Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

žádám o kontrolu logu RSIT.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Nesta
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 11 lis 2014 17:27

žádám o kontrolu logu RSIT.

#1 Příspěvek od Nesta »

pc se samo vypíná pri naskočení modrá obrazovka a obnova systému. pc běží pomalu a přehrívá se kvoli nzvýšenému výkonu pc i když nic nedělám... děkuji. :)



Logfile of random's system information tool 1.10 (written by random/random)
Run by Adam at 2014-11-11 18:50:44
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 424 GB (92%) free of 460 GB
Total RAM: 3835 MB (42% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:50:47, on 11.11.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17344)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe
C:\Program Files\trend micro\Adam.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AMD Reservation Manager - Advanced Micro Devices - C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Auto (HPAuto) - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe

--
End of file - 11034 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\system32\WLANExt.exe 32750112
\??\C:\Windows\system32\conhost.exe "1846072823154379670510592898491452754944568405875-602827114-17934798801959679727
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 1868
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe" /c /a /s UserSession
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe"
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
"C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
taskeng.exe {C21B4007-64B8-469D-AC98-822E5DEF4CC8}
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
"C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Combo: On</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_on.ico</IconPath><ID>577800860</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4952.1bc7ae00.1924815147 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 4952 "\\.\pipe\gecko-crash-server-pipe.4952" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe" --proxy-stub-channel=Flash748.6E6BE9C0.3690 --host-broker-channel=Flash748.6E6BE9C0.30347 --host-pid=748 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe" --channel=3104.0017F268.226297044 --proxy-stub-channel=Flash748.6E6BE9C0.3690 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll" --host-npapi-version=27 --type=renderer
"taskhost.exe"
C:\Windows\system32\atibtmon.exe Global\Ati_VariBrightMonitorEvent
C:\Windows\system32\sppsvc.exe
taskmgr.exe /3
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Users\Adam\Downloads\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\1wb9f80b.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.189 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.189 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-03 49440]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll [2011-04-28 436152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL [2011-03-31 210872]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-04-13 60576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-03 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll [2011-04-28 436152]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2011-01-11 6602856]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-12-21 2480936]
"AtherosBtStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2011-04-13 627360]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-04-13 379552]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-07-21 8192]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-04 336384]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2010-11-09 586296]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2011-02-01 656920]
"HPOSD"=C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [2010-12-13 318520]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
McAfee Security Scan Plus.lnk - C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-11-11 18:41:08 ----D---- C:\rsit
2014-11-11 18:41:08 ----D---- C:\Program Files\trend micro
2014-11-11 16:37:32 ----D---- C:\Windows\SYSWOW64\Wat
2014-11-11 16:37:32 ----D---- C:\Windows\system32\Wat
2014-11-10 23:47:13 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-11-10 23:34:45 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-11-10 23:34:45 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\url.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-11-10 23:34:41 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-11-10 23:34:41 ----A---- C:\Windows\system32\elshyph.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-11-10 23:34:40 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\wininet.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\urlmon.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-11-10 23:34:39 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-11-10 23:34:39 ----A---- C:\Windows\system32\msrating.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\msls31.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\mshtmler.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\msfeedssync.exe
2014-11-10 23:34:39 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\jsproxy.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\jsIntl.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\jscript9diag.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\jscript9.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\ieui.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\iesysprep.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\iertutil.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\ieframe.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\ieapfltr.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\ieapfltr.dat
2014-11-10 23:34:39 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\dxtrans.dll
2014-11-10 23:34:39 ----A---- C:\Windows\system32\dxtmsft.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\wextract.exe
2014-11-10 23:34:38 ----A---- C:\Windows\system32\webcheck.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\vbscript.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\url.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\pngfilt.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\occache.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\mshtmled.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\mshtml.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\mshta.exe
2014-11-10 23:34:38 ----A---- C:\Windows\system32\msfeeds.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\licmgr10.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\jscript.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\inseng.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\imgutil.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\iexpress.exe
2014-11-10 23:34:38 ----A---- C:\Windows\system32\ieUnatt.exe
2014-11-10 23:34:38 ----A---- C:\Windows\system32\iesetup.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\iernonce.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\iepeers.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-11-10 23:34:38 ----A---- C:\Windows\system32\iedkcs32.dll
2014-11-10 23:34:38 ----A---- C:\Windows\system32\ie4uinit.exe
2014-11-10 23:34:38 ----A---- C:\Windows\system32\icardie.dll
2014-11-10 23:32:51 ----A---- C:\Windows\system32\tdh.dll
2014-11-10 23:32:51 ----A---- C:\Windows\system32\ntdll.dll
2014-11-10 23:32:51 ----A---- C:\Windows\system32\advapi32.dll
2014-11-10 23:32:50 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-11-10 23:32:50 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-11-10 23:32:50 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-11-10 23:31:35 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-11-10 23:31:35 ----A---- C:\Windows\system32\mswsock.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-11-10 23:25:20 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-11-10 23:25:20 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-11-10 23:25:20 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-11-10 23:25:19 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\XpsPrint.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\WMPhoto.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\UIAnimation.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\FntCache.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\dxgi.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\DWrite.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\d3d10warp.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\d3d10level9.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\d3d10core.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\d3d10_1.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\d3d10.dll
2014-11-10 23:25:19 ----A---- C:\Windows\system32\d2d1.dll
2014-11-10 23:23:11 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-11-10 23:23:11 ----A---- C:\Windows\system32\d3d11.dll
2014-11-10 22:55:32 ----A---- C:\Windows\system32\browserchoice.exe
2014-11-10 22:45:37 ----A---- C:\Windows\SYSWOW64\wmi.dll
2014-11-10 22:45:37 ----A---- C:\Windows\system32\wmi.dll
2014-11-10 22:45:37 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2014-11-10 22:40:02 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-11-10 22:40:02 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-11-10 22:40:02 ----A---- C:\Windows\system32\infocardapi.dll
2014-11-10 22:40:02 ----A---- C:\Windows\system32\icardagt.exe
2014-11-10 22:40:01 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-11-10 22:40:01 ----A---- C:\Windows\system32\icardres.dll
2014-11-10 22:39:40 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-11-10 22:39:40 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-11-10 12:24:03 ----D---- C:\Users\Adam\AppData\Roaming\Macromedia
2014-11-10 12:23:20 ----D---- C:\ProgramData\McAfee Security Scan
2014-11-10 12:23:19 ----D---- C:\ProgramData\McAfee
2014-11-10 12:23:13 ----D---- C:\Program Files (x86)\McAfee Security Scan
2014-11-10 12:23:08 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-11-10 12:23:06 ----D---- C:\Windows\system32\Macromed
2014-11-10 11:30:31 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-11-10 11:30:31 ----A---- C:\Windows\system32\poqexec.exe
2014-11-10 11:27:37 ----A---- C:\Windows\system32\odbccr32.dll
2014-11-10 11:27:36 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2014-11-10 11:27:36 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2014-11-10 11:27:36 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2014-11-10 11:27:36 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2014-11-10 11:27:36 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2014-11-10 11:27:36 ----A---- C:\Windows\system32\odbctrac.dll
2014-11-10 11:27:36 ----A---- C:\Windows\system32\odbccu32.dll
2014-11-10 11:27:36 ----A---- C:\Windows\system32\odbccp32.dll
2014-11-10 11:27:22 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-11-10 11:27:22 ----A---- C:\Windows\system32\comctl32.dll
2014-11-10 11:26:57 ----A---- C:\Windows\system32\shell32.dll
2014-11-10 11:26:56 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-11-10 11:26:52 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-11-10 11:26:52 ----A---- C:\Windows\system32\wintrust.dll
2014-11-10 11:26:11 ----A---- C:\Windows\SYSWOW64\quartz.dll
2014-11-10 11:26:11 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-11-10 11:26:11 ----A---- C:\Windows\system32\quartz.dll
2014-11-10 11:26:11 ----A---- C:\Windows\system32\qdvd.dll
2014-11-10 11:26:09 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-11-10 11:26:09 ----A---- C:\Windows\system32\usp10.dll
2014-11-10 11:26:08 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2014-11-10 11:26:04 ----A---- C:\Windows\system32\win32k.sys
2014-11-10 11:26:02 ----A---- C:\Windows\SYSWOW64\webio.dll
2014-11-10 11:26:02 ----A---- C:\Windows\system32\webio.dll
2014-11-10 11:25:33 ----A---- C:\Windows\SYSWOW64\mscories.dll
2014-11-10 11:25:33 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2014-11-10 11:25:33 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-11-10 11:25:33 ----A---- C:\Windows\system32\mscories.dll
2014-11-10 11:25:33 ----A---- C:\Windows\system32\mscorier.dll
2014-11-10 11:25:33 ----A---- C:\Windows\system32\dfshim.dll
2014-11-10 11:25:29 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-11-10 11:25:26 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-11-10 11:25:26 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-11-10 11:25:26 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-11-10 11:25:26 ----A---- C:\Windows\system32\cryptsvc.dll
2014-11-10 11:25:26 ----A---- C:\Windows\system32\cryptnet.dll
2014-11-10 11:25:26 ----A---- C:\Windows\system32\crypt32.dll
2014-11-10 11:25:13 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-11-10 11:25:13 ----A---- C:\Windows\system32\wer.dll
2014-11-10 11:25:12 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-11-10 11:25:12 ----A---- C:\Windows\system32\imagehlp.dll
2014-11-10 11:25:11 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-11-10 11:25:11 ----A---- C:\Windows\system32\drivers\netio.sys
2014-11-10 11:25:11 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-11-10 11:24:47 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-11-10 11:24:47 ----A---- C:\Windows\system32\msxml6.dll
2014-11-10 11:24:47 ----A---- C:\Windows\system32\msxml3.dll
2014-11-10 11:24:46 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2014-11-10 11:24:46 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-11-10 11:24:46 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-11-10 11:24:46 ----A---- C:\Windows\system32\msxml6r.dll
2014-11-10 11:24:46 ----A---- C:\Windows\system32\msxml3r.dll
2014-11-10 11:23:37 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-11-10 11:23:37 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-11-10 11:23:35 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-11-10 11:23:35 ----A---- C:\Windows\system32\osk.exe
2014-11-10 11:23:27 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-11-10 11:23:27 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-11-10 11:23:27 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-11-10 11:23:27 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-11-10 11:23:27 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-11-10 11:23:27 ----A---- C:\Windows\system32\lpk.dll
2014-11-10 11:23:27 ----A---- C:\Windows\system32\fontsub.dll
2014-11-10 11:23:27 ----A---- C:\Windows\system32\dciman32.dll
2014-11-10 11:23:27 ----A---- C:\Windows\system32\atmlib.dll
2014-11-10 11:23:27 ----A---- C:\Windows\system32\atmfd.dll
2014-11-10 11:23:25 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-11-10 11:23:25 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-11-10 11:23:25 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-11-10 11:23:25 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-11-10 11:23:25 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-11-10 11:23:25 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-11-10 11:23:23 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-11-10 11:23:23 ----A---- C:\Windows\system32\qedit.dll
2014-11-10 11:23:15 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-11-10 11:23:15 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-11-10 11:23:14 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-11-10 11:23:08 ----A---- C:\Windows\system32\drivers\afd.sys
2014-11-10 11:23:07 ----A---- C:\Windows\system32\Wdfres.dll
2014-11-10 11:23:07 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-11-10 11:23:07 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-11-10 11:23:06 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-11-10 11:23:06 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-11-10 11:23:05 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-11-10 11:23:05 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-11-10 11:22:09 ----A---- C:\Windows\system32\dpnet.dll
2014-11-10 11:22:08 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-11-10 11:22:05 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-11-10 11:22:05 ----A---- C:\Windows\system32\msi.dll
2014-11-10 11:22:04 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-11-10 11:22:04 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-11-10 11:22:04 ----A---- C:\Windows\system32\msihnd.dll
2014-11-10 11:22:04 ----A---- C:\Windows\system32\consent.exe
2014-11-10 11:22:04 ----A---- C:\Windows\system32\authui.dll
2014-11-10 11:22:04 ----A---- C:\Windows\system32\appinfo.dll
2014-11-10 11:21:50 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-11-10 11:21:47 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-11-10 11:21:47 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-11-10 11:21:45 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-11-10 11:21:45 ----A---- C:\Windows\system32\objsel.dll
2014-11-10 11:21:45 ----A---- C:\Windows\system32\KernelBase.dll
2014-11-10 11:21:44 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-11-10 11:21:43 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-11-10 11:21:43 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-11-10 11:21:43 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-11-10 11:21:43 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-11-10 11:21:43 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-11-10 11:21:43 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-11-10 11:21:43 ----A---- C:\Windows\system32\wincredprovider.dll
2014-11-10 11:21:43 ----A---- C:\Windows\system32\smss.exe
2014-11-10 11:21:43 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-11-10 11:21:43 ----A---- C:\Windows\system32\dimsroam.dll
2014-11-10 11:21:43 ----A---- C:\Windows\system32\csrsrv.dll
2014-11-10 11:21:43 ----A---- C:\Windows\system32\cngprovider.dll
2014-11-10 11:21:43 ----A---- C:\Windows\system32\capiprovider.dll
2014-11-10 11:21:43 ----A---- C:\Windows\system32\adprovider.dll
2014-11-10 11:21:41 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-11-10 11:21:41 ----A---- C:\Windows\system32\apisetschema.dll
2014-11-10 11:20:53 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-11-10 11:20:53 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-11-10 11:20:53 ----A---- C:\Windows\system32\cdd.dll
2014-11-10 11:20:50 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2014-11-10 11:20:50 ----A---- C:\Windows\system32\psisdecd.dll
2014-11-10 11:20:31 ----A---- C:\Windows\system32\drivers\partmgr.sys
2014-11-10 11:20:07 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-11-10 11:20:07 ----A---- C:\Windows\system32\synceng.dll
2014-11-10 11:20:03 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-11-10 11:20:03 ----A---- C:\Windows\system32\shdocvw.dll
2014-11-10 11:19:57 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-11-10 11:19:57 ----A---- C:\Windows\system32\win32spl.dll
2014-11-10 11:19:55 ----A---- C:\Windows\system32\rastls.dll
2014-11-10 11:19:54 ----A---- C:\Windows\SYSWOW64\rastls.dll
2014-11-10 11:19:50 ----A---- C:\Windows\system32\taskhost.exe
2014-11-10 11:19:49 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-11-10 11:19:49 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2014-11-10 11:19:49 ----A---- C:\Windows\SYSWOW64\devobj.dll
2014-11-10 11:19:49 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2014-11-10 11:19:49 ----A---- C:\Windows\system32\umpnpmgr.dll
2014-11-10 11:19:35 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-11-10 11:19:35 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-11-10 11:19:31 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-11-10 11:19:30 ----A---- C:\Windows\system32\schannel.dll
2014-11-10 11:19:30 ----A---- C:\Windows\system32\lsasrv.dll
2014-11-10 11:19:29 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-11-10 11:19:29 ----A---- C:\Windows\system32\winlogon.exe
2014-11-10 11:19:29 ----A---- C:\Windows\system32\kerberos.dll
2014-11-10 11:19:28 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-11-10 11:19:28 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-11-10 11:19:28 ----A---- C:\Windows\system32\TSpkg.dll
2014-11-10 11:19:28 ----A---- C:\Windows\system32\ncrypt.dll
2014-11-10 11:19:28 ----A---- C:\Windows\system32\msv1_0.dll
2014-11-10 11:19:28 ----A---- C:\Windows\system32\mstscax.dll
2014-11-10 11:19:27 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-11-10 11:19:27 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2014-11-10 11:19:27 ----A---- C:\Windows\system32\termsrv.dll
2014-11-10 11:19:27 ----A---- C:\Windows\system32\mstsc.exe
2014-11-10 11:19:26 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-11-10 11:19:26 ----A---- C:\Windows\system32\wdigest.dll
2014-11-10 11:19:25 ----A---- C:\Windows\SYSWOW64\winsta.dll
2014-11-10 11:19:25 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-11-10 11:19:25 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2014-11-10 11:19:25 ----A---- C:\Windows\system32\winsta.dll
2014-11-10 11:19:25 ----A---- C:\Windows\system32\rdrmemptylst.exe
2014-11-10 11:19:25 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-11-10 11:19:25 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-11-10 11:19:24 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-11-10 11:19:24 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-11-10 11:19:24 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-11-10 11:19:24 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-11-10 11:19:24 ----A---- C:\Windows\system32\tsgqec.dll
2014-11-10 11:19:24 ----A---- C:\Windows\system32\rdpwsx.dll
2014-11-10 11:19:24 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-11-10 11:19:24 ----A---- C:\Windows\system32\credssp.dll
2014-11-10 11:19:24 ----A---- C:\Windows\system32\aaclient.dll
2014-11-10 11:19:02 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2014-11-10 11:19:02 ----A---- C:\Windows\SYSWOW64\browcli.dll
2014-11-10 11:19:02 ----A---- C:\Windows\system32\netapi32.dll
2014-11-10 11:19:02 ----A---- C:\Windows\system32\browser.dll
2014-11-10 11:19:02 ----A---- C:\Windows\system32\browcli.dll
2014-11-10 11:18:59 ----A---- C:\Windows\system32\wow64win.dll
2014-11-10 11:18:59 ----A---- C:\Windows\system32\kernel32.dll
2014-11-10 11:18:58 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-11-10 11:18:58 ----A---- C:\Windows\system32\wow64.dll
2014-11-10 11:18:58 ----A---- C:\Windows\system32\winsrv.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-11-10 11:18:57 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-11-10 11:18:57 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-11-10 11:18:57 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-11-10 11:18:57 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-11-10 11:18:57 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-11-10 11:18:57 ----A---- C:\Windows\system32\wow64cpu.dll
2014-11-10 11:18:57 ----A---- C:\Windows\system32\ntvdm64.dll
2014-11-10 11:18:57 ----A---- C:\Windows\system32\conhost.exe
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-11-10 11:18:56 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-11-10 11:18:56 ----A---- C:\Windows\SYSWOW64\user.exe
2014-11-10 11:18:52 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2014-11-10 11:18:52 ----A---- C:\Windows\system32\msvcrt.dll
2014-11-10 11:18:47 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-11-10 11:18:47 ----A---- C:\Windows\system32\certutil.exe
2014-11-10 11:18:46 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-11-10 11:18:46 ----A---- C:\Windows\system32\certenc.dll
2014-11-10 11:18:30 ----A---- C:\Windows\system32\cscript.exe
2014-11-10 11:18:29 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-11-10 11:18:29 ----A---- C:\Windows\system32\wscript.exe
2014-11-10 11:18:29 ----A---- C:\Windows\system32\scrrun.dll
2014-11-10 11:18:28 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-11-10 11:18:28 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-11-10 11:18:10 ----A---- C:\Windows\system32\sspicli.dll
2014-11-10 11:18:10 ----A---- C:\Windows\system32\lsass.exe
2014-11-10 11:18:10 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-11-10 11:18:10 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-11-10 11:18:10 ----A---- C:\Windows\system32\drivers\cng.sys
2014-11-10 11:18:09 ----A---- C:\Windows\system32\sspisrv.dll
2014-11-10 11:18:09 ----A---- C:\Windows\system32\secur32.dll
2014-11-10 11:17:59 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-11-10 11:17:59 ----A---- C:\Windows\system32\packager.dll
2014-11-10 11:17:58 ----A---- C:\Windows\system32\localspl.dll
2014-11-10 11:17:51 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-11-10 11:17:51 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2014-11-10 11:17:51 ----A---- C:\Windows\system32\oleacc.dll
2014-11-10 11:17:50 ----A---- C:\Windows\system32\oleaut32.dll
2014-11-10 11:17:47 ----A---- C:\Windows\system32\gdi32.dll
2014-11-10 11:17:46 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-11-10 11:17:43 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2014-11-10 11:17:43 ----A---- C:\Windows\system32\EncDec.dll
2014-11-10 11:17:38 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2014-11-10 11:17:37 ----A---- C:\Windows\system32\cdosys.dll
2014-11-10 11:17:32 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-11-10 11:17:31 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-11-10 11:17:31 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-11-10 11:17:31 ----A---- C:\Windows\system32\nshwfp.dll
2014-11-10 11:17:31 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-11-10 11:17:30 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-11-10 11:17:30 ----A---- C:\Windows\system32\rpcrt4.dll
2014-11-09 19:15:47 ----D---- C:\Users\Adam\AppData\Roaming\Mozilla
2014-11-09 19:15:39 ----D---- C:\ProgramData\Mozilla
2014-11-09 19:15:38 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-09 19:15:35 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-11-09 19:08:17 ----D---- C:\Users\Adam\AppData\Roaming\vlc
2014-11-09 19:07:24 ----D---- C:\Program Files (x86)\VideoLAN
2014-11-09 19:07:22 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-11-09 19:07:22 ----A---- C:\Windows\system32\rdpcore.dll
2014-11-09 19:07:22 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2014-11-09 19:05:36 ----D---- C:\Users\Adam\AppData\Roaming\Adobe
2014-11-09 19:03:16 ----D---- C:\Users\Adam\AppData\Roaming\ATI
2014-11-09 19:02:14 ----D---- C:\Users\Adam\AppData\Roaming\Synaptics
2014-11-09 19:01:41 ----D---- C:\Users\Adam\AppData\Roaming\Identities
2014-11-09 19:01:08 ----D---- C:\Users\Adam\AppData\Roaming\hpqlog
2014-11-09 18:59:15 ----D---- C:\Users\Adam\AppData\Roaming\Hewlett-Packard
2014-11-09 17:52:26 ----SHD---- C:\System Volume Information
2014-11-09 17:52:26 ----ASH---- C:\pagefile.sys
2014-11-09 17:52:17 ----ASH---- C:\hiberfil.sys
2014-11-09 16:57:42 ----D---- C:\ProgramData\WinZip
2014-11-09 16:57:41 ----D---- C:\Program Files (x86)\WinZip
2014-11-09 16:57:14 ----A---- C:\Windows\system32\wups2.dll
2014-11-09 16:57:14 ----A---- C:\Windows\system32\wuauclt.exe
2014-11-09 16:57:13 ----A---- C:\Windows\system32\wucltux.dll
2014-11-09 16:57:13 ----A---- C:\Windows\system32\wuaueng.dll
2014-11-09 16:57:07 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-11-09 16:57:07 ----A---- C:\Windows\system32\wups.dll
2014-11-09 16:57:07 ----A---- C:\Windows\system32\wudriver.dll
2014-11-09 16:57:07 ----A---- C:\Windows\system32\wuapi.dll
2014-11-09 16:57:06 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-11-09 16:57:06 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-11-09 16:56:58 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-11-09 16:56:58 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-11-09 16:56:58 ----A---- C:\Windows\system32\wuwebv.dll
2014-11-09 16:56:58 ----A---- C:\Windows\system32\wuapp.exe
2014-11-09 16:56:51 ----SD---- C:\Users\Adam\AppData\Roaming\Microsoft
2014-11-09 16:56:51 ----D---- C:\Users\Adam\AppData\Roaming\Media Center Programs
2014-11-09 16:56:32 ----SHD---- C:\ProgramData\Šablony
2014-11-09 16:56:32 ----SHD---- C:\ProgramData\Plocha
2014-11-09 16:56:32 ----SHD---- C:\ProgramData\Oblíbené položky
2014-11-09 16:56:32 ----SHD---- C:\ProgramData\Nabídka Start
2014-11-09 16:56:32 ----SHD---- C:\ProgramData\Dokumenty
2014-11-09 16:56:32 ----SHD---- C:\ProgramData\Data aplikací
2014-11-09 16:53:58 ----D---- C:\Windows\Minidump

======List of files/folders modified in the last 1 month======

2014-11-11 18:41:08 ----RD---- C:\Program Files
2014-11-11 18:36:42 ----D---- C:\Windows\System32
2014-11-11 18:36:42 ----D---- C:\Windows\inf
2014-11-11 18:36:42 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-11-11 18:25:21 ----D---- C:\Windows\Temp
2014-11-11 17:52:36 ----D---- C:\Windows\Microsoft.NET
2014-11-11 17:52:29 ----RSD---- C:\Windows\assembly
2014-11-11 17:22:10 ----D---- C:\Windows\system32\config
2014-11-11 17:11:47 ----D---- C:\Windows\system32\catroot2
2014-11-11 17:11:47 ----D---- C:\Windows\system32\catroot
2014-11-11 17:11:20 ----D---- C:\Windows\winsxs
2014-11-11 16:59:20 ----D---- C:\ProgramData\PDFC
2014-11-11 16:58:37 ----D---- C:\Windows
2014-11-11 16:51:45 ----D---- C:\Windows\SysWOW64
2014-11-11 16:47:19 ----D---- C:\Windows\system32\Tasks
2014-11-11 16:43:26 ----D---- C:\Windows\system32\drivers
2014-11-11 16:38:28 ----D---- C:\Windows\ehome
2014-11-11 16:38:27 ----D---- C:\Program Files\Common Files\System
2014-11-11 16:38:26 ----D---- C:\Windows\SYSWOW64\sk-SK
2014-11-11 16:38:26 ----D---- C:\Windows\system32\sk-SK
2014-11-11 16:38:26 ----D---- C:\Windows\PolicyDefinitions
2014-11-11 16:38:26 ----D---- C:\Program Files\Internet Explorer
2014-11-11 16:38:26 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-11 16:38:25 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-11-11 16:38:25 ----D---- C:\Windows\system32\cs-CZ
2014-11-11 16:38:22 ----D---- C:\Windows\SYSWOW64\migration
2014-11-11 16:38:21 ----D---- C:\Windows\SYSWOW64\en-US
2014-11-11 16:38:18 ----D---- C:\Windows\system32\migration
2014-11-11 16:38:17 ----D---- C:\Windows\system32\en-US
2014-11-11 16:38:12 ----RSD---- C:\Windows\Fonts
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\it-IT
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-11-11 16:38:12 ----D---- C:\Windows\SYSWOW64\el-GR
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\es-ES
2014-11-11 16:38:11 ----D---- C:\Windows\SYSWOW64\de-DE
2014-11-11 16:38:10 ----D---- C:\Windows\SYSWOW64\da-DK
2014-11-11 16:38:10 ----D---- C:\Windows\system32\pt-PT
2014-11-11 16:38:10 ----D---- C:\Windows\system32\pt-BR
2014-11-11 16:38:10 ----D---- C:\Windows\system32\it-IT
2014-11-11 16:38:09 ----D---- C:\Windows\system32\zh-TW
2014-11-11 16:38:09 ----D---- C:\Windows\system32\zh-HK
2014-11-11 16:38:09 ----D---- C:\Windows\system32\tr-TR
2014-11-11 16:38:09 ----D---- C:\Windows\system32\sv-SE
2014-11-11 16:38:09 ----D---- C:\Windows\system32\pl-PL
2014-11-11 16:38:09 ----D---- C:\Windows\system32\nl-NL
2014-11-11 16:38:09 ----D---- C:\Windows\system32\ko-KR
2014-11-11 16:38:09 ----D---- C:\Windows\system32\hu-HU
2014-11-11 16:38:09 ----D---- C:\Windows\system32\fr-FR
2014-11-11 16:38:09 ----D---- C:\Windows\system32\fi-FI
2014-11-11 16:38:09 ----D---- C:\Windows\system32\es-ES
2014-11-11 16:38:09 ----D---- C:\Windows\system32\el-GR
2014-11-11 16:38:09 ----D---- C:\Windows\system32\de-DE
2014-11-11 16:38:08 ----D---- C:\Windows\system32\zh-CN
2014-11-11 16:38:08 ----D---- C:\Windows\system32\ru-RU
2014-11-11 16:38:08 ----D---- C:\Windows\system32\nb-NO
2014-11-11 16:38:08 ----D---- C:\Windows\system32\ja-JP
2014-11-11 16:38:08 ----D---- C:\Windows\system32\da-DK
2014-11-11 16:37:35 ----D---- C:\Program Files\Windows Defender
2014-11-11 16:37:35 ----D---- C:\Program Files (x86)\Windows Defender
2014-11-11 16:37:32 ----D---- C:\Windows\system32\wbem
2014-11-11 16:37:12 ----D---- C:\Windows\AppPatch
2014-11-11 16:36:52 ----D---- C:\Windows\system32\DriverStore
2014-11-11 16:35:42 ----D---- C:\Windows\system32\drivers\NISx64
2014-11-10 23:47:13 ----D---- C:\Windows\Logs
2014-11-10 20:47:39 ----D---- C:\Windows\system32\wdi
2014-11-10 20:47:38 ----D---- C:\Windows\Prefetch
2014-11-10 16:11:21 ----D---- C:\Program Files (x86)\Common Files
2014-11-10 12:23:20 ----HD---- C:\ProgramData
2014-11-10 12:23:13 ----RD---- C:\Program Files (x86)
2014-11-10 12:23:09 ----D---- C:\Windows\Tasks
2014-11-10 11:18:58 ----D---- C:\Program Files\Symantec
2014-11-10 10:49:18 ----SD---- C:\ProgramData\Microsoft
2014-11-09 19:07:59 ----D---- C:\Windows\SoftwareDistribution
2014-11-09 19:04:37 ----D---- C:\Windows\system32\drivers\UMDF
2014-11-09 19:02:26 ----D---- C:\ProgramData\Atheros
2014-11-09 19:01:36 ----SHD---- C:\$Recycle.Bin
2014-11-09 19:01:15 ----D---- C:\SWSetup
2014-11-09 19:01:15 ----D---- C:\ProgramData\Norton
2014-11-09 18:59:11 ----RD---- C:\Program Files (x86)\Online Services
2014-11-09 18:59:04 ----D---- C:\Program Files\Windows Sidebar
2014-11-09 18:59:04 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-11-09 16:58:07 ----D---- C:\Windows\system32\restore
2014-11-09 16:58:06 ----HD---- C:\SYSTEM.SAV
2014-11-09 16:58:00 ----SHD---- C:\Recovery
2014-11-09 16:58:00 ----D---- C:\Windows\system32\Recovery
2014-11-09 16:57:47 ----SHD---- C:\Windows\Installer
2014-11-09 16:56:46 ----RD---- C:\Users
2014-11-09 16:56:32 ----D---- C:\Program Files\Windows NT
2014-11-09 16:56:06 ----D---- C:\Windows\rescache
2014-11-09 16:54:45 ----D---- C:\Windows\Panther

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2010-11-12 77952]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2010-11-12 37504]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie64.sys [2010-06-17 16440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1206000.01D\SYMDS64.SYS [2011-01-27 450680]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1206000.01D\SYMEFA64.SYS [2011-03-15 912504]
R1 BHDrvx64;BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\BASHDefs\20141107.001\BHDrvx64.sys [2014-10-30 1587416]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2014-11-10 487216]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\IPSDefs\20141107.001\IDSvia64.sys [2014-11-07 633560]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1206000.01D\SRTSPX64.SYS [2011-03-31 40568]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1206000.01D\Ironx64.SYS [2011-01-27 171128]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\NISx64\1206000.01D\SYMNETS.SYS [2011-03-22 382584]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-03-04 8283136]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-03-04 295424]
R3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2011-04-13 36000]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-02-22 2736640]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2011-04-13 298656]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2011-04-13 29344]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2011-04-13 201376]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2011-04-13 55456]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2011-04-13 154272]
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2011-04-13 281760]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2010-11-21 80384]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2011-02-09 31088]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2014-11-10 142640]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-01-12 2709224]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\VirusDefs\20141110.032\ENG64.SYS [2014-11-10 129752]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\VirusDefs\20141110.032\EX64.SYS [2014-11-10 2137304]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2011-02-15 335464]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-03-05 436840]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\NISx64\1206000.01D\SRTSP64.SYS [2011-03-31 744568]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2014-11-10 174200]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-12-21 1402416]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-29 44672]
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2009-06-10 1311232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2010-11-21 552448]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-03-04 203776]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-03-04 354304]
R2 AMD Reservation Manager;AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [2010-06-17 194496]
R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-04-13 146592]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-04-13 77984]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2010-12-01 126520]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-07-21 103992]
R2 HPAuto;HP Auto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [2011-02-16 682040]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-02-04 92216]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-11-09 26680]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2010-12-28 1817088]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe [2011-04-17 130008]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-02-01 1127448]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-02-25 249648]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-02-04 797240]
S2 XobniService;XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [2011-02-25 62184]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-10 267440]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-10 111616]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe [2012-09-05 234776]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-06 114288]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-11-10 1255736]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119548
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: žádám o kontrolu logu RSIT.

#2 Příspěvek od Rudy »

Zdravím!
Zkusíme nejprve vyčistit. Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Nesta
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 11 lis 2014 17:27

Re: žádám o kontrolu logu RSIT.

#3 Příspěvek od Nesta »

Po té co program restartuje pc tak při nabihani systému naskočí modrá obrazovka a po ní výběr obnova systému a nebo spustit normálně... Normálně nefunguje a obnova mi taky zrovna nepomůže.. . Takže log neudělám :-(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119548
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: žádám o kontrolu logu RSIT.

#4 Příspěvek od Rudy »

To vypadá na chybu hw. Otevřte adresář c:\windows\minidump, jeho obsah zabalte do raru a přiložte k vašemu příštímu postu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Nesta
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 11 lis 2014 17:27

Re: žádám o kontrolu logu RSIT.

#5 Příspěvek od Nesta »

zasílám požadovaný soubor...
předem děkuji za odpověď.
Přílohy
111214-27612-01.rar
(19.27 KiB) Staženo 31 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119548
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: žádám o kontrolu logu RSIT.

#6 Příspěvek od Rudy »

Padlo to na ovladač graf. karty. Zkuste ho přeinstalovat. Může ale také jít o chybu karty samotné.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět