Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Hacknutý email rozesílá spam

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Hacknutý email rozesílá spam

#1 Příspěvek od Zmaslo »

Dobrý den,
před pár dny můj email na seznamu rozeslal spam všem mým kontaktům. Seznam mě zároveň upozornil na to, že se na můj účet přihlásili uživatelé z Japonska/Srbska/Hong Kongu atd... Změnil jsem tedy okamžitě heslo a vše se zdá být ok. Nicméně mne zaráží způsob, jakým dotyčný mé přístupové údaje dostal. Na internetu se pohybuji relativně obezřetně, nejsem žádný naivní nováček, antivir mám od aviry a systém zakupený, pravidelně aktualizovaný. Je možné, že se k dotyčnému dostaly i má jiná hesla? (paypal, internet banking atd.)?

Jestli to pomůže, text spam mailu byl
"now you can buy Iphone5s here!
aruelbn.com
good seller"

Logfile of random's system information tool 1.10 (written by random/random)
Run by Zmaslo at 2014-09-07 17:49:39
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 516 GB (72%) free of 715 GB
Total RAM: 5982 MB (75% free)

HijackThis download failed

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\igfxCUIService.exe
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE" "C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe"
C:\Windows\system32\WLANExt.exe 28373888
\??\C:\Windows\system32\conhost.exe "-1062501641854259419-13742053901522993842-20084900601870973741283023494716006629
C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Dolby PCEE4\pcee4.exe" -autostart
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000770
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-596d42cf-9d60-4063-9449-bfb84ae46c3c -SystemEventPortName:HostProcess-4ea769a5-e030-4327-9133-d87636c1018f -IoCancelEventPortName:HostProcess-441c142a-84de-4efa-8255-f151c4434a4f -NonStateChangingEventPortName:HostProcess-b0d88f8a-715d-4930-922e-46572706e0ce -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:52d81761-dae3-4a87-a947-b3e54df4f3b1
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"

"taskhost.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe14_ Global\UsGthrCtrlFltPipeMssGthrPipe14 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\Zmaslo\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
taskhost.exe $(Arg0)
C:\Windows\System32\svchost.exe -k WerSvcGroup

=========Mozilla firefox=========

ProfilePath - C:\Users\Zmaslo\AppData\Roaming\Mozilla\Firefox\Profiles\2vecaa2m.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.179 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.179 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll

C:\Users\Zmaslo\AppData\Roaming\Mozilla\Firefox\Profiles\2vecaa2m.default\extensions\
abs@avira.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Broadcom Wireless Manager UI"=C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [2014-08-19 7138816]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-08-19 12343400]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-08-19 1156712]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"AdobeBridge"= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Dolby Home Theater v4"=C:\Dolby PCEE4\pcee4.exe [2011-06-01 506712]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2014-08-04 161584]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-07-23 751184]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-02-27 291608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-09-07 17:49:40 ----D---- C:\Program Files\trend micro
2014-09-07 17:49:39 ----D---- C:\rsit
2014-09-03 20:07:16 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-02 17:12:50 ----D---- C:\Program Files (x86)\Bethesda Softworks
2014-09-02 16:39:06 ----D---- C:\ProgramData\RELOADED
2014-09-02 16:20:29 ----D---- C:\ProgramData\Steam
2014-09-02 10:09:25 ----D---- C:\Games
2014-08-28 19:55:12 ----D---- C:\ProgramData\Hewlett-Packard
2014-08-28 09:28:39 ----D---- C:\Windows\Downloaded Installations
2014-08-28 08:32:35 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 08:32:34 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-28 08:32:34 ----A---- C:\Windows\system32\gdi32.dll
2014-08-26 18:33:45 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-08-26 18:33:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-08-26 18:33:37 ----D---- C:\Program Files (x86)\Grinding Gear Games
2014-08-25 15:39:25 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-08-25 15:19:35 ----D---- C:\Program Files\Common Files\DESIGNER
2014-08-25 15:18:44 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2014-08-25 15:18:43 ----D---- C:\Program Files\Microsoft.NET
2014-08-25 15:18:11 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2014-08-25 15:17:33 ----D---- C:\Windows\PCHEALTH
2014-08-25 15:17:33 ----D---- C:\Program Files\Microsoft SQL Server
2014-08-25 15:17:33 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-08-25 15:15:05 ----D---- C:\Program Files\Microsoft Analysis Services
2014-08-25 15:15:05 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2014-08-25 15:14:33 ----D---- C:\Program Files (x86)\Microsoft Office
2014-08-25 15:14:32 ----D---- C:\Program Files\Microsoft Office
2014-08-25 15:14:21 ----D---- C:\ProgramData\Microsoft Help
2014-08-25 15:12:47 ----RHD---- C:\MSOCache
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wups2.dll
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wucltux.dll
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-23 11:12:30 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-23 11:12:30 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-23 11:12:30 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-23 11:12:30 ----A---- C:\Windows\system32\wups.dll
2014-08-23 11:12:30 ----A---- C:\Windows\system32\wudriver.dll
2014-08-23 11:12:30 ----A---- C:\Windows\system32\wuapi.dll
2014-08-23 11:11:53 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-08-23 11:11:53 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-08-23 11:11:53 ----A---- C:\Windows\system32\wuwebv.dll
2014-08-23 11:11:53 ----A---- C:\Windows\system32\wuapp.exe
2014-08-22 15:53:52 ----A---- C:\Windows\system32\drivers\USB3Ver.dll
2014-08-22 15:52:17 ----A---- C:\Windows\system32\WdfCoInstaller01009.dll
2014-08-22 15:52:17 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2014-08-22 15:52:17 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2014-08-22 15:52:17 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys
2014-08-21 08:24:48 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-08-21 08:24:48 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-08-21 08:24:48 ----A---- C:\Windows\system32\d3d10warp.dll
2014-08-21 08:24:48 ----A---- C:\Windows\system32\d2d1.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-21 08:24:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-21 08:24:41 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\urlmon.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\iernonce.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-08-21 08:24:40 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-21 08:24:39 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-08-21 08:24:39 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-21 08:24:39 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\iesetup.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-08-21 08:24:38 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-21 08:24:38 ----A---- C:\Windows\system32\iertutil.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\ieUnatt.exe
2014-08-21 08:24:37 ----A---- C:\Windows\system32\ieui.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\ieframe.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\wininet.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\vbscript.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\jscript9diag.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\jscript9.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\ieapfltr.dll
2014-08-21 08:24:35 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-21 08:24:35 ----A---- C:\Windows\system32\msrating.dll
2014-08-21 08:24:35 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-08-21 08:24:35 ----A---- C:\Windows\system32\mshtml.dll
2014-08-20 23:08:46 ----D---- C:\Program Files\VideoLAN
2014-08-20 23:07:21 ----D---- C:\Users\Zmaslo\AppData\Roaming\vlc
2014-08-20 13:44:30 ----D---- C:\Windows\SYSWOW64\Wat
2014-08-20 13:44:30 ----D---- C:\Windows\system32\Wat
2014-08-20 12:39:32 ----D---- C:\Program Files\Common Files\Topaz Labs
2014-08-20 12:39:32 ----D---- C:\Program Files (x86)\Topaz Labs
2014-08-20 10:53:35 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-08-20 10:45:04 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-08-20 10:45:00 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-08-20 10:45:00 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-08-20 10:45:00 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-08-20 10:45:00 ----A---- C:\Windows\system32\elshyph.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\url.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\wextract.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\webcheck.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\url.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\msls31.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\mshtmler.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\msfeedssync.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\licmgr10.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\jsIntl.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\inseng.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\iexpress.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\iesysprep.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\ieapfltr.dat
2014-08-20 10:44:58 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\icardie.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\pngfilt.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\occache.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\mshta.exe
2014-08-20 10:44:57 ----A---- C:\Windows\system32\jscript.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\imgutil.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\iepeers.dll
2014-08-20 10:38:47 ----A---- C:\Windows\system32\tdh.dll
2014-08-20 10:38:47 ----A---- C:\Windows\system32\ntdll.dll
2014-08-20 10:38:47 ----A---- C:\Windows\system32\advapi32.dll
2014-08-20 10:38:44 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-08-20 10:38:44 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-08-20 10:38:44 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-08-20 10:30:23 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-08-20 10:30:23 ----A---- C:\Windows\system32\mswsock.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\XpsPrint.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\WMPhoto.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\dxgi.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\UIAnimation.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\FntCache.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\DWrite.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10level9.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10_1.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10.dll
2014-08-20 09:54:49 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-08-20 09:54:49 ----A---- C:\Windows\system32\d3d11.dll
2014-08-20 09:35:24 ----D---- C:\Windows\system32\MRT
2014-08-20 09:35:19 ----A---- C:\Windows\system32\MRT.exe
2014-08-20 09:29:32 ----A---- C:\Windows\system32\browserchoice.exe
2014-08-20 09:19:19 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2014-08-20 09:19:18 ----A---- C:\Windows\SYSWOW64\wmi.dll
2014-08-20 09:19:18 ----A---- C:\Windows\system32\wmi.dll
2014-08-20 09:13:30 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-08-20 09:13:30 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-08-20 09:13:30 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-20 09:13:30 ----A---- C:\Windows\system32\icardagt.exe
2014-08-20 09:13:25 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-08-20 09:13:25 ----A---- C:\Windows\system32\icardres.dll
2014-08-20 09:13:13 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-20 09:13:13 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbctrac.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbccu32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbccr32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbccp32.dll
2014-08-20 09:09:48 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-08-20 09:09:48 ----A---- C:\Windows\system32\comctl32.dll
2014-08-20 09:09:45 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-08-20 09:09:45 ----A---- C:\Windows\system32\poqexec.exe
2014-08-20 09:09:42 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-08-20 09:09:42 ----A---- C:\Windows\system32\mstscax.dll
2014-08-20 09:09:41 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-08-20 09:09:41 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2014-08-20 09:09:41 ----A---- C:\Windows\system32\tsgqec.dll
2014-08-20 09:09:41 ----A---- C:\Windows\system32\aaclient.dll
2014-08-20 09:09:39 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2014-08-20 09:09:39 ----A---- C:\Windows\system32\CPFilters.dll
2014-08-20 09:09:38 ----A---- C:\Windows\SYSWOW64\sbe.dll
2014-08-20 09:09:38 ----A---- C:\Windows\system32\sbe.dll
2014-08-20 09:09:36 ----A---- C:\Windows\system32\shell32.dll
2014-08-20 09:09:35 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-20 09:09:32 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-08-20 09:09:32 ----A---- C:\Windows\system32\wintrust.dll
2014-08-20 09:09:28 ----A---- C:\Windows\SYSWOW64\quartz.dll
2014-08-20 09:09:28 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-08-20 09:09:28 ----A---- C:\Windows\system32\quartz.dll
2014-08-20 09:09:28 ----A---- C:\Windows\system32\qdvd.dll
2014-08-20 09:09:15 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-08-20 09:09:15 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2014-08-20 09:09:15 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-08-20 09:09:14 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-08-20 09:09:14 ----A---- C:\Windows\system32\usp10.dll
2014-08-20 09:09:13 ----A---- C:\Windows\SYSWOW64\webio.dll
2014-08-20 09:09:13 ----A---- C:\Windows\system32\webio.dll
2014-08-20 09:08:59 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-08-20 09:08:57 ----A---- C:\Windows\system32\crypt32.dll
2014-08-20 09:08:56 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-08-20 09:08:56 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-08-20 09:08:56 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-08-20 09:08:56 ----A---- C:\Windows\system32\cryptsvc.dll
2014-08-20 09:08:56 ----A---- C:\Windows\system32\cryptnet.dll
2014-08-20 09:08:53 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-08-20 09:08:53 ----A---- C:\Windows\system32\wer.dll
2014-08-20 09:08:52 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-08-20 09:08:52 ----A---- C:\Windows\system32\imagehlp.dll
2014-08-20 09:08:51 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-08-20 09:08:51 ----A---- C:\Windows\system32\drivers\netio.sys
2014-08-20 09:08:51 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-08-20 09:08:50 ----A---- C:\Windows\system32\msxml6.dll
2014-08-20 09:08:50 ----A---- C:\Windows\system32\msxml3.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-08-20 09:08:49 ----A---- C:\Windows\system32\msxml6r.dll
2014-08-20 09:08:49 ----A---- C:\Windows\system32\msxml3r.dll
2014-08-20 09:08:48 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-08-20 09:08:48 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-08-20 09:08:43 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-08-20 09:08:43 ----A---- C:\Windows\system32\osk.exe
2014-08-20 09:08:42 ----A---- C:\Windows\system32\atmfd.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\mfc42u.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\mfc42.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\lpk.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\fontsub.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\dciman32.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\atmlib.dll
2014-08-20 09:08:40 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2014-08-20 09:08:40 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-08-20 09:08:37 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-08-20 09:08:37 ----A---- C:\Windows\system32\qedit.dll
2014-08-20 09:08:28 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-08-20 09:08:28 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-08-20 09:08:26 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-08-20 09:08:25 ----A---- C:\Windows\system32\rdrmemptylst.exe
2014-08-20 09:08:25 ----A---- C:\Windows\system32\rdpwsx.dll
2014-08-20 09:08:25 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-08-20 09:08:23 ----A---- C:\Windows\system32\drivers\afd.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\Wdfres.dll
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-08-20 09:08:18 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-08-20 09:08:18 ----A---- C:\Windows\system32\tzres.dll
2014-08-20 09:08:16 ----A---- C:\Windows\system32\drivers\usbscan.sys
2014-08-20 09:08:16 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-08-20 09:08:16 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-08-20 09:08:15 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2014-08-20 09:08:15 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2014-08-20 09:08:15 ----A---- C:\Windows\system32\dnsrslvr.dll
2014-08-20 09:08:15 ----A---- C:\Windows\system32\dnscacheugc.exe
2014-08-20 09:08:15 ----A---- C:\Windows\system32\dnsapi.dll
2014-08-20 09:07:59 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-08-20 09:07:59 ----A---- C:\Windows\system32\dpnet.dll
2014-08-20 09:07:54 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-20 09:07:54 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-20 09:07:54 ----A---- C:\Windows\system32\msi.dll
2014-08-20 09:07:54 ----A---- C:\Windows\system32\authui.dll
2014-08-20 09:07:53 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-20 09:07:53 ----A---- C:\Windows\system32\msihnd.dll
2014-08-20 09:07:53 ----A---- C:\Windows\system32\consent.exe
2014-08-20 09:07:53 ----A---- C:\Windows\system32\appinfo.dll
2014-08-20 09:07:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-08-20 09:07:46 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-08-20 09:07:46 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-08-20 09:07:46 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-08-20 09:07:46 ----A---- C:\Windows\system32\winlogon.exe
2014-08-20 09:07:46 ----A---- C:\Windows\system32\objsel.dll
2014-08-20 09:07:46 ----A---- C:\Windows\system32\KernelBase.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\smss.exe
2014-08-20 09:07:45 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\dimsroam.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\cngprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\capiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\adprovider.dll
2014-08-20 09:07:44 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-08-20 09:07:44 ----A---- C:\Windows\system32\wincredprovider.dll
2014-08-20 09:07:44 ----A---- C:\Windows\system32\csrsrv.dll
2014-08-20 09:07:42 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-08-20 09:07:42 ----A---- C:\Windows\system32\apisetschema.dll
2014-08-20 09:07:20 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-08-20 09:07:20 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-08-20 09:07:20 ----A---- C:\Windows\system32\drivers\srv.sys
2014-08-20 09:07:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-08-20 09:07:19 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-20 09:07:19 ----A---- C:\Windows\system32\cdd.dll
2014-08-20 09:07:17 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2014-08-20 09:07:17 ----A---- C:\Windows\system32\psisdecd.dll
2014-08-20 09:07:17 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-08-20 09:07:16 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-08-20 09:07:00 ----A---- C:\Windows\system32\winresume.exe
2014-08-20 09:07:00 ----A---- C:\Windows\system32\winload.exe
2014-08-20 09:07:00 ----A---- C:\Windows\system32\kdusb.dll
2014-08-20 09:07:00 ----A---- C:\Windows\system32\kdcom.dll
2014-08-20 09:07:00 ----A---- C:\Windows\system32\kd1394.dll
2014-08-20 09:06:58 ----A---- C:\Windows\system32\drivers\partmgr.sys
2014-08-20 09:06:57 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-08-20 09:06:57 ----A---- C:\Windows\system32\synceng.dll
2014-08-20 09:06:47 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-08-20 09:06:47 ----A---- C:\Windows\system32\shdocvw.dll
2014-08-20 09:06:41 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-08-20 09:06:41 ----A---- C:\Windows\system32\win32spl.dll
2014-08-20 09:06:38 ----A---- C:\Windows\system32\taskhost.exe
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\devobj.dll
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2014-08-20 09:06:37 ----A---- C:\Windows\system32\umpnpmgr.dll
2014-08-20 09:06:35 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-08-20 09:06:35 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-08-20 09:06:34 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2014-08-20 09:06:34 ----A---- C:\Windows\SYSWOW64\browcli.dll
2014-08-20 09:06:34 ----A---- C:\Windows\system32\netapi32.dll
2014-08-20 09:06:34 ----A---- C:\Windows\system32\browser.dll
2014-08-20 09:06:34 ----A---- C:\Windows\system32\browcli.dll
2014-08-20 09:06:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-08-20 09:06:31 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-08-20 09:06:31 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-08-20 09:06:31 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-08-20 09:06:31 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\wow64win.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\wow64.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\winsrv.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\ntvdm64.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\kernel32.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\conhost.exe
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-08-20 09:06:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-08-20 09:06:30 ----A---- C:\Windows\SYSWOW64\user.exe
2014-08-20 09:06:30 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-08-20 09:06:30 ----A---- C:\Windows\system32\wow64cpu.dll
2014-08-20 09:06:29 ----A---- C:\Windows\system32\FXSCOVER.exe
2014-08-20 09:06:28 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-08-20 09:06:28 ----A---- C:\Windows\system32\inetcomm.dll
2014-08-20 09:06:27 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2014-08-20 09:06:27 ----A---- C:\Windows\system32\msvcrt.dll
2014-08-20 09:06:25 ----A---- C:\Windows\system32\certutil.exe
2014-08-20 09:06:24 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-08-20 09:06:24 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-08-20 09:06:24 ----A---- C:\Windows\system32\certenc.dll
2014-08-20 09:06:19 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-08-20 09:06:19 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-08-20 09:06:19 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-08-20 09:06:19 ----A---- C:\Windows\system32\wscript.exe
2014-08-20 09:06:19 ----A---- C:\Windows\system32\scrrun.dll
2014-08-20 09:06:19 ----A---- C:\Windows\system32\cscript.exe
2014-08-20 09:06:17 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\schannel.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\msv1_0.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\lsasrv.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\kerberos.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\wdigest.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\TSpkg.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\sspicli.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\ncrypt.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\lsass.exe
2014-08-20 09:06:16 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-08-20 09:06:16 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-08-20 09:06:16 ----A---- C:\Windows\system32\drivers\cng.sys
2014-08-20 09:06:15 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-08-20 09:06:15 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-08-20 09:06:15 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-08-20 09:06:15 ----A---- C:\Windows\system32\sspisrv.dll
2014-08-20 09:06:15 ----A---- C:\Windows\system32\secur32.dll
2014-08-20 09:06:15 ----A---- C:\Windows\system32\credssp.dll
2014-08-20 09:06:12 ----A---- C:\Windows\system32\localspl.dll
2014-08-20 09:06:12 ----A---- C:\Windows\system32\drivers\bowser.sys
2014-08-20 09:05:49 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-08-20 09:05:49 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2014-08-20 09:05:49 ----A---- C:\Windows\system32\oleaut32.dll
2014-08-20 09:05:49 ----A---- C:\Windows\system32\oleacc.dll
2014-08-20 09:05:48 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2014-08-20 09:05:48 ----A---- C:\Windows\system32\EncDec.dll
2014-08-20 09:05:32 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2014-08-20 09:05:31 ----A---- C:\Windows\system32\cdosys.dll
2014-08-20 09:05:29 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-08-20 09:05:29 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-08-20 09:05:29 ----A---- C:\Windows\system32\nshwfp.dll
2014-08-20 09:05:29 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-08-20 09:05:29 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-08-20 09:05:28 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-20 09:05:27 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-20 09:05:27 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-08-20 09:05:27 ----A---- C:\Windows\system32\packager.dll
2014-08-20 08:51:43 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-08-20 08:51:43 ----A---- C:\Windows\system32\rdpcore.dll
2014-08-20 08:51:43 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2014-08-20 00:39:39 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-08-20 00:38:43 ----D---- C:\Program Files\Adobe
2014-08-20 00:37:03 ----D---- C:\Program Files (x86)\Adobe
2014-08-20 00:34:18 ----D---- C:\Program Files\Common Files\Adobe
2014-08-20 00:31:32 ----D---- C:\ProgramData\Adobe
2014-08-20 00:29:38 ----A---- C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-08-19 23:53:36 ----D---- C:\Users\Zmaslo\AppData\Roaming\WinRAR
2014-08-19 23:40:19 ----D---- C:\Program Files\WinRAR
2014-08-19 23:38:16 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2014-08-19 23:38:13 ----D---- C:\Users\Zmaslo\AppData\Roaming\DAEMON Tools Lite
2014-08-19 23:38:12 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2014-08-19 23:37:20 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-08-19 23:35:45 ----D---- C:\Users\Zmaslo\AppData\Roaming\uTorrent
2014-08-19 23:30:14 ----A---- C:\Windows\system32\drivers\avnetflt.sys
2014-08-19 23:29:18 ----D---- C:\Users\Zmaslo\AppData\Roaming\Avira
2014-08-19 23:28:22 ----A---- C:\Windows\system32\drivers\avkmgr.sys
2014-08-19 23:28:22 ----A---- C:\Windows\system32\drivers\avipbb.sys
2014-08-19 23:28:22 ----A---- C:\Windows\system32\drivers\avgntflt.sys
2014-08-19 23:26:02 ----D---- C:\Program Files (x86)\Avira
2014-08-19 23:26:01 ----D---- C:\ProgramData\Avira
2014-08-19 23:25:57 ----D---- C:\ProgramData\Package Cache
2014-08-19 23:14:50 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2014-08-19 23:14:45 ----A---- C:\Windows\SYSWOW64\log.txt
2014-08-19 23:14:43 ----D---- C:\ProgramData\Intel
2014-08-19 23:10:05 ----D---- C:\Windows\SYSWOW64\NV
2014-08-19 23:10:05 ----D---- C:\Windows\system32\NV
2014-08-19 23:10:01 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-08-19 23:09:54 ----D---- C:\ProgramData\NVIDIA
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvvsvc.exe
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvsvcr.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvsvc64.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvshext.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvmctray.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvcpl.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nv3dappshextr.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nv3dappshext.dll
2014-08-19 23:08:00 ----D---- C:\ProgramData\NVIDIA Corporation
2014-08-19 23:07:58 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvwgf2umx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvumdshimx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvopencl.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvoglv64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvoglshim64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvinitx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\NvIFR64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\NvFBC64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvdispgenco6434052.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvdispco6434052.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvcuvid.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvcuda.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvcompiler.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvapi64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2014-08-19 23:06:44 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-08-19 23:05:26 ----D---- C:\Program Files\NVIDIA Corporation
2014-08-19 23:04:41 ----A---- C:\Windows\system32\OpenCL.DLL
2014-08-19 23:04:40 ----A---- C:\Windows\SYSWOW64\OpenCL.DLL
2014-08-19 23:04:32 ----D---- C:\Program Files\Intel
2014-08-19 22:50:28 ----D---- C:\NVIDIA
2014-08-19 22:50:15 ----D---- C:\Users\Zmaslo\AppData\Roaming\Macromedia
2014-08-19 22:50:15 ----D---- C:\Users\Zmaslo\AppData\Roaming\Adobe
2014-08-19 22:42:18 ----D---- C:\Dolby PCEE4
2014-08-19 22:42:04 ----D---- C:\Windows\SYSWOW64\RTCOM
2014-08-19 22:41:51 ----D---- C:\Program Files\Realtek
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RtPCEE4.DAT
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RtPCEE3.DAT
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\rtkhdaud.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RtHdatEx.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTHDAEQ1.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX3.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX2.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX1.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX0.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTConvEQ.dat
2014-08-19 22:41:48 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\WavesGUILib.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSWOW64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSTSX64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSTSH64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSHP64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFSS_APO.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFNHK64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFCOM64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFAPO64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\RtPgEx64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkGuiCompLib.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkCfg64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkAPO64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkApi64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEEP64A.dll
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEEL64A.dll
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEEG64A.dll
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEED64A.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RTCOM64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RP3DHT64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RP3DAA64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RCoRes64.dat
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RCoInstII64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EEP64A.dll
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EEL64A.dll
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EEG64A.dll
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EED64A.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\R4EEA64A.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\FMAPO64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-08-19 22:41:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-08-19 22:41:40 ----D---- C:\Program Files (x86)\Realtek
2014-08-19 22:41:40 ----A---- C:\Windows\system32\AERTAR64.dll
2014-08-19 22:41:40 ----A---- C:\Windows\system32\AERTAC64.dll
2014-08-19 22:41:38 ----HD---- C:\Program Files (x86)\Temp
2014-08-19 22:41:38 ----A---- C:\Windows\RtlExUpd.dll
2014-08-19 22:36:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-08-19 22:36:50 ----D---- C:\Windows\SYSWOW64\Macromed
2014-08-19 22:36:44 ----D---- C:\Windows\system32\Macromed
2014-08-19 22:34:10 ----D---- C:\Program Files (x86)\Intel
2014-08-19 22:34:10 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2014-08-19 22:33:59 ----D---- C:\Intel
2014-08-19 22:19:08 ----D---- C:\Users\Zmaslo\AppData\Roaming\Mozilla
2014-08-19 22:18:59 ----D---- C:\ProgramData\Mozilla
2014-08-19 22:18:59 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-08-19 22:11:49 ----D---- C:\Program Files (x86)\Cisco
2014-08-19 22:09:57 ----A---- C:\Windows\system32\BCMLogon.dll
2014-08-19 22:09:46 ----A---- C:\Windows\system32\bcmwlrc.dll
2014-08-19 22:09:45 ----A---- C:\Windows\SYSWOW64\vcredist_x64.exe
2014-08-19 22:09:45 ----A---- C:\Windows\SYSWOW64\vcredist_x64.bat
2014-08-19 22:09:45 ----A---- C:\Windows\system32\drivers\npf.sys
2014-08-19 22:09:45 ----A---- C:\Windows\system32\drivers\bcm42rly.sys
2014-08-19 22:09:44 ----A---- C:\Windows\system32\wltrynt.dll
2014-08-19 22:09:44 ----A---- C:\Windows\system32\vcredist_x64.exe
2014-08-19 22:09:44 ----A---- C:\Windows\system32\vcredist_x64.bat
2014-08-19 22:09:44 ----A---- C:\Windows\system32\bcmttls.dll
2014-08-19 22:09:43 ----A---- C:\Windows\system32\bcmwlcoi.dll
2014-08-19 22:09:43 ----A---- C:\Windows\system32\bcmihvui64.dll
2014-08-19 22:09:42 ----D---- C:\Program Files\Broadcom
2014-08-19 22:09:42 ----A---- C:\Windows\system32\drivers\BCMWL664.SYS
2014-08-19 22:09:42 ----A---- C:\Windows\system32\bcmihvsrv64.dll
2014-08-19 22:08:30 ----A---- C:\Windows\system32\drivers\bcmvwl64.sys
2014-08-19 21:40:34 ----SHD---- C:\Windows\Installer
2014-08-19 21:40:16 ----D---- C:\ProgramData\Qualcomm Atheros
2014-08-19 21:07:41 ----D---- C:\Windows\Panther
2014-08-19 20:19:53 ----D---- C:\Users\Zmaslo\AppData\Roaming\Identities
2014-08-19 20:19:35 ----SD---- C:\Users\Zmaslo\AppData\Roaming\Microsoft
2014-08-19 20:19:35 ----D---- C:\Users\Zmaslo\AppData\Roaming\Media Center Programs
2014-08-19 20:19:30 ----SHD---- C:\Recovery
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Šablony
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Plocha
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Oblíbené položky
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Nabídka Start
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Dokumenty
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Data aplikací
2014-08-19 20:11:39 ----D---- C:\Windows\SoftwareDistribution
2014-08-19 20:09:24 ----D---- C:\Windows\Prefetch
2014-08-19 20:08:30 ----ASH---- C:\pagefile.sys
2014-08-19 20:08:27 ----SHD---- C:\System Volume Information
2014-08-19 20:08:27 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2014-09-07 17:49:40 ----RD---- C:\Program Files
2014-09-07 17:49:04 ----D---- C:\Windows\Temp
2014-09-07 02:57:20 ----D---- C:\Windows\system32\config
2014-09-07 02:17:30 ----D---- C:\Windows\System32
2014-09-07 02:17:30 ----D---- C:\Windows\inf
2014-09-07 02:17:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-05 21:55:27 ----D---- C:\Windows\system32\drivers
2014-09-05 21:55:21 ----D---- C:\Windows\system32\drivers\UMDF
2014-09-05 11:13:21 ----D---- C:\Windows\system32\wdi
2014-09-03 21:58:40 ----RD---- C:\Program Files (x86)
2014-09-02 16:44:01 ----D---- C:\Program Files (x86)\Common Files
2014-09-02 16:39:06 ----HD---- C:\ProgramData
2014-08-29 17:51:16 ----D---- C:\Windows\winsxs
2014-08-29 17:48:45 ----D---- C:\Windows\system32\catroot
2014-08-29 17:48:28 ----D---- C:\Windows\SysWOW64
2014-08-28 09:30:51 ----D---- C:\Windows\system32\DriverStore
2014-08-28 09:28:39 ----D---- C:\Windows
2014-08-27 11:27:57 ----D---- C:\Windows\Microsoft.NET
2014-08-26 18:33:42 ----D---- C:\Windows\Logs
2014-08-26 15:31:34 ----RSD---- C:\Windows\assembly
2014-08-25 15:42:48 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-25 15:42:48 ----D---- C:\Windows\system32\cs-CZ
2014-08-25 15:36:22 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-25 15:36:22 ----D---- C:\Windows\system32\en-US
2014-08-25 15:27:35 ----A---- C:\Windows\win.ini
2014-08-25 15:26:43 ----D---- C:\Windows\ShellNew
2014-08-25 15:25:35 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-08-25 15:21:01 ----D---- C:\Windows\system32\Tasks
2014-08-25 15:20:04 ----RSD---- C:\Windows\Fonts
2014-08-25 15:19:35 ----D---- C:\Program Files\Common Files
2014-08-25 15:17:33 ----SD---- C:\ProgramData\Microsoft
2014-08-25 15:16:43 ----D---- C:\Program Files\Common Files\System
2014-08-24 17:26:04 ----D---- C:\Windows\rescache
2014-08-24 14:26:49 ----D---- C:\Program Files\Internet Explorer
2014-08-24 14:26:40 ----D---- C:\Windows\PolicyDefinitions
2014-08-24 14:26:35 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-23 11:13:58 ----D---- C:\Windows\system32\catroot2
2014-08-20 13:47:47 ----D---- C:\Windows\ehome
2014-08-20 13:47:16 ----D---- C:\Windows\SYSWOW64\migration
2014-08-20 13:47:00 ----D---- C:\Windows\system32\migration
2014-08-20 13:46:35 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-08-20 13:46:35 ----D---- C:\Windows\SYSWOW64\it-IT
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-08-20 13:46:33 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-08-20 13:46:33 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-08-20 13:46:33 ----D---- C:\Windows\SYSWOW64\el-GR
2014-08-20 13:46:32 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-08-20 13:46:32 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-08-20 13:46:32 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\es-ES
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\de-DE
2014-08-20 13:46:30 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-08-20 13:46:29 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-08-20 13:46:29 ----D---- C:\Windows\SYSWOW64\da-DK
2014-08-20 13:46:25 ----D---- C:\Windows\system32\pt-PT
2014-08-20 13:46:25 ----D---- C:\Windows\system32\pt-BR
2014-08-20 13:46:25 ----D---- C:\Windows\system32\it-IT
2014-08-20 13:46:24 ----D---- C:\Windows\system32\pl-PL
2014-08-20 13:46:22 ----D---- C:\Windows\system32\zh-HK
2014-08-20 13:46:22 ----D---- C:\Windows\system32\ko-KR
2014-08-20 13:46:22 ----D---- C:\Windows\system32\hu-HU
2014-08-20 13:46:22 ----D---- C:\Windows\system32\el-GR
2014-08-20 13:46:21 ----D---- C:\Windows\system32\tr-TR
2014-08-20 13:46:21 ----D---- C:\Windows\system32\nl-NL
2014-08-20 13:46:21 ----D---- C:\Windows\system32\fr-FR
2014-08-20 13:46:21 ----D---- C:\Windows\system32\fi-FI
2014-08-20 13:46:20 ----D---- C:\Windows\system32\sv-SE
2014-08-20 13:46:20 ----D---- C:\Windows\system32\es-ES
2014-08-20 13:46:19 ----D---- C:\Windows\system32\zh-TW
2014-08-20 13:46:19 ----D---- C:\Windows\system32\de-DE
2014-08-20 13:46:18 ----D---- C:\Windows\system32\zh-CN
2014-08-20 13:46:18 ----D---- C:\Windows\system32\ru-RU
2014-08-20 13:46:18 ----D---- C:\Windows\system32\nb-NO
2014-08-20 13:46:18 ----D---- C:\Windows\system32\ja-JP
2014-08-20 13:46:18 ----D---- C:\Windows\system32\da-DK
2014-08-20 13:46:04 ----D---- C:\Program Files\Windows Journal
2014-08-20 13:44:45 ----D---- C:\Program Files\Windows Defender
2014-08-20 13:44:45 ----D---- C:\Program Files (x86)\Windows Defender
2014-08-20 13:44:34 ----D---- C:\Windows\system32\wbem
2014-08-20 13:43:53 ----D---- C:\Windows\system32\Boot
2014-08-20 13:43:25 ----D---- C:\Windows\AppPatch
2014-08-20 09:35:23 ----D---- C:\Windows\debug
2014-08-19 23:08:15 ----D---- C:\Windows\Help
2014-08-19 22:36:51 ----D---- C:\Windows\Tasks
2014-08-19 22:15:55 ----D---- C:\Windows\system32\NDF
2014-08-19 22:09:50 ----D---- C:\Windows\system32\th-TH
2014-08-19 22:09:50 ----D---- C:\Windows\system32\sl-SI
2014-08-19 22:09:50 ----D---- C:\Windows\system32\sk-SK
2014-08-19 22:09:49 ----D---- C:\Windows\system32\ro-RO
2014-08-19 22:09:48 ----D---- C:\Windows\system32\lv-LV
2014-08-19 22:09:48 ----D---- C:\Windows\system32\lt-LT
2014-08-19 22:09:47 ----D---- C:\Windows\system32\hr-HR
2014-08-19 22:09:47 ----D---- C:\Windows\system32\he-IL
2014-08-19 22:09:47 ----D---- C:\Windows\system32\et-EE
2014-08-19 22:09:46 ----D---- C:\Windows\system32\bg-BG
2014-08-19 22:09:46 ----D---- C:\Windows\system32\ar-SA
2014-08-19 21:11:40 ----D---- C:\Windows\system32\restore
2014-08-19 20:24:37 ----D---- C:\Windows\system32\CodeIntegrity
2014-08-19 20:19:50 ----SHD---- C:\$Recycle.Bin
2014-08-19 20:19:35 ----RD---- C:\Users
2014-08-19 20:19:30 ----D---- C:\Windows\system32\Recovery
2014-08-19 20:19:30 ----D---- C:\Program Files\Windows NT
2014-08-19 20:13:05 ----D---- C:\Windows\system32\sysprep
2014-08-19 20:09:17 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-02-27 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2014-07-02 32544]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2014-07-23 130584]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2014-07-23 28600]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-08-19 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2014-07-23 117712]
R3 b57xdbd;Broadcom xD Picture Bus Driver Service; C:\Windows\system32\DRIVERS\b57xdbd.sys [2011-11-04 68648]
R3 b57xdmp;Broadcom xD Picture vstorp client drv; C:\Windows\system32\DRIVERS\b57xdmp.sys [2011-11-04 19496]
R3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2014-08-19 22592]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2014-08-19 4746304]
R3 BcmVWL;Broadcom Virtual Wireless; C:\Windows\system32\DRIVERS\bcmvwl64.sys [2014-08-19 21568]
R3 bScsiMSa;bScsiMSa; C:\Windows\system32\DRIVERS\bScsiMSa.sys [2011-09-02 51752]
R3 bScsiSDa;bScsiSDa; C:\Windows\system32\DRIVERS\bScsiSDa.sys [2012-05-03 81928]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-05-16 3791872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-08-19 4730344]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-06-05 450520]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-02-27 356120]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-02-27 788760]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2014-08-19 60184]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-07-23 430160]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-07-23 430160]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2014-06-05 315352]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-08-19 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-08-19 277784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-07-02 935368]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2014-08-19 363800]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE [2014-08-19 48128]
S2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-08-04 149296]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-06-05 279000]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-07-25 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-03 114288]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-08-20 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------


Díky

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119315
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hacknutý email rozesílá spam

#2 Příspěvek od Rudy »

Zdravím!
1. Změňte si všechna hesla, která používáte.
2. Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Re: Hacknutý email rozesílá spam

#3 Příspěvek od Zmaslo »

# AdwCleaner v3.309 - Report created 07/09/2014 at 18:31:58
# Updated 02/09/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Zmaslo - ZMASLO-PC
# Running from : C:\Users\Zmaslo\Desktop\adwcleaner_3.309.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\Zmaslo\AppData\Local\PackageAware
File Deleted : C:\Users\Zmaslo\AppData\Local\Temp\Uninstall.exe

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17239


-\\ Mozilla Firefox v32.0 (x86 cs)

[ File : C:\Users\Zmaslo\AppData\Roaming\Mozilla\Firefox\Profiles\2vecaa2m.default\prefs.js ]


*************************

AdwCleaner[R0].txt - [941 octets] - [07/09/2014 18:30:40]
AdwCleaner[S0].txt - [867 octets] - [07/09/2014 18:31:58]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [926 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119315
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hacknutý email rozesílá spam

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Re: Hacknutý email rozesílá spam

#5 Příspěvek od Zmaslo »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Zmaslo at 2014-09-07 19:29:14
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 516 GB (72%) free of 715 GB
Total RAM: 5982 MB (69% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:29:18, on 7.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17239)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Zmaslo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Dolby PCEE4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Broadcom Corporation - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10191 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\igfxCUIService.exe
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE" "C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe"
C:\Windows\system32\WLANExt.exe 30125248
C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe
C:\Windows\System32\spoolsv.exe
\??\C:\Windows\system32\conhost.exe "-3718197311651918092-1553178237-175789198-1753465639551024808365765294497617545
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Dolby PCEE4\pcee4.exe" -autostart
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_0000090c
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
igfxEM.exe
igfxHK.exe
igfxTray.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-386f113f-b145-4168-ba3b-e4ad3b29c4a6 -SystemEventPortName:HostProcess-70fcbc24-d12e-40b7-a5c9-3326ee8453e2 -IoCancelEventPortName:HostProcess-372daa3c-5aae-452d-a802-4695e821e2a5 -NonStateChangingEventPortName:HostProcess-7d1dcfed-dc2c-426c-b579-f043659254a4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:0be6a2c8-bfb5-4302-8afd-7c6b46621e66
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"

"C:\Users\Zmaslo\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

=========Mozilla firefox=========

ProfilePath - C:\Users\Zmaslo\AppData\Roaming\Mozilla\Firefox\Profiles\2vecaa2m.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.179 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.179 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll

C:\Users\Zmaslo\AppData\Roaming\Mozilla\Firefox\Profiles\2vecaa2m.default\extensions\
abs@avira.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Broadcom Wireless Manager UI"=C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [2014-08-19 7138816]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-08-19 12343400]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-08-19 1156712]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"AdobeBridge"= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Dolby Home Theater v4"=C:\Dolby PCEE4\pcee4.exe [2011-06-01 506712]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2014-08-04 161584]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-07-23 751184]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-02-27 291608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-09-07 18:30:39 ----D---- C:\AdwCleaner
2014-09-07 17:49:40 ----D---- C:\Program Files\trend micro
2014-09-07 17:49:39 ----D---- C:\rsit
2014-09-03 20:07:16 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-02 17:12:50 ----D---- C:\Program Files (x86)\Bethesda Softworks
2014-09-02 16:39:06 ----D---- C:\ProgramData\RELOADED
2014-09-02 16:20:29 ----D---- C:\ProgramData\Steam
2014-09-02 10:09:25 ----D---- C:\Games
2014-08-28 19:55:12 ----D---- C:\ProgramData\Hewlett-Packard
2014-08-28 09:28:39 ----D---- C:\Windows\Downloaded Installations
2014-08-28 08:32:35 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 08:32:34 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-28 08:32:34 ----A---- C:\Windows\system32\gdi32.dll
2014-08-26 18:33:45 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-08-26 18:33:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-08-26 18:33:37 ----D---- C:\Program Files (x86)\Grinding Gear Games
2014-08-25 15:39:25 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-08-25 15:19:35 ----D---- C:\Program Files\Common Files\DESIGNER
2014-08-25 15:18:44 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2014-08-25 15:18:43 ----D---- C:\Program Files\Microsoft.NET
2014-08-25 15:18:11 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2014-08-25 15:17:33 ----D---- C:\Windows\PCHEALTH
2014-08-25 15:17:33 ----D---- C:\Program Files\Microsoft SQL Server
2014-08-25 15:17:33 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-08-25 15:15:05 ----D---- C:\Program Files\Microsoft Analysis Services
2014-08-25 15:15:05 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2014-08-25 15:14:33 ----D---- C:\Program Files (x86)\Microsoft Office
2014-08-25 15:14:32 ----D---- C:\Program Files\Microsoft Office
2014-08-25 15:14:21 ----D---- C:\ProgramData\Microsoft Help
2014-08-25 15:12:47 ----RHD---- C:\MSOCache
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wups2.dll
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wucltux.dll
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-23 11:12:30 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-23 11:12:30 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-23 11:12:30 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-23 11:12:30 ----A---- C:\Windows\system32\wups.dll
2014-08-23 11:12:30 ----A---- C:\Windows\system32\wudriver.dll
2014-08-23 11:12:30 ----A---- C:\Windows\system32\wuapi.dll
2014-08-23 11:11:53 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-08-23 11:11:53 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-08-23 11:11:53 ----A---- C:\Windows\system32\wuwebv.dll
2014-08-23 11:11:53 ----A---- C:\Windows\system32\wuapp.exe
2014-08-22 15:53:52 ----A---- C:\Windows\system32\drivers\USB3Ver.dll
2014-08-22 15:52:17 ----A---- C:\Windows\system32\WdfCoInstaller01009.dll
2014-08-22 15:52:17 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2014-08-22 15:52:17 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2014-08-22 15:52:17 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys
2014-08-21 08:24:48 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-08-21 08:24:48 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-08-21 08:24:48 ----A---- C:\Windows\system32\d3d10warp.dll
2014-08-21 08:24:48 ----A---- C:\Windows\system32\d2d1.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-21 08:24:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-21 08:24:41 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\urlmon.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\iernonce.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-08-21 08:24:40 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-21 08:24:39 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-08-21 08:24:39 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-21 08:24:39 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\iesetup.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-08-21 08:24:38 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-21 08:24:38 ----A---- C:\Windows\system32\iertutil.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\ieUnatt.exe
2014-08-21 08:24:37 ----A---- C:\Windows\system32\ieui.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\ieframe.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\wininet.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\vbscript.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\jscript9diag.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\jscript9.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\ieapfltr.dll
2014-08-21 08:24:35 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-21 08:24:35 ----A---- C:\Windows\system32\msrating.dll
2014-08-21 08:24:35 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-08-21 08:24:35 ----A---- C:\Windows\system32\mshtml.dll
2014-08-20 23:08:46 ----D---- C:\Program Files\VideoLAN
2014-08-20 23:07:21 ----D---- C:\Users\Zmaslo\AppData\Roaming\vlc
2014-08-20 13:44:30 ----D---- C:\Windows\SYSWOW64\Wat
2014-08-20 13:44:30 ----D---- C:\Windows\system32\Wat
2014-08-20 12:39:32 ----D---- C:\Program Files\Common Files\Topaz Labs
2014-08-20 12:39:32 ----D---- C:\Program Files (x86)\Topaz Labs
2014-08-20 10:53:35 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-08-20 10:45:04 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-08-20 10:45:00 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-08-20 10:45:00 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-08-20 10:45:00 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-08-20 10:45:00 ----A---- C:\Windows\system32\elshyph.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\url.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\wextract.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\webcheck.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\url.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\msls31.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\mshtmler.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\msfeedssync.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\licmgr10.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\jsIntl.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\inseng.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\iexpress.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\iesysprep.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\ieapfltr.dat
2014-08-20 10:44:58 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\icardie.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\pngfilt.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\occache.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\mshta.exe
2014-08-20 10:44:57 ----A---- C:\Windows\system32\jscript.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\imgutil.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\iepeers.dll
2014-08-20 10:38:47 ----A---- C:\Windows\system32\tdh.dll
2014-08-20 10:38:47 ----A---- C:\Windows\system32\ntdll.dll
2014-08-20 10:38:47 ----A---- C:\Windows\system32\advapi32.dll
2014-08-20 10:38:44 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-08-20 10:38:44 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-08-20 10:38:44 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-08-20 10:30:23 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-08-20 10:30:23 ----A---- C:\Windows\system32\mswsock.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\XpsPrint.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\WMPhoto.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\dxgi.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\UIAnimation.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\FntCache.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\DWrite.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10level9.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10_1.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10.dll
2014-08-20 09:54:49 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-08-20 09:54:49 ----A---- C:\Windows\system32\d3d11.dll
2014-08-20 09:35:24 ----D---- C:\Windows\system32\MRT
2014-08-20 09:35:19 ----A---- C:\Windows\system32\MRT.exe
2014-08-20 09:29:32 ----A---- C:\Windows\system32\browserchoice.exe
2014-08-20 09:19:19 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2014-08-20 09:19:18 ----A---- C:\Windows\SYSWOW64\wmi.dll
2014-08-20 09:19:18 ----A---- C:\Windows\system32\wmi.dll
2014-08-20 09:13:30 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-08-20 09:13:30 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-08-20 09:13:30 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-20 09:13:30 ----A---- C:\Windows\system32\icardagt.exe
2014-08-20 09:13:25 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-08-20 09:13:25 ----A---- C:\Windows\system32\icardres.dll
2014-08-20 09:13:13 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-20 09:13:13 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbctrac.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbccu32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbccr32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbccp32.dll
2014-08-20 09:09:48 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-08-20 09:09:48 ----A---- C:\Windows\system32\comctl32.dll
2014-08-20 09:09:45 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-08-20 09:09:45 ----A---- C:\Windows\system32\poqexec.exe
2014-08-20 09:09:42 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-08-20 09:09:42 ----A---- C:\Windows\system32\mstscax.dll
2014-08-20 09:09:41 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-08-20 09:09:41 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2014-08-20 09:09:41 ----A---- C:\Windows\system32\tsgqec.dll
2014-08-20 09:09:41 ----A---- C:\Windows\system32\aaclient.dll
2014-08-20 09:09:39 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2014-08-20 09:09:39 ----A---- C:\Windows\system32\CPFilters.dll
2014-08-20 09:09:38 ----A---- C:\Windows\SYSWOW64\sbe.dll
2014-08-20 09:09:38 ----A---- C:\Windows\system32\sbe.dll
2014-08-20 09:09:36 ----A---- C:\Windows\system32\shell32.dll
2014-08-20 09:09:35 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-20 09:09:32 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-08-20 09:09:32 ----A---- C:\Windows\system32\wintrust.dll
2014-08-20 09:09:28 ----A---- C:\Windows\SYSWOW64\quartz.dll
2014-08-20 09:09:28 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-08-20 09:09:28 ----A---- C:\Windows\system32\quartz.dll
2014-08-20 09:09:28 ----A---- C:\Windows\system32\qdvd.dll
2014-08-20 09:09:15 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-08-20 09:09:15 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2014-08-20 09:09:15 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-08-20 09:09:14 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-08-20 09:09:14 ----A---- C:\Windows\system32\usp10.dll
2014-08-20 09:09:13 ----A---- C:\Windows\SYSWOW64\webio.dll
2014-08-20 09:09:13 ----A---- C:\Windows\system32\webio.dll
2014-08-20 09:08:59 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-08-20 09:08:57 ----A---- C:\Windows\system32\crypt32.dll
2014-08-20 09:08:56 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-08-20 09:08:56 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-08-20 09:08:56 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-08-20 09:08:56 ----A---- C:\Windows\system32\cryptsvc.dll
2014-08-20 09:08:56 ----A---- C:\Windows\system32\cryptnet.dll
2014-08-20 09:08:53 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-08-20 09:08:53 ----A---- C:\Windows\system32\wer.dll
2014-08-20 09:08:52 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-08-20 09:08:52 ----A---- C:\Windows\system32\imagehlp.dll
2014-08-20 09:08:51 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-08-20 09:08:51 ----A---- C:\Windows\system32\drivers\netio.sys
2014-08-20 09:08:51 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-08-20 09:08:50 ----A---- C:\Windows\system32\msxml6.dll
2014-08-20 09:08:50 ----A---- C:\Windows\system32\msxml3.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-08-20 09:08:49 ----A---- C:\Windows\system32\msxml6r.dll
2014-08-20 09:08:49 ----A---- C:\Windows\system32\msxml3r.dll
2014-08-20 09:08:48 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-08-20 09:08:48 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-08-20 09:08:43 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-08-20 09:08:43 ----A---- C:\Windows\system32\osk.exe
2014-08-20 09:08:42 ----A---- C:\Windows\system32\atmfd.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\mfc42u.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\mfc42.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\lpk.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\fontsub.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\dciman32.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\atmlib.dll
2014-08-20 09:08:40 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2014-08-20 09:08:40 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-08-20 09:08:37 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-08-20 09:08:37 ----A---- C:\Windows\system32\qedit.dll
2014-08-20 09:08:28 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-08-20 09:08:28 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-08-20 09:08:26 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-08-20 09:08:25 ----A---- C:\Windows\system32\rdrmemptylst.exe
2014-08-20 09:08:25 ----A---- C:\Windows\system32\rdpwsx.dll
2014-08-20 09:08:25 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-08-20 09:08:23 ----A---- C:\Windows\system32\drivers\afd.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\Wdfres.dll
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-08-20 09:08:18 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-08-20 09:08:18 ----A---- C:\Windows\system32\tzres.dll
2014-08-20 09:08:16 ----A---- C:\Windows\system32\drivers\usbscan.sys
2014-08-20 09:08:16 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-08-20 09:08:16 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-08-20 09:08:15 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2014-08-20 09:08:15 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2014-08-20 09:08:15 ----A---- C:\Windows\system32\dnsrslvr.dll
2014-08-20 09:08:15 ----A---- C:\Windows\system32\dnscacheugc.exe
2014-08-20 09:08:15 ----A---- C:\Windows\system32\dnsapi.dll
2014-08-20 09:07:59 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-08-20 09:07:59 ----A---- C:\Windows\system32\dpnet.dll
2014-08-20 09:07:54 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-20 09:07:54 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-20 09:07:54 ----A---- C:\Windows\system32\msi.dll
2014-08-20 09:07:54 ----A---- C:\Windows\system32\authui.dll
2014-08-20 09:07:53 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-20 09:07:53 ----A---- C:\Windows\system32\msihnd.dll
2014-08-20 09:07:53 ----A---- C:\Windows\system32\consent.exe
2014-08-20 09:07:53 ----A---- C:\Windows\system32\appinfo.dll
2014-08-20 09:07:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-08-20 09:07:46 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-08-20 09:07:46 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-08-20 09:07:46 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-08-20 09:07:46 ----A---- C:\Windows\system32\winlogon.exe
2014-08-20 09:07:46 ----A---- C:\Windows\system32\objsel.dll
2014-08-20 09:07:46 ----A---- C:\Windows\system32\KernelBase.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\smss.exe
2014-08-20 09:07:45 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\dimsroam.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\cngprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\capiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\adprovider.dll
2014-08-20 09:07:44 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-08-20 09:07:44 ----A---- C:\Windows\system32\wincredprovider.dll
2014-08-20 09:07:44 ----A---- C:\Windows\system32\csrsrv.dll
2014-08-20 09:07:42 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-08-20 09:07:42 ----A---- C:\Windows\system32\apisetschema.dll
2014-08-20 09:07:20 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-08-20 09:07:20 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-08-20 09:07:20 ----A---- C:\Windows\system32\drivers\srv.sys
2014-08-20 09:07:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-08-20 09:07:19 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-20 09:07:19 ----A---- C:\Windows\system32\cdd.dll
2014-08-20 09:07:17 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2014-08-20 09:07:17 ----A---- C:\Windows\system32\psisdecd.dll
2014-08-20 09:07:17 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-08-20 09:07:16 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-08-20 09:07:00 ----A---- C:\Windows\system32\winresume.exe
2014-08-20 09:07:00 ----A---- C:\Windows\system32\winload.exe
2014-08-20 09:07:00 ----A---- C:\Windows\system32\kdusb.dll
2014-08-20 09:07:00 ----A---- C:\Windows\system32\kdcom.dll
2014-08-20 09:07:00 ----A---- C:\Windows\system32\kd1394.dll
2014-08-20 09:06:58 ----A---- C:\Windows\system32\drivers\partmgr.sys
2014-08-20 09:06:57 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-08-20 09:06:57 ----A---- C:\Windows\system32\synceng.dll
2014-08-20 09:06:47 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-08-20 09:06:47 ----A---- C:\Windows\system32\shdocvw.dll
2014-08-20 09:06:41 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-08-20 09:06:41 ----A---- C:\Windows\system32\win32spl.dll
2014-08-20 09:06:38 ----A---- C:\Windows\system32\taskhost.exe
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\devobj.dll
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2014-08-20 09:06:37 ----A---- C:\Windows\system32\umpnpmgr.dll
2014-08-20 09:06:35 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-08-20 09:06:35 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-08-20 09:06:34 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2014-08-20 09:06:34 ----A---- C:\Windows\SYSWOW64\browcli.dll
2014-08-20 09:06:34 ----A---- C:\Windows\system32\netapi32.dll
2014-08-20 09:06:34 ----A---- C:\Windows\system32\browser.dll
2014-08-20 09:06:34 ----A---- C:\Windows\system32\browcli.dll
2014-08-20 09:06:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-08-20 09:06:31 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-08-20 09:06:31 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-08-20 09:06:31 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-08-20 09:06:31 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\wow64win.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\wow64.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\winsrv.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\ntvdm64.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\kernel32.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\conhost.exe
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-08-20 09:06:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-08-20 09:06:30 ----A---- C:\Windows\SYSWOW64\user.exe
2014-08-20 09:06:30 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-08-20 09:06:30 ----A---- C:\Windows\system32\wow64cpu.dll
2014-08-20 09:06:29 ----A---- C:\Windows\system32\FXSCOVER.exe
2014-08-20 09:06:28 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-08-20 09:06:28 ----A---- C:\Windows\system32\inetcomm.dll
2014-08-20 09:06:27 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2014-08-20 09:06:27 ----A---- C:\Windows\system32\msvcrt.dll
2014-08-20 09:06:25 ----A---- C:\Windows\system32\certutil.exe
2014-08-20 09:06:24 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-08-20 09:06:24 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-08-20 09:06:24 ----A---- C:\Windows\system32\certenc.dll
2014-08-20 09:06:19 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-08-20 09:06:19 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-08-20 09:06:19 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-08-20 09:06:19 ----A---- C:\Windows\system32\wscript.exe
2014-08-20 09:06:19 ----A---- C:\Windows\system32\scrrun.dll
2014-08-20 09:06:19 ----A---- C:\Windows\system32\cscript.exe
2014-08-20 09:06:17 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\schannel.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\msv1_0.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\lsasrv.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\kerberos.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\wdigest.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\TSpkg.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\sspicli.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\ncrypt.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\lsass.exe
2014-08-20 09:06:16 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-08-20 09:06:16 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-08-20 09:06:16 ----A---- C:\Windows\system32\drivers\cng.sys
2014-08-20 09:06:15 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-08-20 09:06:15 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-08-20 09:06:15 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-08-20 09:06:15 ----A---- C:\Windows\system32\sspisrv.dll
2014-08-20 09:06:15 ----A---- C:\Windows\system32\secur32.dll
2014-08-20 09:06:15 ----A---- C:\Windows\system32\credssp.dll
2014-08-20 09:06:12 ----A---- C:\Windows\system32\localspl.dll
2014-08-20 09:06:12 ----A---- C:\Windows\system32\drivers\bowser.sys
2014-08-20 09:05:49 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-08-20 09:05:49 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2014-08-20 09:05:49 ----A---- C:\Windows\system32\oleaut32.dll
2014-08-20 09:05:49 ----A---- C:\Windows\system32\oleacc.dll
2014-08-20 09:05:48 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2014-08-20 09:05:48 ----A---- C:\Windows\system32\EncDec.dll
2014-08-20 09:05:32 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2014-08-20 09:05:31 ----A---- C:\Windows\system32\cdosys.dll
2014-08-20 09:05:29 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-08-20 09:05:29 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-08-20 09:05:29 ----A---- C:\Windows\system32\nshwfp.dll
2014-08-20 09:05:29 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-08-20 09:05:29 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-08-20 09:05:28 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-20 09:05:27 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-20 09:05:27 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-08-20 09:05:27 ----A---- C:\Windows\system32\packager.dll
2014-08-20 08:51:43 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-08-20 08:51:43 ----A---- C:\Windows\system32\rdpcore.dll
2014-08-20 08:51:43 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2014-08-20 00:39:39 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-08-20 00:38:43 ----D---- C:\Program Files\Adobe
2014-08-20 00:37:03 ----D---- C:\Program Files (x86)\Adobe
2014-08-20 00:34:18 ----D---- C:\Program Files\Common Files\Adobe
2014-08-20 00:31:32 ----D---- C:\ProgramData\Adobe
2014-08-20 00:29:38 ----A---- C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-08-19 23:53:36 ----D---- C:\Users\Zmaslo\AppData\Roaming\WinRAR
2014-08-19 23:40:19 ----D---- C:\Program Files\WinRAR
2014-08-19 23:38:16 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2014-08-19 23:38:13 ----D---- C:\Users\Zmaslo\AppData\Roaming\DAEMON Tools Lite
2014-08-19 23:38:12 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2014-08-19 23:37:20 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-08-19 23:35:45 ----D---- C:\Users\Zmaslo\AppData\Roaming\uTorrent
2014-08-19 23:30:14 ----A---- C:\Windows\system32\drivers\avnetflt.sys
2014-08-19 23:29:18 ----D---- C:\Users\Zmaslo\AppData\Roaming\Avira
2014-08-19 23:28:22 ----A---- C:\Windows\system32\drivers\avkmgr.sys
2014-08-19 23:28:22 ----A---- C:\Windows\system32\drivers\avipbb.sys
2014-08-19 23:28:22 ----A---- C:\Windows\system32\drivers\avgntflt.sys
2014-08-19 23:26:02 ----D---- C:\Program Files (x86)\Avira
2014-08-19 23:26:01 ----D---- C:\ProgramData\Avira
2014-08-19 23:25:57 ----D---- C:\ProgramData\Package Cache
2014-08-19 23:14:50 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2014-08-19 23:14:45 ----A---- C:\Windows\SYSWOW64\log.txt
2014-08-19 23:14:43 ----D---- C:\ProgramData\Intel
2014-08-19 23:10:05 ----D---- C:\Windows\SYSWOW64\NV
2014-08-19 23:10:05 ----D---- C:\Windows\system32\NV
2014-08-19 23:10:01 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-08-19 23:09:54 ----D---- C:\ProgramData\NVIDIA
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvvsvc.exe
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvsvcr.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvsvc64.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvshext.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvmctray.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvcpl.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nv3dappshextr.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nv3dappshext.dll
2014-08-19 23:08:00 ----D---- C:\ProgramData\NVIDIA Corporation
2014-08-19 23:07:58 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvwgf2umx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvumdshimx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvopencl.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvoglv64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvoglshim64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvinitx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\NvIFR64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\NvFBC64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvdispgenco6434052.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvdispco6434052.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvcuvid.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvcuda.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvcompiler.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvapi64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2014-08-19 23:06:44 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-08-19 23:05:26 ----D---- C:\Program Files\NVIDIA Corporation
2014-08-19 23:04:41 ----A---- C:\Windows\system32\OpenCL.DLL
2014-08-19 23:04:40 ----A---- C:\Windows\SYSWOW64\OpenCL.DLL
2014-08-19 23:04:32 ----D---- C:\Program Files\Intel
2014-08-19 22:50:28 ----D---- C:\NVIDIA
2014-08-19 22:50:15 ----D---- C:\Users\Zmaslo\AppData\Roaming\Macromedia
2014-08-19 22:50:15 ----D---- C:\Users\Zmaslo\AppData\Roaming\Adobe
2014-08-19 22:42:18 ----D---- C:\Dolby PCEE4
2014-08-19 22:42:04 ----D---- C:\Windows\SYSWOW64\RTCOM
2014-08-19 22:41:51 ----D---- C:\Program Files\Realtek
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RtPCEE4.DAT
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RtPCEE3.DAT
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\rtkhdaud.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RtHdatEx.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTHDAEQ1.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX3.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX2.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX1.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX0.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTConvEQ.dat
2014-08-19 22:41:48 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\WavesGUILib.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSWOW64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSTSX64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSTSH64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSHP64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFSS_APO.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFNHK64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFCOM64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFAPO64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\RtPgEx64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkGuiCompLib.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkCfg64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkAPO64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkApi64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEEP64A.dll
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEEL64A.dll
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEEG64A.dll
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEED64A.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RTCOM64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RP3DHT64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RP3DAA64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RCoRes64.dat
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RCoInstII64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EEP64A.dll
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EEL64A.dll
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EEG64A.dll
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EED64A.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\R4EEA64A.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\FMAPO64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-08-19 22:41:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-08-19 22:41:40 ----D---- C:\Program Files (x86)\Realtek
2014-08-19 22:41:40 ----A---- C:\Windows\system32\AERTAR64.dll
2014-08-19 22:41:40 ----A---- C:\Windows\system32\AERTAC64.dll
2014-08-19 22:41:38 ----HD---- C:\Program Files (x86)\Temp
2014-08-19 22:41:38 ----A---- C:\Windows\RtlExUpd.dll
2014-08-19 22:36:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-08-19 22:36:50 ----D---- C:\Windows\SYSWOW64\Macromed
2014-08-19 22:36:44 ----D---- C:\Windows\system32\Macromed
2014-08-19 22:34:10 ----D---- C:\Program Files (x86)\Intel
2014-08-19 22:34:10 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2014-08-19 22:33:59 ----D---- C:\Intel
2014-08-19 22:19:08 ----D---- C:\Users\Zmaslo\AppData\Roaming\Mozilla
2014-08-19 22:18:59 ----D---- C:\ProgramData\Mozilla
2014-08-19 22:18:59 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-08-19 22:11:49 ----D---- C:\Program Files (x86)\Cisco
2014-08-19 22:09:57 ----A---- C:\Windows\system32\BCMLogon.dll
2014-08-19 22:09:46 ----A---- C:\Windows\system32\bcmwlrc.dll
2014-08-19 22:09:45 ----A---- C:\Windows\SYSWOW64\vcredist_x64.exe
2014-08-19 22:09:45 ----A---- C:\Windows\SYSWOW64\vcredist_x64.bat
2014-08-19 22:09:45 ----A---- C:\Windows\system32\drivers\npf.sys
2014-08-19 22:09:45 ----A---- C:\Windows\system32\drivers\bcm42rly.sys
2014-08-19 22:09:44 ----A---- C:\Windows\system32\wltrynt.dll
2014-08-19 22:09:44 ----A---- C:\Windows\system32\vcredist_x64.exe
2014-08-19 22:09:44 ----A---- C:\Windows\system32\vcredist_x64.bat
2014-08-19 22:09:44 ----A---- C:\Windows\system32\bcmttls.dll
2014-08-19 22:09:43 ----A---- C:\Windows\system32\bcmwlcoi.dll
2014-08-19 22:09:43 ----A---- C:\Windows\system32\bcmihvui64.dll
2014-08-19 22:09:42 ----D---- C:\Program Files\Broadcom
2014-08-19 22:09:42 ----A---- C:\Windows\system32\drivers\BCMWL664.SYS
2014-08-19 22:09:42 ----A---- C:\Windows\system32\bcmihvsrv64.dll
2014-08-19 22:08:30 ----A---- C:\Windows\system32\drivers\bcmvwl64.sys
2014-08-19 21:40:34 ----SHD---- C:\Windows\Installer
2014-08-19 21:40:16 ----D---- C:\ProgramData\Qualcomm Atheros
2014-08-19 21:07:41 ----D---- C:\Windows\Panther
2014-08-19 20:19:53 ----D---- C:\Users\Zmaslo\AppData\Roaming\Identities
2014-08-19 20:19:35 ----SD---- C:\Users\Zmaslo\AppData\Roaming\Microsoft
2014-08-19 20:19:35 ----D---- C:\Users\Zmaslo\AppData\Roaming\Media Center Programs
2014-08-19 20:19:30 ----SHD---- C:\Recovery
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Šablony
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Plocha
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Oblíbené položky
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Nabídka Start
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Dokumenty
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Data aplikací
2014-08-19 20:11:39 ----D---- C:\Windows\SoftwareDistribution
2014-08-19 20:09:24 ----D---- C:\Windows\Prefetch
2014-08-19 20:08:30 ----ASH---- C:\pagefile.sys
2014-08-19 20:08:27 ----SHD---- C:\System Volume Information
2014-08-19 20:08:27 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2014-09-07 19:29:15 ----D---- C:\Windows\Temp
2014-09-07 18:48:44 ----D---- C:\Windows\system32\config
2014-09-07 18:38:53 ----D---- C:\Windows\System32
2014-09-07 18:38:53 ----D---- C:\Windows\inf
2014-09-07 18:38:53 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-07 18:35:08 ----D---- C:\Windows\system32\catroot2
2014-09-07 17:49:40 ----RD---- C:\Program Files
2014-09-05 21:55:27 ----D---- C:\Windows\system32\drivers
2014-09-05 21:55:21 ----D---- C:\Windows\system32\drivers\UMDF
2014-09-05 11:13:21 ----D---- C:\Windows\system32\wdi
2014-09-03 21:58:40 ----RD---- C:\Program Files (x86)
2014-09-02 16:44:01 ----D---- C:\Program Files (x86)\Common Files
2014-09-02 16:39:06 ----HD---- C:\ProgramData
2014-08-29 17:51:16 ----D---- C:\Windows\winsxs
2014-08-29 17:48:45 ----D---- C:\Windows\system32\catroot
2014-08-29 17:48:28 ----D---- C:\Windows\SysWOW64
2014-08-28 09:30:51 ----D---- C:\Windows\system32\DriverStore
2014-08-28 09:28:39 ----D---- C:\Windows
2014-08-27 11:27:57 ----D---- C:\Windows\Microsoft.NET
2014-08-26 18:33:42 ----D---- C:\Windows\Logs
2014-08-26 15:31:34 ----RSD---- C:\Windows\assembly
2014-08-25 15:42:48 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-25 15:42:48 ----D---- C:\Windows\system32\cs-CZ
2014-08-25 15:36:22 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-25 15:36:22 ----D---- C:\Windows\system32\en-US
2014-08-25 15:27:35 ----A---- C:\Windows\win.ini
2014-08-25 15:26:43 ----D---- C:\Windows\ShellNew
2014-08-25 15:25:35 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-08-25 15:21:01 ----D---- C:\Windows\system32\Tasks
2014-08-25 15:20:04 ----RSD---- C:\Windows\Fonts
2014-08-25 15:19:35 ----D---- C:\Program Files\Common Files
2014-08-25 15:17:33 ----SD---- C:\ProgramData\Microsoft
2014-08-25 15:16:43 ----D---- C:\Program Files\Common Files\System
2014-08-24 17:26:04 ----D---- C:\Windows\rescache
2014-08-24 14:26:49 ----D---- C:\Program Files\Internet Explorer
2014-08-24 14:26:40 ----D---- C:\Windows\PolicyDefinitions
2014-08-24 14:26:35 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-20 13:47:47 ----D---- C:\Windows\ehome
2014-08-20 13:47:16 ----D---- C:\Windows\SYSWOW64\migration
2014-08-20 13:47:00 ----D---- C:\Windows\system32\migration
2014-08-20 13:46:35 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-08-20 13:46:35 ----D---- C:\Windows\SYSWOW64\it-IT
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-08-20 13:46:33 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-08-20 13:46:33 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-08-20 13:46:33 ----D---- C:\Windows\SYSWOW64\el-GR
2014-08-20 13:46:32 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-08-20 13:46:32 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-08-20 13:46:32 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\es-ES
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\de-DE
2014-08-20 13:46:30 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-08-20 13:46:29 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-08-20 13:46:29 ----D---- C:\Windows\SYSWOW64\da-DK
2014-08-20 13:46:25 ----D---- C:\Windows\system32\pt-PT
2014-08-20 13:46:25 ----D---- C:\Windows\system32\pt-BR
2014-08-20 13:46:25 ----D---- C:\Windows\system32\it-IT
2014-08-20 13:46:24 ----D---- C:\Windows\system32\pl-PL
2014-08-20 13:46:22 ----D---- C:\Windows\system32\zh-HK
2014-08-20 13:46:22 ----D---- C:\Windows\system32\ko-KR
2014-08-20 13:46:22 ----D---- C:\Windows\system32\hu-HU
2014-08-20 13:46:22 ----D---- C:\Windows\system32\el-GR
2014-08-20 13:46:21 ----D---- C:\Windows\system32\tr-TR
2014-08-20 13:46:21 ----D---- C:\Windows\system32\nl-NL
2014-08-20 13:46:21 ----D---- C:\Windows\system32\fr-FR
2014-08-20 13:46:21 ----D---- C:\Windows\system32\fi-FI
2014-08-20 13:46:20 ----D---- C:\Windows\system32\sv-SE
2014-08-20 13:46:20 ----D---- C:\Windows\system32\es-ES
2014-08-20 13:46:19 ----D---- C:\Windows\system32\zh-TW
2014-08-20 13:46:19 ----D---- C:\Windows\system32\de-DE
2014-08-20 13:46:18 ----D---- C:\Windows\system32\zh-CN
2014-08-20 13:46:18 ----D---- C:\Windows\system32\ru-RU
2014-08-20 13:46:18 ----D---- C:\Windows\system32\nb-NO
2014-08-20 13:46:18 ----D---- C:\Windows\system32\ja-JP
2014-08-20 13:46:18 ----D---- C:\Windows\system32\da-DK
2014-08-20 13:46:04 ----D---- C:\Program Files\Windows Journal
2014-08-20 13:44:45 ----D---- C:\Program Files\Windows Defender
2014-08-20 13:44:45 ----D---- C:\Program Files (x86)\Windows Defender
2014-08-20 13:44:34 ----D---- C:\Windows\system32\wbem
2014-08-20 13:43:53 ----D---- C:\Windows\system32\Boot
2014-08-20 13:43:25 ----D---- C:\Windows\AppPatch
2014-08-20 09:35:23 ----D---- C:\Windows\debug
2014-08-19 23:08:15 ----D---- C:\Windows\Help
2014-08-19 22:36:51 ----D---- C:\Windows\Tasks
2014-08-19 22:15:55 ----D---- C:\Windows\system32\NDF
2014-08-19 22:09:50 ----D---- C:\Windows\system32\th-TH
2014-08-19 22:09:50 ----D---- C:\Windows\system32\sl-SI
2014-08-19 22:09:50 ----D---- C:\Windows\system32\sk-SK
2014-08-19 22:09:49 ----D---- C:\Windows\system32\ro-RO
2014-08-19 22:09:48 ----D---- C:\Windows\system32\lv-LV
2014-08-19 22:09:48 ----D---- C:\Windows\system32\lt-LT
2014-08-19 22:09:47 ----D---- C:\Windows\system32\hr-HR
2014-08-19 22:09:47 ----D---- C:\Windows\system32\he-IL
2014-08-19 22:09:47 ----D---- C:\Windows\system32\et-EE
2014-08-19 22:09:46 ----D---- C:\Windows\system32\bg-BG
2014-08-19 22:09:46 ----D---- C:\Windows\system32\ar-SA
2014-08-19 21:11:40 ----D---- C:\Windows\system32\restore
2014-08-19 20:24:37 ----D---- C:\Windows\system32\CodeIntegrity
2014-08-19 20:19:50 ----SHD---- C:\$Recycle.Bin
2014-08-19 20:19:35 ----RD---- C:\Users
2014-08-19 20:19:30 ----D---- C:\Windows\system32\Recovery
2014-08-19 20:19:30 ----D---- C:\Program Files\Windows NT
2014-08-19 20:13:05 ----D---- C:\Windows\system32\sysprep
2014-08-19 20:09:17 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-02-27 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2014-07-02 32544]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2014-07-23 130584]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2014-07-23 28600]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-08-19 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2014-07-23 117712]
R3 b57xdbd;Broadcom xD Picture Bus Driver Service; C:\Windows\system32\DRIVERS\b57xdbd.sys [2011-11-04 68648]
R3 b57xdmp;Broadcom xD Picture vstorp client drv; C:\Windows\system32\DRIVERS\b57xdmp.sys [2011-11-04 19496]
R3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2014-08-19 22592]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2014-08-19 4746304]
R3 BcmVWL;Broadcom Virtual Wireless; C:\Windows\system32\DRIVERS\bcmvwl64.sys [2014-08-19 21568]
R3 bScsiMSa;bScsiMSa; C:\Windows\system32\DRIVERS\bScsiMSa.sys [2011-09-02 51752]
R3 bScsiSDa;bScsiSDa; C:\Windows\system32\DRIVERS\bScsiSDa.sys [2012-05-03 81928]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-05-16 3791872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-08-19 4730344]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-06-05 450520]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-02-27 356120]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-02-27 788760]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2014-08-19 60184]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-07-23 430160]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-07-23 430160]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-08-04 149296]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2014-06-05 315352]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-08-19 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-08-19 277784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-07-02 935368]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2014-08-19 363800]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE [2014-08-19 48128]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-06-05 279000]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-07-25 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-03 114288]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-08-20 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119315
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hacknutý email rozesílá spam

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Re: Hacknutý email rozesílá spam

#7 Příspěvek od Zmaslo »

Nový log

Logfile of random's system information tool 1.10 (written by random/random)
Run by Zmaslo at 2014-09-08 11:28:03
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 536 GB (75%) free of 715 GB
Total RAM: 5982 MB (76% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:28:06, on 8.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17239)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\trend micro\Zmaslo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Dolby PCEE4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Broadcom Corporation - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10139 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\igfxCUIService.exe
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE" "C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe"
C:\Windows\system32\WLANExt.exe 28916352
\??\C:\Windows\system32\conhost.exe "-1593825330-35921126720040321901164921308177359094117759799291316961637307001607
C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"taskhost.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_0000079c
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-3ed2d6ce-daac-4505-bb98-1e9ae43602cb -SystemEventPortName:HostProcess-022d34fa-a49f-44f9-a38d-cd0ef97e0dcd -IoCancelEventPortName:HostProcess-1e5f4329-5ee8-4761-91e9-a41cd2415b1b -NonStateChangingEventPortName:HostProcess-3d700bdc-331b-4131-88f0-0bdb7adc539a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2236efb1-02d8-4318-b398-10d9e58a8e8c
igfxEM.exe
igfxHK.exe
igfxTray.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\notepad.exe" C:\_OTM\MovedFiles\09082014_111843.log
"C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Dolby PCEE4\pcee4.exe" -autostart
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\sppsvc.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\Zmaslo\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

=========Mozilla firefox=========

ProfilePath - C:\Users\Zmaslo\AppData\Roaming\Mozilla\Firefox\Profiles\2vecaa2m.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.179 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.179 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll

C:\Users\Zmaslo\AppData\Roaming\Mozilla\Firefox\Profiles\2vecaa2m.default\extensions\
abs@avira.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Broadcom Wireless Manager UI"=C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [2014-08-19 7138816]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-08-19 12343400]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-08-19 1156712]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"AdobeBridge"= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Dolby Home Theater v4"=C:\Dolby PCEE4\pcee4.exe [2011-06-01 506712]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2014-08-04 161584]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-07-23 751184]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-02-27 291608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-09-08 11:18:43 ----D---- C:\_OTM
2014-09-07 18:30:39 ----D---- C:\AdwCleaner
2014-09-07 17:49:40 ----D---- C:\Program Files\trend micro
2014-09-07 17:49:39 ----D---- C:\rsit
2014-09-03 20:07:16 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-02 17:12:50 ----D---- C:\Program Files (x86)\Bethesda Softworks
2014-09-02 16:39:06 ----D---- C:\ProgramData\RELOADED
2014-09-02 16:20:29 ----D---- C:\ProgramData\Steam
2014-09-02 10:09:25 ----D---- C:\Games
2014-08-28 19:55:12 ----D---- C:\ProgramData\Hewlett-Packard
2014-08-28 09:28:39 ----D---- C:\Windows\Downloaded Installations
2014-08-28 08:32:35 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 08:32:34 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-28 08:32:34 ----A---- C:\Windows\system32\gdi32.dll
2014-08-26 18:33:45 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-08-26 18:33:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-08-26 18:33:37 ----D---- C:\Program Files (x86)\Grinding Gear Games
2014-08-25 15:39:25 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-08-25 15:19:35 ----D---- C:\Program Files\Common Files\DESIGNER
2014-08-25 15:18:44 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2014-08-25 15:18:43 ----D---- C:\Program Files\Microsoft.NET
2014-08-25 15:18:11 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2014-08-25 15:17:33 ----D---- C:\Windows\PCHEALTH
2014-08-25 15:17:33 ----D---- C:\Program Files\Microsoft SQL Server
2014-08-25 15:17:33 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-08-25 15:15:05 ----D---- C:\Program Files\Microsoft Analysis Services
2014-08-25 15:15:05 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2014-08-25 15:14:33 ----D---- C:\Program Files (x86)\Microsoft Office
2014-08-25 15:14:32 ----D---- C:\Program Files\Microsoft Office
2014-08-25 15:14:21 ----D---- C:\ProgramData\Microsoft Help
2014-08-25 15:12:47 ----RHD---- C:\MSOCache
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wups2.dll
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wucltux.dll
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-23 11:13:39 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-23 11:12:30 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-23 11:12:30 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-23 11:12:30 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-23 11:12:30 ----A---- C:\Windows\system32\wups.dll
2014-08-23 11:12:30 ----A---- C:\Windows\system32\wudriver.dll
2014-08-23 11:12:30 ----A---- C:\Windows\system32\wuapi.dll
2014-08-23 11:11:53 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-08-23 11:11:53 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-08-23 11:11:53 ----A---- C:\Windows\system32\wuwebv.dll
2014-08-23 11:11:53 ----A---- C:\Windows\system32\wuapp.exe
2014-08-22 15:53:52 ----A---- C:\Windows\system32\drivers\USB3Ver.dll
2014-08-22 15:52:17 ----A---- C:\Windows\system32\WdfCoInstaller01009.dll
2014-08-22 15:52:17 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2014-08-22 15:52:17 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2014-08-22 15:52:17 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys
2014-08-21 08:24:48 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-08-21 08:24:48 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-08-21 08:24:48 ----A---- C:\Windows\system32\d3d10warp.dll
2014-08-21 08:24:48 ----A---- C:\Windows\system32\d2d1.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-21 08:24:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-08-21 08:24:41 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-21 08:24:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-21 08:24:41 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-21 08:24:40 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\urlmon.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\iernonce.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-08-21 08:24:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-08-21 08:24:40 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-21 08:24:39 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-08-21 08:24:39 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-21 08:24:39 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\iesetup.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-21 08:24:39 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-08-21 08:24:38 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-08-21 08:24:38 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-21 08:24:38 ----A---- C:\Windows\system32\iertutil.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\ieUnatt.exe
2014-08-21 08:24:37 ----A---- C:\Windows\system32\ieui.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\ieframe.dll
2014-08-21 08:24:37 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\wininet.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\vbscript.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\jscript9diag.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\jscript9.dll
2014-08-21 08:24:36 ----A---- C:\Windows\system32\ieapfltr.dll
2014-08-21 08:24:35 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-21 08:24:35 ----A---- C:\Windows\system32\msrating.dll
2014-08-21 08:24:35 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-08-21 08:24:35 ----A---- C:\Windows\system32\mshtml.dll
2014-08-20 23:08:46 ----D---- C:\Program Files\VideoLAN
2014-08-20 23:07:21 ----D---- C:\Users\Zmaslo\AppData\Roaming\vlc
2014-08-20 13:44:30 ----D---- C:\Windows\SYSWOW64\Wat
2014-08-20 13:44:30 ----D---- C:\Windows\system32\Wat
2014-08-20 12:39:32 ----D---- C:\Program Files\Common Files\Topaz Labs
2014-08-20 12:39:32 ----D---- C:\Program Files (x86)\Topaz Labs
2014-08-20 10:53:35 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-08-20 10:45:04 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-08-20 10:45:00 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-08-20 10:45:00 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-08-20 10:45:00 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-08-20 10:45:00 ----A---- C:\Windows\system32\elshyph.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\url.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-08-20 10:44:59 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\wextract.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\webcheck.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\url.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\msls31.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\mshtmler.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\msfeedssync.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\licmgr10.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\jsIntl.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\inseng.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\iexpress.exe
2014-08-20 10:44:58 ----A---- C:\Windows\system32\iesysprep.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\ieapfltr.dat
2014-08-20 10:44:58 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-08-20 10:44:58 ----A---- C:\Windows\system32\icardie.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\pngfilt.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\occache.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\mshta.exe
2014-08-20 10:44:57 ----A---- C:\Windows\system32\jscript.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\imgutil.dll
2014-08-20 10:44:57 ----A---- C:\Windows\system32\iepeers.dll
2014-08-20 10:38:47 ----A---- C:\Windows\system32\tdh.dll
2014-08-20 10:38:47 ----A---- C:\Windows\system32\ntdll.dll
2014-08-20 10:38:47 ----A---- C:\Windows\system32\advapi32.dll
2014-08-20 10:38:44 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-08-20 10:38:44 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-08-20 10:38:44 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-08-20 10:30:23 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-08-20 10:30:23 ----A---- C:\Windows\system32\mswsock.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-08-20 09:58:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-08-20 09:58:26 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-08-20 09:58:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-08-20 09:58:25 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\XpsPrint.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\WMPhoto.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-08-20 09:58:25 ----A---- C:\Windows\system32\dxgi.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-08-20 09:58:24 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\UIAnimation.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\FntCache.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\DWrite.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10level9.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10_1.dll
2014-08-20 09:58:24 ----A---- C:\Windows\system32\d3d10.dll
2014-08-20 09:54:49 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-08-20 09:54:49 ----A---- C:\Windows\system32\d3d11.dll
2014-08-20 09:35:24 ----D---- C:\Windows\system32\MRT
2014-08-20 09:35:19 ----A---- C:\Windows\system32\MRT.exe
2014-08-20 09:29:32 ----A---- C:\Windows\system32\browserchoice.exe
2014-08-20 09:19:19 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2014-08-20 09:19:18 ----A---- C:\Windows\SYSWOW64\wmi.dll
2014-08-20 09:19:18 ----A---- C:\Windows\system32\wmi.dll
2014-08-20 09:13:30 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-08-20 09:13:30 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-08-20 09:13:30 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-20 09:13:30 ----A---- C:\Windows\system32\icardagt.exe
2014-08-20 09:13:25 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-08-20 09:13:25 ----A---- C:\Windows\system32\icardres.dll
2014-08-20 09:13:13 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-20 09:13:13 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbctrac.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbccu32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbccr32.dll
2014-08-20 09:09:50 ----A---- C:\Windows\system32\odbccp32.dll
2014-08-20 09:09:48 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-08-20 09:09:48 ----A---- C:\Windows\system32\comctl32.dll
2014-08-20 09:09:45 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-08-20 09:09:45 ----A---- C:\Windows\system32\poqexec.exe
2014-08-20 09:09:42 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-08-20 09:09:42 ----A---- C:\Windows\system32\mstscax.dll
2014-08-20 09:09:41 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-08-20 09:09:41 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2014-08-20 09:09:41 ----A---- C:\Windows\system32\tsgqec.dll
2014-08-20 09:09:41 ----A---- C:\Windows\system32\aaclient.dll
2014-08-20 09:09:39 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2014-08-20 09:09:39 ----A---- C:\Windows\system32\CPFilters.dll
2014-08-20 09:09:38 ----A---- C:\Windows\SYSWOW64\sbe.dll
2014-08-20 09:09:38 ----A---- C:\Windows\system32\sbe.dll
2014-08-20 09:09:36 ----A---- C:\Windows\system32\shell32.dll
2014-08-20 09:09:35 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-20 09:09:32 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-08-20 09:09:32 ----A---- C:\Windows\system32\wintrust.dll
2014-08-20 09:09:28 ----A---- C:\Windows\SYSWOW64\quartz.dll
2014-08-20 09:09:28 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-08-20 09:09:28 ----A---- C:\Windows\system32\quartz.dll
2014-08-20 09:09:28 ----A---- C:\Windows\system32\qdvd.dll
2014-08-20 09:09:15 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-08-20 09:09:15 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2014-08-20 09:09:15 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-08-20 09:09:14 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-08-20 09:09:14 ----A---- C:\Windows\system32\usp10.dll
2014-08-20 09:09:13 ----A---- C:\Windows\SYSWOW64\webio.dll
2014-08-20 09:09:13 ----A---- C:\Windows\system32\webio.dll
2014-08-20 09:08:59 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-08-20 09:08:57 ----A---- C:\Windows\system32\crypt32.dll
2014-08-20 09:08:56 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-08-20 09:08:56 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-08-20 09:08:56 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-08-20 09:08:56 ----A---- C:\Windows\system32\cryptsvc.dll
2014-08-20 09:08:56 ----A---- C:\Windows\system32\cryptnet.dll
2014-08-20 09:08:53 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-08-20 09:08:53 ----A---- C:\Windows\system32\wer.dll
2014-08-20 09:08:52 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-08-20 09:08:52 ----A---- C:\Windows\system32\imagehlp.dll
2014-08-20 09:08:51 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-08-20 09:08:51 ----A---- C:\Windows\system32\drivers\netio.sys
2014-08-20 09:08:51 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-08-20 09:08:50 ----A---- C:\Windows\system32\msxml6.dll
2014-08-20 09:08:50 ----A---- C:\Windows\system32\msxml3.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-08-20 09:08:49 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-08-20 09:08:49 ----A---- C:\Windows\system32\msxml6r.dll
2014-08-20 09:08:49 ----A---- C:\Windows\system32\msxml3r.dll
2014-08-20 09:08:48 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-08-20 09:08:48 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-08-20 09:08:43 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-08-20 09:08:43 ----A---- C:\Windows\system32\osk.exe
2014-08-20 09:08:42 ----A---- C:\Windows\system32\atmfd.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-08-20 09:08:41 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\mfc42u.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\mfc42.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\lpk.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\fontsub.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\dciman32.dll
2014-08-20 09:08:41 ----A---- C:\Windows\system32\atmlib.dll
2014-08-20 09:08:40 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2014-08-20 09:08:40 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-08-20 09:08:38 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-08-20 09:08:37 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-08-20 09:08:37 ----A---- C:\Windows\system32\qedit.dll
2014-08-20 09:08:28 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-08-20 09:08:28 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-08-20 09:08:26 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-08-20 09:08:25 ----A---- C:\Windows\system32\rdrmemptylst.exe
2014-08-20 09:08:25 ----A---- C:\Windows\system32\rdpwsx.dll
2014-08-20 09:08:25 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-08-20 09:08:23 ----A---- C:\Windows\system32\drivers\afd.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\Wdfres.dll
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-08-20 09:08:22 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-08-20 09:08:18 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-08-20 09:08:18 ----A---- C:\Windows\system32\tzres.dll
2014-08-20 09:08:16 ----A---- C:\Windows\system32\drivers\usbscan.sys
2014-08-20 09:08:16 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-08-20 09:08:16 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-08-20 09:08:15 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2014-08-20 09:08:15 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2014-08-20 09:08:15 ----A---- C:\Windows\system32\dnsrslvr.dll
2014-08-20 09:08:15 ----A---- C:\Windows\system32\dnscacheugc.exe
2014-08-20 09:08:15 ----A---- C:\Windows\system32\dnsapi.dll
2014-08-20 09:07:59 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-08-20 09:07:59 ----A---- C:\Windows\system32\dpnet.dll
2014-08-20 09:07:54 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-20 09:07:54 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-20 09:07:54 ----A---- C:\Windows\system32\msi.dll
2014-08-20 09:07:54 ----A---- C:\Windows\system32\authui.dll
2014-08-20 09:07:53 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-20 09:07:53 ----A---- C:\Windows\system32\msihnd.dll
2014-08-20 09:07:53 ----A---- C:\Windows\system32\consent.exe
2014-08-20 09:07:53 ----A---- C:\Windows\system32\appinfo.dll
2014-08-20 09:07:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-08-20 09:07:46 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-08-20 09:07:46 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-08-20 09:07:46 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-08-20 09:07:46 ----A---- C:\Windows\system32\winlogon.exe
2014-08-20 09:07:46 ----A---- C:\Windows\system32\objsel.dll
2014-08-20 09:07:46 ----A---- C:\Windows\system32\KernelBase.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\smss.exe
2014-08-20 09:07:45 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\dimsroam.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\cngprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\capiprovider.dll
2014-08-20 09:07:45 ----A---- C:\Windows\system32\adprovider.dll
2014-08-20 09:07:44 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-08-20 09:07:44 ----A---- C:\Windows\system32\wincredprovider.dll
2014-08-20 09:07:44 ----A---- C:\Windows\system32\csrsrv.dll
2014-08-20 09:07:42 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-08-20 09:07:42 ----A---- C:\Windows\system32\apisetschema.dll
2014-08-20 09:07:20 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-08-20 09:07:20 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-08-20 09:07:20 ----A---- C:\Windows\system32\drivers\srv.sys
2014-08-20 09:07:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-08-20 09:07:19 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-20 09:07:19 ----A---- C:\Windows\system32\cdd.dll
2014-08-20 09:07:17 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2014-08-20 09:07:17 ----A---- C:\Windows\system32\psisdecd.dll
2014-08-20 09:07:17 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-08-20 09:07:16 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-08-20 09:07:00 ----A---- C:\Windows\system32\winresume.exe
2014-08-20 09:07:00 ----A---- C:\Windows\system32\winload.exe
2014-08-20 09:07:00 ----A---- C:\Windows\system32\kdusb.dll
2014-08-20 09:07:00 ----A---- C:\Windows\system32\kdcom.dll
2014-08-20 09:07:00 ----A---- C:\Windows\system32\kd1394.dll
2014-08-20 09:06:58 ----A---- C:\Windows\system32\drivers\partmgr.sys
2014-08-20 09:06:57 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-08-20 09:06:57 ----A---- C:\Windows\system32\synceng.dll
2014-08-20 09:06:47 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-08-20 09:06:47 ----A---- C:\Windows\system32\shdocvw.dll
2014-08-20 09:06:41 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-08-20 09:06:41 ----A---- C:\Windows\system32\win32spl.dll
2014-08-20 09:06:38 ----A---- C:\Windows\system32\taskhost.exe
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\devobj.dll
2014-08-20 09:06:37 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2014-08-20 09:06:37 ----A---- C:\Windows\system32\umpnpmgr.dll
2014-08-20 09:06:35 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-08-20 09:06:35 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-08-20 09:06:34 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2014-08-20 09:06:34 ----A---- C:\Windows\SYSWOW64\browcli.dll
2014-08-20 09:06:34 ----A---- C:\Windows\system32\netapi32.dll
2014-08-20 09:06:34 ----A---- C:\Windows\system32\browser.dll
2014-08-20 09:06:34 ----A---- C:\Windows\system32\browcli.dll
2014-08-20 09:06:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-08-20 09:06:31 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-08-20 09:06:31 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-08-20 09:06:31 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-08-20 09:06:31 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\wow64win.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\wow64.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\winsrv.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\ntvdm64.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\kernel32.dll
2014-08-20 09:06:31 ----A---- C:\Windows\system32\conhost.exe
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-08-20 09:06:30 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-08-20 09:06:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-08-20 09:06:30 ----A---- C:\Windows\SYSWOW64\user.exe
2014-08-20 09:06:30 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-08-20 09:06:30 ----A---- C:\Windows\system32\wow64cpu.dll
2014-08-20 09:06:29 ----A---- C:\Windows\system32\FXSCOVER.exe
2014-08-20 09:06:28 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-08-20 09:06:28 ----A---- C:\Windows\system32\inetcomm.dll
2014-08-20 09:06:27 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2014-08-20 09:06:27 ----A---- C:\Windows\system32\msvcrt.dll
2014-08-20 09:06:25 ----A---- C:\Windows\system32\certutil.exe
2014-08-20 09:06:24 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-08-20 09:06:24 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-08-20 09:06:24 ----A---- C:\Windows\system32\certenc.dll
2014-08-20 09:06:19 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-08-20 09:06:19 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-08-20 09:06:19 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-08-20 09:06:19 ----A---- C:\Windows\system32\wscript.exe
2014-08-20 09:06:19 ----A---- C:\Windows\system32\scrrun.dll
2014-08-20 09:06:19 ----A---- C:\Windows\system32\cscript.exe
2014-08-20 09:06:17 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\schannel.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\msv1_0.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\lsasrv.dll
2014-08-20 09:06:17 ----A---- C:\Windows\system32\kerberos.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-08-20 09:06:16 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\wdigest.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\TSpkg.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\sspicli.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\ncrypt.dll
2014-08-20 09:06:16 ----A---- C:\Windows\system32\lsass.exe
2014-08-20 09:06:16 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-08-20 09:06:16 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-08-20 09:06:16 ----A---- C:\Windows\system32\drivers\cng.sys
2014-08-20 09:06:15 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-08-20 09:06:15 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-08-20 09:06:15 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-08-20 09:06:15 ----A---- C:\Windows\system32\sspisrv.dll
2014-08-20 09:06:15 ----A---- C:\Windows\system32\secur32.dll
2014-08-20 09:06:15 ----A---- C:\Windows\system32\credssp.dll
2014-08-20 09:06:12 ----A---- C:\Windows\system32\localspl.dll
2014-08-20 09:06:12 ----A---- C:\Windows\system32\drivers\bowser.sys
2014-08-20 09:05:49 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-08-20 09:05:49 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2014-08-20 09:05:49 ----A---- C:\Windows\system32\oleaut32.dll
2014-08-20 09:05:49 ----A---- C:\Windows\system32\oleacc.dll
2014-08-20 09:05:48 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2014-08-20 09:05:48 ----A---- C:\Windows\system32\EncDec.dll
2014-08-20 09:05:32 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2014-08-20 09:05:31 ----A---- C:\Windows\system32\cdosys.dll
2014-08-20 09:05:29 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-08-20 09:05:29 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-08-20 09:05:29 ----A---- C:\Windows\system32\nshwfp.dll
2014-08-20 09:05:29 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-08-20 09:05:29 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-08-20 09:05:28 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-20 09:05:27 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-20 09:05:27 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-08-20 09:05:27 ----A---- C:\Windows\system32\packager.dll
2014-08-20 08:51:43 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-08-20 08:51:43 ----A---- C:\Windows\system32\rdpcore.dll
2014-08-20 08:51:43 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2014-08-20 00:39:39 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-08-20 00:38:43 ----D---- C:\Program Files\Adobe
2014-08-20 00:37:03 ----D---- C:\Program Files (x86)\Adobe
2014-08-20 00:34:18 ----D---- C:\Program Files\Common Files\Adobe
2014-08-20 00:31:32 ----D---- C:\ProgramData\Adobe
2014-08-20 00:29:38 ----A---- C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-08-19 23:53:36 ----D---- C:\Users\Zmaslo\AppData\Roaming\WinRAR
2014-08-19 23:40:19 ----D---- C:\Program Files\WinRAR
2014-08-19 23:38:16 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2014-08-19 23:38:13 ----D---- C:\Users\Zmaslo\AppData\Roaming\DAEMON Tools Lite
2014-08-19 23:38:12 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2014-08-19 23:37:20 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-08-19 23:35:45 ----D---- C:\Users\Zmaslo\AppData\Roaming\uTorrent
2014-08-19 23:30:14 ----A---- C:\Windows\system32\drivers\avnetflt.sys
2014-08-19 23:29:18 ----D---- C:\Users\Zmaslo\AppData\Roaming\Avira
2014-08-19 23:28:22 ----A---- C:\Windows\system32\drivers\avkmgr.sys
2014-08-19 23:28:22 ----A---- C:\Windows\system32\drivers\avipbb.sys
2014-08-19 23:28:22 ----A---- C:\Windows\system32\drivers\avgntflt.sys
2014-08-19 23:26:02 ----D---- C:\Program Files (x86)\Avira
2014-08-19 23:26:01 ----D---- C:\ProgramData\Avira
2014-08-19 23:25:57 ----D---- C:\ProgramData\Package Cache
2014-08-19 23:14:50 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2014-08-19 23:14:45 ----A---- C:\Windows\SYSWOW64\log.txt
2014-08-19 23:14:43 ----D---- C:\ProgramData\Intel
2014-08-19 23:10:05 ----D---- C:\Windows\SYSWOW64\NV
2014-08-19 23:10:05 ----D---- C:\Windows\system32\NV
2014-08-19 23:10:01 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-08-19 23:09:54 ----D---- C:\ProgramData\NVIDIA
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvvsvc.exe
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvsvcr.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvsvc64.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvshext.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvmctray.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nvcpl.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nv3dappshextr.dll
2014-08-19 23:08:17 ----A---- C:\Windows\system32\nv3dappshext.dll
2014-08-19 23:08:00 ----D---- C:\ProgramData\NVIDIA Corporation
2014-08-19 23:07:58 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-08-19 23:06:44 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvwgf2umx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvumdshimx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvopencl.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvoglv64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvoglshim64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvinitx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\NvIFR64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\NvFBC64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvdispgenco6434052.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvdispco6434052.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvcuvid.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvcuda.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvcompiler.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\nvapi64.dll
2014-08-19 23:06:44 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2014-08-19 23:06:44 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-08-19 23:05:26 ----D---- C:\Program Files\NVIDIA Corporation
2014-08-19 23:04:41 ----A---- C:\Windows\system32\OpenCL.DLL
2014-08-19 23:04:40 ----A---- C:\Windows\SYSWOW64\OpenCL.DLL
2014-08-19 23:04:32 ----D---- C:\Program Files\Intel
2014-08-19 22:50:28 ----D---- C:\NVIDIA
2014-08-19 22:50:15 ----D---- C:\Users\Zmaslo\AppData\Roaming\Macromedia
2014-08-19 22:50:15 ----D---- C:\Users\Zmaslo\AppData\Roaming\Adobe
2014-08-19 22:42:18 ----D---- C:\Dolby PCEE4
2014-08-19 22:42:04 ----D---- C:\Windows\SYSWOW64\RTCOM
2014-08-19 22:41:51 ----D---- C:\Program Files\Realtek
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RtPCEE4.DAT
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RtPCEE3.DAT
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\rtkhdaud.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RtHdatEx.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTHDAEQ1.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX3.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX2.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX1.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTEQEX0.dat
2014-08-19 22:41:51 ----A---- C:\Windows\system32\drivers\RTConvEQ.dat
2014-08-19 22:41:48 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\WavesGUILib.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSWOW64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSTSX64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSTSH64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SRSHP64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFSS_APO.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFNHK64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFCOM64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\SFAPO64.dll
2014-08-19 22:41:48 ----A---- C:\Windows\system32\RtPgEx64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkGuiCompLib.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkCfg64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkAPO64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\RtkApi64.dll
2014-08-19 22:41:47 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEEP64A.dll
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEEL64A.dll
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEEG64A.dll
2014-08-19 22:41:46 ----A---- C:\Windows\system32\RTEED64A.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RTCOM64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RP3DHT64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RP3DAA64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RCoRes64.dat
2014-08-19 22:41:45 ----A---- C:\Windows\system32\RCoInstII64.dll
2014-08-19 22:41:45 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EEP64A.dll
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EEL64A.dll
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EEG64A.dll
2014-08-19 22:41:44 ----A---- C:\Windows\system32\R4EED64A.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\R4EEA64A.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2014-08-19 22:41:43 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\FMAPO64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2014-08-19 22:41:41 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-08-19 22:41:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-08-19 22:41:40 ----D---- C:\Program Files (x86)\Realtek
2014-08-19 22:41:40 ----A---- C:\Windows\system32\AERTAR64.dll
2014-08-19 22:41:40 ----A---- C:\Windows\system32\AERTAC64.dll
2014-08-19 22:41:38 ----HD---- C:\Program Files (x86)\Temp
2014-08-19 22:41:38 ----A---- C:\Windows\RtlExUpd.dll
2014-08-19 22:36:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-08-19 22:36:50 ----D---- C:\Windows\SYSWOW64\Macromed
2014-08-19 22:36:44 ----D---- C:\Windows\system32\Macromed
2014-08-19 22:34:10 ----D---- C:\Program Files (x86)\Intel
2014-08-19 22:34:10 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2014-08-19 22:33:59 ----D---- C:\Intel
2014-08-19 22:19:08 ----D---- C:\Users\Zmaslo\AppData\Roaming\Mozilla
2014-08-19 22:18:59 ----D---- C:\ProgramData\Mozilla
2014-08-19 22:18:59 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-08-19 22:11:49 ----D---- C:\Program Files (x86)\Cisco
2014-08-19 22:09:57 ----A---- C:\Windows\system32\BCMLogon.dll
2014-08-19 22:09:46 ----A---- C:\Windows\system32\bcmwlrc.dll
2014-08-19 22:09:45 ----A---- C:\Windows\SYSWOW64\vcredist_x64.exe
2014-08-19 22:09:45 ----A---- C:\Windows\SYSWOW64\vcredist_x64.bat
2014-08-19 22:09:45 ----A---- C:\Windows\system32\drivers\npf.sys
2014-08-19 22:09:45 ----A---- C:\Windows\system32\drivers\bcm42rly.sys
2014-08-19 22:09:44 ----A---- C:\Windows\system32\wltrynt.dll
2014-08-19 22:09:44 ----A---- C:\Windows\system32\vcredist_x64.exe
2014-08-19 22:09:44 ----A---- C:\Windows\system32\vcredist_x64.bat
2014-08-19 22:09:44 ----A---- C:\Windows\system32\bcmttls.dll
2014-08-19 22:09:43 ----A---- C:\Windows\system32\bcmwlcoi.dll
2014-08-19 22:09:43 ----A---- C:\Windows\system32\bcmihvui64.dll
2014-08-19 22:09:42 ----D---- C:\Program Files\Broadcom
2014-08-19 22:09:42 ----A---- C:\Windows\system32\drivers\BCMWL664.SYS
2014-08-19 22:09:42 ----A---- C:\Windows\system32\bcmihvsrv64.dll
2014-08-19 22:08:30 ----A---- C:\Windows\system32\drivers\bcmvwl64.sys
2014-08-19 21:40:34 ----SHD---- C:\Windows\Installer
2014-08-19 21:40:16 ----D---- C:\ProgramData\Qualcomm Atheros
2014-08-19 21:07:41 ----D---- C:\Windows\Panther
2014-08-19 20:19:53 ----D---- C:\Users\Zmaslo\AppData\Roaming\Identities
2014-08-19 20:19:35 ----SD---- C:\Users\Zmaslo\AppData\Roaming\Microsoft
2014-08-19 20:19:35 ----D---- C:\Users\Zmaslo\AppData\Roaming\Media Center Programs
2014-08-19 20:19:30 ----SHD---- C:\Recovery
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Šablony
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Plocha
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Oblíbené položky
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Nabídka Start
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Dokumenty
2014-08-19 20:19:30 ----SHD---- C:\ProgramData\Data aplikací
2014-08-19 20:11:39 ----D---- C:\Windows\SoftwareDistribution
2014-08-19 20:09:24 ----D---- C:\Windows\Prefetch
2014-08-19 20:08:30 ----ASH---- C:\pagefile.sys
2014-08-19 20:08:27 ----SHD---- C:\System Volume Information
2014-08-19 20:08:27 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2014-09-08 11:28:04 ----D---- C:\Windows\Temp
2014-09-08 11:23:26 ----D---- C:\Windows\system32\config
2014-09-07 18:38:53 ----D---- C:\Windows\System32
2014-09-07 18:38:53 ----D---- C:\Windows\inf
2014-09-07 18:38:53 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-07 18:35:08 ----D---- C:\Windows\system32\catroot2
2014-09-07 17:49:40 ----RD---- C:\Program Files
2014-09-05 21:55:27 ----D---- C:\Windows\system32\drivers
2014-09-05 21:55:21 ----D---- C:\Windows\system32\drivers\UMDF
2014-09-05 11:13:21 ----D---- C:\Windows\system32\wdi
2014-09-03 21:58:40 ----RD---- C:\Program Files (x86)
2014-09-02 16:44:01 ----D---- C:\Program Files (x86)\Common Files
2014-09-02 16:39:06 ----HD---- C:\ProgramData
2014-08-29 17:51:16 ----D---- C:\Windows\winsxs
2014-08-29 17:48:45 ----D---- C:\Windows\system32\catroot
2014-08-29 17:48:28 ----D---- C:\Windows\SysWOW64
2014-08-28 09:30:51 ----D---- C:\Windows\system32\DriverStore
2014-08-28 09:28:39 ----D---- C:\Windows
2014-08-27 11:27:57 ----D---- C:\Windows\Microsoft.NET
2014-08-26 18:33:42 ----D---- C:\Windows\Logs
2014-08-26 15:31:34 ----RSD---- C:\Windows\assembly
2014-08-25 15:42:48 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-25 15:42:48 ----D---- C:\Windows\system32\cs-CZ
2014-08-25 15:36:22 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-25 15:36:22 ----D---- C:\Windows\system32\en-US
2014-08-25 15:27:35 ----A---- C:\Windows\win.ini
2014-08-25 15:26:43 ----D---- C:\Windows\ShellNew
2014-08-25 15:25:35 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-08-25 15:21:01 ----D---- C:\Windows\system32\Tasks
2014-08-25 15:20:04 ----RSD---- C:\Windows\Fonts
2014-08-25 15:19:35 ----D---- C:\Program Files\Common Files
2014-08-25 15:17:33 ----SD---- C:\ProgramData\Microsoft
2014-08-25 15:16:43 ----D---- C:\Program Files\Common Files\System
2014-08-24 17:26:04 ----D---- C:\Windows\rescache
2014-08-24 14:26:49 ----D---- C:\Program Files\Internet Explorer
2014-08-24 14:26:40 ----D---- C:\Windows\PolicyDefinitions
2014-08-24 14:26:35 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-20 13:47:47 ----D---- C:\Windows\ehome
2014-08-20 13:47:16 ----D---- C:\Windows\SYSWOW64\migration
2014-08-20 13:47:00 ----D---- C:\Windows\system32\migration
2014-08-20 13:46:35 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-08-20 13:46:35 ----D---- C:\Windows\SYSWOW64\it-IT
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-08-20 13:46:34 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-08-20 13:46:33 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-08-20 13:46:33 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-08-20 13:46:33 ----D---- C:\Windows\SYSWOW64\el-GR
2014-08-20 13:46:32 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-08-20 13:46:32 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-08-20 13:46:32 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\es-ES
2014-08-20 13:46:31 ----D---- C:\Windows\SYSWOW64\de-DE
2014-08-20 13:46:30 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-08-20 13:46:29 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-08-20 13:46:29 ----D---- C:\Windows\SYSWOW64\da-DK
2014-08-20 13:46:25 ----D---- C:\Windows\system32\pt-PT
2014-08-20 13:46:25 ----D---- C:\Windows\system32\pt-BR
2014-08-20 13:46:25 ----D---- C:\Windows\system32\it-IT
2014-08-20 13:46:24 ----D---- C:\Windows\system32\pl-PL
2014-08-20 13:46:22 ----D---- C:\Windows\system32\zh-HK
2014-08-20 13:46:22 ----D---- C:\Windows\system32\ko-KR
2014-08-20 13:46:22 ----D---- C:\Windows\system32\hu-HU
2014-08-20 13:46:22 ----D---- C:\Windows\system32\el-GR
2014-08-20 13:46:21 ----D---- C:\Windows\system32\tr-TR
2014-08-20 13:46:21 ----D---- C:\Windows\system32\nl-NL
2014-08-20 13:46:21 ----D---- C:\Windows\system32\fr-FR
2014-08-20 13:46:21 ----D---- C:\Windows\system32\fi-FI
2014-08-20 13:46:20 ----D---- C:\Windows\system32\sv-SE
2014-08-20 13:46:20 ----D---- C:\Windows\system32\es-ES
2014-08-20 13:46:19 ----D---- C:\Windows\system32\zh-TW
2014-08-20 13:46:19 ----D---- C:\Windows\system32\de-DE
2014-08-20 13:46:18 ----D---- C:\Windows\system32\zh-CN
2014-08-20 13:46:18 ----D---- C:\Windows\system32\ru-RU
2014-08-20 13:46:18 ----D---- C:\Windows\system32\nb-NO
2014-08-20 13:46:18 ----D---- C:\Windows\system32\ja-JP
2014-08-20 13:46:18 ----D---- C:\Windows\system32\da-DK
2014-08-20 13:46:04 ----D---- C:\Program Files\Windows Journal
2014-08-20 13:44:45 ----D---- C:\Program Files\Windows Defender
2014-08-20 13:44:45 ----D---- C:\Program Files (x86)\Windows Defender
2014-08-20 13:44:34 ----D---- C:\Windows\system32\wbem
2014-08-20 13:43:53 ----D---- C:\Windows\system32\Boot
2014-08-20 13:43:25 ----D---- C:\Windows\AppPatch
2014-08-20 09:35:23 ----D---- C:\Windows\debug
2014-08-19 23:08:15 ----D---- C:\Windows\Help
2014-08-19 22:36:51 ----D---- C:\Windows\Tasks
2014-08-19 22:15:55 ----D---- C:\Windows\system32\NDF
2014-08-19 22:09:50 ----D---- C:\Windows\system32\th-TH
2014-08-19 22:09:50 ----D---- C:\Windows\system32\sl-SI
2014-08-19 22:09:50 ----D---- C:\Windows\system32\sk-SK
2014-08-19 22:09:49 ----D---- C:\Windows\system32\ro-RO
2014-08-19 22:09:48 ----D---- C:\Windows\system32\lv-LV
2014-08-19 22:09:48 ----D---- C:\Windows\system32\lt-LT
2014-08-19 22:09:47 ----D---- C:\Windows\system32\hr-HR
2014-08-19 22:09:47 ----D---- C:\Windows\system32\he-IL
2014-08-19 22:09:47 ----D---- C:\Windows\system32\et-EE
2014-08-19 22:09:46 ----D---- C:\Windows\system32\bg-BG
2014-08-19 22:09:46 ----D---- C:\Windows\system32\ar-SA
2014-08-19 21:11:40 ----D---- C:\Windows\system32\restore
2014-08-19 20:24:37 ----D---- C:\Windows\system32\CodeIntegrity
2014-08-19 20:19:50 ----SHD---- C:\$Recycle.Bin
2014-08-19 20:19:35 ----RD---- C:\Users
2014-08-19 20:19:30 ----D---- C:\Windows\system32\Recovery
2014-08-19 20:19:30 ----D---- C:\Program Files\Windows NT
2014-08-19 20:13:05 ----D---- C:\Windows\system32\sysprep
2014-08-19 20:09:17 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-02-27 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2014-07-02 32544]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2014-07-23 130584]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2014-07-23 28600]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-08-19 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2014-07-23 117712]
R3 b57xdbd;Broadcom xD Picture Bus Driver Service; C:\Windows\system32\DRIVERS\b57xdbd.sys [2011-11-04 68648]
R3 b57xdmp;Broadcom xD Picture vstorp client drv; C:\Windows\system32\DRIVERS\b57xdmp.sys [2011-11-04 19496]
R3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2014-08-19 22592]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2014-08-19 4746304]
R3 BcmVWL;Broadcom Virtual Wireless; C:\Windows\system32\DRIVERS\bcmvwl64.sys [2014-08-19 21568]
R3 bScsiMSa;bScsiMSa; C:\Windows\system32\DRIVERS\bScsiMSa.sys [2011-09-02 51752]
R3 bScsiSDa;bScsiSDa; C:\Windows\system32\DRIVERS\bScsiSDa.sys [2012-05-03 81928]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-05-16 3791872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-08-19 4730344]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-06-05 450520]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-02-27 356120]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-02-27 788760]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2014-08-19 60184]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-07-23 430160]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-07-23 430160]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-08-04 149296]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2014-06-05 315352]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-08-19 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-08-19 277784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-07-02 935368]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2014-08-19 363800]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE [2014-08-19 48128]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-06-05 279000]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-07-25 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-03 114288]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-08-20 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------

Díky Rudy :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119315
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hacknutý email rozesílá spam

#8 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Ještě pro jstotu doporučím kompletní sken MBAM: http://www.malwarebytes.org/mbam.php . Dejte log, předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Re: Hacknutý email rozesílá spam

#9 Příspěvek od Zmaslo »

Omlouvám se, že odepisuju tak pozdě, dříve jsem to nestihl.
MBAM nic nenašel. Díky

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 14.9.2014
Scan Time: 12:39:48
Logfile:
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.09.14.03
Rootkit Database: v2014.09.13.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Zmaslo

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 302345
Time Elapsed: 16 min, 0 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119315
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hacknutý email rozesílá spam

#10 Příspěvek od Rudy »

Pak by mělo být vše v pořádku. Změňte si heslo na mail.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Re: Hacknutý email rozesílá spam

#11 Příspěvek od Zmaslo »

Mockrát díky, jste skvělí. :thumbsup:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119315
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Hacknutý email rozesílá spam

#12 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno