05-14 18:50 . 2012-06-27 14:44 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-14 18:50 . 2011-09-07 15:16 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-04-18 10:28 . 2014-04-18 10:28 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-04-18 10:28 . 2013-11-20 17:01 208416 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-04-18 10:28 . 2013-11-20 17:00 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-04-18 10:28 . 2013-11-20 17:00 79184 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-04-18 10:28 . 2013-11-20 17:00 334648 ----a-w- c:\windows\system32\aswBoot.exe
2014-04-18 10:28 . 2013-11-20 17:00 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-04-18 10:28 . 2014-04-18 10:28 43152 ----a-w- c:\windows\avastSS.scr
2014-03-31 07:35 . 2011-09-07 15:25 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-18 22:18 . 2014-03-18 22:18 346112 ----a-w- c:\windows\SysWow64\LiveWrapRTSP.dll
2014-03-17 06:22 . 2013-12-17 06:16 118048 ----a-w- c:\windows\system32\BootDefrag.exe
2014-03-17 06:07 . 2014-03-28 13:20 17600 ----a-w- c:\windows\system32\drivers\BootDefragDriver.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-03-14 3672640]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"="c:\program files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe/start" [X]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-05-26 3888648]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-04-29 284440]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-03-28 336384]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"20140529"="c:\program files\AVAST Software\Avast\setup\emupdate\600918ec-9588-4737-8cef-54eefa4fa49f.exe" [2014-05-31 183208]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"Shell"="c:\progra~3\ocbiwa.bat"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"midi4"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk * \0aswBoot.exe /M:3e2ce71353 /wow /dir:C:\Program
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R2 SpyHunter 4 Service;SpyHunter 4 Service;c:\progra~2\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE;c:\progra~2\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE [x]
R3 aswTap;avast! SecureLine TAP Adapter v3;c:\windows\system32\DRIVERS\aswTap.sys;c:\windows\SYSNATIVE\DRIVERS\aswTap.sys [x]
R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys;c:\windows\SYSNATIVE\DRIVERS\BthAvrcp.sys [x]
R3 DFX11_1;DFX Audio Enhancer 11.1;c:\windows\system32\drivers\dfx11_1x64.sys;c:\windows\SYSNATIVE\drivers\dfx11_1x64.sys [x]
R3 esgiguard;esgiguard;c:\program files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys;c:\program files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 ScreamBAudioSvc;ScreamBee Audio;c:\windows\system32\drivers\ScreamingBAudio64.sys;c:\windows\SYSNATIVE\drivers\ScreamingBAudio64.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WSDScan;Podpora skenování WSD přes UMB;c:\windows\system32\DRIVERS\WSDScan.sys;c:\windows\SYSNATIVE\DRIVERS\WSDScan.sys [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 BootDefragDriver;BootDefragDriver;c:\windows\System32\drivers\BootDefragDriver.sys;c:\windows\SYSNATIVE\drivers\BootDefragDriver.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe;c:\program files\IDT\WDM\AESTSr64.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
S2 c2cautoupdatesvc;Skype Click to Call Updater;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [x]
S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [x]
S2 hpHotkeyMonitor;hpHotkeyMonitor;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [x]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe;c:\windows\SYSNATIVE\Hpservice.exe [x]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 intelkmd;intelkmd;c:\windows\system32\DRIVERS\igdpmd64.sys;c:\windows\SYSNATIVE\DRIVERS\igdpmd64.sys [x]
S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys;c:\windows\SYSNATIVE\DRIVERS\jmcr.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2014-06-01 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-27 18:50]
.
2014-05-27 c:\windows\Tasks\GlaryInitialize 4.job
- c:\program files (x86)\Glary Utilities 4\Initialize.exe [2014-03-17 06:19]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-04-18 10:28 290888 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-01-27 167960]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-01-27 391704]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-01-27 418328]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2011-05-27 1128448]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mStart Page = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-2314731586-3620304416-1096410446-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:7c,81,44,6a,c8,c6,1c,02,43,13,b4,42,fd,d8,d9,9f,83,d7,8b,81,79,23,bb,
b7,41,75,53,26,ab,cc,82,99,10,49,66,15,72,dd,83,78,d5,71,e4,54,4b,a4,36,53,\
"??"=hex:d1,3e,58,9e,fe,73,c9,59,e2,ce,e0,d9,54,dc,c8,29
.
[HKEY_USERS\S-1-5-21-2314731586-3620304416-1096410446-1000\Software\SecuROM\License information*]
"datasecu"=hex:49,72,72,8d,d1,39,e2,9c,51,47,08,f2,ea,14,4c,27,6e,32,df,80,f9,
14,d2,2d,bd,06,20,c7,c8,79,e7,21,91,c2,7f,21,ec,7a,42,f4,41,6d,04,14,15,cc,\
"rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_13_0_0_214_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_13_0_0_214_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.13"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0009\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0010\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0011\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0012\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0013\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0014\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0015\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-06-01 20:13:26
ComboFix-quarantined-files.txt 2014-06-01 18:13
ComboFix2.txt 2014-05-30 16:18
.
Před spuštěním: Volných bajtů: 72 892 694 528
Po spuštění: Volných bajtů: 72 658 563 072
.
- - End Of File - - 8AAB984B7C45937F3C9F74AA27067E39

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Neustálé hlášení Avast!u

#22 Příspěvek od motji »

Super, jak to vypadá s pc teď?
Poprosím Vás, na disku C najděte složku qoobox/qarantine, a podívejte se jestli v ní není ten bat soubor. HOdně mě zajímá co v něm bylo, protože byl vázaný na spuštění pc.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Petan999
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 27 kvě 2014 14:59

Re: Neustálé hlášení Avast!u

#23 Příspěvek od Petan999 »

Pc valí normálně .. složka tam je ale žádný bat soubor tam není..

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Neustálé hlášení Avast!u

#24 Příspěvek od motji »

:arrow: Odinstalujte combofix přes Start - Spustit
- zkopírujte do okénka:

ComboFix /Uninstall

-stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.


***********


:arrow: Stáhněte T-Cleaner
http://tharifas.sweb.cz/T-Cleaner.exe

-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir



***********


:arrow: Z mého podpisu stahněte Ccleaner
- nainstalujte, při výběru, co se má nainstalovat, dejte pryč fajfku u instalace yahoo toolbaru

Obrázekzáložka čistič
- nechejte v levém sloupečku zatrhnuté vše jak je, klikněte na analyzovat
- po analýze klikněte na Spustit Ccleaner

Obrázekzáložka Registry
- klikněte na hledej problémy
- pak klikněte na opravit vybrané problémy -- udělat zálohu registrů - nemusíte
- kliknete opravit všechny problémy :arrow: ok :arrow: zavřít

Obrázek Záložka Nástroje
- zde můžete odinstalovat programy. Je to důkladnější odinstalace než u přidat/odebrat programy ve Windows.

Ccleaner - čistič doporučuji používat, krásně pročistí pc od dočasných souborů.
Registry pročistí třeba po odinstalaci nějakého programu.


***********



:arrow: Stahněte OTC a použijte
http://oldtimer.geekstogo.com/OTC.exe
-vyčistí tempy a po použitých programech



***********

:arrow: Vložte nový log ze RSIT a řekněte co počítač, jak se chová, už je vše v pořádku?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Petan999
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 27 kvě 2014 14:59

Re: Neustálé hlášení Avast!u

#25 Příspěvek od Petan999 »

Jdu na to..jinak na čištění pc používám Glary Utilities 4..pc se chová normálně jenom když na YTB dám video do kvality myslím že 1440p nebo jenou jsem narazil na číslo vyšší než 2000 tak jsem to chtěl zkusit a poprvé mě to hodilo Modrou smrt ale po restartu ok...když jsem to dal podruhé tak Opera hned spadla a vyskočilo mě upozornění že (už nevím co to bylo) přestalo praovat a že to bylo úspěšně obnoveno..

Petan999
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 27 kvě 2014 14:59

Re: Neustálé hlášení Avast!u

#26 Příspěvek od Petan999 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Krkinho at 2014-06-02 18:40:59
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 75 GB (25%) free of 300 GB
Total RAM: 4030 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:41:18, on 2.6.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16476)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
C:\Program Files (x86)\Glary Utilities 4\Initialize.exe
C:\Program Files\trend micro\Krkinho.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: Shell=C:\PROGRA~3\ocbiwa.bat
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [IAStorIcon] "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
O4 - HKLM\..\Run: [QLBController] "C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe"/start
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\PROGRA~2\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9991 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\PROGRA~2\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"

C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 29226992
\??\C:\Windows\system32\conhost.exe "-231271345852641031-752418470-53915403695024576613978740042027862183-929770769
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe"
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2624
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
atieclxx
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
taskeng.exe {C16131A9-C6BD-47E1-8BF8-E14C7E3CC760}
"taskhost.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2314731586-3620304416-1096410446-10005_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2314731586-3620304416-1096410446-10005 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
taskeng.exe {B138EF95-621A-4DE1-8D9F-A238C5C93803}
"C:\Program Files (x86)\Glary Utilities 4\Initialize.exe"
"C:\Users\Krkinho\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GlaryInitialize 4.job - C:\Program Files (x86)\Glary Utilities 4\Initialize.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-12-01 545264]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-04-18 581824]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-03-21 6270336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-12-01 193520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-04-18 436600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-03-21 4502400]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-09-07 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-01-27 167960]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-01-27 391704]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-01-27 418328]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-04-18 2710824]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2011-05-27 1128448]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-05-20 6160152]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-05-26 3888648]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-04-30 284440]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2011-07-06 323128]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-28 336384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-01-27 385024]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MSIServer]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"midi3"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"midi4"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2014-06-02 18:40:59 ----D---- C:\rsit
2014-06-02 18:25:13 ----D---- C:\Program Files\CCleaner
2014-06-02 16:47:53 ----SHD---- C:\$RECYCLE.BIN
2014-05-29 19:17:20 ----D---- C:\Program Files\trend micro
2014-05-27 19:23:17 ----D---- C:\Windows\ERUNT
2014-05-19 13:28:02 ----D---- C:\Windows\system32\SPReview
2014-05-19 13:19:50 ----D---- C:\Windows\system32\EventProviders
2014-05-19 07:25:58 ----A---- C:\Windows\system32\netfxperf.dll
2014-05-19 07:25:58 ----A---- C:\Windows\system32\dfshim.dll
2014-05-19 07:25:51 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-05-19 07:25:47 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-05-19 07:25:47 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2014-05-19 07:25:46 ----A---- C:\Windows\system32\d3d10warp.dll
2014-05-19 07:25:38 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-05-19 07:25:37 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2014-05-19 07:25:37 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2014-05-19 07:25:37 ----A---- C:\Windows\system32\tssrvlic.dll
2014-05-19 07:25:37 ----A---- C:\Windows\system32\sysmain.dll
2014-05-19 07:25:37 ----A---- C:\Windows\system32\RDVGHelper.exe
2014-05-19 07:25:35 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2014-05-19 07:25:35 ----A---- C:\Windows\system32\MSVidCtl.dll
2014-05-19 07:25:33 ----A---- C:\Windows\system32\wmp.dll
2014-05-19 07:25:30 ----A---- C:\Windows\system32\mscoree.dll
2014-05-19 07:25:30 ----A---- C:\Windows\system32\mmcndmgr.dll
2014-05-19 07:25:29 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-05-19 07:25:29 ----A---- C:\Windows\system32\secproc_isv.dll
2014-05-19 07:25:29 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-05-19 07:25:29 ----A---- C:\Windows\system32\mf.dll
2014-05-19 07:25:28 ----A---- C:\Windows\system32\xpsservices.dll
2014-05-19 07:25:28 ----A---- C:\Windows\system32\secproc.dll
2014-05-19 07:25:28 ----A---- C:\Windows\system32\RMActivate.exe
2014-05-19 07:25:27 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-05-19 07:25:27 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-05-19 07:25:26 ----A---- C:\Windows\system32\rpcrt4.dll
2014-05-19 07:25:25 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-05-19 07:25:25 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2014-05-19 07:25:25 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2014-05-19 07:25:24 ----A---- C:\Windows\system32\schedsvc.dll
2014-05-19 07:25:24 ----A---- C:\Windows\system32\ole32.dll
2014-05-19 07:25:23 ----A---- C:\Windows\system32\spwizui.dll
2014-05-19 07:25:22 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2014-05-19 07:25:22 ----A---- C:\Windows\system32\taskschd.dll
2014-05-19 07:25:21 ----A---- C:\Windows\system32\wevtsvc.dll
2014-05-19 07:25:21 ----A---- C:\Windows\system32\RacEngn.dll
2014-05-19 07:25:21 ----A---- C:\Windows\system32\diagperf.dll
2014-05-19 07:25:20 ----A---- C:\Windows\SYSWOW64\mf.dll
2014-05-19 07:25:20 ----A---- C:\Windows\system32\vssapi.dll
2014-05-19 07:25:20 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-05-19 07:25:19 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-05-19 07:25:18 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2014-05-19 07:25:18 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2014-05-19 07:25:17 ----A---- C:\Windows\system32\UIRibbon.dll
2014-05-19 07:25:17 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2014-05-19 07:25:16 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-05-19 07:25:14 ----A---- C:\Windows\system32\WsmSvc.dll
2014-05-19 07:25:13 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2014-05-19 07:25:13 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2014-05-19 07:25:13 ----A---- C:\Windows\system32\WMVCORE.DLL
2014-05-19 07:25:13 ----A---- C:\Windows\system32\rdpdd.dll
2014-05-19 07:25:13 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2014-05-19 07:25:13 ----A---- C:\Windows\system32\PresentationHost.exe
2014-05-19 07:25:12 ----A---- C:\Windows\system32\spreview.exe
2014-05-19 07:25:12 ----A---- C:\Windows\system32\spinstall.exe
2014-05-19 07:25:12 ----A---- C:\Windows\system32\MPSSVC.dll
2014-05-19 07:25:12 ----A---- C:\Windows\system32\CertEnroll.dll
2014-05-19 07:25:11 ----A---- C:\Windows\system32\WinSAT.exe
2014-05-19 07:25:10 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-05-19 07:25:10 ----A---- C:\Windows\system32\d3d9.dll
2014-05-19 07:25:09 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2014-05-19 07:25:09 ----A---- C:\Windows\system32\SearchFolder.dll
2014-05-19 07:25:09 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-05-19 07:25:08 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2014-05-19 07:25:08 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2014-05-19 07:25:07 ----A---- C:\Windows\system32\gpsvc.dll
2014-05-19 07:25:06 ----A---- C:\Windows\system32\VSSVC.exe
2014-05-19 07:25:06 ----A---- C:\Windows\system32\dwmcore.dll
2014-05-19 07:25:06 ----A---- C:\Windows\system32\dbgeng.dll
2014-05-19 07:25:05 ----A---- C:\Windows\system32\drivers\http.sys
2014-05-19 07:25:04 ----A---- C:\Windows\SYSWOW64\rdvgumd32.dll
2014-05-19 07:25:04 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-05-19 07:25:03 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2014-05-19 07:25:02 ----A---- C:\Windows\SYSWOW64\ole32.dll
2014-05-19 07:25:02 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-05-19 07:25:02 ----A---- C:\Windows\system32\audiosrv.dll
2014-05-19 07:25:02 ----A---- C:\Windows\system32\actxprxy.dll
2014-05-19 07:25:01 ----A---- C:\Windows\system32\termsrv.dll
2014-05-19 07:25:01 ----A---- C:\Windows\system32\qmgr.dll
2014-05-19 07:25:01 ----A---- C:\Windows\system32\gpprefcl.dll
2014-05-19 07:25:00 ----A---- C:\Windows\system32\mstsc.exe
2014-05-19 07:24:59 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2014-05-19 07:24:59 ----A---- C:\Windows\system32\winhttp.dll
2014-05-19 07:24:59 ----A---- C:\Windows\system32\netlogon.dll
2014-05-19 07:24:59 ----A---- C:\Windows\system32\imapi2fs.dll
2014-05-19 07:24:59 ----A---- C:\Windows\system32\d3d11.dll
2014-05-19 07:24:58 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2014-05-19 07:24:58 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2014-05-19 07:24:56 ----A---- C:\Windows\system32\QAGENTRT.DLL
2014-05-19 07:24:56 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-19 07:24:55 ----A---- C:\Windows\system32\propsys.dll
2014-05-19 07:24:54 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2014-05-19 07:24:54 ----A---- C:\Windows\system32\setupapi.dll
2014-05-19 07:24:54 ----A---- C:\Windows\system32\rpcss.dll
2014-05-19 07:24:53 ----A---- C:\Windows\system32\werconcpl.dll
2014-05-19 07:24:53 ----A---- C:\Windows\system32\wbengine.exe
2014-05-19 07:24:53 ----A---- C:\Windows\system32\taskeng.exe
2014-05-19 07:24:53 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2014-05-19 07:24:53 ----A---- C:\Windows\system32\odbc32.dll
2014-05-19 07:24:53 ----A---- C:\Windows\system32\authui.dll
2014-05-19 07:24:51 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2014-05-19 07:24:51 ----A---- C:\Windows\system32\user32.dll
2014-05-19 07:24:50 ----A---- C:\Windows\system32\WSDApi.dll
2014-05-19 07:24:50 ----A---- C:\Windows\system32\umrdp.dll
2014-05-19 07:24:50 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2014-05-19 07:24:50 ----A---- C:\Windows\system32\drivers\tdx.sys
2014-05-19 07:24:50 ----A---- C:\Windows\system32\dhcpcore.dll
2014-05-19 07:24:50 ----A---- C:\Windows\system32\certmgr.dll
2014-05-19 07:24:49 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-05-19 07:24:49 ----A---- C:\Windows\system32\scavengeui.dll
2014-05-19 07:24:49 ----A---- C:\Windows\system32\drivers\netbt.sys
2014-05-19 07:24:48 ----A---- C:\Windows\SYSWOW64\certcli.dll
2014-05-19 07:24:48 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2014-05-19 07:24:47 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2014-05-19 07:24:47 ----A---- C:\Windows\system32\tsmf.dll
2014-05-19 07:24:47 ----A---- C:\Windows\system32\shlwapi.dll
2014-05-19 07:24:47 ----A---- C:\Windows\system32\netshell.dll
2014-05-19 07:24:47 ----A---- C:\Windows\system32\ncsi.dll
2014-05-19 07:24:47 ----A---- C:\Windows\system32\msdtctm.dll
2014-05-19 07:24:47 ----A---- C:\Windows\system32\msdrm.dll
2014-05-19 07:24:47 ----A---- C:\Windows\system32\framedynos.dll
2014-05-19 07:24:46 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2014-05-19 07:24:46 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2014-05-19 07:24:46 ----A---- C:\Windows\system32\wmicmiplugin.dll
2014-05-19 07:24:46 ----A---- C:\Windows\system32\rdpshell.exe
2014-05-19 07:24:45 ----A---- C:\Windows\system32\ws2_32.dll
2014-05-19 07:24:45 ----A---- C:\Windows\system32\winlogon.exe
2014-05-19 07:24:45 ----A---- C:\Windows\system32\nlasvc.dll
2014-05-19 07:24:45 ----A---- C:\Windows\system32\netcfgx.dll
2014-05-19 07:24:45 ----A---- C:\Windows\system32\lsm.exe
2014-05-19 07:24:45 ----A---- C:\Windows\system32\dxgi.dll
2014-05-19 07:24:45 ----A---- C:\Windows\system32\drivers\csc.sys
2014-05-19 07:24:45 ----A---- C:\Windows\system32\comdlg32.dll
2014-05-19 07:24:45 ----A---- C:\Windows\system32\appmgr.dll
2014-05-19 07:24:44 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-05-19 07:24:44 ----A---- C:\Windows\system32\wmpps.dll
2014-05-19 07:24:44 ----A---- C:\Windows\system32\Query.dll
2014-05-19 07:24:44 ----A---- C:\Windows\system32\mswsock.dll
2014-05-19 07:24:44 ----A---- C:\Windows\system32\drvstore.dll
2014-05-19 07:24:44 ----A---- C:\Windows\system32\apphelp.dll
2014-05-19 07:24:43 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2014-05-19 07:24:43 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2014-05-19 07:24:43 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2014-05-19 07:24:43 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2014-05-19 07:24:43 ----A---- C:\Windows\system32\wpdshext.dll
2014-05-19 07:24:43 ----A---- C:\Windows\system32\QAGENT.DLL
2014-05-19 07:24:43 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-05-19 07:24:43 ----A---- C:\Windows\system32\BFE.DLL
2014-05-19 07:24:43 ----A---- C:\Windows\system32\azroles.dll
2014-05-19 07:24:42 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2014-05-19 07:24:42 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2014-05-19 07:24:42 ----A---- C:\Windows\system32\Vault.dll
2014-05-19 07:24:42 ----A---- C:\Windows\system32\samsrv.dll
2014-05-19 07:24:42 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2014-05-19 07:24:42 ----A---- C:\Windows\system32\cmd.exe
2014-05-19 07:24:41 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2014-05-19 07:24:41 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2014-05-19 07:24:41 ----A---- C:\Windows\system32\lpksetup.exe
2014-05-19 07:24:41 ----A---- C:\Windows\system32\cscsvc.dll
2014-05-19 07:24:40 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-05-19 07:24:40 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2014-05-19 07:24:40 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-05-19 07:24:40 ----A---- C:\Windows\system32\rdpclip.exe
2014-05-19 07:24:39 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-05-19 07:24:39 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-05-19 07:24:39 ----A---- C:\Windows\system32\WebClnt.dll
2014-05-19 07:24:39 ----A---- C:\Windows\system32\sxs.dll
2014-05-19 07:24:39 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2014-05-19 07:24:38 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2014-05-19 07:24:38 ----A---- C:\Windows\SYSWOW64\Query.dll
2014-05-19 07:24:38 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2014-05-19 07:24:38 ----A---- C:\Windows\system32\Wldap32.dll
2014-05-19 07:24:38 ----A---- C:\Windows\system32\taskcomp.dll
2014-05-19 07:24:38 ----A---- C:\Windows\system32\mfds.dll
2014-05-19 07:24:38 ----A---- C:\Windows\system32\mcbuilder.exe
2014-05-19 07:24:38 ----A---- C:\Windows\system32\cscobj.dll
2014-05-19 07:24:37 ----A---- C:\Windows\SYSWOW64\upnp.dll
2014-05-19 07:24:37 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-05-19 07:24:36 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2014-05-19 07:24:36 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2014-05-19 07:24:36 ----A---- C:\Windows\system32\pnidui.dll
2014-05-19 07:24:36 ----A---- C:\Windows\system32\ipsmsnap.dll
2014-05-19 07:24:36 ----A---- C:\Windows\system32\hgprint.dll
2014-05-19 07:24:35 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2014-05-19 07:24:35 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-05-19 07:24:35 ----A---- C:\Windows\system32\webservices.dll
2014-05-19 07:24:35 ----A---- C:\Windows\system32\SessEnv.dll
2014-05-19 07:24:35 ----A---- C:\Windows\system32\rdpendp.dll
2014-05-19 07:24:34 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-05-19 07:24:34 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2014-05-19 07:24:34 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-05-19 07:24:34 ----A---- C:\Windows\system32\winsta.dll
2014-05-19 07:24:33 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2014-05-19 07:24:33 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2014-05-19 07:24:33 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2014-05-19 07:24:33 ----A---- C:\Windows\system32\sqlsrv32.dll
2014-05-19 07:24:33 ----A---- C:\Windows\system32\gdi32.dll
2014-05-19 07:24:33 ----A---- C:\Windows\system32\fveapi.dll
2014-05-19 07:24:33 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-05-19 07:24:33 ----A---- C:\Windows\system32\drivers\msrpc.sys
2014-05-19 07:24:33 ----A---- C:\Windows\system32\dot3api.dll
2014-05-19 07:24:32 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2014-05-19 07:24:32 ----A---- C:\Windows\system32\prncache.dll
2014-05-19 07:24:32 ----A---- C:\Windows\system32\mcmde.dll
2014-05-19 07:24:31 ----A---- C:\Windows\SYSWOW64\userenv.dll
2014-05-19 07:24:31 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2014-05-19 07:24:31 ----A---- C:\Windows\system32\WMNetMgr.dll
2014-05-19 07:24:31 ----A---- C:\Windows\system32\wlanpref.dll
2014-05-19 07:24:31 ----A---- C:\Windows\system32\schtasks.exe
2014-05-19 07:24:30 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2014-05-19 07:24:30 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-05-19 07:24:30 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2014-05-19 07:24:30 ----A---- C:\Windows\system32\vpnike.dll
2014-05-19 07:24:30 ----A---- C:\Windows\system32\userenv.dll
2014-05-19 07:24:30 ----A---- C:\Windows\system32\tspubwmi.dll
2014-05-19 07:24:30 ----A---- C:\Windows\system32\drivers\rdbss.sys
2014-05-19 07:24:29 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2014-05-19 07:24:29 ----A---- C:\Windows\system32\photowiz.dll
2014-05-19 07:24:29 ----A---- C:\Windows\system32\evr.dll
2014-05-19 07:24:29 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2014-05-19 07:24:28 ----A---- C:\Windows\system32\wmpmde.dll
2014-05-19 07:24:28 ----A---- C:\Windows\system32\IPSECSVC.DLL
2014-05-19 07:24:28 ----A---- C:\Windows\system32\FXSSVC.exe
2014-05-19 07:24:28 ----A---- C:\Windows\system32\framedyn.dll
2014-05-19 07:24:28 ----A---- C:\Windows\system32\AudioSes.dll
2014-05-19 07:24:27 ----A---- C:\Windows\SYSWOW64\cmd.exe
2014-05-19 07:24:27 ----A---- C:\Windows\system32\WMPEncEn.dll
2014-05-19 07:24:27 ----A---- C:\Windows\system32\wmpeffects.dll
2014-05-19 07:24:27 ----A---- C:\Windows\system32\tscfgwmi.dll
2014-05-19 07:24:27 ----A---- C:\Windows\system32\SyncCenter.dll
2014-05-19 07:24:27 ----A---- C:\Windows\system32\srvsvc.dll
2014-05-19 07:24:27 ----A---- C:\Windows\system32\sppobjs.dll
2014-05-19 07:24:27 ----A---- C:\Windows\system32\mfreadwrite.dll
2014-05-19 07:24:27 ----A---- C:\Windows\system32\aepdu.dll
2014-05-19 07:24:26 ----A---- C:\Windows\system32\shsvcs.dll
2014-05-19 07:24:26 ----A---- C:\Windows\system32\rdpinit.exe
2014-05-19 07:24:26 ----A---- C:\Windows\system32\aeinv.dll
2014-05-19 07:24:25 ----A---- C:\Windows\SYSWOW64\propsys.dll
2014-05-19 07:24:25 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2014-05-19 07:24:25 ----A---- C:\Windows\system32\vmicsvc.exe
2014-05-19 07:24:25 ----A---- C:\Windows\system32\fde.dll
2014-05-19 07:24:24 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2014-05-19 07:24:24 ----A---- C:\Windows\SYSWOW64\mfds.dll
2014-05-19 07:24:24 ----A---- C:\Windows\system32\WinSATAPI.dll
2014-05-19 07:24:24 ----A---- C:\Windows\system32\stobject.dll
2014-05-19 07:24:24 ----A---- C:\Windows\system32\netdiagfx.dll
2014-05-19 07:24:24 ----A---- C:\Windows\system32\localsec.dll
2014-05-19 07:24:24 ----A---- C:\Windows\system32\imapi2.dll
2014-05-19 07:24:24 ----A---- C:\Windows\system32\credui.dll
2014-05-19 07:24:23 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-05-19 07:24:23 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2014-05-19 07:24:23 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-05-19 07:24:23 ----A---- C:\Windows\system32\drivers\vmbus.sys
2014-05-19 07:24:23 ----A---- C:\Windows\system32\drivers\udfs.sys
2014-05-19 07:24:23 ----A---- C:\Windows\system32\cdd.dll
2014-05-19 07:24:23 ----A---- C:\Windows\system32\bcryptprimitives.dll
2014-05-19 07:24:22 ----A---- C:\Windows\system32\netid.dll
2014-05-19 07:24:22 ----A---- C:\Windows\system32\inetpp.dll
2014-05-19 07:24:22 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2014-05-19 07:24:20 ----A---- C:\Windows\system32\QSHVHOST.DLL
2014-05-19 07:24:19 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-05-19 07:24:19 ----A---- C:\Windows\SYSWOW64\azroles.dll
2014-05-19 07:24:19 ----A---- C:\Windows\system32\tcpipcfg.dll
2014-05-19 07:24:19 ----A---- C:\Windows\system32\spp.dll
2014-05-19 07:24:19 ----A---- C:\Windows\system32\davclnt.dll
2014-05-19 07:24:19 ----A---- C:\Windows\system32\cscui.dll
2014-05-19 07:24:19 ----A---- C:\Windows\system32\biocpl.dll
2014-05-19 07:24:18 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2014-05-19 07:24:18 ----A---- C:\Windows\system32\msinfo32.exe
2014-05-19 07:24:17 ----A---- C:\Windows\SYSWOW64\themeui.dll
2014-05-19 07:24:17 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2014-05-19 07:24:17 ----A---- C:\Windows\SYSWOW64\spp.dll
2014-05-19 07:24:17 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-05-19 07:24:17 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2014-05-19 07:24:17 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-05-19 07:24:17 ----A---- C:\Windows\system32\scansetting.dll
2014-05-19 07:24:17 ----A---- C:\Windows\system32\printui.dll
2014-05-19 07:24:17 ----A---- C:\Windows\system32\pla.dll
2014-05-19 07:24:17 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2014-05-19 07:24:17 ----A---- C:\Windows\system32\mspbda.dll
2014-05-19 07:24:16 ----A---- C:\Windows\system32\wusa.exe
2014-05-19 07:24:16 ----A---- C:\Windows\system32\wiaservc.dll
2014-05-19 07:24:16 ----A---- C:\Windows\system32\vds.exe
2014-05-19 07:24:16 ----A---- C:\Windows\system32\msdri.dll
2014-05-19 07:24:16 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2014-05-19 07:24:16 ----A---- C:\Windows\system32\drivers\pci.sys
2014-05-19 07:24:16 ----A---- C:\Windows\system32\aitagent.exe
2014-05-19 07:24:15 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2014-05-19 07:24:15 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2014-05-19 07:24:15 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-05-19 07:24:15 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2014-05-19 07:24:15 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2014-05-19 07:24:15 ----A---- C:\Windows\system32\rpchttp.dll
2014-05-19 07:24:15 ----A---- C:\Windows\system32\PkgMgr.exe
2014-05-19 07:24:15 ----A---- C:\Windows\system32\mscms.dll
2014-05-19 07:24:15 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2014-05-19 07:24:15 ----A---- C:\Windows\system32\AdmTmpl.dll
2014-05-19 07:24:14 ----A---- C:\Windows\system32\XpsRasterService.dll
2014-05-19 07:24:14 ----A---- C:\Windows\system32\wisptis.exe
2014-05-19 07:24:14 ----A---- C:\Windows\system32\ocsetup.exe
2014-05-19 07:24:14 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2014-05-19 07:24:13 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2014-05-19 07:24:12 ----A---- C:\Windows\SYSWOW64\evr.dll
2014-05-19 07:24:12 ----A---- C:\Windows\system32\sppwinob.dll
2014-05-19 07:24:12 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-05-19 07:24:11 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2014-05-19 07:24:11 ----A---- C:\Windows\SYSWOW64\calc.exe
2014-05-19 07:24:11 ----A---- C:\Windows\system32\ocsetapi.dll
2014-05-19 07:24:11 ----A---- C:\Windows\system32\DXP.dll
2014-05-19 07:24:11 ----A---- C:\Windows\system32\drivers\volmgr.sys
2014-05-19 07:24:10 ----A---- C:\Windows\system32\wpdbusenum.dll
2014-05-19 07:24:10 ----A---- C:\Windows\system32\eapp3hst.dll
2014-05-19 07:24:10 ----A---- C:\Windows\system32\ci.dll
2014-05-19 07:24:09 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2014-05-19 07:24:09 ----A---- C:\Windows\system32\wcncsvc.dll
2014-05-19 07:24:09 ----A---- C:\Windows\system32\upnp.dll
2014-05-19 07:24:09 ----A---- C:\Windows\system32\mprapi.dll
2014-05-19 07:24:09 ----A---- C:\Windows\system32\eapphost.dll
2014-05-19 07:24:09 ----A---- C:\Windows\system32\drivers\msdsm.sys
2014-05-19 07:24:08 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2014-05-19 07:24:08 ----A---- C:\Windows\SYSWOW64\sxs.dll
2014-05-19 07:24:08 ----A---- C:\Windows\system32\thumbcache.dll
2014-05-19 07:24:08 ----A---- C:\Windows\system32\t2embed.dll
2014-05-19 07:24:08 ----A---- C:\Windows\system32\Robocopy.exe
2014-05-19 07:24:08 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2014-05-19 07:24:07 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2014-05-19 07:24:07 ----A---- C:\Windows\SYSWOW64\stobject.dll
2014-05-19 07:24:07 ----A---- C:\Windows\SYSWOW64\netshell.dll
2014-05-19 07:24:07 ----A---- C:\Windows\system32\hal.dll
2014-05-19 07:24:06 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2014-05-19 07:24:06 ----A---- C:\Windows\system32\DxpTaskSync.dll
2014-05-19 07:24:05 ----A---- C:\Windows\system32\scecli.dll
2014-05-19 07:24:05 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2014-05-19 07:24:04 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-05-19 07:24:04 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-05-19 07:24:04 ----A---- C:\Windows\system32\puiobj.dll
2014-05-19 07:24:04 ----A---- C:\Windows\system32\msasn1.dll
2014-05-19 07:24:04 ----A---- C:\Windows\system32\dwmredir.dll
2014-05-19 07:24:04 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2014-05-19 07:24:03 ----A---- C:\Windows\SYSWOW64\prncache.dll
2014-05-19 07:24:03 ----A---- C:\Windows\system32\themeui.dll
2014-05-19 07:24:03 ----A---- C:\Windows\system32\nlaapi.dll
2014-05-19 07:24:03 ----A---- C:\Windows\system32\iasrad.dll
2014-05-19 07:24:03 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2014-05-19 07:24:02 ----A---- C:\Windows\SYSWOW64\printui.dll
2014-05-19 07:24:02 ----A---- C:\Windows\system32\scrptadm.dll
2014-05-19 07:24:02 ----A---- C:\Windows\system32\onex.dll
2014-05-19 07:24:02 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2014-05-19 07:24:01 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2014-05-19 07:24:01 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2014-05-19 07:24:01 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2014-05-19 07:24:01 ----A---- C:\Windows\SYSWOW64\net1.exe
2014-05-19 07:24:00 ----A---- C:\Windows\system32\wdc.dll
2014-05-19 07:23:59 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2014-05-19 07:23:59 ----A---- C:\Windows\system32\wlangpui.dll
2014-05-19 07:23:59 ----A---- C:\Windows\system32\scesrv.dll
2014-05-19 07:23:59 ----A---- C:\Windows\system32\rasmans.dll
2014-05-19 07:23:59 ----A---- C:\Windows\system32\msftedit.dll
2014-05-19 07:23:58 ----A---- C:\Windows\system32\wiadefui.dll
2014-05-19 07:23:58 ----A---- C:\Windows\system32\VAN.dll
2014-05-19 07:23:58 ----A---- C:\Windows\system32\StructuredQuery.dll
2014-05-19 07:23:58 ----A---- C:\Windows\system32\sdengin2.dll
2014-05-19 07:23:57 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2014-05-19 07:23:57 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2014-05-19 07:23:57 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2014-05-19 07:23:57 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-05-19 07:23:57 ----A---- C:\Windows\system32\wscapi.dll
2014-05-19 07:23:57 ----A---- C:\Windows\system32\SndVol.exe
2014-05-19 07:23:57 ----A---- C:\Windows\system32\samcli.dll
2014-05-19 07:23:57 ----A---- C:\Windows\system32\regapi.dll
2014-05-19 07:23:57 ----A---- C:\Windows\system32\netcenter.dll
2014-05-19 07:23:57 ----A---- C:\Windows\system32\iasacct.dll
2014-05-19 07:23:57 ----A---- C:\Windows\system32\dskquoui.dll
2014-05-19 07:23:57 ----A---- C:\Windows\system32\drivers\termdd.sys
2014-05-19 07:23:57 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2014-05-19 07:23:56 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2014-05-19 07:23:56 ----A---- C:\Windows\system32\srchadmin.dll
2014-05-19 07:23:56 ----A---- C:\Windows\system32\QUTIL.DLL
2014-05-19 07:23:56 ----A---- C:\Windows\system32\consent.exe
2014-05-19 07:23:55 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2014-05-19 07:23:55 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2014-05-19 07:23:55 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2014-05-19 07:23:55 ----A---- C:\Windows\system32\TabSvc.dll
2014-05-19 07:23:54 ----A---- C:\Windows\SYSWOW64\webservices.dll
2014-05-19 07:23:54 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2014-05-19 07:23:54 ----A---- C:\Windows\SYSWOW64\fde.dll
2014-05-19 07:23:54 ----A---- C:\Windows\system32\setupcl.exe
2014-05-19 07:23:54 ----A---- C:\Windows\system32\drivers\msahci.sys
2014-05-19 07:23:53 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2014-05-19 07:23:53 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2014-05-19 07:23:53 ----A---- C:\Windows\system32\wksprt.exe
2014-05-19 07:23:53 ----A---- C:\Windows\system32\taskhost.exe
2014-05-19 07:23:53 ----A---- C:\Windows\system32\rastls.dll
2014-05-19 07:23:52 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-05-19 07:23:52 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2014-05-19 07:23:51 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2014-05-19 07:23:51 ----A---- C:\Windows\system32\tapisrv.dll
2014-05-19 07:23:51 ----A---- C:\Windows\system32\netiohlp.dll
2014-05-19 07:23:51 ----A---- C:\Windows\system32\mimefilt.dll
2014-05-19 07:23:51 ----A---- C:\Windows\system32\drivers\acpi.sys
2014-05-19 07:23:50 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2014-05-19 07:23:50 ----A---- C:\Windows\SYSWOW64\pla.dll
2014-05-19 07:23:50 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2014-05-19 07:23:50 ----A---- C:\Windows\system32\msconfig.exe
2014-05-19 07:23:50 ----A---- C:\Windows\system32\ListSvc.dll
2014-05-19 07:23:50 ----A---- C:\Windows\system32\hgcpl.dll
2014-05-19 07:23:50 ----A---- C:\Windows\system32\drivers\raspptp.sys
2014-05-19 07:23:49 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2014-05-19 07:23:49 ----A---- C:\Windows\system32\lsmproxy.dll
2014-05-19 07:23:49 ----A---- C:\Windows\system32\fdeploy.dll
2014-05-19 07:23:49 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2014-05-19 07:23:49 ----A---- C:\Windows\system32\drivers\ks.sys
2014-05-19 07:23:49 ----A---- C:\Windows\system32\clusapi.dll
2014-05-19 07:23:49 ----A---- C:\Windows\system32\basecsp.dll
2014-05-19 07:23:48 ----A---- C:\Windows\SYSWOW64\winsta.dll
2014-05-19 07:23:48 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-05-19 07:23:48 ----A---- C:\Windows\system32\mtxclu.dll
2014-05-19 07:23:48 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2014-05-19 07:23:47 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2014-05-19 07:23:47 ----A---- C:\Windows\system32\riched20.dll
2014-05-19 07:23:46 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2014-05-19 07:23:46 ----A---- C:\Windows\system32\dnscmmc.dll
2014-05-19 07:23:45 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2014-05-19 07:23:45 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2014-05-19 07:23:45 ----A---- C:\Windows\SYSWOW64\onex.dll
2014-05-19 07:23:45 ----A---- C:\Windows\system32\sharemediacpl.dll
2014-05-19 07:23:45 ----A---- C:\Windows\system32\RpcRtRemote.dll
2014-05-19 07:23:45 ----A---- C:\Windows\system32\powercpl.dll
2014-05-19 07:23:45 ----A---- C:\Windows\system32\logoncli.dll
2014-05-19 07:23:44 ----A---- C:\Windows\SYSWOW64\winmm.dll
2014-05-19 07:23:44 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2014-05-19 07:23:44 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2014-05-19 07:23:44 ----A---- C:\Windows\system32\themecpl.dll
2014-05-19 07:23:44 ----A---- C:\Windows\system32\SensorsCpl.dll
2014-05-19 07:23:44 ----A---- C:\Windows\system32\netjoin.dll
2014-05-19 07:23:44 ----A---- C:\Windows\system32\nci.dll
2014-05-19 07:23:44 ----A---- C:\Windows\system32\Narrator.exe
2014-05-19 07:23:44 ----A---- C:\Windows\system32\Faultrep.dll
2014-05-19 07:23:44 ----A---- C:\Windows\system32\eudcedit.exe
2014-05-19 07:23:43 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2014-05-19 07:23:43 ----A---- C:\Windows\SYSWOW64\autochk.exe
2014-05-19 07:23:42 ----A---- C:\Windows\SYSWOW64\samcli.dll
2014-05-19 07:23:42 ----A---- C:\Windows\SYSWOW64\proquota.exe
2014-05-19 07:23:42 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2014-05-19 07:23:42 ----A---- C:\Windows\system32\wkssvc.dll
2014-05-19 07:23:42 ----A---- C:\Windows\system32\vpnikeapi.dll
2014-05-19 07:23:42 ----A---- C:\Windows\system32\sppcomapi.dll
2014-05-19 07:23:42 ----A---- C:\Windows\system32\comctl32.dll
2014-05-19 07:23:41 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2014-05-19 07:23:41 ----A---- C:\Windows\SYSWOW64\regapi.dll
2014-05-19 07:23:41 ----A---- C:\Windows\SYSWOW64\msutb.dll
2014-05-19 07:23:41 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2014-05-19 07:23:41 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2014-05-19 07:23:41 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2014-05-19 07:23:41 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2014-05-19 07:23:41 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-05-19 07:23:41 ----A---- C:\Windows\system32\cabview.dll
2014-05-19 07:23:41 ----A---- C:\Windows\system32\autochk.exe
2014-05-19 07:23:41 ----A---- C:\Windows\system32\autofmt.exe
2014-05-19 07:23:40 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2014-05-19 07:23:40 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2014-05-19 07:23:40 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2014-05-19 07:23:40 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2014-05-19 07:23:40 ----A---- C:\Windows\system32\wpd_ci.dll
2014-05-19 07:23:40 ----A---- C:\Windows\system32\shsetup.dll
2014-05-19 07:23:40 ----A---- C:\Windows\system32\nshipsec.dll
2014-05-19 07:23:40 ----A---- C:\Windows\system32\fms.dll
2014-05-19 07:23:40 ----A---- C:\Windows\system32\autoconv.exe
2014-05-19 07:23:40 ----A---- C:\Windows\system32\audiodg.exe
2014-05-19 07:23:39 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2014-05-19 07:23:39 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2014-05-19 07:23:39 ----A---- C:\Windows\system32\bcdsrv.dll
2014-05-19 07:23:38 ----A---- C:\Windows\system32\sdclt.exe
2014-05-19 07:23:37 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2014-05-19 07:23:37 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-05-19 07:23:37 ----A---- C:\Windows\system32\prntvpt.dll
2014-05-19 07:23:37 ----A---- C:\Windows\system32\drivers\wanarp.sys
2014-05-19 07:23:36 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2014-05-19 07:23:36 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2014-05-19 07:23:36 ----A---- C:\Windows\system32\wwanconn.dll
2014-05-19 07:23:36 ----A---- C:\Windows\system32\wlanui.dll
2014-05-19 07:23:36 ----A---- C:\Windows\system32\mscorier.dll
2014-05-19 07:23:36 ----A---- C:\Windows\system32\drivers\winusb.sys
2014-05-19 07:23:36 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-05-19 07:23:36 ----A---- C:\Windows\system32\drivers\scsiport.sys
2014-05-19 07:23:35 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2014-05-19 07:23:35 ----A---- C:\Windows\SYSWOW64\netid.dll
2014-05-19 07:23:35 ----A---- C:\Windows\system32\SmiEngine.dll
2014-05-19 07:23:35 ----A---- C:\Windows\system32\rdpsign.exe
2014-05-19 07:23:35 ----A---- C:\Windows\system32\mprddm.dll
2014-05-19 07:23:35 ----A---- C:\Windows\system32\fontext.dll
2014-05-19 07:23:35 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2014-05-19 07:23:35 ----A---- C:\Windows\system32\dps.dll
2014-05-19 07:23:35 ----A---- C:\Windows\system32\Display.dll
2014-05-19 07:23:35 ----A---- C:\Windows\system32\AxInstSv.dll
2014-05-19 07:23:34 ----A---- C:\Windows\SYSWOW64\wdc.dll
2014-05-19 07:23:34 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-05-19 07:23:34 ----A---- C:\Windows\system32\qedit.dll
2014-05-19 07:23:34 ----A---- C:\Windows\system32\mblctr.exe
2014-05-19 07:23:34 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-05-19 07:23:34 ----A---- C:\Windows\system32\credssp.dll
2014-05-19 07:23:34 ----A---- C:\Windows\system32\batmeter.dll
2014-05-19 07:23:33 ----A---- C:\Windows\SYSWOW64\Vault.dll
2014-05-19 07:23:33 ----A---- C:\Windows\SYSWOW64\untfs.dll
2014-05-19 07:23:33 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2014-05-19 07:23:33 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2014-05-19 07:23:33 ----A---- C:\Windows\SYSWOW64\rastls.dll
2014-05-19 07:23:33 ----A---- C:\Windows\SYSWOW64\nci.dll
2014-05-19 07:23:33 ----A---- C:\Windows\system32\wmpsrcwp.dll
2014-05-19 07:23:32 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2014-05-19 07:23:32 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2014-05-19 07:23:32 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2014-05-19 07:23:32 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2014-05-19 07:23:32 ----A---- C:\Windows\system32\usercpl.dll
2014-05-19 07:23:32 ----A---- C:\Windows\system32\rtutils.dll
2014-05-19 07:23:32 ----A---- C:\Windows\system32\DiagCpl.dll
2014-05-19 07:23:31 ----A---- C:\Windows\system32\wpccpl.dll
2014-05-19 07:23:31 ----A---- C:\Windows\system32\provsvc.dll
2014-05-19 07:23:31 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2014-05-19 07:23:31 ----A---- C:\Windows\system32\bootres.dll
2014-05-19 07:23:30 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2014-05-19 07:23:30 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2014-05-19 07:23:30 ----A---- C:\Windows\system32\sppsvc.exe
2014-05-19 07:23:30 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-05-19 07:23:30 ----A---- C:\Windows\system32\rasppp.dll
2014-05-19 07:23:30 ----A---- C:\Windows\system32\drivers\winhv.sys
2014-05-19 07:23:29 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2014-05-19 07:23:29 ----A---- C:\Windows\SYSWOW64\Display.dll
2014-05-19 07:23:29 ----A---- C:\Windows\system32\dxdiagn.dll
2014-05-19 07:23:29 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2014-05-19 07:23:29 ----A---- C:\Windows\system32\dot3cfg.dll
2014-05-19 07:23:28 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2014-05-19 07:23:28 ----A---- C:\Windows\SYSWOW64\userinit.exe
2014-05-19 07:23:28 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2014-05-19 07:23:28 ----A---- C:\Windows\system32\shdocvw.dll
2014-05-19 07:23:28 ----A---- C:\Windows\system32\hbaapi.dll
2014-05-19 07:23:27 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2014-05-19 07:23:27 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2014-05-19 07:23:27 ----A---- C:\Windows\system32\taskmgr.exe
2014-05-19 07:23:27 ----A---- C:\Windows\system32\proquota.exe
2014-05-19 07:23:27 ----A---- C:\Windows\system32\prnfldr.dll
2014-05-19 07:23:27 ----A---- C:\Windows\system32\pdh.dll
2014-05-19 07:23:27 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2014-05-19 07:23:27 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2014-05-19 07:23:26 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2014-05-19 07:23:26 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2014-05-19 07:23:26 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-05-19 07:23:25 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2014-05-19 07:23:25 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2014-05-19 07:23:25 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2014-05-19 07:23:25 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2014-05-19 07:23:25 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2014-05-19 07:23:25 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2014-05-19 07:23:25 ----A---- C:\Windows\SYSWOW64\cabview.dll
2014-05-19 07:23:25 ----A---- C:\Windows\system32\userinit.exe
2014-05-19 07:23:25 ----A---- C:\Windows\system32\untfs.dll
2014-05-19 07:23:25 ----A---- C:\Windows\system32\accessibilitycpl.dll
2014-05-19 07:23:24 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2014-05-19 07:23:24 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2014-05-19 07:23:23 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2014-05-19 07:23:23 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2014-05-19 07:23:23 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-05-19 07:23:23 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2014-05-19 07:23:23 ----A---- C:\Windows\system32\zipfldr.dll
2014-05-19 07:23:23 ----A---- C:\Windows\system32\slui.exe
2014-05-19 07:23:23 ----A---- C:\Windows\system32\msieftp.dll
2014-05-19 07:23:23 ----A---- C:\Windows\system32\drivers\storvsc.sys
2014-05-19 07:23:23 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2014-05-19 07:23:22 ----A---- C:\Windows\SYSWOW64\scecli.dll
2014-05-19 07:23:22 ----A---- C:\Windows\system32\sud.dll
2014-05-19 07:23:22 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-05-19 07:23:21 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2014-05-19 07:23:21 ----A---- C:\Windows\SYSWOW64\mscories.dll
2014-05-19 07:23:21 ----A---- C:\Windows\SYSWOW64\mscms.dll
2014-05-19 07:23:21 ----A---- C:\Windows\SYSWOW64\localsec.dll
2014-05-19 07:23:21 ----A---- C:\Windows\SYSWOW64\fontext.dll
2014-05-19 07:23:21 ----A---- C:\Windows\system32\DeviceCenter.dll
2014-05-19 07:23:20 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2014-05-19 07:23:20 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2014-05-19 07:23:20 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2014-05-19 07:23:20 ----A---- C:\Windows\system32\networkmap.dll
2014-05-19 07:23:20 ----A---- C:\Windows\system32\dot3svc.dll
2014-05-19 07:23:20 ----A---- C:\Windows\system32\cryptui.dll
2014-05-19 07:23:19 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2014-05-19 07:23:19 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2014-05-19 07:23:19 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2014-05-19 07:23:19 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2014-05-19 07:23:19 ----A---- C:\Windows\system32\twext.dll
2014-05-19 07:23:19 ----A---- C:\Windows\system32\taskbarcpl.dll
2014-05-19 07:23:19 ----A---- C:\Windows\system32\ActionCenter.dll
2014-05-19 07:23:18 ----A---- C:\Windows\SYSWOW64\VAN.dll
2014-05-19 07:23:18 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-05-19 07:23:18 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2014-05-19 07:23:18 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2014-05-19 07:23:18 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2014-05-19 07:23:17 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2014-05-19 07:23:17 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2014-05-19 07:23:17 ----A---- C:\Windows\system32\uxlib.dll
2014-05-19 07:23:17 ----A---- C:\Windows\system32\recovery.dll
2014-05-19 07:23:17 ----A---- C:\Windows\system32\OobeFldr.dll
2014-05-19 07:23:17 ----A---- C:\Windows\system32\bcdedit.exe
2014-05-19 07:23:17 ----A---- C:\Windows\system32\azroleui.dll
2014-05-19 07:23:16 ----A---- C:\Windows\system32\sisbkup.dll
2014-05-19 07:23:16 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2014-05-19 07:23:16 ----A---- C:\Windows\system32\isoburn.exe
2014-05-19 07:23:16 ----A---- C:\Windows\system32\dsuiext.dll
2014-05-19 07:23:16 ----A---- C:\Windows\system32\cca.dll
2014-05-19 07:23:16 ----A---- C:\Windows\system32\asycfilt.dll
2014-05-19 07:23:15 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2014-05-19 07:23:15 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2014-05-19 07:23:15 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2014-05-19 07:23:15 ----A---- C:\Windows\system32\tzutil.exe
2014-05-19 07:23:15 ----A---- C:\Windows\system32\efscore.dll
2014-05-19 07:23:14 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2014-05-19 07:23:14 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2014-05-19 07:23:14 ----A---- C:\Windows\system32\systemcpl.dll
2014-05-19 07:23:14 ----A---- C:\Windows\system32\syncui.dll
2014-05-19 07:23:14 ----A---- C:\Windows\system32\sdcpl.dll
2014-05-19 07:23:14 ----A---- C:\Windows\system32\recdisc.exe
2014-05-19 07:23:14 ----A---- C:\Windows\system32\netplwiz.dll
2014-05-19 07:23:14 ----A---- C:\Windows\system32\httpapi.dll
2014-05-19 07:23:14 ----A---- C:\Windows\system32\drivers\sdbus.sys
2014-05-19 07:23:13 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2014-05-19 07:23:13 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2014-05-19 07:23:13 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2014-05-19 07:23:13 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2014-05-19 07:23:13 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2014-05-19 07:23:13 ----A---- C:\Windows\system32\sysclass.dll
2014-05-19 07:23:13 ----A---- C:\Windows\system32\shwebsvc.dll
2014-05-19 07:23:13 ----A---- C:\Windows\system32\ncryptui.dll
2014-05-19 07:23:13 ----A---- C:\Windows\system32\fvecpl.dll
2014-05-19 07:23:13 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2014-05-19 07:23:13 ----A---- C:\Windows\system32\drivers\mpio.sys
2014-05-19 07:23:13 ----A---- C:\Windows\system32\certcli.dll
2014-05-19 07:23:13 ----A---- C:\Windows\system32\autoplay.dll
2014-05-19 07:23:13 ----A---- C:\Windows\system32\appinfo.dll
2014-05-19 07:23:12 ----A---- C:\Windows\SYSWOW64\wusa.exe
2014-05-19 07:23:12 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2014-05-19 07:23:12 ----A---- C:\Windows\system32\wlanmsm.dll
2014-05-19 07:23:12 ----A---- C:\Windows\system32\sdrsvc.dll
2014-05-19 07:23:12 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2014-05-19 07:23:11 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2014-05-19 07:23:11 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2014-05-19 07:23:11 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2014-05-19 07:23:11 ----A---- C:\Windows\system32\spwizeng.dll
2014-05-19 07:23:11 ----A---- C:\Windows\system32\msvidc32.dll
2014-05-19 07:23:11 ----A---- C:\Windows\system32\MFPlay.dll
2014-05-19 07:23:11 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2014-05-19 07:23:10 ----A---- C:\Windows\SYSWOW64\sud.dll
2014-05-19 07:23:10 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2014-05-19 07:23:10 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-05-19 07:23:10 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2014-05-19 07:23:10 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-05-19 07:23:10 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2014-05-19 07:23:10 ----A---- C:\Windows\system32\vdsutil.dll
2014-05-19 07:23:10 ----A---- C:\Windows\system32\termmgr.dll
2014-05-19 07:23:09 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2014-05-19 07:23:09 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2014-05-19 07:23:09 ----A---- C:\Windows\SYSWOW64\ftp.exe
2014-05-19 07:23:09 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2014-05-19 07:23:09 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2014-05-19 07:23:09 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-05-19 07:23:09 ----A---- C:\Windows\system32\sethc.exe
2014-05-19 07:23:09 ----A---- C:\Windows\system32\ReAgent.dll
2014-05-19 07:23:09 ----A---- C:\Windows\system32\ntlanman.dll
2014-05-19 07:23:09 ----A---- C:\Windows\system32\msscp.dll
2014-05-19 07:23:08 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2014-05-19 07:23:08 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2014-05-19 07:23:08 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2014-05-19 07:23:08 ----A---- C:\Windows\system32\sqlcese30.dll
2014-05-19 07:23:08 ----A---- C:\Windows\system32\iprtrmgr.dll
2014-05-19 07:23:08 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2014-05-19 07:23:07 ----A---- C:\Windows\SYSWOW64\efscore.dll
2014-05-19 07:23:07 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2014-05-19 07:23:07 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-05-19 07:23:07 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2014-05-19 07:23:07 ----A---- C:\Windows\system32\ssText3d.scr
2014-05-19 07:23:07 ----A---- C:\Windows\system32\rdpd3d.dll
2014-05-19 07:23:07 ----A---- C:\Windows\system32\iTVData.dll
2014-05-19 07:23:07 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2014-05-19 07:23:06 ----A---- C:\Windows\SYSWOW64\syncui.dll
2014-05-19 07:23:06 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2014-05-19 07:23:06 ----A---- C:\Windows\system32\wmdrmsdk.dll
2014-05-19 07:23:06 ----A---- C:\Windows\system32\slwga.dll
2014-05-19 07:23:06 ----A---- C:\Windows\system32\iyuv_32.dll
2014-05-19 07:23:05 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2014-05-19 07:23:05 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2014-05-19 07:23:05 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2014-05-19 07:23:05 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2014-05-19 07:23:05 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2014-05-19 07:23:05 ----A---- C:\Windows\system32\srvcli.dll
2014-05-19 07:23:05 ----A---- C:\Windows\system32\nslookup.exe
2014-05-19 07:23:05 ----A---- C:\Windows\system32\msiexec.exe
2014-05-19 07:23:05 ----A---- C:\Windows\system32\drmmgrtn.dll
2014-05-19 07:23:04 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2014-05-19 07:23:04 ----A---- C:\Windows\system32\wavemsp.dll
2014-05-19 07:23:04 ----A---- C:\Windows\system32\ntprint.dll
2014-05-19 07:23:04 ----A---- C:\Windows\system32\NAPHLPR.DLL
2014-05-19 07:23:04 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2014-05-19 07:23:04 ----A---- C:\Windows\system32\acppage.dll
2014-05-19 07:23:03 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2014-05-19 07:23:02 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-05-19 07:23:02 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2014-05-19 07:23:02 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-05-19 07:23:01 ----A---- C:\Windows\SYSWOW64\sethc.exe
2014-05-19 07:23:01 ----A---- C:\Windows\SYSWOW64\riched20.dll
2014-05-19 07:23:01 ----A---- C:\Windows\system32\srrstr.dll
2014-05-19 07:23:01 ----A---- C:\Windows\system32\bcdboot.exe
2014-05-19 07:23:00 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2014-05-19 07:23:00 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2014-05-19 07:23:00 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2014-05-19 07:23:00 ----A---- C:\Windows\SYSWOW64\migisol.dll
2014-05-19 07:23:00 ----A---- C:\Windows\SYSWOW64\fms.dll
2014-05-19 07:23:00 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2014-05-19 07:23:00 ----A---- C:\Windows\SYSWOW64\activeds.dll
2014-05-19 07:23:00 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-19 07:23:00 ----A---- C:\Windows\system32\sppnp.dll
2014-05-19 07:23:00 ----A---- C:\Windows\system32\certprop.dll
2014-05-19 07:22:59 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2014-05-19 07:22:59 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-05-19 07:22:59 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2014-05-19 07:22:59 ----A---- C:\Windows\SYSWOW64\dpx.dll
2014-05-19 07:22:59 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2014-05-19 07:22:59 ----A---- C:\Windows\system32\wkscli.dll
2014-05-19 07:22:59 ----A---- C:\Windows\system32\remotepg.dll
2014-05-19 07:22:59 ----A---- C:\Windows\system32\PresentationSettings.exe
2014-05-19 07:22:59 ----A---- C:\Windows\system32\networkexplorer.dll
2014-05-19 07:22:59 ----A---- C:\Windows\system32\cabinet.dll
2014-05-19 07:22:58 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2014-05-19 07:22:58 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2014-05-19 07:22:58 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2014-05-19 07:22:58 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2014-05-19 07:22:58 ----A---- C:\Windows\system32\WinSCard.dll
2014-05-19 07:22:58 ----A---- C:\Windows\system32\ftp.exe
2014-05-19 07:22:58 ----A---- C:\Windows\system32\dfrgui.exe
2014-05-19 07:22:57 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-05-19 07:22:57 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2014-05-19 07:22:57 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2014-05-19 07:22:57 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2014-05-19 07:22:57 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2014-05-19 07:22:57 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2014-05-19 07:22:57 ----A---- C:\Windows\system32\wvc.dll
2014-05-19 07:22:57 ----A---- C:\Windows\system32\wsnmp32.dll
2014-05-19 07:22:57 ----A---- C:\Windows\system32\wmpdxm.dll
2014-05-19 07:22:57 ----A---- C:\Windows\system32\net1.exe
2014-05-19 07:22:56 ----A---- C:\Windows\SYSWOW64\wvc.dll
2014-05-19 07:22:56 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2014-05-19 07:22:56 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2014-05-19 07:22:56 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2014-05-19 07:22:56 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2014-05-19 07:22:56 ----A---- C:\Windows\system32\wsqmcons.exe
2014-05-19 07:22:56 ----A---- C:\Windows\system32\wmdrmdev.dll
2014-05-19 07:22:56 ----A---- C:\Windows\system32\WerFaultSecure.exe
2014-05-19 07:22:56 ----A---- C:\Windows\system32\blackbox.dll
2014-05-19 07:22:55 ----A---- C:\Windows\SYSWOW64\twext.dll
2014-05-19 07:22:55 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2014-05-19 07:22:55 ----A---- C:\Windows\SYSWOW64\mstask.dll
2014-05-19 07:22:55 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2014-05-19 07:22:55 ----A---- C:\Windows\system32\msyuv.dll
2014-05-19 07:22:55 ----A---- C:\Windows\system32\mfps.dll
2014-05-19 07:22:55 ----A---- C:\Windows\system32\mapistub.dll
2014-05-19 07:22:55 ----A---- C:\Windows\system32\mapi32.dll
2014-05-19 07:22:55 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-05-19 07:22:54 ----A---- C:\Windows\twain_32.dll
2014-05-19 07:22:54 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-05-19 07:22:54 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2014-05-19 07:22:54 ----A---- C:\Windows\SYSWOW64\qcap.dll
2014-05-19 07:22:54 ----A---- C:\Windows\system32\unimdmat.dll
2014-05-19 07:22:54 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-05-19 07:22:54 ----A---- C:\Windows\system32\OpcServices.dll
2014-05-19 07:22:54 ----A---- C:\Windows\system32\msrle32.dll
2014-05-19 07:22:54 ----A---- C:\Windows\system32\Bubbles.scr
2014-05-19 07:22:53 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2014-05-19 07:22:53 ----A---- C:\Windows\SYSWOW64\slwga.dll
2014-05-19 07:22:53 ----A---- C:\Windows\SYSWOW64\qasf.dll
2014-05-19 07:22:53 ----A---- C:\Windows\system32\tsbyuv.dll
2014-05-19 07:22:53 ----A---- C:\Windows\system32\seclogon.dll
2014-05-19 07:22:53 ----A---- C:\Windows\system32\Ribbons.scr
2014-05-19 07:22:53 ----A---- C:\Windows\system32\iscsium.dll
2014-05-19 07:22:53 ----A---- C:\Windows\system32\ifsutil.dll
2014-05-19 07:22:53 ----A---- C:\Windows\system32\diskraid.exe
2014-05-19 07:22:52 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2014-05-19 07:22:52 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2014-05-19 07:22:52 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2014-05-19 07:22:52 ----A---- C:\Windows\system32\Mystify.scr
2014-05-19 07:22:52 ----A---- C:\Windows\system32\drivers\umbus.sys
2014-05-19 07:22:51 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2014-05-19 07:22:51 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2014-05-19 07:22:51 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2014-05-19 07:22:51 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2014-05-19 07:22:51 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2014-05-19 07:22:51 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2014-05-19 07:22:51 ----A---- C:\Windows\system32\wmpshell.dll
2014-05-19 07:22:51 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2014-05-19 07:22:51 ----A---- C:\Windows\system32\rdpencom.dll
2014-05-19 07:22:51 ----A---- C:\Windows\system32\perfmon.exe
2014-05-19 07:22:51 ----A---- C:\Windows\system32\muifontsetup.dll
2014-05-19 07:22:50 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2014-05-19 07:22:50 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-05-19 07:22:50 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-05-19 07:22:50 ----A---- C:\Windows\SYSWOW64\msscp.dll
2014-05-19 07:22:50 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2014-05-19 07:22:50 ----A---- C:\Windows\system32\umb.dll
2014-05-19 07:22:50 ----A---- C:\Windows\system32\tlscsp.dll
2014-05-19 07:22:50 ----A---- C:\Windows\system32\qasf.dll
2014-05-19 07:22:50 ----A---- C:\Windows\system32\netutils.dll
2014-05-19 07:22:50 ----A---- C:\Windows\system32\AzSqlExt.dll
2014-05-19 07:22:49 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2014-05-19 07:22:49 ----A---- C:\Windows\SYSWOW64\acppage.dll
2014-05-19 07:22:49 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2014-05-19 07:22:49 ----A---- C:\Windows\system32\dbghelp.dll
2014-05-19 07:22:49 ----A---- C:\Windows\system32\ActionQueue.dll
2014-05-19 07:22:48 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2014-05-19 07:22:48 ----A---- C:\Windows\SYSWOW64\raschap.dll
2014-05-19 07:22:48 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2014-05-19 07:22:48 ----A---- C:\Windows\system32\runonce.exe
2014-05-19 07:22:48 ----A---- C:\Windows\system32\FXSAPI.dll
2014-05-19 07:22:48 ----A---- C:\Windows\bfsvc.exe
2014-05-19 07:22:47 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2014-05-19 07:22:47 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2014-05-19 07:22:47 ----A---- C:\Windows\SYSWOW64\input.dll
2014-05-19 07:22:47 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2014-05-19 07:22:47 ----A---- C:\Windows\system32\wpdwcn.dll
2014-05-19 07:22:47 ----A---- C:\Windows\system32\wiavideo.dll
2014-05-19 07:22:47 ----A---- C:\Windows\system32\syssetup.dll
2014-05-19 07:22:47 ----A---- C:\Windows\system32\raschap.dll
2014-05-19 07:22:46 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2014-05-19 07:22:46 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2014-05-19 07:22:46 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2014-05-19 07:22:46 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2014-05-19 07:22:46 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2014-05-19 07:22:46 ----A---- C:\Windows\system32\WMADMOD.DLL
2014-05-19 07:22:46 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2014-05-19 07:22:46 ----A---- C:\Windows\system32\MdSched.exe
2014-05-19 07:22:45 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2014-05-19 07:22:45 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2014-05-19 07:22:45 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2014-05-19 07:22:45 ----A---- C:\Windows\SYSWOW64\runonce.exe
2014-05-19 07:22:45 ----A---- C:\Windows\SYSWOW64\onexui.dll
2014-05-19 07:22:45 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2014-05-19 07:22:45 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2014-05-19 07:22:45 ----A---- C:\Windows\system32\WMVSDECD.DLL
2014-05-19 07:22:45 ----A---- C:\Windows\system32\vdsbas.dll
2014-05-19 07:22:45 ----A---- C:\Windows\system32\nltest.exe
2014-05-19 07:22:45 ----A---- C:\Windows\system32\mstask.dll
2014-05-19 07:22:45 ----A---- C:\Windows\system32\Mcx2Svc.dll
2014-05-19 07:22:45 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-05-19 07:22:45 ----A---- C:\Windows\system32\drivers\rmcast.sys
2014-05-19 07:22:44 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2014-05-19 07:22:44 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2014-05-19 07:22:44 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2014-05-19 07:22:44 ----A---- C:\Windows\SYSWOW64\logagent.exe
2014-05-19 07:22:44 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2014-05-19 07:22:44 ----A---- C:\Windows\system32\vss_ps.dll
2014-05-19 07:22:44 ----A---- C:\Windows\system32\shacct.dll
2014-05-19 07:22:44 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2014-05-19 07:22:44 ----A---- C:\Windows\system32\cscapi.dll
2014-05-19 07:22:44 ----A---- C:\Windows\system32\bitsadmin.exe
2014-05-19 07:22:43 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2014-05-19 07:22:43 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2014-05-19 07:22:43 ----A---- C:\Windows\SYSWOW64\shacct.dll
2014-05-19 07:22:43 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2014-05-19 07:22:43 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2014-05-19 07:22:43 ----A---- C:\Windows\system32\WPDSp.dll
2014-05-19 07:22:43 ----A---- C:\Windows\system32\wmdrmnet.dll
2014-05-19 07:22:43 ----A---- C:\Windows\system32\tabcal.exe
2014-05-19 07:22:43 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-05-19 07:22:43 ----A---- C:\Windows\system32\qcap.dll
2014-05-19 07:22:43 ----A---- C:\Windows\system32\logman.exe
2014-05-19 07:22:42 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-05-19 07:22:42 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2014-05-19 07:22:42 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2014-05-19 07:22:42 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2014-05-19 07:22:42 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2014-05-19 07:22:42 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2014-05-19 07:22:42 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2014-05-19 07:22:42 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-05-19 07:22:42 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2014-05-19 07:22:42 ----A---- C:\Windows\system32\msnetobj.dll
2014-05-19 07:22:42 ----A---- C:\Windows\system32\CscMig.dll
2014-05-19 07:22:41 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2014-05-19 07:22:41 ----A---- C:\Windows\SYSWOW64\pdh.dll
2014-05-19 07:22:41 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2014-05-19 07:22:41 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2014-05-19 07:22:41 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2014-05-19 07:22:41 ----A---- C:\Windows\SYSWOW64\logman.exe
2014-05-19 07:22:41 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2014-05-19 07:22:41 ----A---- C:\Windows\system32\vmictimeprovider.dll
2014-05-19 07:22:41 ----A---- C:\Windows\system32\spbcd.dll
2014-05-19 07:22:41 ----A---- C:\Windows\system32\qdv.dll
2014-05-19 07:22:41 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2014-05-19 07:22:40 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2014-05-19 07:22:40 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2014-05-19 07:22:40 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2014-05-19 07:22:40 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2014-05-19 07:22:40 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2014-05-19 07:22:40 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2014-05-19 07:22:40 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2014-05-19 07:22:40 ----A---- C:\Windows\system32\takeown.exe
2014-05-19 07:22:40 ----A---- C:\Windows\system32\PnPUnattend.exe
2014-05-19 07:22:40 ----A---- C:\Windows\system32\fphc.dll
2014-05-19 07:22:40 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2014-05-19 07:22:40 ----A---- C:\Windows\system32\dot3ui.dll
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\utildll.dll
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\takeown.exe
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\fphc.dll
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2014-05-19 07:22:39 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2014-05-19 07:22:39 ----A---- C:\Windows\system32\WMPhoto.dll
2014-05-19 07:22:39 ----A---- C:\Windows\system32\EhStorAPI.dll
2014-05-19 07:22:39 ----A---- C:\Windows\system32\amstream.dll
2014-05-19 07:22:38 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2014-05-19 07:22:38 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2014-05-19 07:22:38 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2014-05-19 07:22:38 ----A---- C:\Windows\system32\vfwwdm32.dll
2014-05-19 07:22:38 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2014-05-19 07:22:37 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2014-05-19 07:22:37 ----A---- C:\Windows\SYSWOW64\qdv.dll
2014-05-19 07:22:37 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2014-05-19 07:22:37 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2014-05-19 07:22:37 ----A---- C:\Windows\system32\WavDest.dll
2014-05-19 07:22:37 ----A---- C:\Windows\system32\shimgvw.dll
2014-05-19 07:22:37 ----A---- C:\Windows\system32\QCLIPROV.DLL
2014-05-19 07:22:37 ----A---- C:\Windows\system32\nrpsrv.dll
2014-05-19 07:22:37 ----A---- C:\Windows\system32\iasrecst.dll
2014-05-19 07:22:37 ----A---- C:\Windows\system32\djoin.exe
2014-05-19 07:22:37 ----A---- C:\Windows\system32\cmstp.exe
2014-05-19 07:22:37 ----A---- C:\Windows\system32\CertPolEng.dll
2014-05-19 07:22:36 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2014-05-19 07:22:36 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2014-05-19 07:22:36 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2014-05-19 07:22:36 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2014-05-19 07:22:36 ----A---- C:\Windows\SYSWOW64\cca.dll
2014-05-19 07:22:36 ----A---- C:\Windows\system32\fdProxy.dll
2014-05-19 07:22:36 ----A---- C:\Windows\system32\drivers\usbser.sys
2014-05-19 07:22:35 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2014-05-19 07:22:35 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2014-05-19 07:22:35 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2014-05-19 07:22:35 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2014-05-19 07:22:35 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2014-05-19 07:22:35 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2014-05-19 07:22:35 ----A---- C:\Windows\system32\sscore.dll
2014-05-19 07:22:35 ----A---- C:\Windows\system32\relog.exe
2014-05-19 07:22:35 ----A---- C:\Windows\system32\mydocs.dll
2014-05-19 07:22:35 ----A---- C:\Windows\system32\MultiDigiMon.exe
2014-05-19 07:22:35 ----A---- C:\Windows\system32\KMSVC.DLL
2014-05-19 07:22:35 ----A---- C:\Windows\system32\iscsicli.exe
2014-05-19 07:22:35 ----A---- C:\Windows\system32\drivers\pacer.sys
2014-05-19 07:22:34 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2014-05-19 07:22:34 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2014-05-19 07:22:34 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2014-05-19 07:22:34 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2014-05-19 07:22:34 ----A---- C:\Windows\system32\diskpart.exe
2014-05-19 07:22:33 ----A---- C:\Windows\system32\mobsync.exe
2014-05-19 07:22:32 ----A---- C:\Windows\SYSWOW64\relog.exe
2014-05-19 07:22:32 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2014-05-19 07:22:31 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2014-05-19 07:22:31 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2014-05-19 07:22:31 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2014-05-19 07:22:31 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2014-05-19 07:22:31 ----A---- C:\Windows\system32\BdeHdCfg.exe
2014-05-19 07:22:30 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2014-05-19 07:22:30 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2014-05-19 07:22:30 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2014-05-19 07:22:30 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2014-05-19 07:22:30 ----A---- C:\Windows\SYSWOW64\amstream.dll
2014-05-19 07:22:30 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-05-19 07:22:30 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-05-19 07:22:30 ----A---- C:\Windows\system32\msdmo.dll
2014-05-19 07:22:30 ----A---- C:\Windows\system32\itircl.dll
2014-05-19 07:22:30 ----A---- C:\Windows\system32\dot3msm.dll
2014-05-19 07:22:29 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2014-05-19 07:22:29 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2014-05-19 07:22:29 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-05-19 07:22:29 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-05-19 07:22:29 ----A---- C:\Windows\SYSWOW64\resutils.dll
2014-05-19 07:22:29 ----A---- C:\Windows\SYSWOW64\itircl.dll
2014-05-19 07:22:29 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2014-05-19 07:22:29 ----A---- C:\Windows\system32\qprocess.exe
2014-05-19 07:22:29 ----A---- C:\Windows\system32\mciqtz32.dll
2014-05-19 07:22:29 ----A---- C:\Windows\system32\FXSTIFF.dll
2014-05-19 07:22:29 ----A---- C:\Windows\system32\eappgnui.dll
2014-05-19 07:22:28 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-05-19 07:22:28 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2014-05-19 07:22:28 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2014-05-19 07:22:28 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-05-19 07:22:28 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2014-05-19 07:22:28 ----A---- C:\Windows\SYSWOW64\findstr.exe
2014-05-19 07:22:28 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2014-05-19 07:22:28 ----A---- C:\Windows\system32\sppc.dll
2014-05-19 07:22:28 ----A---- C:\Windows\system32\luainstall.dll
2014-05-19 07:22:28 ----A---- C:\Windows\system32\choice.exe
2014-05-19 07:22:28 ----A---- C:\Windows\system32\findstr.exe
2014-05-19 07:22:28 ----A---- C:\Windows\system32\drivers\tunnel.sys
2014-05-19 07:22:27 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-05-19 07:22:27 ----A---- C:\Windows\SYSWOW64\netutils.dll
2014-05-19 07:22:27 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2014-05-19 07:22:27 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2014-05-19 07:22:27 ----A---- C:\Windows\system32\schedcli.dll
2014-05-19 07:22:27 ----A---- C:\Windows\system32\onexui.dll
2014-05-19 07:22:27 ----A---- C:\Windows\system32\chglogon.exe
2014-05-19 07:22:27 ----A---- C:\Windows\system32\drivers\dfsc.sys
2014-05-19 07:22:26 ----A---- C:\Windows\SYSWOW64\sppc.dll
2014-05-19 07:22:26 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2014-05-19 07:22:26 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2014-05-19 07:22:26 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2014-05-19 07:22:26 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2014-05-19 07:22:26 ----A---- C:\Windows\system32\spopk.dll
2014-05-19 07:22:26 ----A---- C:\Windows\system32\repair-bde.exe
2014-05-19 07:22:26 ----A---- C:\Windows\system32\qappsrv.exe
2014-05-19 07:22:26 ----A---- C:\Windows\system32\manage-bde.exe
2014-05-19 07:22:26 ----A---- C:\Windows\system32\inetmib1.dll
2014-05-19 07:22:25 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2014-05-19 07:22:25 ----A---- C:\Windows\SYSWOW64\spopk.dll
2014-05-19 07:22:25 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2014-05-19 07:22:25 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2014-05-19 07:22:25 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2014-05-19 07:22:25 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2014-05-19 07:22:25 ----A---- C:\Windows\system32\vmicres.dll
2014-05-19 07:22:25 ----A---- C:\Windows\system32\tscon.exe
2014-05-19 07:22:25 ----A---- C:\Windows\system32\RDPENCDD.dll
2014-05-19 07:22:25 ----A---- C:\Windows\system32\odbcconf.dll
2014-05-19 07:22:25 ----A---- C:\Windows\system32\chgport.exe
2014-05-19 07:22:25 ----A---- C:\Windows\system32\fixmapi.exe
2014-05-19 07:22:24 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2014-05-19 07:22:24 ----A---- C:\Windows\system32\vmstorfltres.dll
2014-05-19 07:22:24 ----A---- C:\Windows\system32\tskill.exe
2014-05-19 07:22:24 ----A---- C:\Windows\system32\tsdiscon.exe
2014-05-19 07:22:24 ----A---- C:\Windows\system32\shadow.exe
2014-05-19 07:22:24 ----A---- C:\Windows\system32\rwinsta.exe
2014-05-19 07:22:24 ----A---- C:\Windows\system32\logoff.exe
2014-05-19 07:22:24 ----A---- C:\Windows\system32\chgusr.exe
2014-05-19 07:22:24 ----A---- C:\Windows\system32\FXSMON.dll
2014-05-19 07:22:23 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-05-19 07:22:23 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2014-05-19 07:22:23 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2014-05-19 07:22:23 ----A---- C:\Windows\system32\vmbusres.dll
2014-05-19 07:22:23 ----A---- C:\Windows\system32\UIRibbonRes.dll
2014-05-19 07:22:23 ----A---- C:\Windows\system32\TRAPI.dll
2014-05-19 07:22:23 ----A---- C:\Windows\system32\elsTrans.dll
2014-05-19 07:22:23 ----A---- C:\Windows\system32\drivers\tdi.sys
2014-05-19 07:22:22 ----A---- C:\Windows\SYSWOW64\perfts.dll
2014-05-19 07:22:22 ----A---- C:\Windows\SYSWOW64\imm32.dll
2014-05-19 07:22:22 ----A---- C:\Windows\system32\wshbth.dll
2014-05-19 07:22:22 ----A---- C:\Windows\system32\LogonUI.exe
2014-05-19 07:22:21 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2014-05-19 07:22:21 ----A---- C:\Windows\system32\reset.exe
2014-05-19 07:22:21 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2014-05-19 07:22:21 ----A---- C:\Windows\system32\query.exe
2014-05-19 07:22:21 ----A---- C:\Windows\system32\napdsnap.dll
2014-05-19 07:22:21 ----A---- C:\Windows\system32\change.exe
2014-05-19 07:22:21 ----A---- C:\Windows\system32\FXSUNATD.exe
2014-05-19 07:22:21 ----A---- C:\Windows\system32\dsauth.dll
2014-05-19 07:22:20 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2014-05-19 07:22:20 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2014-05-19 07:22:20 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2014-05-19 07:22:20 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2014-05-19 07:22:20 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2014-05-19 07:22:20 ----A---- C:\Windows\system32\cscdll.dll
2014-05-19 07:22:20 ----A---- C:\Windows\system32\bitsperf.dll
2014-05-19 07:22:19 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2014-05-19 07:22:19 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2014-05-19 07:22:19 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2014-05-19 07:22:19 ----A---- C:\Windows\system32\wsdchngr.dll
2014-05-19 07:22:19 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2014-05-19 07:22:18 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2014-05-19 07:22:18 ----A---- C:\Windows\SYSWOW64\sscore.dll
2014-05-19 07:22:18 ----A---- C:\Windows\SYSWOW64\shgina.dll
2014-05-19 07:22:18 ----A---- C:\Windows\SYSWOW64\riched32.dll
2014-05-19 07:22:18 ----A---- C:\Windows\system32\shgina.dll
2014-05-19 07:22:17 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2014-05-19 07:22:17 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2014-05-19 07:22:16 ----A---- C:\Windows\system32\wshirda.dll
2014-05-19 07:22:15 ----A---- C:\Windows\system32\drivers\hidusb.sys
2014-05-19 07:22:15 ----A---- C:\Windows\system32\drivers\appid.sys
2014-05-19 07:22:14 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2014-05-19 07:22:14 ----A---- C:\Windows\system32\vmbuspipe.dll
2014-05-19 07:22:14 ----A---- C:\Windows\system32\riched32.dll
2014-05-19 07:22:14 ----A---- C:\Windows\system32\rdpcfgex.dll
2014-05-19 07:22:14 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2014-05-19 07:22:13 ----A---- C:\Windows\system32\spwmp.dll
2014-05-19 07:22:13 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2014-05-19 07:22:13 ----A---- C:\Windows\system32\browseui.dll
2014-05-19 07:22:12 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2014-05-19 07:22:12 ----A---- C:\Windows\SYSWOW64\browseui.dll
2014-05-19 07:22:12 ----A---- C:\Windows\system32\VmdCoinstall.dll
2014-05-19 07:22:12 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2014-05-19 07:22:12 ----A---- C:\Windows\system32\IcCoinstall.dll
2014-05-19 07:22:12 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2014-05-19 07:22:12 ----A---- C:\Windows\system32\C_ISCII.DLL
2014-05-19 07:22:11 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2014-05-19 07:22:11 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2014-05-19 07:22:11 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2014-05-19 07:22:11 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2014-05-19 07:22:11 ----A---- C:\Windows\system32\shunimpl.dll
2014-05-19 07:22:11 ----A---- C:\Windows\system32\dxmasf.dll
2014-05-19 07:22:11 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2014-05-19 07:22:11 ----A---- C:\Windows\system32\drivers\scfilter.sys
2014-05-19 07:22:11 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-05-19 07:22:11 ----A---- C:\Windows\system32\drivers\cdrom.sys
2014-05-19 07:22:10 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2014-05-19 07:22:10 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\system32\KBDTUQ.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\system32\KBDTUF.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\system32\KBDSG.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\system32\KBDSF.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\system32\KBDPO.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\system32\KBDINTAM.DLL
2014-05-19 07:22:10 ----A---- C:\Windows\system32\KBDINBEN.DLL
2014-05-19 07:22:09 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-05-19 07:22:09 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2014-05-19 07:22:09 ----A---- C:\Windows\system32\wmploc.DLL
2014-05-19 07:22:09 ----A---- C:\Windows\system32\KBDNEPR.DLL
2014-05-19 07:22:09 ----A---- C:\Windows\system32\kbdlk41a.dll
2014-05-19 07:22:09 ----A---- C:\Windows\system32\KBDGR1.DLL
2014-05-19 07:22:09 ----A---- C:\Windows\system32\KBDGKL.DLL
2014-05-19 07:22:08 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2014-05-19 07:22:08 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2014-05-19 07:22:08 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2014-05-19 07:22:08 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2014-05-19 07:22:08 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2014-05-19 07:22:08 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2014-05-19 07:22:08 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL

Petan999
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 27 kvě 2014 14:59

Re: Neustálé hlášení Avast!u

#27 Příspěvek od Petan999 »

A ještě zbytek


2014-05-19 07:22:07 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2014-05-19 07:22:07 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2014-05-19 07:22:07 ----A---- C:\Windows\system32\KBDUS.DLL
2014-05-19 07:22:07 ----A---- C:\Windows\system32\KBDGEO.DLL
2014-05-19 07:22:07 ----A---- C:\Windows\system32\KBDCZ1.DLL
2014-05-19 07:22:07 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2014-05-19 07:22:06 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\system32\KBDMON.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\system32\KBDLT1.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\system32\KBDBULG.DLL
2014-05-19 07:22:05 ----A---- C:\Windows\system32\KBDBLR.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2014-05-19 07:22:04 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2014-05-19 07:22:04 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2014-05-19 07:22:04 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\system32\spwizres.dll
2014-05-19 07:22:04 ----A---- C:\Windows\system32\pifmgr.dll
2014-05-19 07:22:04 ----A---- C:\Windows\system32\nlsbres.dll
2014-05-19 07:22:04 ----A---- C:\Windows\system32\KBDTURME.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\system32\KBDMAORI.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\system32\KBDINTEL.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\system32\KBDINORI.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\system32\KBDINMAR.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\system32\KBDINKAN.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\system32\KBDINHIN.DLL
2014-05-19 07:22:04 ----A---- C:\Windows\system32\KBDBASH.DLL
2014-05-19 07:22:03 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2014-05-19 07:22:03 ----A---- C:\Windows\system32\BlbEvents.dll
2014-05-19 07:21:35 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2014-05-19 07:21:32 ----A---- C:\Windows\system32\dpx.dll
2014-05-19 07:21:11 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2014-05-19 07:21:07 ----A---- C:\Windows\SYSWOW64\printmanagement.msc
2014-05-19 07:20:47 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2014-05-19 07:17:52 ----A---- C:\Windows\system32\wbemcomn.dll
2014-05-19 07:17:39 ----A---- C:\Windows\system32\sqmapi.dll
2014-05-19 06:39:18 ----A---- C:\Windows\system32\Wdfres.dll
2014-05-19 06:39:18 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-05-19 06:39:18 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-05-19 06:25:10 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-05-19 06:25:10 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-19 06:25:09 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-05-19 06:25:08 ----A---- C:\Windows\SYSWOW64\url.dll
2014-05-19 06:25:08 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-05-19 06:25:08 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-05-19 06:25:08 ----A---- C:\Windows\system32\url.dll
2014-05-19 06:25:08 ----A---- C:\Windows\system32\ieUnatt.exe
2014-05-19 06:25:08 ----A---- C:\Windows\system32\ieui.dll
2014-05-19 06:25:07 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-05-19 06:25:07 ----A---- C:\Windows\system32\urlmon.dll
2014-05-19 06:25:06 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-05-19 06:25:06 ----A---- C:\Windows\system32\msfeeds.dll
2014-05-19 06:25:06 ----A---- C:\Windows\system32\jscript9.dll
2014-05-19 06:25:05 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-05-19 06:25:05 ----A---- C:\Windows\system32\wininet.dll
2014-05-19 06:25:05 ----A---- C:\Windows\system32\jsproxy.dll
2014-05-19 06:25:04 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-05-19 06:25:04 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-05-19 06:25:04 ----A---- C:\Windows\system32\vbscript.dll
2014-05-19 06:25:04 ----A---- C:\Windows\system32\jscript.dll
2014-05-19 06:25:04 ----A---- C:\Windows\system32\iertutil.dll
2014-05-19 06:25:03 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-05-19 06:25:03 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-05-19 06:25:01 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-05-19 06:25:00 ----A---- C:\Windows\system32\mshtml.dll
2014-05-19 06:24:58 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-05-19 06:24:58 ----A---- C:\Windows\system32\ieframe.dll
2014-05-19 06:23:55 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-05-19 06:23:55 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-05-19 06:23:55 ----A---- C:\Windows\system32\atmlib.dll
2014-05-19 06:23:55 ----A---- C:\Windows\system32\atmfd.dll
2014-05-19 06:23:22 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2014-05-19 06:23:22 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2014-05-19 06:23:21 ----A---- C:\Windows\system32\WUDFSvc.dll
2014-05-19 06:23:21 ----A---- C:\Windows\system32\WUDFPlatform.dll
2014-05-19 06:23:20 ----A---- C:\Windows\system32\WUDFx.dll
2014-05-19 06:23:20 ----A---- C:\Windows\system32\WUDFHost.exe
2014-05-19 06:23:20 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2014-05-16 15:15:05 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-05-16 15:15:05 ----A---- C:\Windows\system32\d3d10level9.dll
2014-05-16 15:15:03 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-05-16 15:15:03 ----A---- C:\Windows\system32\usp10.dll
2014-05-16 15:14:51 ----A---- C:\Windows\system32\Wpc.dll
2014-05-16 15:14:51 ----A---- C:\Windows\system32\gameux.dll
2014-05-16 15:14:50 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-05-16 15:14:50 ----A---- C:\Windows\SYSWOW64\gameux.dll
2014-05-16 15:13:47 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-16 15:13:46 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-05-16 15:13:45 ----A---- C:\Windows\system32\kernel32.dll
2014-05-16 15:13:44 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-05-16 15:13:44 ----A---- C:\Windows\system32\conhost.exe
2014-05-16 15:13:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-05-16 15:13:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-05-16 15:13:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-05-16 15:13:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-05-16 15:13:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-05-16 15:13:38 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-05-16 15:13:38 ----A---- C:\Windows\system32\wow64win.dll
2014-05-16 15:13:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-05-16 15:13:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-05-16 15:13:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-05-16 15:13:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-05-16 15:13:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-05-16 15:13:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-05-16 15:13:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-05-16 15:13:35 ----A---- C:\Windows\system32\wow64.dll
2014-05-16 15:13:33 ----A---- C:\Windows\system32\wow64cpu.dll
2014-05-16 15:13:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-05-16 15:13:32 ----A---- C:\Windows\system32\ntvdm64.dll
2014-05-16 15:13:25 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-05-16 15:13:24 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-05-16 15:13:24 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-05-16 15:13:24 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-05-16 15:13:24 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-05-16 15:13:23 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-05-16 15:13:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-05-16 15:13:22 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-05-16 15:13:22 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-05-16 15:13:22 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-05-16 15:13:22 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-05-16 15:13:21 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-05-16 15:13:20 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-05-16 15:13:20 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-05-16 15:13:19 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-05-16 15:13:19 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-05-16 15:13:19 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-05-16 15:13:19 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-05-16 15:13:19 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-05-16 15:13:18 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-05-16 15:13:18 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-05-16 15:13:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-05-16 15:13:17 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-05-16 15:13:17 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-05-16 15:13:17 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-05-16 15:13:16 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-05-16 15:13:16 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-05-16 15:13:16 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-05-16 15:13:16 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-05-16 15:13:16 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-05-16 15:13:10 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-05-16 15:13:10 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-05-16 15:10:16 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-05-15 20:58:31 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-05-15 20:58:31 ----A---- C:\Windows\system32\win32spl.dll
2014-05-15 20:58:28 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-05-15 20:58:28 ----A---- C:\Windows\system32\mstscax.dll
2014-05-15 20:58:27 ----A---- C:\Windows\system32\aaclient.dll
2014-05-15 20:58:26 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-05-15 20:58:26 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2014-05-15 20:58:26 ----A---- C:\Windows\system32\tsgqec.dll
2014-05-15 20:58:03 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-05-15 20:58:03 ----A---- C:\Windows\system32\tzres.dll
2014-05-15 20:57:49 ----A---- C:\Windows\system32\win32k.sys
2014-05-15 20:56:57 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-05-15 20:56:46 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-05-15 20:56:44 ----A---- C:\Windows\system32\msxml6.dll
2014-05-15 20:56:44 ----A---- C:\Windows\system32\msxml3.dll
2014-05-15 20:56:43 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-05-15 20:56:43 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-05-15 20:55:46 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-05-15 20:55:46 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-05-15 20:55:46 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2014-05-15 20:55:46 ----A---- C:\Windows\system32\ncrypt.dll
2014-05-15 20:55:46 ----A---- C:\Windows\system32\dpnet.dll
2014-05-15 20:55:46 ----A---- C:\Windows\system32\dpnaddr.dll
2014-05-15 20:55:43 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-05-15 20:55:43 ----A---- C:\Windows\system32\wintrust.dll
2014-05-15 20:55:41 ----A---- C:\Windows\system32\winsrv.dll
2014-05-15 20:55:40 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-05-15 20:55:40 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-05-15 20:55:39 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-05-15 20:55:39 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-05-15 20:55:37 ----A---- C:\Windows\SYSWOW64\user.exe
2014-05-15 20:55:00 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-05-15 20:54:59 ----A---- C:\Windows\system32\drivers\netio.sys
2014-05-15 20:54:59 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-05-15 20:54:23 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-05-15 20:54:23 ----A---- C:\Windows\system32\kerberos.dll
2014-05-15 20:54:20 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-05-15 20:54:20 ----A---- C:\Windows\system32\synceng.dll
2014-05-15 20:54:18 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-15 20:54:15 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-05-15 20:54:14 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-05-15 20:54:11 ----A---- C:\Windows\system32\smss.exe
2014-05-15 20:54:11 ----A---- C:\Windows\system32\csrsrv.dll
2014-05-15 20:54:10 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-05-15 20:53:40 ----A---- C:\Windows\system32\crypt32.dll
2014-05-15 20:53:39 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-05-15 20:53:39 ----A---- C:\Windows\system32\cryptsvc.dll
2014-05-15 20:53:39 ----A---- C:\Windows\system32\cryptnet.dll
2014-05-15 20:53:38 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-05-15 20:53:38 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-05-15 20:14:48 ----D---- C:\Program Files (x86)\GOTCHA!
2014-05-14 20:50:01 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2014-05-12 15:40:06 ----D---- C:\Users\Krkinho\AppData\Roaming\Opera Software
2014-05-11 21:51:59 ----D---- C:\Users\Krkinho\AppData\Roaming\Sony Creative Software
2014-05-11 21:11:31 ----D---- C:\ProgramData\Sony
2014-05-11 20:49:19 ----D---- C:\ProgramData\Pinnacle
2014-05-07 06:56:04 ----D---- C:\ProgramData\webcam 7

======List of files/folders modified in the last 1 month======

2014-06-02 18:41:17 ----D---- C:\Windows\Temp
2014-06-02 18:40:15 ----D---- C:\Windows\Prefetch
2014-06-02 18:37:34 ----D---- C:\Windows
2014-06-02 18:31:37 ----D---- C:\Users\Krkinho\AppData\Roaming\DAEMON Tools Lite
2014-06-02 18:31:36 ----D---- C:\Program Files (x86)\Steam
2014-06-02 18:31:35 ----D---- C:\Users\Krkinho\AppData\Roaming\uTorrent
2014-06-02 18:31:35 ----D---- C:\Users\Krkinho\AppData\Roaming\Skype
2014-06-02 18:25:18 ----D---- C:\Windows\system32\Tasks
2014-06-02 18:25:13 ----RD---- C:\Program Files
2014-06-02 16:48:13 ----SHD---- C:\System Volume Information
2014-06-01 22:01:02 ----D---- C:\Windows\inf
2014-06-01 22:00:06 ----D---- C:\Program Files (x86)\Glary Utilities 4
2014-06-01 20:10:23 ----N---- C:\Windows\system.ini
2014-06-01 20:10:17 ----D---- C:\Windows\system32\drivers\etc
2014-06-01 20:06:58 ----D---- C:\Windows\SYSWOW64\drivers
2014-06-01 20:06:58 ----D---- C:\Windows\SysWOW64
2014-06-01 20:06:58 ----D---- C:\Windows\AppPatch
2014-06-01 20:06:57 ----D---- C:\Program Files (x86)\Common Files
2014-05-30 20:58:21 ----D---- C:\Windows\system32\config
2014-05-30 20:37:07 ----D---- C:\Windows\rescache
2014-05-30 18:55:02 ----D---- C:\Program Files (x86)\Counter-Strike 1.6 Non-Steam
2014-05-30 18:30:32 ----D---- C:\Windows\System32
2014-05-30 18:30:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-05-30 18:01:56 ----RD---- C:\Program Files (x86)
2014-05-30 18:00:58 ----D---- C:\ProgramData
2014-05-30 17:44:22 ----D---- C:\Windows\system32\drivers
2014-05-29 19:13:42 ----AD---- C:\ProgramData\TEMP
2014-05-27 15:20:07 ----D---- C:\ProgramData\CanonIJPLM
2014-05-25 15:12:33 ----D---- C:\Windows\system32\catroot2
2014-05-23 15:28:25 ----D---- C:\Program Files (x86)\Mp3 Convert Master
2014-05-23 14:33:02 ----D---- C:\Windows\Minidump
2014-05-21 18:03:23 ----SHD---- C:\Windows\Installer
2014-05-21 18:03:23 ----D---- C:\ProgramData\Skype
2014-05-21 18:03:20 ----RD---- C:\Program Files (x86)\Skype
2014-05-20 15:48:23 ----RSD---- C:\Windows\assembly
2014-05-20 15:48:23 ----D---- C:\Windows\Microsoft.NET
2014-05-19 19:15:51 ----D---- C:\Users\Krkinho\AppData\Roaming\vlc
2014-05-19 14:22:33 ----D---- C:\Windows\system32\catroot
2014-05-19 14:08:18 ----D---- C:\Windows\winsxs
2014-05-19 14:06:44 ----D---- C:\Windows\system32\DriverStore
2014-05-19 13:57:29 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-05-19 13:57:29 ----D---- C:\Program Files (x86)\Windows Portable Devices
2014-05-19 13:57:29 ----D---- C:\Program Files (x86)\Windows Mail
2014-05-19 13:57:28 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-05-19 13:57:28 ----D---- C:\Program Files (x86)\Windows Media Player
2014-05-19 13:57:16 ----D---- C:\Program Files\Windows Sidebar
2014-05-19 13:57:16 ----D---- C:\Program Files\Windows Mail
2014-05-19 13:57:15 ----D---- C:\Program Files\DVD Maker
2014-05-19 13:57:14 ----D---- C:\Program Files\Windows Portable Devices
2014-05-19 13:57:14 ----D---- C:\Program Files\Windows Media Player
2014-05-19 13:57:13 ----D---- C:\Program Files\Windows Photo Viewer
2014-05-19 13:57:12 ----D---- C:\Program Files\Windows Journal
2014-05-19 13:57:08 ----D---- C:\Program Files\Common Files\System
2014-05-19 13:57:01 ----D---- C:\Program Files\Windows Defender
2014-05-19 13:57:00 ----D---- C:\Windows\servicing
2014-05-19 13:56:59 ----D---- C:\Windows\ehome
2014-05-19 13:56:18 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2014-05-19 13:56:17 ----D---- C:\Windows\SYSWOW64\oobe
2014-05-19 13:56:17 ----D---- C:\Windows\SYSWOW64\da-DK
2014-05-19 13:56:16 ----D---- C:\Windows\SYSWOW64\migration
2014-05-19 13:56:14 ----D---- C:\Windows\SYSWOW64\Setup
2014-05-19 13:56:14 ----D---- C:\Windows\SYSWOW64\cs
2014-05-19 13:56:14 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2014-05-19 13:56:09 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-05-19 13:56:02 ----D---- C:\Windows\SYSWOW64\manifeststore
2014-05-19 13:56:01 ----D---- C:\Windows\SYSWOW64\sppui
2014-05-19 13:56:01 ----D---- C:\Windows\SYSWOW64\es-ES
2014-05-19 13:55:59 ----D---- C:\Windows\SYSWOW64\wbem
2014-05-19 13:55:57 ----D---- C:\Windows\SYSWOW64\migwiz
2014-05-19 13:55:56 ----D---- C:\Windows\SYSWOW64\Dism
2014-05-19 13:54:22 ----D---- C:\Windows\system32\da-DK
2014-05-19 13:54:22 ----D---- C:\Windows\PolicyDefinitions
2014-05-19 13:54:20 ----D---- C:\Windows\system32\oobe
2014-05-19 13:54:20 ----D---- C:\Windows\system32\en-US
2014-05-19 13:54:18 ----D---- C:\Windows\system32\migration
2014-05-19 13:54:17 ----D---- C:\Windows\system32\AdvancedInstallers
2014-05-19 13:54:16 ----D---- C:\Windows\system32\Setup
2014-05-19 13:54:16 ----D---- C:\Windows\system32\cs
2014-05-19 13:54:11 ----D---- C:\Windows\system32\cs-CZ
2014-05-19 13:53:58 ----D---- C:\Windows\system32\manifeststore
2014-05-19 13:53:58 ----D---- C:\Windows\system32\es-ES
2014-05-19 13:53:57 ----D---- C:\Windows\system32\sppui
2014-05-19 13:53:52 ----D---- C:\Windows\system32\drivers\cs-CZ
2014-05-19 13:53:50 ----D---- C:\Windows\system32\drivers\UMDF
2014-05-19 13:53:47 ----D---- C:\Windows\system32\wbem
2014-05-19 13:53:41 ----D---- C:\Windows\system32\migwiz
2014-05-19 13:53:40 ----D---- C:\Windows\system32\Dism
2014-05-19 13:51:36 ----RSD---- C:\Windows\Fonts
2014-05-19 13:50:41 ----D---- C:\Windows\system32\Boot
2014-05-19 13:43:21 ----D---- C:\ProgramData\Microsoft Help
2014-05-19 13:41:02 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2014-05-19 13:41:02 ----A---- C:\Windows\system32\msclmd.dll
2014-05-19 12:52:48 ----D---- C:\Program Files\Microsoft Silverlight
2014-05-19 12:52:46 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-05-19 12:50:18 ----D---- C:\Program Files (x86)\Internet Explorer
2014-05-19 12:50:14 ----D---- C:\Program Files\Internet Explorer
2014-05-19 06:19:29 ----D---- C:\Program Files (x86)\Microsoft Works
2014-05-19 06:16:06 ----A---- C:\Windows\win.ini
2014-05-19 06:15:38 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2014-05-17 15:59:22 ----D---- C:\Users\Krkinho\AppData\Roaming\.minecraft
2014-05-16 12:56:50 ----D---- C:\Program Files (x86)\Opera
2014-05-15 20:29:44 ----D---- C:\Windows\SoftwareDistribution
2014-05-14 20:50:08 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-05-04 16:16:55 ----D---- C:\Program Files (x86)\Electronic Arts
2014-05-04 12:09:41 ----D---- C:\Program Files (x86)\Adobe
2014-05-04 12:01:48 ----D---- C:\Users\Krkinho\AppData\Roaming\Adobe
2014-05-04 12:01:13 ----D---- C:\ProgramData\Adobe
2014-05-04 11:46:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-05-04 11:39:58 ----D---- C:\Program Files (x86)\Ubisoft
2014-05-03 23:23:47 ----D---- C:\Program Files (x86)\DSPRobotics

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-04-18 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-04-18 208416]
R0 BootDefragDriver;BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys [2014-03-17 17600]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 30008]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-04-26 557848]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-04-18 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-05-17 1039096]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-05-17 423240]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-06-09 283200]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-04-18 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-04-18 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-05-17 85328]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 43320]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-03-28 9319424]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-03-28 303616]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-04-21 2727424]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2011-07-06 25912]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]
R3 intelkmd;intelkmd; C:\Windows\system32\DRIVERS\igdpmd64.sys [2011-01-27 12273408]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2000-01-01 174680]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 25928]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-10-26 406632]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2010-12-21 1826048]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\Windows\system32\DRIVERS\stwrt64.sys [2011-05-27 528384]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-04-18 1413168]
R3 taphss;Anchorfree HSS Adapter; C:\Windows\system32\DRIVERS\taphss.sys [2012-03-26 37888]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S0 prohlp02;StarForce Protection Helper Driver v2; C:\Windows\System32\drivers\prohlp02.sys []
S0 prosync1;StarForce Protection Synchronization Driver v1; C:\Windows\System32\drivers\prosync1.sys []
S0 sfhlp01;StarForce Protection Helper Driver; C:\Windows\System32\drivers\sfhlp01.sys []
S1 prodrv06;StarForce Protection Environment Driver v6; C:\Windows\System32\drivers\prodrv06.sys []
S3 aswTap;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2013-11-20 44640]
S3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys []
S3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys []
S3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys []
S3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys []
S3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys []
S3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys []
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 DFX11_1;DFX Audio Enhancer 11.1; C:\Windows\system32\drivers\dfx11_1x64.sys [2012-12-13 28008]
S3 esgiguard;esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [2010-01-27 5248]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 ScreamBAudioSvc;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2010-07-01 38992]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-03-28 203264]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-04-18 50344]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-04-11 1390720]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-07-05 227384]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [2011-07-06 1698360]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2011-05-13 30520]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-04-30 13592]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2009-02-10 116104]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 NMSAccessU;NMSAccessU; C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe [2008-06-15 71096]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-12-27 76888]
R2 SpyHunter 4 Service;SpyHunter 4 Service; C:\PROGRA~2\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE [2010-05-18 327064]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2011-05-27 301568]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-07-05 988216]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2011-09-12 85096]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2011-03-16 407336]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-09-09 1255736]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Neustálé hlášení Avast!u

#28 Příspěvek od motji »

To může být třeba chyba grafiky :?:
Jinak co se týče virů, mělo by to být ok :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Petan999
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 27 kvě 2014 14:59

Re: Neustálé hlášení Avast!u

#29 Příspěvek od Petan999 »

Ok...díky moc! :)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Neustálé hlášení Avast!u

#30 Příspěvek od motji »

Není zač :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět