

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
pomalý , nestabilní internet
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
pomalý , nestabilní internet
Ahoj , v poslední době se mi opravdu dost zpomalil net dříve jsem hrál online hry s pingem 29-32 a teď mi tam skáče ping i 800 -,- a tudíž se pro mě hra stává absolutně nehratelná , načítání stránek je opravdu pomalé a tak mě napadlo , jestli nemám zavirovaný počítač ale nevím , jak to zjistit avast , AVG , Norton nic nenašel a tak opravdu nevím co s tím takže byl bych rád pokud by jste mi s tím pomohly
děkuji .

- Rudy
- Site Admin
- Příspěvky: 119545
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: pomalý , nestabilní internet
Zdravím!
Nejprve zkuste restartovat modem, případně další síť. prvek v datové cestě. Pokud se stav nezmění, dejte log RSIT: http://forum.viry.cz/viewtopic.php?f=13&t=130786 .
Nejprve zkuste restartovat modem, případně další síť. prvek v datové cestě. Pokud se stav nezmění, dejte log RSIT: http://forum.viry.cz/viewtopic.php?f=13&t=130786 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: pomalý , nestabilní internet
Logfile of random's system information tool 1.10 (written by random/random)
Run by Acer at 2014-08-29 20:23:47
Microsoft Windows 8
System drive C: has 143 GB (63%) free of 228 GB
Total RAM: 3983 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:23:58, on 29. 8. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.17054)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Users\Acer\AppData\Roaming\StartMenu\StartMenu.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Acer.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Acer\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [StartMenu] C:\Users\Acer\AppData\Roaming\StartMenu\StartMenu.exe
O4 - HKCU\..\Run: [ShowDesktopAsRun] C:\Users\Acer\AppData\Roaming\StartMenu\desktop.scf
O4 - HKCU\..\Run: [MK LOL] "C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe" -auto
O4 - HKUS\S-1-5-18\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'Default user')
O4 - Startup: GamezUnited.lnk = C:\Users\Acer\AppData\Roaming\GamezUnited\GamezUnited.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O20 - AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) - Broadcom Corp. - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8438 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
dashost.exe {1f700c66-d002-4296-a414b9fcd884f437}
"C:\Program Files\Elantech\ETDService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE
C:\Windows\RfBtnSvc64.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window --enable-setforeground-window --enable-kbhook-window
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\system32\igfxext.exe -Embedding
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\igfxpers.exe"
"C:\Users\Acer\AppData\Roaming\StartMenu\StartMenu.exe"
"C:\Program Files (x86)\RadioController\RfBtnHelper.exe" HigherRFButtonHelper
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
"C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"c:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4344.0.220043771\556931182" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,5,16 --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.3062 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --channel="4344.4.1346742189\1855492592" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --channel="4344.8.1437575197\716856661" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --channel="4344.9.950700244\194987859" /prefetch:673131151
"C:\Users\Acer\Downloads\RSITx64.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe23_ Global\UsGthrCtrlFltPipeMssGthrPipe23 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 576 580 588 65536 584
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\ParetoLogic Registration3.job - C:\Windows\system32\rundll32.exe "C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll" RunUns
C:\Windows\tasks\ParetoLogic Update Version3 Startup Task.job - C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe -StartupTask
C:\Windows\tasks\ParetoLogic Update Version3.job - C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
C:\Windows\tasks\Uninstaller_SkipUac_Administrator.job - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-06-25 2471744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-07-28 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-07-28 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2012-11-20 2873744]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-06-25 172016]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-06-25 399856]
"Persistence"=C:\Windows\system32\igfxpers.exe [2014-06-25 442352]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-07-24 21650016]
"Akamai NetSession Interface"=C:\Users\Acer\AppData\Local\Akamai\netsession_win.exe [2014-04-17 4672920]
"AdobeBridge"= []
"StartMenu"=C:\Users\Acer\AppData\Roaming\StartMenu\StartMenu.exe [2013-11-08 3360000]
"ShowDesktopAsRun"=C:\Users\Acer\AppData\Roaming\StartMenu\desktop.scf [2014-08-12 81]
"MK LOL"=C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe [2014-08-25 1089736]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
"LManager"= []
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2014-05-01 111216]
"Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2012-08-15 2994880]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-01 4085896]
C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
GamezUnited.lnk - C:\Users\Acer\AppData\Roaming\GamezUnited\GamezUnited.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2014-06-25 442880]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2014-08-29 20:23:47 ----D---- C:\rsit
2014-08-29 20:23:47 ----D---- C:\Program Files\trend micro
2014-08-28 21:18:40 ----D---- C:\Program Files\Microsoft Silverlight
2014-08-28 21:18:40 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-08-19 10:58:14 ----A---- C:\Windows\JQHApp.dat
2014-08-19 10:57:38 ----D---- C:\Program Files (x86)\MKJogo
2014-08-17 23:08:42 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-08-17 23:06:19 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-17 23:06:19 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-17 19:11:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-17 19:11:51 ----A---- C:\Windows\system32\cdd.dll
2014-08-17 19:11:06 ----A---- C:\Windows\system32\twinui.dll
2014-08-17 19:10:57 ----A---- C:\Windows\SYSWOW64\twinui.dll
2014-08-17 19:10:55 ----A---- C:\Windows\system32\actxprxy.dll
2014-08-17 19:10:54 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-17 19:10:54 ----A---- C:\Windows\system32\msi.dll
2014-08-17 19:10:53 ----A---- C:\Windows\system32\authui.dll
2014-08-17 19:10:52 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-17 19:10:51 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-08-17 19:10:51 ----A---- C:\Windows\system32\msihnd.dll
2014-08-17 19:10:51 ----A---- C:\Windows\system32\consent.exe
2014-08-17 19:10:49 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-17 19:10:47 ----A---- C:\Windows\system32\aepdu.dll
2014-08-17 19:10:46 ----A---- C:\Windows\system32\aeinv.dll
2014-08-17 19:10:29 ----A---- C:\Windows\system32\mshtml.dll
2014-08-17 19:10:24 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-17 19:10:22 ----A---- C:\Windows\system32\ieframe.dll
2014-08-17 19:10:20 ----A---- C:\Windows\system32\jscript9.dll
2014-08-17 19:10:19 ----A---- C:\Windows\system32\iertutil.dll
2014-08-17 19:10:18 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-17 19:10:17 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-17 19:10:17 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-17 19:10:17 ----A---- C:\Windows\system32\urlmon.dll
2014-08-17 19:10:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-17 19:10:15 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-17 19:10:15 ----A---- C:\Windows\system32\wininet.dll
2014-08-17 19:10:15 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-17 19:10:14 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-17 19:10:14 ----A---- C:\Windows\system32\jscript.dll
2014-08-17 19:10:14 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-17 19:10:13 ----A---- C:\Windows\system32\uxtheme.dll
2014-08-17 19:10:13 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-17 19:10:12 ----A---- C:\Windows\SYSWOW64\UXInit.dll
2014-08-17 19:10:12 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-17 19:10:12 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-08-17 19:10:12 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\msrating.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\iesysprep.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\iernonce.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-17 19:10:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-17 19:10:10 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-17 19:10:10 ----A---- C:\Windows\system32\UXInit.dll
2014-08-17 19:10:10 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-17 19:10:09 ----A---- C:\Windows\SYSWOW64\uxtheme.dll
2014-08-17 19:10:09 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-17 19:10:09 ----A---- C:\Windows\system32\iesetup.dll
2014-08-17 19:10:05 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-17 19:10:05 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-13 18:42:55 ----D---- C:\Users\Acer\AppData\Roaming\Awesomium
2014-08-13 18:42:39 ----D---- C:\ProgramData\Hi-Rez Studios
2014-08-13 18:42:24 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2014-08-12 23:20:38 ----D---- C:\Users\Acer\AppData\Roaming\Temp
2014-08-12 20:09:38 ----D---- C:\Users\Acer\AppData\Roaming\StartMenu
2014-08-08 20:24:57 ----D---- C:\ProgramData\Nexon
2014-08-08 20:09:20 ----D---- C:\Nexon
2014-08-08 20:09:01 ----D---- C:\ProgramData\NexonEU
2014-07-31 20:42:53 ----D---- C:\Program Files (x86)\Star Conflict
2014-07-31 02:36:01 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-07-31 02:32:59 ----D---- C:\Program Files\Common Files\Adobe
2014-07-31 02:31:43 ----D---- C:\Program Files (x86)\Adobe Media Player
2014-07-31 02:29:51 ----D---- C:\Program Files (x86)\Adobe
2014-07-31 02:28:49 ----D---- C:\ProgramData\Adobe
2014-07-28 22:09:12 ----D---- C:\Users\Acer\AppData\Roaming\Unity
2014-07-28 14:09:06 ----A---- C:\Windows\avastSS.scr
2014-07-22 10:30:06 ----D---- C:\Users\Acer\AppData\Roaming\CyberLink
2014-07-17 11:08:07 ----D---- C:\ProgramData\Riot Games
2014-07-16 08:49:15 ----D---- C:\Users\Acer\AppData\Roaming\ParetoLogic
2014-07-16 08:49:15 ----D---- C:\Users\Acer\AppData\Roaming\DriverCure
2014-07-16 08:49:02 ----D---- C:\ProgramData\ParetoLogic
2014-07-16 08:49:02 ----D---- C:\Program Files (x86)\ParetoLogic
2014-07-16 08:38:42 ----A---- C:\Windows\system32\FNTCACHE.DAT
2014-07-14 19:25:23 ----D---- C:\Users\Acer\AppData\Roaming\TS3Client
2014-07-14 19:24:37 ----D---- C:\Program Files (x86)\TeamSpeak 3 Client
2014-07-13 13:01:48 ----D---- C:\Users\Acer\AppData\Roaming\teamspeak2
2014-07-13 10:37:34 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2014-07-13 10:37:34 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2014-07-12 12:45:14 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-07-12 12:41:35 ----SD---- C:\Windows\system32\CompatTel
2014-07-12 12:16:39 ----A---- C:\Windows\SYSWOW64\MSSTDFMT.DLL
2014-07-12 12:16:38 ----A---- C:\Windows\SYSWOW64\IJL_11.DLL
2014-07-10 07:49:36 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-07-10 07:49:34 ----A---- C:\Windows\system32\localspl.dll
2014-07-10 07:49:33 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-07-10 07:49:33 ----A---- C:\Windows\system32\ntdll.dll
2014-07-10 07:49:31 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2014-07-10 07:49:31 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2014-07-10 07:49:31 ----A---- C:\Windows\system32\WSShared.dll
2014-07-10 07:49:31 ----A---- C:\Windows\system32\Robocopy.exe
2014-07-10 07:49:30 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-10 07:49:30 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-10 07:49:27 ----A---- C:\Windows\system32\win32k.sys
2014-07-10 07:49:26 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-07-10 07:49:26 ----A---- C:\Windows\system32\osk.exe
2014-07-10 07:49:19 ----A---- C:\Windows\system32\InkEd.dll
2014-07-10 07:49:06 ----A---- C:\Windows\system32\lsasrv.dll
2014-07-10 07:49:04 ----A---- C:\Windows\system32\SHCore.dll
2014-07-10 07:49:01 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2014-07-10 07:49:01 ----A---- C:\Windows\system32\lsm.dll
2014-07-10 07:48:48 ----A---- C:\Windows\system32\devinv.dll
2014-07-10 07:48:47 ----A---- C:\Windows\system32\aepic.dll
2014-07-10 07:47:26 ----A---- C:\Windows\system32\drivers\afd.sys
2014-07-10 07:47:25 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-07-10 07:47:25 ----A---- C:\Windows\system32\qedit.dll
2014-07-08 10:48:16 ----D---- C:\Program Files (x86)\Overwolf
2014-07-05 16:06:54 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-07-05 16:06:54 ----A---- C:\Windows\system32\wudriver.dll
2014-07-05 16:06:53 ----A---- C:\Windows\system32\storewuauth.dll
2014-07-05 16:06:48 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2014-07-05 16:06:48 ----A---- C:\Windows\system32\wuauclt.exe
2014-07-05 16:06:45 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-07-05 16:06:45 ----A---- C:\Windows\system32\wucltux.dll
2014-07-05 16:06:45 ----A---- C:\Windows\system32\wuaueng.dll
2014-07-05 16:06:45 ----A---- C:\Windows\system32\wuapi.dll
2014-07-05 16:06:28 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-07-05 16:06:28 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-07-05 16:06:28 ----A---- C:\Windows\system32\wuwebv.dll
2014-07-05 16:06:28 ----A---- C:\Windows\system32\wuapp.exe
2014-06-27 22:09:51 ----D---- C:\ProgramData\TamoSoft
2014-06-26 20:59:42 ----D---- C:\Users\Acer\AppData\Roaming\AVAST Software
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswstm.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswsp.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswsnx.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-06-26 20:58:24 ----A---- C:\Windows\system32\aswBoot.exe
2014-06-26 20:51:46 ----D---- C:\Program Files\AVAST Software
2014-06-26 20:50:19 ----D---- C:\ProgramData\AVAST Software
2014-06-25 14:52:09 ----A---- C:\Windows\SYSWOW64\IntelCpHeciSvc.exe
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxtray.exe
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxTMM.dll
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxsrvc.exe
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxCoIn_v3062.dll
2014-06-25 14:52:07 ----A---- C:\Windows\SYSWOW64\igfxexps32.dll
2014-06-25 14:52:07 ----A---- C:\Windows\SYSWOW64\igfxdv32.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxpers.exe
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxext.exe
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxdo.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\IGFXDEVLib.dll
2014-06-25 14:52:06 ----A---- C:\Windows\SYSWOW64\igfxcmrt32.dll
2014-06-25 14:52:06 ----A---- C:\Windows\system32\igfxcmrt64.dll
2014-06-25 14:52:03 ----A---- C:\Windows\SYSWOW64\igfxcmjit32.dll
2014-06-25 14:52:03 ----A---- C:\Windows\SYSWOW64\igfx11cmrt32.dll
2014-06-25 14:52:03 ----A---- C:\Windows\system32\igfxcmjit64.dll
2014-06-25 14:52:03 ----A---- C:\Windows\system32\igfx11cmrt64.dll
2014-06-25 14:52:03 ----A---- C:\Windows\system32\igdumd64.dll
2014-06-25 14:52:01 ----A---- C:\Windows\system32\drivers\igdkmd64.sys
2014-06-25 14:52:00 ----A---- C:\Windows\SYSWOW64\igdde32.dll
2014-06-25 14:52:00 ----A---- C:\Windows\system32\igdde64.dll
2014-06-25 14:51:59 ----A---- C:\Windows\SYSWOW64\igd10umd32.dll
2014-06-25 14:51:58 ----A---- C:\Windows\system32\ig4icd64.dll
2014-06-25 14:51:57 ----A---- C:\Windows\SYSWOW64\ig4icd32.dll
2014-06-25 14:51:57 ----A---- C:\Windows\system32\hkcmd.exe
2014-06-25 14:51:57 ----A---- C:\Windows\system32\GfxUI.exe
2014-06-25 14:51:57 ----A---- C:\Windows\system32\gfxSrvc.dll
2014-06-25 14:51:57 ----A---- C:\Windows\system32\difx64.exe
2014-06-25 14:50:22 ----D---- C:\Users\Acer\AppData\Roaming\ProductData
2014-06-25 14:49:24 ----A---- C:\Windows\system32\SmartDefragBootTime.exe
2014-06-25 14:49:18 ----D---- C:\Users\Acer\AppData\Roaming\Apple Computer
2014-06-25 14:49:10 ----D---- C:\ProgramData\ProductData
2014-06-25 14:49:01 ----D---- C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
2014-06-25 14:48:59 ----D---- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-06-25 14:48:58 ----D---- C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424}
2014-06-25 14:48:30 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll
2014-06-25 14:44:51 ----D---- C:\ProgramData\IObit
2014-06-25 14:44:37 ----D---- C:\Users\Acer\AppData\Roaming\IObit
2014-06-25 14:44:25 ----D---- C:\Program Files (x86)\IObit
2014-06-25 11:56:19 ----D---- C:\Program Files (x86)\R.G. Mechanics
2014-06-25 07:52:19 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-06-25 07:52:19 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-06-25 07:52:19 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-06-25 07:52:19 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-06-25 07:52:19 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-06-25 07:52:19 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-06-25 07:52:18 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-06-25 07:52:18 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-06-25 07:52:17 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-06-25 07:52:17 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-06-25 07:52:17 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-06-25 07:52:16 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-06-25 07:52:16 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-06-25 07:52:16 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-06-25 07:52:16 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-06-25 07:52:15 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-06-25 07:52:15 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-06-25 07:52:14 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-06-25 07:52:14 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-06-25 07:52:13 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-06-25 07:52:13 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-06-25 07:52:12 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-06-25 07:52:12 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-06-25 07:52:12 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-06-25 07:52:12 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-06-25 07:52:10 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-06-25 07:52:10 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-06-25 07:52:10 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-06-25 07:52:10 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-06-25 07:52:09 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-06-25 07:52:09 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-06-25 07:52:08 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-06-25 07:52:08 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-06-25 07:52:07 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-06-25 07:52:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-06-25 07:52:07 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-06-25 07:52:07 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-06-25 07:52:06 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-06-25 07:52:06 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-06-25 07:52:05 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-06-25 07:52:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-06-25 07:52:05 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-06-25 07:52:05 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-06-25 07:52:04 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-06-25 07:52:04 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-06-25 07:52:03 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-06-25 07:52:03 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-06-25 07:52:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-06-25 07:52:03 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-06-25 07:52:03 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-06-25 07:52:03 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-06-25 07:52:02 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-06-25 07:52:02 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-06-25 07:52:00 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-06-25 07:52:00 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-06-25 07:52:00 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-06-25 07:52:00 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-06-25 07:51:59 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-06-25 07:51:59 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-06-25 07:51:59 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-06-25 07:51:59 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-06-25 07:51:58 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-06-25 07:51:58 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-06-25 07:51:57 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-06-25 07:51:57 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-06-25 07:51:57 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-06-25 07:51:57 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-06-25 07:51:56 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-06-25 07:51:55 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-06-25 07:51:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-06-25 07:51:55 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-06-25 07:51:55 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-06-25 07:51:55 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-06-25 07:51:55 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-06-25 07:51:54 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-06-25 07:51:54 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-06-25 07:51:53 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-06-25 07:51:53 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-06-25 07:51:53 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-06-25 07:51:53 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-06-25 07:51:52 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-06-25 07:51:52 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-06-25 07:51:51 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-06-25 07:51:51 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-06-25 07:51:50 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-06-25 07:51:50 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-06-25 07:51:50 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-06-25 07:51:50 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-06-25 07:51:49 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-06-25 07:51:49 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-06-25 07:51:49 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-06-25 07:51:49 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-06-25 07:51:48 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-06-25 07:51:48 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-06-25 07:51:47 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-06-25 07:51:47 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-06-25 07:51:45 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-06-25 07:51:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-06-25 07:51:45 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-06-25 07:51:45 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-06-25 07:51:44 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-06-25 07:51:44 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-06-25 07:51:43 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-06-25 07:51:43 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-06-25 07:51:42 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-06-25 07:51:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-06-25 07:51:42 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-06-25 07:51:42 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-06-25 07:51:41 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-06-25 07:51:41 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-06-25 07:51:40 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-06-25 07:51:40 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-06-25 07:51:40 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-06-25 07:51:40 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-06-25 07:51:39 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-06-25 07:51:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-06-25 07:51:39 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-06-25 07:51:39 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-06-25 07:51:38 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-06-25 07:51:38 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-06-25 07:51:37 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-06-25 07:51:37 ----A---- C:\Windows\system32\xinput1_3.dll
2014-06-25 07:51:36 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-06-25 07:51:36 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-06-25 07:51:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-06-25 07:51:36 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-06-25 07:51:36 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-06-25 07:51:36 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-06-25 07:51:35 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-06-25 07:51:35 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-06-25 07:51:33 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-06-25 07:51:33 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-06-25 07:51:33 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-06-25 07:51:33 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-06-25 07:51:32 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-06-25 07:51:32 ----A---- C:\Windows\system32\d3dx10.dll
2014-06-25 07:51:31 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-06-25 07:51:31 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-06-25 07:51:30 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-06-25 07:51:30 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-06-25 07:51:30 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-06-25 07:51:30 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-06-25 07:51:29 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-06-25 07:51:29 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-06-25 07:51:28 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-06-25 07:51:28 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-06-25 07:51:27 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-06-25 07:51:27 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-06-25 07:51:27 ----A---- C:\Windows\system32\xinput1_2.dll
2014-06-25 07:51:27 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-06-25 07:51:26 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-06-25 07:51:26 ----A---- C:\Windows\system32\xinput1_1.dll
2014-06-25 07:51:25 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-06-25 07:51:25 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-06-25 07:51:22 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-06-25 07:51:22 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-06-25 07:51:21 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-06-25 07:51:21 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-06-25 07:51:21 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-06-25 07:51:21 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-06-25 07:51:20 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-06-25 07:51:20 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-06-25 07:51:19 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-06-25 07:51:19 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-06-25 07:51:18 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-06-25 07:51:18 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-06-25 07:51:17 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-06-25 07:51:17 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-06-25 07:51:16 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-06-25 07:51:16 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-06-25 07:51:15 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-06-25 07:51:15 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-06-25 07:43:54 ----HD---- C:\Windows\msdownld.tmp
2014-06-25 07:43:10 ----D---- C:\Windows\SYSWOW64\directx
2014-06-24 21:49:40 ----D---- C:\Users\Acer\AppData\Roaming\Python-Eggs
2014-06-24 21:49:35 ----D---- C:\Users\Acer\AppData\Roaming\BitLord
2014-06-24 21:49:35 ----A---- C:\Users\Acer\AppData\Roaming\bitlord_log.txt
2014-06-24 21:49:07 ----D---- C:\Program Files (x86)\SearchProtect
2014-06-24 21:47:08 ----D---- C:\Program Files (x86)\BitLord 2
2014-06-24 21:44:30 ----A---- C:\Windows\SYSWOW64\msvcr71.dll
2014-06-24 21:44:30 ----A---- C:\Windows\SYSWOW64\mfc71.dll
2014-06-22 00:27:40 ----D---- C:\Users\Acer\AppData\Roaming\BANDISOFT
2014-06-22 00:27:26 ----D---- C:\Program Files (x86)\Bandicam
2014-06-22 00:27:23 ----D---- C:\Program Files (x86)\BandiMPEG1
2014-06-21 21:14:33 ----D---- C:\Users\Acer\AppData\Roaming\TeamViewer
2014-06-21 16:28:23 ----D---- C:\Program Files (x86)\VirtualDJ
2014-06-20 20:00:09 ----D---- C:\Users\Acer\AppData\Roaming\WinRAR
2014-06-20 19:59:18 ----D---- C:\Program Files (x86)\WinRAR
2014-06-13 13:56:02 ----A---- C:\Windows\system32\rdpudd.dll
2014-06-13 13:56:02 ----A---- C:\Windows\system32\rdpcorets.dll
2014-06-13 13:55:58 ----A---- C:\Windows\SYSWOW64\wusa.exe
2014-06-13 13:55:58 ----A---- C:\Windows\system32\wusa.exe
2014-06-13 13:55:58 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-06-13 13:55:51 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-06-13 13:55:51 ----A---- C:\Windows\system32\gdi32.dll
2014-06-13 13:53:53 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-06-13 13:53:51 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-06-13 13:53:51 ----A---- C:\Windows\system32\msxml3.dll
======List of files/folders modified in the last 3 months======
2014-08-29 20:23:47 ----D---- C:\Program Files
2014-08-29 20:23:31 ----D---- C:\Windows\Prefetch
2014-08-29 20:17:23 ----D---- C:\Windows\system32\sru
2014-08-29 10:14:09 ----D---- C:\Windows\Temp
2014-08-29 10:13:21 ----D---- C:\Windows\Microsoft.NET
2014-08-29 10:05:10 ----D---- C:\Windows\system32\config
2014-08-28 21:39:04 ----D---- C:\Windows\WinSxS
2014-08-28 21:36:54 ----D---- C:\Windows\CbsTemp
2014-08-28 21:36:41 ----SHD---- C:\System Volume Information
2014-08-28 21:29:11 ----RD---- C:\Windows\System32
2014-08-28 21:29:11 ----D---- C:\Windows\Inf
2014-08-28 21:29:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-08-28 21:25:04 ----SD---- C:\ProgramData\Microsoft
2014-08-28 21:18:58 ----SHD---- C:\Windows\Installer
2014-08-28 21:18:40 ----D---- C:\Program Files (x86)
2014-08-28 21:17:30 ----D---- C:\Windows\system32\catroot2
2014-08-28 21:13:26 ----D---- C:\Windows\system32\NDF
2014-08-28 20:52:08 ----D---- C:\Users\Acer\AppData\Roaming\Skype
2014-08-26 17:25:49 ----D---- C:\Windows\system32\Drivers
2014-08-26 10:41:22 ----D---- C:\ProgramData\PMB Files
2014-08-26 10:23:13 ----A---- C:\Windows\SYSWOW64\log.txt
2014-08-25 15:41:54 ----D---- C:\Windows\rescache
2014-08-24 21:08:48 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-08-24 19:41:43 ----D---- C:\Windows\SysWOW64
2014-08-24 19:38:45 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-24 19:38:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-24 19:38:45 ----D---- C:\Windows\system32\en-US
2014-08-24 19:38:45 ----D---- C:\Windows\system32\cs-CZ
2014-08-24 19:38:41 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-24 19:38:38 ----D---- C:\Program Files\Internet Explorer
2014-08-24 19:38:17 ----D---- C:\Windows\system32\catroot
2014-08-19 14:51:32 ----RSD---- C:\Windows\assembly
2014-08-19 10:58:14 ----AD---- C:\Windows
2014-08-18 20:42:54 ----HD---- C:\Program Files\WindowsApps
2014-08-18 20:42:54 ----D---- C:\Windows\AUInstallAgent
2014-08-18 17:47:58 ----D---- C:\Users\Acer\AppData\Roaming\GamezUnited
2014-08-17 23:19:56 ----RD---- C:\Windows\ToastData
2014-08-17 23:19:51 ----D---- C:\Windows\system32\DriverStore
2014-08-17 23:19:45 ----D---- C:\Windows\system32\MRT
2014-08-17 23:16:19 ----A---- C:\Windows\system32\MRT.exe
2014-08-17 22:31:58 ----D---- C:\Windows\system32\Tasks
2014-08-13 18:42:39 ----HD---- C:\ProgramData
2014-08-08 20:19:33 ----D---- C:\ProgramData\Skype
2014-08-08 20:19:30 ----D---- C:\Program Files (x86)\Common Files
2014-08-07 21:47:45 ----RD---- C:\Program Files (x86)\Skype
2014-08-01 10:09:17 ----D---- C:\Windows\system32\wdi
2014-08-01 10:07:05 ----RSD---- C:\Windows\Fonts
2014-07-31 21:37:03 ----D---- C:\Users\Acer\AppData\Roaming\Adobe
2014-07-31 02:32:59 ----D---- C:\Program Files\Common Files
2014-07-19 20:24:05 ----D---- C:\Windows\Tasks
2014-07-16 08:36:49 ----D---- C:\Windows\LiveKernelReports
2014-07-15 14:38:34 ----SD---- C:\Users\Acer\AppData\Roaming\Microsoft
2014-07-12 12:41:29 ----D---- C:\Program Files\Windows Journal
2014-07-12 12:41:27 ----D---- C:\Windows\WinStore
2014-07-12 12:25:24 ----AD---- C:\ProgramData\Temp
2014-07-11 17:18:04 ----D---- C:\ProgramData\Norton
2014-06-28 06:51:09 ----D---- C:\ProgramData\McAfee
2014-06-28 06:50:54 ----D---- C:\Program Files\mcafee
2014-06-28 06:50:49 ----D---- C:\Program Files\Common Files\mcafee
2014-06-26 20:48:01 ----HD---- C:\Windows\ELAMBKUP
2014-06-26 09:35:15 ----D---- C:\ProgramData\CyberLink
2014-06-26 08:45:29 ----D---- C:\Windows\system32\drivers\UMDF
2014-06-25 17:19:27 ----D---- C:\Program Files (x86)\WildTangent Games
2014-06-25 17:18:44 ----D---- C:\ProgramData\WildTangent
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxsrvc.dll
2014-06-25 14:52:08 ----A---- C:\Windows\system32\igfxress.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxpph.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxexps.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxdev.dll
2014-06-25 14:52:03 ----A---- C:\Windows\SYSWOW64\igdumd32.dll
2014-06-25 14:51:59 ----A---- C:\Windows\system32\igd10umd64.dll
2014-06-25 14:51:57 ----A---- C:\Windows\system32\hccutils.dll
2014-06-24 14:47:58 ----D---- C:\Windows\Logs
2014-06-20 06:55:38 ----D---- C:\Program Files\Windows Media Player
2014-06-20 06:55:38 ----D---- C:\Program Files\Windows Mail
2014-06-20 06:55:37 ----D---- C:\Program Files\Windows Photo Viewer
2014-06-20 06:55:36 ----D---- C:\Program Files\Windows Defender
2014-06-20 06:55:36 ----D---- C:\Program Files\Common Files\System
2014-06-20 06:55:36 ----D---- C:\Program Files (x86)\Windows Mail
2014-06-20 06:55:35 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-06-20 06:55:35 ----D---- C:\Program Files (x86)\Windows Media Player
2014-06-20 06:55:33 ----D---- C:\Windows\SYSWOW64\oobe
2014-06-20 06:55:33 ----D---- C:\Program Files (x86)\Windows Defender
2014-06-20 06:55:32 ----D---- C:\Windows\SYSWOW64\slmgr
2014-06-20 06:55:32 ----D---- C:\Windows\SYSWOW64\sk-SK
2014-06-20 06:55:24 ----D---- C:\Windows\SYSWOW64\WCN
2014-06-20 06:55:24 ----D---- C:\Windows\SYSWOW64\wbem
2014-06-20 06:55:24 ----D---- C:\Windows\SYSWOW64\drivers
2014-06-20 06:55:20 ----RD---- C:\Windows\ImmersiveControlPanel
2014-06-20 06:55:20 ----D---- C:\Windows\system32\oobe
2014-06-20 06:55:20 ----D---- C:\Windows\PolicyDefinitions
2014-06-20 06:55:19 ----D---- C:\Windows\system32\Sysprep
2014-06-20 06:55:18 ----D---- C:\Windows\system32\slmgr
2014-06-20 06:55:18 ----D---- C:\Windows\system32\sk-SK
2014-06-20 06:54:30 ----D---- C:\Windows\system32\WCN
2014-06-20 06:54:18 ----D---- C:\Windows\system32\SystemResetPlatform
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-07-28 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-07-28 224896]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2012-08-16 645952]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-07-28 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-07-28 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-07-28 427360]
R1 ccSet_NARA;NARA Settings Manager; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [2012-05-26 168608]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2012-07-26 64000]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-07-28 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-07-28 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-07-28 92008]
R3 b57xdbd;@oem7.inf,%bcmxd_16bf_svcd%;Broadcom xD Picture Bus Driver Service; C:\Windows\System32\drivers\b57xdbd.sys [2012-08-13 72280]
R3 b57xdmp;@oem7.inf,%BXD_SVCDESC%;Broadcom xD Picture vstorp client drv; C:\Windows\System32\drivers\b57xdmp.sys [2012-08-13 21080]
R3 bScsiMSa;bScsiMSa; C:\Windows\System32\drivers\bScsiMSa.sys [2012-06-19 55384]
R3 bScsiSDa;bScsiSDa; C:\Windows\System32\drivers\bScsiSDa.sys [2012-08-14 70744]
R3 ETD;@oem11.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2012-11-20 331152]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-06-25 5358016]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-06-12 4060560]
R3 IntcDAud;@oem2.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2012-06-02 425472]
R3 MEIx64;@oem8.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NETwNe64;@oem9.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\Windows\system32\DRIVERS\NETwew00.sys [2012-08-11 4273192]
R3 Ps2Kb2Hid;@oem10.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [2014-05-01 26736]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-06 210560]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2012-07-26 17920]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 WINUSB;@winusb.inf,%WinUSB_SvcDesc%;Ovladač WinUsb; C:\Windows\System32\drivers\WinUSB.SYS [2012-07-26 57344]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-28 50344]
R2 BrcmCardReader;Broadcom Card Reader Service; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [2012-08-21 176640]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2013-02-20 2615368]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-12-10 350544]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2012-11-20 100752]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NAUpdate;@c:\Program Files (x86)\Nero\Update\NASvc.exe,-200; c:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2012-08-15 3943104]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2014-05-01 96880]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2013-03-16 662088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-23 116648]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2014-05-04 2152736]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-06-25 279024]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-07-26 43616]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-23 116648]
-----------------EOF-----------------
Run by Acer at 2014-08-29 20:23:47
Microsoft Windows 8
System drive C: has 143 GB (63%) free of 228 GB
Total RAM: 3983 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:23:58, on 29. 8. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.17054)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Users\Acer\AppData\Roaming\StartMenu\StartMenu.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Acer.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Acer\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [StartMenu] C:\Users\Acer\AppData\Roaming\StartMenu\StartMenu.exe
O4 - HKCU\..\Run: [ShowDesktopAsRun] C:\Users\Acer\AppData\Roaming\StartMenu\desktop.scf
O4 - HKCU\..\Run: [MK LOL] "C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe" -auto
O4 - HKUS\S-1-5-18\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (User 'Default user')
O4 - Startup: GamezUnited.lnk = C:\Users\Acer\AppData\Roaming\GamezUnited\GamezUnited.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O20 - AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) - Broadcom Corp. - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8438 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
dashost.exe {1f700c66-d002-4296-a414b9fcd884f437}
"C:\Program Files\Elantech\ETDService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE
C:\Windows\RfBtnSvc64.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window --enable-setforeground-window --enable-kbhook-window
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\system32\igfxext.exe -Embedding
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\igfxpers.exe"
"C:\Users\Acer\AppData\Roaming\StartMenu\StartMenu.exe"
"C:\Program Files (x86)\RadioController\RfBtnHelper.exe" HigherRFButtonHelper
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
"C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"c:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4344.0.220043771\556931182" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,5,16 --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.3062 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --channel="4344.4.1346742189\1855492592" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --channel="4344.8.1437575197\716856661" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/QueryBoundaryExperiment_Stable_R6/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --channel="4344.9.950700244\194987859" /prefetch:673131151
"C:\Users\Acer\Downloads\RSITx64.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe23_ Global\UsGthrCtrlFltPipeMssGthrPipe23 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 576 580 588 65536 584
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\ParetoLogic Registration3.job - C:\Windows\system32\rundll32.exe "C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll" RunUns
C:\Windows\tasks\ParetoLogic Update Version3 Startup Task.job - C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe -StartupTask
C:\Windows\tasks\ParetoLogic Update Version3.job - C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
C:\Windows\tasks\Uninstaller_SkipUac_Administrator.job - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-06-25 2471744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-07-28 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-07-28 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2012-11-20 2873744]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-06-25 172016]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-06-25 399856]
"Persistence"=C:\Windows\system32\igfxpers.exe [2014-06-25 442352]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-07-24 21650016]
"Akamai NetSession Interface"=C:\Users\Acer\AppData\Local\Akamai\netsession_win.exe [2014-04-17 4672920]
"AdobeBridge"= []
"StartMenu"=C:\Users\Acer\AppData\Roaming\StartMenu\StartMenu.exe [2013-11-08 3360000]
"ShowDesktopAsRun"=C:\Users\Acer\AppData\Roaming\StartMenu\desktop.scf [2014-08-12 81]
"MK LOL"=C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe [2014-08-25 1089736]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
"LManager"= []
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2014-05-01 111216]
"Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2012-08-15 2994880]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-01 4085896]
C:\Users\Acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
GamezUnited.lnk - C:\Users\Acer\AppData\Roaming\GamezUnited\GamezUnited.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2014-06-25 442880]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2014-08-29 20:23:47 ----D---- C:\rsit
2014-08-29 20:23:47 ----D---- C:\Program Files\trend micro
2014-08-28 21:18:40 ----D---- C:\Program Files\Microsoft Silverlight
2014-08-28 21:18:40 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-08-19 10:58:14 ----A---- C:\Windows\JQHApp.dat
2014-08-19 10:57:38 ----D---- C:\Program Files (x86)\MKJogo
2014-08-17 23:08:42 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-08-17 23:06:19 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-17 23:06:19 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-17 19:11:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-17 19:11:51 ----A---- C:\Windows\system32\cdd.dll
2014-08-17 19:11:06 ----A---- C:\Windows\system32\twinui.dll
2014-08-17 19:10:57 ----A---- C:\Windows\SYSWOW64\twinui.dll
2014-08-17 19:10:55 ----A---- C:\Windows\system32\actxprxy.dll
2014-08-17 19:10:54 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-17 19:10:54 ----A---- C:\Windows\system32\msi.dll
2014-08-17 19:10:53 ----A---- C:\Windows\system32\authui.dll
2014-08-17 19:10:52 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-17 19:10:51 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-08-17 19:10:51 ----A---- C:\Windows\system32\msihnd.dll
2014-08-17 19:10:51 ----A---- C:\Windows\system32\consent.exe
2014-08-17 19:10:49 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-17 19:10:47 ----A---- C:\Windows\system32\aepdu.dll
2014-08-17 19:10:46 ----A---- C:\Windows\system32\aeinv.dll
2014-08-17 19:10:29 ----A---- C:\Windows\system32\mshtml.dll
2014-08-17 19:10:24 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-17 19:10:22 ----A---- C:\Windows\system32\ieframe.dll
2014-08-17 19:10:20 ----A---- C:\Windows\system32\jscript9.dll
2014-08-17 19:10:19 ----A---- C:\Windows\system32\iertutil.dll
2014-08-17 19:10:18 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-17 19:10:17 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-17 19:10:17 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-17 19:10:17 ----A---- C:\Windows\system32\urlmon.dll
2014-08-17 19:10:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-17 19:10:15 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-17 19:10:15 ----A---- C:\Windows\system32\wininet.dll
2014-08-17 19:10:15 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-17 19:10:14 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-17 19:10:14 ----A---- C:\Windows\system32\jscript.dll
2014-08-17 19:10:14 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-17 19:10:13 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-17 19:10:13 ----A---- C:\Windows\system32\uxtheme.dll
2014-08-17 19:10:13 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-17 19:10:12 ----A---- C:\Windows\SYSWOW64\UXInit.dll
2014-08-17 19:10:12 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-17 19:10:12 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-08-17 19:10:12 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\msrating.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\iesysprep.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\iernonce.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-17 19:10:12 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-17 19:10:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-17 19:10:10 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-17 19:10:10 ----A---- C:\Windows\system32\UXInit.dll
2014-08-17 19:10:10 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-17 19:10:09 ----A---- C:\Windows\SYSWOW64\uxtheme.dll
2014-08-17 19:10:09 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-17 19:10:09 ----A---- C:\Windows\system32\iesetup.dll
2014-08-17 19:10:05 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-17 19:10:05 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-13 18:42:55 ----D---- C:\Users\Acer\AppData\Roaming\Awesomium
2014-08-13 18:42:39 ----D---- C:\ProgramData\Hi-Rez Studios
2014-08-13 18:42:24 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2014-08-12 23:20:38 ----D---- C:\Users\Acer\AppData\Roaming\Temp
2014-08-12 20:09:38 ----D---- C:\Users\Acer\AppData\Roaming\StartMenu
2014-08-08 20:24:57 ----D---- C:\ProgramData\Nexon
2014-08-08 20:09:20 ----D---- C:\Nexon
2014-08-08 20:09:01 ----D---- C:\ProgramData\NexonEU
2014-07-31 20:42:53 ----D---- C:\Program Files (x86)\Star Conflict
2014-07-31 02:36:01 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-07-31 02:32:59 ----D---- C:\Program Files\Common Files\Adobe
2014-07-31 02:31:43 ----D---- C:\Program Files (x86)\Adobe Media Player
2014-07-31 02:29:51 ----D---- C:\Program Files (x86)\Adobe
2014-07-31 02:28:49 ----D---- C:\ProgramData\Adobe
2014-07-28 22:09:12 ----D---- C:\Users\Acer\AppData\Roaming\Unity
2014-07-28 14:09:06 ----A---- C:\Windows\avastSS.scr
2014-07-22 10:30:06 ----D---- C:\Users\Acer\AppData\Roaming\CyberLink
2014-07-17 11:08:07 ----D---- C:\ProgramData\Riot Games
2014-07-16 08:49:15 ----D---- C:\Users\Acer\AppData\Roaming\ParetoLogic
2014-07-16 08:49:15 ----D---- C:\Users\Acer\AppData\Roaming\DriverCure
2014-07-16 08:49:02 ----D---- C:\ProgramData\ParetoLogic
2014-07-16 08:49:02 ----D---- C:\Program Files (x86)\ParetoLogic
2014-07-16 08:38:42 ----A---- C:\Windows\system32\FNTCACHE.DAT
2014-07-14 19:25:23 ----D---- C:\Users\Acer\AppData\Roaming\TS3Client
2014-07-14 19:24:37 ----D---- C:\Program Files (x86)\TeamSpeak 3 Client
2014-07-13 13:01:48 ----D---- C:\Users\Acer\AppData\Roaming\teamspeak2
2014-07-13 10:37:34 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2014-07-13 10:37:34 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2014-07-12 12:45:14 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-07-12 12:41:35 ----SD---- C:\Windows\system32\CompatTel
2014-07-12 12:16:39 ----A---- C:\Windows\SYSWOW64\MSSTDFMT.DLL
2014-07-12 12:16:38 ----A---- C:\Windows\SYSWOW64\IJL_11.DLL
2014-07-10 07:49:36 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-07-10 07:49:34 ----A---- C:\Windows\system32\localspl.dll
2014-07-10 07:49:33 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-07-10 07:49:33 ----A---- C:\Windows\system32\ntdll.dll
2014-07-10 07:49:31 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2014-07-10 07:49:31 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2014-07-10 07:49:31 ----A---- C:\Windows\system32\WSShared.dll
2014-07-10 07:49:31 ----A---- C:\Windows\system32\Robocopy.exe
2014-07-10 07:49:30 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-10 07:49:30 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-10 07:49:27 ----A---- C:\Windows\system32\win32k.sys
2014-07-10 07:49:26 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-07-10 07:49:26 ----A---- C:\Windows\system32\osk.exe
2014-07-10 07:49:19 ----A---- C:\Windows\system32\InkEd.dll
2014-07-10 07:49:06 ----A---- C:\Windows\system32\lsasrv.dll
2014-07-10 07:49:04 ----A---- C:\Windows\system32\SHCore.dll
2014-07-10 07:49:01 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2014-07-10 07:49:01 ----A---- C:\Windows\system32\lsm.dll
2014-07-10 07:48:48 ----A---- C:\Windows\system32\devinv.dll
2014-07-10 07:48:47 ----A---- C:\Windows\system32\aepic.dll
2014-07-10 07:47:26 ----A---- C:\Windows\system32\drivers\afd.sys
2014-07-10 07:47:25 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-07-10 07:47:25 ----A---- C:\Windows\system32\qedit.dll
2014-07-08 10:48:16 ----D---- C:\Program Files (x86)\Overwolf
2014-07-05 16:06:54 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-07-05 16:06:54 ----A---- C:\Windows\system32\wudriver.dll
2014-07-05 16:06:53 ----A---- C:\Windows\system32\storewuauth.dll
2014-07-05 16:06:48 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2014-07-05 16:06:48 ----A---- C:\Windows\system32\wuauclt.exe
2014-07-05 16:06:45 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-07-05 16:06:45 ----A---- C:\Windows\system32\wucltux.dll
2014-07-05 16:06:45 ----A---- C:\Windows\system32\wuaueng.dll
2014-07-05 16:06:45 ----A---- C:\Windows\system32\wuapi.dll
2014-07-05 16:06:28 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-07-05 16:06:28 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-07-05 16:06:28 ----A---- C:\Windows\system32\wuwebv.dll
2014-07-05 16:06:28 ----A---- C:\Windows\system32\wuapp.exe
2014-06-27 22:09:51 ----D---- C:\ProgramData\TamoSoft
2014-06-26 20:59:42 ----D---- C:\Users\Acer\AppData\Roaming\AVAST Software
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswstm.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswsp.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswsnx.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-06-26 20:58:25 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-06-26 20:58:24 ----A---- C:\Windows\system32\aswBoot.exe
2014-06-26 20:51:46 ----D---- C:\Program Files\AVAST Software
2014-06-26 20:50:19 ----D---- C:\ProgramData\AVAST Software
2014-06-25 14:52:09 ----A---- C:\Windows\SYSWOW64\IntelCpHeciSvc.exe
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxtray.exe
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxTMM.dll
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxsrvc.exe
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxCoIn_v3062.dll
2014-06-25 14:52:07 ----A---- C:\Windows\SYSWOW64\igfxexps32.dll
2014-06-25 14:52:07 ----A---- C:\Windows\SYSWOW64\igfxdv32.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxpers.exe
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxext.exe
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxdo.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\IGFXDEVLib.dll
2014-06-25 14:52:06 ----A---- C:\Windows\SYSWOW64\igfxcmrt32.dll
2014-06-25 14:52:06 ----A---- C:\Windows\system32\igfxcmrt64.dll
2014-06-25 14:52:03 ----A---- C:\Windows\SYSWOW64\igfxcmjit32.dll
2014-06-25 14:52:03 ----A---- C:\Windows\SYSWOW64\igfx11cmrt32.dll
2014-06-25 14:52:03 ----A---- C:\Windows\system32\igfxcmjit64.dll
2014-06-25 14:52:03 ----A---- C:\Windows\system32\igfx11cmrt64.dll
2014-06-25 14:52:03 ----A---- C:\Windows\system32\igdumd64.dll
2014-06-25 14:52:01 ----A---- C:\Windows\system32\drivers\igdkmd64.sys
2014-06-25 14:52:00 ----A---- C:\Windows\SYSWOW64\igdde32.dll
2014-06-25 14:52:00 ----A---- C:\Windows\system32\igdde64.dll
2014-06-25 14:51:59 ----A---- C:\Windows\SYSWOW64\igd10umd32.dll
2014-06-25 14:51:58 ----A---- C:\Windows\system32\ig4icd64.dll
2014-06-25 14:51:57 ----A---- C:\Windows\SYSWOW64\ig4icd32.dll
2014-06-25 14:51:57 ----A---- C:\Windows\system32\hkcmd.exe
2014-06-25 14:51:57 ----A---- C:\Windows\system32\GfxUI.exe
2014-06-25 14:51:57 ----A---- C:\Windows\system32\gfxSrvc.dll
2014-06-25 14:51:57 ----A---- C:\Windows\system32\difx64.exe
2014-06-25 14:50:22 ----D---- C:\Users\Acer\AppData\Roaming\ProductData
2014-06-25 14:49:24 ----A---- C:\Windows\system32\SmartDefragBootTime.exe
2014-06-25 14:49:18 ----D---- C:\Users\Acer\AppData\Roaming\Apple Computer
2014-06-25 14:49:10 ----D---- C:\ProgramData\ProductData
2014-06-25 14:49:01 ----D---- C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
2014-06-25 14:48:59 ----D---- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-06-25 14:48:58 ----D---- C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424}
2014-06-25 14:48:30 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll
2014-06-25 14:44:51 ----D---- C:\ProgramData\IObit
2014-06-25 14:44:37 ----D---- C:\Users\Acer\AppData\Roaming\IObit
2014-06-25 14:44:25 ----D---- C:\Program Files (x86)\IObit
2014-06-25 11:56:19 ----D---- C:\Program Files (x86)\R.G. Mechanics
2014-06-25 07:52:19 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-06-25 07:52:19 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-06-25 07:52:19 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-06-25 07:52:19 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-06-25 07:52:19 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-06-25 07:52:19 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-06-25 07:52:18 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-06-25 07:52:18 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-06-25 07:52:17 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-06-25 07:52:17 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-06-25 07:52:17 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-06-25 07:52:16 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-06-25 07:52:16 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-06-25 07:52:16 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-06-25 07:52:16 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-06-25 07:52:15 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-06-25 07:52:15 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-06-25 07:52:14 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-06-25 07:52:14 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-06-25 07:52:13 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-06-25 07:52:13 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-06-25 07:52:12 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-06-25 07:52:12 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-06-25 07:52:12 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-06-25 07:52:12 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-06-25 07:52:10 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-06-25 07:52:10 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-06-25 07:52:10 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-06-25 07:52:10 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-06-25 07:52:09 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-06-25 07:52:09 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-06-25 07:52:08 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-06-25 07:52:08 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-06-25 07:52:07 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-06-25 07:52:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-06-25 07:52:07 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-06-25 07:52:07 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-06-25 07:52:06 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-06-25 07:52:06 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-06-25 07:52:05 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-06-25 07:52:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-06-25 07:52:05 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-06-25 07:52:05 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-06-25 07:52:04 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-06-25 07:52:04 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-06-25 07:52:03 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-06-25 07:52:03 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-06-25 07:52:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-06-25 07:52:03 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-06-25 07:52:03 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-06-25 07:52:03 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-06-25 07:52:02 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-06-25 07:52:02 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-06-25 07:52:00 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-06-25 07:52:00 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-06-25 07:52:00 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-06-25 07:52:00 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-06-25 07:51:59 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-06-25 07:51:59 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-06-25 07:51:59 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-06-25 07:51:59 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-06-25 07:51:58 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-06-25 07:51:58 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-06-25 07:51:57 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-06-25 07:51:57 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-06-25 07:51:57 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-06-25 07:51:57 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-06-25 07:51:56 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-06-25 07:51:55 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-06-25 07:51:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-06-25 07:51:55 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-06-25 07:51:55 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-06-25 07:51:55 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-06-25 07:51:55 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-06-25 07:51:54 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-06-25 07:51:54 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-06-25 07:51:53 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-06-25 07:51:53 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-06-25 07:51:53 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-06-25 07:51:53 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-06-25 07:51:52 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-06-25 07:51:52 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-06-25 07:51:51 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-06-25 07:51:51 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-06-25 07:51:50 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-06-25 07:51:50 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-06-25 07:51:50 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-06-25 07:51:50 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-06-25 07:51:49 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-06-25 07:51:49 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-06-25 07:51:49 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-06-25 07:51:49 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-06-25 07:51:48 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-06-25 07:51:48 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-06-25 07:51:47 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-06-25 07:51:47 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-06-25 07:51:45 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-06-25 07:51:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-06-25 07:51:45 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-06-25 07:51:45 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-06-25 07:51:44 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-06-25 07:51:44 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-06-25 07:51:43 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-06-25 07:51:43 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-06-25 07:51:42 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-06-25 07:51:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-06-25 07:51:42 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-06-25 07:51:42 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-06-25 07:51:41 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-06-25 07:51:41 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-06-25 07:51:40 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-06-25 07:51:40 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-06-25 07:51:40 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-06-25 07:51:40 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-06-25 07:51:39 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-06-25 07:51:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-06-25 07:51:39 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-06-25 07:51:39 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-06-25 07:51:38 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-06-25 07:51:38 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-06-25 07:51:37 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-06-25 07:51:37 ----A---- C:\Windows\system32\xinput1_3.dll
2014-06-25 07:51:36 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-06-25 07:51:36 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-06-25 07:51:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-06-25 07:51:36 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-06-25 07:51:36 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-06-25 07:51:36 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-06-25 07:51:35 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-06-25 07:51:35 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-06-25 07:51:33 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-06-25 07:51:33 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-06-25 07:51:33 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-06-25 07:51:33 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-06-25 07:51:32 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-06-25 07:51:32 ----A---- C:\Windows\system32\d3dx10.dll
2014-06-25 07:51:31 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-06-25 07:51:31 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-06-25 07:51:30 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-06-25 07:51:30 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-06-25 07:51:30 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-06-25 07:51:30 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-06-25 07:51:29 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-06-25 07:51:29 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-06-25 07:51:28 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-06-25 07:51:28 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-06-25 07:51:27 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-06-25 07:51:27 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-06-25 07:51:27 ----A---- C:\Windows\system32\xinput1_2.dll
2014-06-25 07:51:27 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-06-25 07:51:26 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-06-25 07:51:26 ----A---- C:\Windows\system32\xinput1_1.dll
2014-06-25 07:51:25 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-06-25 07:51:25 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-06-25 07:51:22 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-06-25 07:51:22 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-06-25 07:51:21 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-06-25 07:51:21 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-06-25 07:51:21 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-06-25 07:51:21 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-06-25 07:51:20 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-06-25 07:51:20 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-06-25 07:51:19 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-06-25 07:51:19 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-06-25 07:51:18 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-06-25 07:51:18 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-06-25 07:51:17 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-06-25 07:51:17 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-06-25 07:51:16 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-06-25 07:51:16 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-06-25 07:51:15 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-06-25 07:51:15 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-06-25 07:43:54 ----HD---- C:\Windows\msdownld.tmp
2014-06-25 07:43:10 ----D---- C:\Windows\SYSWOW64\directx
2014-06-24 21:49:40 ----D---- C:\Users\Acer\AppData\Roaming\Python-Eggs
2014-06-24 21:49:35 ----D---- C:\Users\Acer\AppData\Roaming\BitLord
2014-06-24 21:49:35 ----A---- C:\Users\Acer\AppData\Roaming\bitlord_log.txt
2014-06-24 21:49:07 ----D---- C:\Program Files (x86)\SearchProtect
2014-06-24 21:47:08 ----D---- C:\Program Files (x86)\BitLord 2
2014-06-24 21:44:30 ----A---- C:\Windows\SYSWOW64\msvcr71.dll
2014-06-24 21:44:30 ----A---- C:\Windows\SYSWOW64\mfc71.dll
2014-06-22 00:27:40 ----D---- C:\Users\Acer\AppData\Roaming\BANDISOFT
2014-06-22 00:27:26 ----D---- C:\Program Files (x86)\Bandicam
2014-06-22 00:27:23 ----D---- C:\Program Files (x86)\BandiMPEG1
2014-06-21 21:14:33 ----D---- C:\Users\Acer\AppData\Roaming\TeamViewer
2014-06-21 16:28:23 ----D---- C:\Program Files (x86)\VirtualDJ
2014-06-20 20:00:09 ----D---- C:\Users\Acer\AppData\Roaming\WinRAR
2014-06-20 19:59:18 ----D---- C:\Program Files (x86)\WinRAR
2014-06-13 13:56:02 ----A---- C:\Windows\system32\rdpudd.dll
2014-06-13 13:56:02 ----A---- C:\Windows\system32\rdpcorets.dll
2014-06-13 13:55:58 ----A---- C:\Windows\SYSWOW64\wusa.exe
2014-06-13 13:55:58 ----A---- C:\Windows\system32\wusa.exe
2014-06-13 13:55:58 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-06-13 13:55:51 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-06-13 13:55:51 ----A---- C:\Windows\system32\gdi32.dll
2014-06-13 13:53:53 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-06-13 13:53:51 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-06-13 13:53:51 ----A---- C:\Windows\system32\msxml3.dll
======List of files/folders modified in the last 3 months======
2014-08-29 20:23:47 ----D---- C:\Program Files
2014-08-29 20:23:31 ----D---- C:\Windows\Prefetch
2014-08-29 20:17:23 ----D---- C:\Windows\system32\sru
2014-08-29 10:14:09 ----D---- C:\Windows\Temp
2014-08-29 10:13:21 ----D---- C:\Windows\Microsoft.NET
2014-08-29 10:05:10 ----D---- C:\Windows\system32\config
2014-08-28 21:39:04 ----D---- C:\Windows\WinSxS
2014-08-28 21:36:54 ----D---- C:\Windows\CbsTemp
2014-08-28 21:36:41 ----SHD---- C:\System Volume Information
2014-08-28 21:29:11 ----RD---- C:\Windows\System32
2014-08-28 21:29:11 ----D---- C:\Windows\Inf
2014-08-28 21:29:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-08-28 21:25:04 ----SD---- C:\ProgramData\Microsoft
2014-08-28 21:18:58 ----SHD---- C:\Windows\Installer
2014-08-28 21:18:40 ----D---- C:\Program Files (x86)
2014-08-28 21:17:30 ----D---- C:\Windows\system32\catroot2
2014-08-28 21:13:26 ----D---- C:\Windows\system32\NDF
2014-08-28 20:52:08 ----D---- C:\Users\Acer\AppData\Roaming\Skype
2014-08-26 17:25:49 ----D---- C:\Windows\system32\Drivers
2014-08-26 10:41:22 ----D---- C:\ProgramData\PMB Files
2014-08-26 10:23:13 ----A---- C:\Windows\SYSWOW64\log.txt
2014-08-25 15:41:54 ----D---- C:\Windows\rescache
2014-08-24 21:08:48 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-08-24 19:41:43 ----D---- C:\Windows\SysWOW64
2014-08-24 19:38:45 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-24 19:38:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-24 19:38:45 ----D---- C:\Windows\system32\en-US
2014-08-24 19:38:45 ----D---- C:\Windows\system32\cs-CZ
2014-08-24 19:38:41 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-24 19:38:38 ----D---- C:\Program Files\Internet Explorer
2014-08-24 19:38:17 ----D---- C:\Windows\system32\catroot
2014-08-19 14:51:32 ----RSD---- C:\Windows\assembly
2014-08-19 10:58:14 ----AD---- C:\Windows
2014-08-18 20:42:54 ----HD---- C:\Program Files\WindowsApps
2014-08-18 20:42:54 ----D---- C:\Windows\AUInstallAgent
2014-08-18 17:47:58 ----D---- C:\Users\Acer\AppData\Roaming\GamezUnited
2014-08-17 23:19:56 ----RD---- C:\Windows\ToastData
2014-08-17 23:19:51 ----D---- C:\Windows\system32\DriverStore
2014-08-17 23:19:45 ----D---- C:\Windows\system32\MRT
2014-08-17 23:16:19 ----A---- C:\Windows\system32\MRT.exe
2014-08-17 22:31:58 ----D---- C:\Windows\system32\Tasks
2014-08-13 18:42:39 ----HD---- C:\ProgramData
2014-08-08 20:19:33 ----D---- C:\ProgramData\Skype
2014-08-08 20:19:30 ----D---- C:\Program Files (x86)\Common Files
2014-08-07 21:47:45 ----RD---- C:\Program Files (x86)\Skype
2014-08-01 10:09:17 ----D---- C:\Windows\system32\wdi
2014-08-01 10:07:05 ----RSD---- C:\Windows\Fonts
2014-07-31 21:37:03 ----D---- C:\Users\Acer\AppData\Roaming\Adobe
2014-07-31 02:32:59 ----D---- C:\Program Files\Common Files
2014-07-19 20:24:05 ----D---- C:\Windows\Tasks
2014-07-16 08:36:49 ----D---- C:\Windows\LiveKernelReports
2014-07-15 14:38:34 ----SD---- C:\Users\Acer\AppData\Roaming\Microsoft
2014-07-12 12:41:29 ----D---- C:\Program Files\Windows Journal
2014-07-12 12:41:27 ----D---- C:\Windows\WinStore
2014-07-12 12:25:24 ----AD---- C:\ProgramData\Temp
2014-07-11 17:18:04 ----D---- C:\ProgramData\Norton
2014-06-28 06:51:09 ----D---- C:\ProgramData\McAfee
2014-06-28 06:50:54 ----D---- C:\Program Files\mcafee
2014-06-28 06:50:49 ----D---- C:\Program Files\Common Files\mcafee
2014-06-26 20:48:01 ----HD---- C:\Windows\ELAMBKUP
2014-06-26 09:35:15 ----D---- C:\ProgramData\CyberLink
2014-06-26 08:45:29 ----D---- C:\Windows\system32\drivers\UMDF
2014-06-25 17:19:27 ----D---- C:\Program Files (x86)\WildTangent Games
2014-06-25 17:18:44 ----D---- C:\ProgramData\WildTangent
2014-06-25 14:52:09 ----A---- C:\Windows\system32\igfxsrvc.dll
2014-06-25 14:52:08 ----A---- C:\Windows\system32\igfxress.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxpph.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxexps.dll
2014-06-25 14:52:07 ----A---- C:\Windows\system32\igfxdev.dll
2014-06-25 14:52:03 ----A---- C:\Windows\SYSWOW64\igdumd32.dll
2014-06-25 14:51:59 ----A---- C:\Windows\system32\igd10umd64.dll
2014-06-25 14:51:57 ----A---- C:\Windows\system32\hccutils.dll
2014-06-24 14:47:58 ----D---- C:\Windows\Logs
2014-06-20 06:55:38 ----D---- C:\Program Files\Windows Media Player
2014-06-20 06:55:38 ----D---- C:\Program Files\Windows Mail
2014-06-20 06:55:37 ----D---- C:\Program Files\Windows Photo Viewer
2014-06-20 06:55:36 ----D---- C:\Program Files\Windows Defender
2014-06-20 06:55:36 ----D---- C:\Program Files\Common Files\System
2014-06-20 06:55:36 ----D---- C:\Program Files (x86)\Windows Mail
2014-06-20 06:55:35 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-06-20 06:55:35 ----D---- C:\Program Files (x86)\Windows Media Player
2014-06-20 06:55:33 ----D---- C:\Windows\SYSWOW64\oobe
2014-06-20 06:55:33 ----D---- C:\Program Files (x86)\Windows Defender
2014-06-20 06:55:32 ----D---- C:\Windows\SYSWOW64\slmgr
2014-06-20 06:55:32 ----D---- C:\Windows\SYSWOW64\sk-SK
2014-06-20 06:55:24 ----D---- C:\Windows\SYSWOW64\WCN
2014-06-20 06:55:24 ----D---- C:\Windows\SYSWOW64\wbem
2014-06-20 06:55:24 ----D---- C:\Windows\SYSWOW64\drivers
2014-06-20 06:55:20 ----RD---- C:\Windows\ImmersiveControlPanel
2014-06-20 06:55:20 ----D---- C:\Windows\system32\oobe
2014-06-20 06:55:20 ----D---- C:\Windows\PolicyDefinitions
2014-06-20 06:55:19 ----D---- C:\Windows\system32\Sysprep
2014-06-20 06:55:18 ----D---- C:\Windows\system32\slmgr
2014-06-20 06:55:18 ----D---- C:\Windows\system32\sk-SK
2014-06-20 06:54:30 ----D---- C:\Windows\system32\WCN
2014-06-20 06:54:18 ----D---- C:\Windows\system32\SystemResetPlatform
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-07-28 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-07-28 224896]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2012-08-16 645952]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-07-28 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-07-28 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-07-28 427360]
R1 ccSet_NARA;NARA Settings Manager; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [2012-05-26 168608]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2012-07-26 64000]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-07-28 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-07-28 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-07-28 92008]
R3 b57xdbd;@oem7.inf,%bcmxd_16bf_svcd%;Broadcom xD Picture Bus Driver Service; C:\Windows\System32\drivers\b57xdbd.sys [2012-08-13 72280]
R3 b57xdmp;@oem7.inf,%BXD_SVCDESC%;Broadcom xD Picture vstorp client drv; C:\Windows\System32\drivers\b57xdmp.sys [2012-08-13 21080]
R3 bScsiMSa;bScsiMSa; C:\Windows\System32\drivers\bScsiMSa.sys [2012-06-19 55384]
R3 bScsiSDa;bScsiSDa; C:\Windows\System32\drivers\bScsiSDa.sys [2012-08-14 70744]
R3 ETD;@oem11.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2012-11-20 331152]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-06-25 5358016]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-06-12 4060560]
R3 IntcDAud;@oem2.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2012-06-02 425472]
R3 MEIx64;@oem8.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NETwNe64;@oem9.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\Windows\system32\DRIVERS\NETwew00.sys [2012-08-11 4273192]
R3 Ps2Kb2Hid;@oem10.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [2014-05-01 26736]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-06 210560]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2012-07-26 17920]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 WINUSB;@winusb.inf,%WinUSB_SvcDesc%;Ovladač WinUsb; C:\Windows\System32\drivers\WinUSB.SYS [2012-07-26 57344]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-28 50344]
R2 BrcmCardReader;Broadcom Card Reader Service; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [2012-08-21 176640]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2013-02-20 2615368]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-12-10 350544]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2012-11-20 100752]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NAUpdate;@c:\Program Files (x86)\Nero\Update\NASvc.exe,-200; c:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2012-08-15 3943104]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2014-05-01 96880]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2013-03-16 662088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-23 116648]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2014-05-04 2152736]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-06-25 279024]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-07-26 43616]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-23 116648]
-----------------EOF-----------------
Re: pomalý , nestabilní internet
info.txt logfile of random's system information tool 1.10 2014-08-29 20:24:03
======MBR======
0x00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000007EE3AC64000000000200EEFFFFFF01000000FFFFFFFF00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000055AA
======Uninstall list======
clear.fi SDK - Video 2-->"C:\Program Files (x86)\InstallShield Installation Information\{EBA33CAD-E071-48d5-A168-FBA4EEB42E93}\setup.exe" /z-uninstall
clear.fi SDK- Movie 2-->"C:\Program Files (x86)\InstallShield Installation Information\{35DA427D-BB23-49B8-9AFD-CFFCFE3B708D}\setup.exe" /z-uninstall
-->"C:\Program Files (x86)\InstallShield Installation Information\{35DA427D-BB23-49B8-9AFD-CFFCFE3B708D}\setup.exe" /z-uninstall
-->"C:\Program Files (x86)\InstallShield Installation Information\{EBA33CAD-E071-48d5-A168-FBA4EEB42E93}\setup.exe" /z-uninstall
-->"C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\Uninstall.exe"
Acer Power Management-->MsiExec.exe /i {91F52DE4-B789-42B0-9311-A349F10E5479} PRODUCTNAME="Acer Power Management" BRANDNAME="Acer" NEWUPGRADE=0 BOOTSTRATOR=1 ISDT=0
Acer Recovery Management-->Msiexec.exe /i {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} ACER=1 PRODUCTNAME="Acer Recovery Management" REMOVEUSEC=1 BOOTSTRATOR=1 ACERPRELOAD=1
AcerCloud Docs-->C:\Program Files (x86)\Acer\AcerCloud Docs\AcerCloudDocsSetup.exe -uninstall
AcerCloud Portal-->C:\Program Files (x86)\Acer\Acer Cloud\AcerCloudSetup.exe -uninstall
Adobe AIR-->C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Community Help-->msiexec /qb /x {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Community Help-->MsiExec.exe /I{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Media Player-->msiexec /qb /x {DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Media Player-->MsiExec.exe /I{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
avast! Free Antivirus-->C:\Program Files\AVAST Software\Avast\Setup\Instup.exe /control_panel /instop:uninstall
Bandicam-->"C:\Program Files (x86)\Bandicam\uninstall.exe"
Bandisoft MPEG-1 Decoder-->"C:\Program Files (x86)\BandiMPEG1\uninstall.exe"
BitLord 2.3-->C:\Program Files (x86)\BitLord 2\Bitlord-uninst.exe
Broadcom Card Reader Driver Installer-->MsiExec.exe /I{F0A7DF2F-0BE0-470F-B137-D7A19F977189}
clear.fi Media-->C:\Program Files (x86)\Acer\clear.fi Media\clearfiSetup.exe -uninstall
clear.fi Photo-->C:\Program Files (x86)\Acer\clear.fi Photo\clearfiSetup.exe -uninstall
Combat Arms EU-->"C:\ProgramData\NexonEU\NGM\NGM.exe" -mode:uninstall -game:50340359 -locale:EU
CyberLink MediaEspresso 6.5-->"C:\Program Files (x86)\InstallShield Installation Information\{E3739848-5329-48E3-8D28-5BBD6E8BE384}\setup.exe" /z-uninstall
CyberLink MediaEspresso 6.5-->"C:\Program Files (x86)\InstallShield Installation Information\{E3739848-5329-48E3-8D28-5BBD6E8BE384}\setup.exe" /z-uninstall
ETDWare PS/2-X64 11.6.16.003_WHQL-->%ProgramFiles%\Elantech\ETDUn_inst.exe
GamezUnited-->C:\Users\Acer\AppData\Roaming\GamezUnited\uninstall.exe
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Identity Card-->MsiExec.exe /X{3D9CB654-99AD-4301-89C6-0D12A790767C}
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Intel(R) Processor Graphics-->C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe -uninstall
Intel(R) Rapid Storage Technology-->C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\Uninstall\setup.exe -uninstall
Intel(R) SDK for OpenCL - CPU Only Runtime Package-->C:\Program Files (x86)\Intel\OpenCL SDK\2.0\Uninstall\setup.exe -uninstall
Intel® Trusted Connect Service Client-->MsiExec.exe /I{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
IObit Uninstaller-->"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallDisplay.exe" uninstall_start
Launch Manager-->C:\Windows\UNINSTLMv7.EXE LMv7.UNI
League of Legends-->msiexec.exe /x {6B84E528-9705-4D36-9C97-97B8E23DAB75}
League of Legends-->MsiExec.exe /X{6B84E528-9705-4D36-9C97-97B8E23DAB75}
Live Updater-->MsiExec.exe /X{EE26E302-876A-48D9-9058-3129E5B99999}
Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64)-->MsiExec.exe /I{E9F0BCD8-6BD5-1ED7-EDA3-9FCF2A478AA1}
Microsoft Office-->MsiExec.exe /X{90150000-0138-0409-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual Studio 2005 Tools for Office Runtime-->MsiExec.exe /X{388E4B09-3E71-4649-8921-F44A3A2954A7}
Microsoft_VC80_ATL_x86_x64-->MsiExec.exe /I{925D058B-564A-443A-B4B2-7E90C6432E55}
Microsoft_VC80_ATL_x86-->MsiExec.exe /I{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}
Microsoft_VC80_CRT_x86_x64-->MsiExec.exe /I{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC80_MFC_x86_x64-->MsiExec.exe /I{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
Microsoft_VC80_MFC_x86-->MsiExec.exe /I{D1A19B02-817E-4296-A45B-07853FD74D57}
Microsoft_VC80_MFCLOC_x86_x64-->MsiExec.exe /I{1E9FC118-651D-4934-97BE-E53CAE5C7D45}
Microsoft_VC80_MFCLOC_x86-->MsiExec.exe /I{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
Microsoft_VC90_ATL_x86_x64-->MsiExec.exe /I{8557397C-A42D-486F-97B3-A2CBC2372593}
Microsoft_VC90_ATL_x86-->MsiExec.exe /I{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
Microsoft_VC90_CRT_x86_x64-->MsiExec.exe /I{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86_x64-->MsiExec.exe /I{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
Microsoft_VC90_MFC_x86-->MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
Nero BackItUp 12 Essentials OEM.a01-->MsiExec.exe /I{4CA8F973-6377-4ABF-9ED5-CC2323B3C000}
Nero BackItUp Help (CHM)-->MsiExec.exe /X{EF0D1292-8FC1-41BE-9740-DBC134F66415}
Nero BackItUp-->MsiExec.exe /X{DA2D3078-A58C-45E8-8EE0-18B8BE6B34F7}
Nero ControlCenter Help (CHM)-->MsiExec.exe /X{C994C746-C6D0-4EBA-B09E-DF7B18381B69}
Nero ControlCenter-->MsiExec.exe /X{ABC88553-8770-4B97-B43E-5A90647A5B63}
Nero Core Components-->MsiExec.exe /X{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}
Nero Launcher-->MsiExec.exe /X{0E4630AF-0AB7-440E-A978-1A78FC4F43B9}
Nero RescueAgent Help (CHM)-->MsiExec.exe /X{0B311221-05A5-4766-8D03-7A6446794156}
Nero RescueAgent-->MsiExec.exe /X{A2D43081-CF7B-4637-A9F3-E2651AA5C4A8}
Nero Update-->MsiExec.exe /X{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}
Norton Online Backup ARA-->C:\Program Files (x86)\NortonInstaller\{311739EB-5C94-4EE1-B911-2D1F005060F4}\NARA\LicenseType\4.1.0.14\InstStub.exe /X /ARP
Norton Online Backup-->MsiExec.exe /X{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}
Notepad++-->C:\Program Files (x86)\Notepad++\uninstall.exe
Office Addin 2003-->MsiExec.exe /I{1FCC073B-CC01-4443-AD20-E559F66E6E83}
Office Addin-->MsiExec.exe /I{6D2BBE1D-E600-4695-BA37-0B0E605542CC}
Pando Media Booster-->C:\Program Files (x86)\Pando Networks\Media Booster\uninst.exe
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Shared C Run-time for x64-->MsiExec.exe /I{EF79C448-6946-4D71-8134-03407888C054}
Skype Click to Call-->MsiExec.exe /X{6D1221A9-17BF-4EC0-81F2-27D30EC30701}
Skype™ 6.18-->MsiExec.exe /X{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}
Spotify-->"C:\Program Files (x86)\Spotify\Spotify.exe" /uninstall
Star Conflict Launcher 1.0.1.21-->"C:\Program Files (x86)\Star Conflict\unins000.exe"
TeamSpeak 3 Client-->"C:\Program Files (x86)\TeamSpeak 3 Client\uninstall.exe"
VirtualDJ Home FREE-->MsiExec.exe /I{77C2D5D4-ADC5-49F9-B36E-5992FCF35EA3}
Visual Studio 2005 Tools for Office Second Edition Runtime-->C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\8.0\Microsoft Visual Studio 2005 Tools for Office Runtime\install.exe
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258)-->C:\Windows\SysWOW64\msiexec.exe /package {8FB53850-246A-3507-8ADE-0060093FFEA6} /uninstall {1AF8622B-42B6-472C-A634-487025BD7B38} /qb+ REBOOTPROMPT=""
Visual Studio Tools for the Office system 3.0 Runtime-->C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\9.0\Visual Studio Tools for the Office system 3.0 Runtime\install.exe
Visual Studio Tools for the Office system 3.0 Runtime-->MsiExec.exe /X{8FB53850-246A-3507-8ADE-0060093FFEA6}
Windows 8 Start menu 2.1-->"C:\Users\Acer\AppData\Roaming\StartMenu\unins000.exe"
WinRAR 5.10 beta 4 (32-bit)-->C:\Program Files (x86)\WinRAR\uninstall.exe
======System event log======
Computer Name: WIN-BHQT9HG5VQP
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z disabled na auto start.
Record Number: 827
Source Name: Service Control Manager
Time Written: 20140430225745.265947-000
Event Type: Informace
User: AcerPC\Administrator
Computer Name: WIN-BHQT9HG5VQP
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z auto start na disabled.
Record Number: 826
Source Name: Service Control Manager
Time Written: 20140430225738.151305-000
Event Type: Informace
User: AcerPC\Administrator
Computer Name: WIN-BHQT9HG5VQP
Event Code: 104
Message: Byl vymazán soubor protokolu Setup.
Record Number: 825
Source Name: Microsoft-Windows-Eventlog
Time Written: 20140430225731.713212-000
Event Type: Informace
User: AcerPC\Administrator
Computer Name: WIN-BHQT9HG5VQP
Event Code: 104
Message: Byl vymazán soubor protokolu Application.
Record Number: 824
Source Name: Microsoft-Windows-Eventlog
Time Written: 20140430225731.635059-000
Event Type: Informace
User: AcerPC\Administrator
Computer Name: WIN-BHQT9HG5VQP
Event Code: 104
Message: Byl vymazán soubor protokolu System.
Record Number: 823
Source Name: Microsoft-Windows-Eventlog
Time Written: 20140430225731.572579-000
Event Type: Informace
User: AcerPC\Administrator
=====Application event log=====
Computer Name: WIN-BHQT9HG5VQP
Event Code: 1013
Message: Služba Windows Search byla řádně zastavena.
Record Number: 680
Source Name: Microsoft-Windows-Search
Time Written: 20140430225752.000000-000
Event Type: Informace
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 6000
Message: Odběratel oznámení přihlašování do systému Windows <SessionEnv> nemohl zpracovat událost upozornění.
Record Number: 679
Source Name: Microsoft-Windows-Winlogon
Time Written: 20140430225751.000000-000
Event Type: Informace
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 1003
Message: Služba Windows Search byla spuštěna.
Record Number: 678
Source Name: Microsoft-Windows-Search
Time Written: 20140430225745.000000-000
Event Type: Informace
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 1013
Message: Služba Windows Search byla řádně zastavena.
Record Number: 677
Source Name: Microsoft-Windows-Search
Time Written: 20140430225744.000000-000
Event Type: Informace
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 103
Message: SearchIndexer (2664) Windows: Databázový stroj zastavil instanci (0).
Nesprávné vypnutí: 0
Sekvence interního načasování: [1] 0.000, [2] 0.000, [3] 0.000, [4] 0.000, [5] 0.047, [6] 0.000, [7] 0.000, [8] 0.000, [9] 0.032, [10] 0.000, [11] 0.000, [12] 0.000, [13] 0.000, [14] 0.000, [15] 0.000.
Record Number: 676
Source Name: ESENT
Time Written: 20140430225744.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: WIN-BHQT9HG5VQP
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 7072
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20140430225732.869522-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: WIN-BHQT9HG5VQP$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2b8
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 7071
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20140430225732.869522-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 7070
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20140430225730.760017-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: WIN-BHQT9HG5VQP$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2b8
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 7069
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20140430225730.760017-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 1102
Message: Protokol auditu byl vymazán.
Předmět:
ID zabezpečení: S-1-5-21-3950629921-3933873575-445178430-500
Název účtu: Administrator
Název domény: WIN-BHQT9HG5VQP
ID přihlášení: 0x1A874
Record Number: 7068
Source Name: Microsoft-Windows-Eventlog
Time Written: 20140430225731.681961-000
Event Type: Úspěšný audit
User:
======Environment variables======
"FP_NO_HOST_CHECK"=NO
"USERNAME"=SYSTEM
"Path"=C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT
"ComSpec"=%SystemRoot%\system32\cmd.exe
"TMP"=%SystemRoot%\TEMP
"OS"=Windows_NT
"windir"=%SystemRoot%
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
"PROCESSOR_REVISION"=2a07
-----------------EOF-----------------
======MBR======
0x00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000007EE3AC64000000000200EEFFFFFF01000000FFFFFFFF00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000055AA
======Uninstall list======
clear.fi SDK - Video 2-->"C:\Program Files (x86)\InstallShield Installation Information\{EBA33CAD-E071-48d5-A168-FBA4EEB42E93}\setup.exe" /z-uninstall
clear.fi SDK- Movie 2-->"C:\Program Files (x86)\InstallShield Installation Information\{35DA427D-BB23-49B8-9AFD-CFFCFE3B708D}\setup.exe" /z-uninstall
-->"C:\Program Files (x86)\InstallShield Installation Information\{35DA427D-BB23-49B8-9AFD-CFFCFE3B708D}\setup.exe" /z-uninstall
-->"C:\Program Files (x86)\InstallShield Installation Information\{EBA33CAD-E071-48d5-A168-FBA4EEB42E93}\setup.exe" /z-uninstall
-->"C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\Uninstall.exe"
Acer Power Management-->MsiExec.exe /i {91F52DE4-B789-42B0-9311-A349F10E5479} PRODUCTNAME="Acer Power Management" BRANDNAME="Acer" NEWUPGRADE=0 BOOTSTRATOR=1 ISDT=0
Acer Recovery Management-->Msiexec.exe /i {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} ACER=1 PRODUCTNAME="Acer Recovery Management" REMOVEUSEC=1 BOOTSTRATOR=1 ACERPRELOAD=1
AcerCloud Docs-->C:\Program Files (x86)\Acer\AcerCloud Docs\AcerCloudDocsSetup.exe -uninstall
AcerCloud Portal-->C:\Program Files (x86)\Acer\Acer Cloud\AcerCloudSetup.exe -uninstall
Adobe AIR-->C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Community Help-->msiexec /qb /x {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Community Help-->MsiExec.exe /I{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Media Player-->msiexec /qb /x {DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Media Player-->MsiExec.exe /I{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
avast! Free Antivirus-->C:\Program Files\AVAST Software\Avast\Setup\Instup.exe /control_panel /instop:uninstall
Bandicam-->"C:\Program Files (x86)\Bandicam\uninstall.exe"
Bandisoft MPEG-1 Decoder-->"C:\Program Files (x86)\BandiMPEG1\uninstall.exe"
BitLord 2.3-->C:\Program Files (x86)\BitLord 2\Bitlord-uninst.exe
Broadcom Card Reader Driver Installer-->MsiExec.exe /I{F0A7DF2F-0BE0-470F-B137-D7A19F977189}
clear.fi Media-->C:\Program Files (x86)\Acer\clear.fi Media\clearfiSetup.exe -uninstall
clear.fi Photo-->C:\Program Files (x86)\Acer\clear.fi Photo\clearfiSetup.exe -uninstall
Combat Arms EU-->"C:\ProgramData\NexonEU\NGM\NGM.exe" -mode:uninstall -game:50340359 -locale:EU
CyberLink MediaEspresso 6.5-->"C:\Program Files (x86)\InstallShield Installation Information\{E3739848-5329-48E3-8D28-5BBD6E8BE384}\setup.exe" /z-uninstall
CyberLink MediaEspresso 6.5-->"C:\Program Files (x86)\InstallShield Installation Information\{E3739848-5329-48E3-8D28-5BBD6E8BE384}\setup.exe" /z-uninstall
ETDWare PS/2-X64 11.6.16.003_WHQL-->%ProgramFiles%\Elantech\ETDUn_inst.exe
GamezUnited-->C:\Users\Acer\AppData\Roaming\GamezUnited\uninstall.exe
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Identity Card-->MsiExec.exe /X{3D9CB654-99AD-4301-89C6-0D12A790767C}
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Intel(R) Processor Graphics-->C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe -uninstall
Intel(R) Rapid Storage Technology-->C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\Uninstall\setup.exe -uninstall
Intel(R) SDK for OpenCL - CPU Only Runtime Package-->C:\Program Files (x86)\Intel\OpenCL SDK\2.0\Uninstall\setup.exe -uninstall
Intel® Trusted Connect Service Client-->MsiExec.exe /I{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
IObit Uninstaller-->"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallDisplay.exe" uninstall_start
Launch Manager-->C:\Windows\UNINSTLMv7.EXE LMv7.UNI
League of Legends-->msiexec.exe /x {6B84E528-9705-4D36-9C97-97B8E23DAB75}
League of Legends-->MsiExec.exe /X{6B84E528-9705-4D36-9C97-97B8E23DAB75}
Live Updater-->MsiExec.exe /X{EE26E302-876A-48D9-9058-3129E5B99999}
Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64)-->MsiExec.exe /I{E9F0BCD8-6BD5-1ED7-EDA3-9FCF2A478AA1}
Microsoft Office-->MsiExec.exe /X{90150000-0138-0409-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual Studio 2005 Tools for Office Runtime-->MsiExec.exe /X{388E4B09-3E71-4649-8921-F44A3A2954A7}
Microsoft_VC80_ATL_x86_x64-->MsiExec.exe /I{925D058B-564A-443A-B4B2-7E90C6432E55}
Microsoft_VC80_ATL_x86-->MsiExec.exe /I{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}
Microsoft_VC80_CRT_x86_x64-->MsiExec.exe /I{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC80_MFC_x86_x64-->MsiExec.exe /I{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
Microsoft_VC80_MFC_x86-->MsiExec.exe /I{D1A19B02-817E-4296-A45B-07853FD74D57}
Microsoft_VC80_MFCLOC_x86_x64-->MsiExec.exe /I{1E9FC118-651D-4934-97BE-E53CAE5C7D45}
Microsoft_VC80_MFCLOC_x86-->MsiExec.exe /I{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
Microsoft_VC90_ATL_x86_x64-->MsiExec.exe /I{8557397C-A42D-486F-97B3-A2CBC2372593}
Microsoft_VC90_ATL_x86-->MsiExec.exe /I{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
Microsoft_VC90_CRT_x86_x64-->MsiExec.exe /I{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86_x64-->MsiExec.exe /I{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
Microsoft_VC90_MFC_x86-->MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
Nero BackItUp 12 Essentials OEM.a01-->MsiExec.exe /I{4CA8F973-6377-4ABF-9ED5-CC2323B3C000}
Nero BackItUp Help (CHM)-->MsiExec.exe /X{EF0D1292-8FC1-41BE-9740-DBC134F66415}
Nero BackItUp-->MsiExec.exe /X{DA2D3078-A58C-45E8-8EE0-18B8BE6B34F7}
Nero ControlCenter Help (CHM)-->MsiExec.exe /X{C994C746-C6D0-4EBA-B09E-DF7B18381B69}
Nero ControlCenter-->MsiExec.exe /X{ABC88553-8770-4B97-B43E-5A90647A5B63}
Nero Core Components-->MsiExec.exe /X{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}
Nero Launcher-->MsiExec.exe /X{0E4630AF-0AB7-440E-A978-1A78FC4F43B9}
Nero RescueAgent Help (CHM)-->MsiExec.exe /X{0B311221-05A5-4766-8D03-7A6446794156}
Nero RescueAgent-->MsiExec.exe /X{A2D43081-CF7B-4637-A9F3-E2651AA5C4A8}
Nero Update-->MsiExec.exe /X{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}
Norton Online Backup ARA-->C:\Program Files (x86)\NortonInstaller\{311739EB-5C94-4EE1-B911-2D1F005060F4}\NARA\LicenseType\4.1.0.14\InstStub.exe /X /ARP
Norton Online Backup-->MsiExec.exe /X{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}
Notepad++-->C:\Program Files (x86)\Notepad++\uninstall.exe
Office Addin 2003-->MsiExec.exe /I{1FCC073B-CC01-4443-AD20-E559F66E6E83}
Office Addin-->MsiExec.exe /I{6D2BBE1D-E600-4695-BA37-0B0E605542CC}
Pando Media Booster-->C:\Program Files (x86)\Pando Networks\Media Booster\uninst.exe
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Shared C Run-time for x64-->MsiExec.exe /I{EF79C448-6946-4D71-8134-03407888C054}
Skype Click to Call-->MsiExec.exe /X{6D1221A9-17BF-4EC0-81F2-27D30EC30701}
Skype™ 6.18-->MsiExec.exe /X{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}
Spotify-->"C:\Program Files (x86)\Spotify\Spotify.exe" /uninstall
Star Conflict Launcher 1.0.1.21-->"C:\Program Files (x86)\Star Conflict\unins000.exe"
TeamSpeak 3 Client-->"C:\Program Files (x86)\TeamSpeak 3 Client\uninstall.exe"
VirtualDJ Home FREE-->MsiExec.exe /I{77C2D5D4-ADC5-49F9-B36E-5992FCF35EA3}
Visual Studio 2005 Tools for Office Second Edition Runtime-->C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\8.0\Microsoft Visual Studio 2005 Tools for Office Runtime\install.exe
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258)-->C:\Windows\SysWOW64\msiexec.exe /package {8FB53850-246A-3507-8ADE-0060093FFEA6} /uninstall {1AF8622B-42B6-472C-A634-487025BD7B38} /qb+ REBOOTPROMPT=""
Visual Studio Tools for the Office system 3.0 Runtime-->C:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\9.0\Visual Studio Tools for the Office system 3.0 Runtime\install.exe
Visual Studio Tools for the Office system 3.0 Runtime-->MsiExec.exe /X{8FB53850-246A-3507-8ADE-0060093FFEA6}
Windows 8 Start menu 2.1-->"C:\Users\Acer\AppData\Roaming\StartMenu\unins000.exe"
WinRAR 5.10 beta 4 (32-bit)-->C:\Program Files (x86)\WinRAR\uninstall.exe
======System event log======
Computer Name: WIN-BHQT9HG5VQP
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z disabled na auto start.
Record Number: 827
Source Name: Service Control Manager
Time Written: 20140430225745.265947-000
Event Type: Informace
User: AcerPC\Administrator
Computer Name: WIN-BHQT9HG5VQP
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z auto start na disabled.
Record Number: 826
Source Name: Service Control Manager
Time Written: 20140430225738.151305-000
Event Type: Informace
User: AcerPC\Administrator
Computer Name: WIN-BHQT9HG5VQP
Event Code: 104
Message: Byl vymazán soubor protokolu Setup.
Record Number: 825
Source Name: Microsoft-Windows-Eventlog
Time Written: 20140430225731.713212-000
Event Type: Informace
User: AcerPC\Administrator
Computer Name: WIN-BHQT9HG5VQP
Event Code: 104
Message: Byl vymazán soubor protokolu Application.
Record Number: 824
Source Name: Microsoft-Windows-Eventlog
Time Written: 20140430225731.635059-000
Event Type: Informace
User: AcerPC\Administrator
Computer Name: WIN-BHQT9HG5VQP
Event Code: 104
Message: Byl vymazán soubor protokolu System.
Record Number: 823
Source Name: Microsoft-Windows-Eventlog
Time Written: 20140430225731.572579-000
Event Type: Informace
User: AcerPC\Administrator
=====Application event log=====
Computer Name: WIN-BHQT9HG5VQP
Event Code: 1013
Message: Služba Windows Search byla řádně zastavena.
Record Number: 680
Source Name: Microsoft-Windows-Search
Time Written: 20140430225752.000000-000
Event Type: Informace
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 6000
Message: Odběratel oznámení přihlašování do systému Windows <SessionEnv> nemohl zpracovat událost upozornění.
Record Number: 679
Source Name: Microsoft-Windows-Winlogon
Time Written: 20140430225751.000000-000
Event Type: Informace
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 1003
Message: Služba Windows Search byla spuštěna.
Record Number: 678
Source Name: Microsoft-Windows-Search
Time Written: 20140430225745.000000-000
Event Type: Informace
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 1013
Message: Služba Windows Search byla řádně zastavena.
Record Number: 677
Source Name: Microsoft-Windows-Search
Time Written: 20140430225744.000000-000
Event Type: Informace
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 103
Message: SearchIndexer (2664) Windows: Databázový stroj zastavil instanci (0).
Nesprávné vypnutí: 0
Sekvence interního načasování: [1] 0.000, [2] 0.000, [3] 0.000, [4] 0.000, [5] 0.047, [6] 0.000, [7] 0.000, [8] 0.000, [9] 0.032, [10] 0.000, [11] 0.000, [12] 0.000, [13] 0.000, [14] 0.000, [15] 0.000.
Record Number: 676
Source Name: ESENT
Time Written: 20140430225744.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: WIN-BHQT9HG5VQP
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 7072
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20140430225732.869522-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: WIN-BHQT9HG5VQP$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2b8
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 7071
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20140430225732.869522-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 7070
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20140430225730.760017-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: WIN-BHQT9HG5VQP$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2b8
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 7069
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20140430225730.760017-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BHQT9HG5VQP
Event Code: 1102
Message: Protokol auditu byl vymazán.
Předmět:
ID zabezpečení: S-1-5-21-3950629921-3933873575-445178430-500
Název účtu: Administrator
Název domény: WIN-BHQT9HG5VQP
ID přihlášení: 0x1A874
Record Number: 7068
Source Name: Microsoft-Windows-Eventlog
Time Written: 20140430225731.681961-000
Event Type: Úspěšný audit
User:
======Environment variables======
"FP_NO_HOST_CHECK"=NO
"USERNAME"=SYSTEM
"Path"=C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT
"ComSpec"=%SystemRoot%\system32\cmd.exe
"TMP"=%SystemRoot%\TEMP
"OS"=Windows_NT
"windir"=%SystemRoot%
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
"PROCESSOR_REVISION"=2a07
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119545
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: pomalý , nestabilní internet
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.