
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
smschvost.exe vytěžuje CPU na 25%
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
smschvost.exe vytěžuje CPU na 25%
Zdravim, proces smschvost.exe my vytěžuje CPU na 25%..Prosim vas co je to za proces popřípadě nemůže to být nějaký vir? PC po restartu vše v klidu nic neběží ale CPU hned skočí 25% a zatěžuje to puze tento proces děkuji předem
Re: smschvost.exe vytěžuje CPU na 25%
Zdravim
Pravdepodobne se jedna o skodnou.. dejte na uvod log z RSIT, at s ni muzeme zatocit
http://forum.viry.cz/viewtopic.php?f=13&t=130786



Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: smschvost.exe vytěžuje CPU na 25%
Logfile of random's system information tool 1.10 (written by random/random)
Run by Karliczek at 2014-11-15 08:31:20
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 51 GB (42%) free of 122 GB
Total RAM: 8173 MB (74% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:31:23, on 15.11.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17420)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Karliczek.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark - C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: GamingApp_Service - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSI_LiveUpdate_Service - Micro-Star International - C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WUAUCLT - Unknown owner - C:\Users\Karliczek\AppData\Roaming\nssm.exe
--
End of file - 8727 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\Users\Karliczek\AppData\Roaming\nssm.exe
\??\C:\Windows\system32\conhost.exe "-1007933515686020715801037105-726158575-2098236181930525555865638723356469148
"C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe" -a X11 -o stratum+tcp://x11.ltcrabbit.com:3332 -u Jimbo.worker -p 0 -t 2
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Program Files (x86)\Steam\config\htmlcache" -cookiepath "C:\Program Files (x86)\Steam\config\cookies" -steampid 1156 --blacklist-accelerated-compositing --process-per-tab --disable-accelerated-video-decode --enable-direct-write
WLIDSvcM.exe 2688
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {6AF4938D-77B6-48A9-A3C4-273BA403E883}
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Karliczek\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Karliczek\AppData\Roaming\Mozilla\Firefox\Profiles\n3aor69t.default-1410868349812
prefs.js - "browser.startup.homepage" - "www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.71.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-01 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-10-20 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-01 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-10-20 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-10-26 13213840]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-10-29 1234064]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2014-11-12 1940160]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Live Update]
C:\Program Files (x86)\MSI\Live Update\Live Update.exe [2014-10-24 3484624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^GIGABYTE OC_GURU.lnk]
C:\PROGRA~2\GIGABYTE\GIGABY~1\OC_GURU.exe [2014-05-16 23322624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Karliczek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat výstrahy inkoustu - HP Deskjet 1050 J410 series.lnk]
C:\Windows\system32\RunDll32.exe [2009-07-14 45568]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-01 4085896]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2012-08-31 508656]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.FPS1"=frapsv64.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"VIDC.RTV1"=rtvcvfw64.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-11-15 08:26:07 ----D---- C:\rsit
2014-11-15 08:26:07 ----D---- C:\Program Files\trend micro
2014-11-15 01:11:34 ----AD---- C:\Windows\rundll16.exe
2014-11-15 01:11:34 ----AD---- C:\Windows\logo1_.exe
2014-11-15 01:10:29 ----A---- C:\Windows\ntbtlog.txt
2014-11-15 00:59:32 ----AD---- C:\Windows\VDLL.DLL
2014-11-15 00:59:32 ----AD---- C:\Windows\SYSWOW64\runouce.exe
2014-11-15 00:59:32 ----AD---- C:\Windows\RUNDL132.EXE
2014-11-15 00:59:32 ----AD---- C:\Windows\logo_1.exe
2014-11-15 00:56:47 ----A---- C:\Windows\SYSWOW64\msvcr80.dll
2014-11-15 00:56:46 ----A---- C:\Windows\SYSWOW64\msvcp80.dll
2014-11-15 00:56:45 ----A---- C:\Windows\SYSWOW64\eEmpty.exe
2014-11-15 00:56:41 ----D---- C:\ProgramData\MicroWorld
2014-11-14 22:47:47 ----D---- C:\Ubisoft
2014-11-14 10:52:19 ----D---- C:\ProgramData\KONAMI
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\nssm.exe
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\nircmd.exe
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll
2014-11-12 19:28:03 ----A---- C:\Windows\system32\generaltel.dll
2014-11-12 19:28:03 ----A---- C:\Windows\system32\aepdu.dll
2014-11-12 19:28:03 ----A---- C:\Windows\system32\aeinv.dll
2014-11-12 19:28:02 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2014-11-12 19:28:02 ----A---- C:\Windows\system32\termsrv.dll
2014-11-12 19:28:02 ----A---- C:\Windows\system32\lsasrv.dll
2014-11-12 19:28:02 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-11-12 19:28:02 ----A---- C:\Windows\system32\adtschema.dll
2014-11-12 19:28:01 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-11-12 19:28:01 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-11-12 19:28:01 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2014-11-12 19:28:01 ----A---- C:\Windows\system32\msaudite.dll
2014-11-12 19:28:00 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-11-12 19:28:00 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-11-12 19:27:59 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 19:27:59 ----A---- C:\Windows\system32\iernonce.dll
2014-11-12 19:27:59 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-11-12 19:27:59 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-11-12 19:27:59 ----A---- C:\Windows\system32\ie4uinit.exe
2014-11-12 19:27:58 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-11-12 19:27:58 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-11-12 19:27:58 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-11-12 19:27:58 ----A---- C:\Windows\system32\urlmon.dll
2014-11-12 19:27:58 ----A---- C:\Windows\system32\iedkcs32.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-11-12 19:27:57 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 19:27:57 ----A---- C:\Windows\system32\msfeeds.dll
2014-11-12 19:27:57 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 19:27:57 ----A---- C:\Windows\system32\dxtrans.dll
2014-11-12 19:27:56 ----A---- C:\Windows\system32\iesetup.dll
2014-11-12 19:27:56 ----A---- C:\Windows\system32\iertutil.dll
2014-11-12 19:27:56 ----A---- C:\Windows\system32\ieapfltr.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-11-12 19:27:55 ----A---- C:\Windows\system32\jsproxy.dll
2014-11-12 19:27:55 ----A---- C:\Windows\system32\ieUnatt.exe
2014-11-12 19:27:54 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\mshtmled.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\jscript9diag.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\ieui.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\ieframe.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\dxtmsft.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\wininet.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\vbscript.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\msrating.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\jscript9.dll
2014-11-12 19:27:52 ----A---- C:\Windows\system32\mshtml.dll
2014-11-12 19:27:17 ----A---- C:\Windows\system32\msxml3.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\msxml3r.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\IMJP10K.DLL
2014-11-12 19:27:16 ----A---- C:\Windows\system32\EncDump.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\audiosrv.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\AudioSes.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\AudioEng.dll
2014-11-12 19:27:15 ----A---- C:\Windows\system32\schannel.dll
2014-11-12 19:27:15 ----A---- C:\Windows\system32\ncrypt.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\wdigest.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\TSpkg.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\msv1_0.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\kerberos.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\credssp.dll
2014-11-12 19:27:10 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-11-12 19:27:10 ----A---- C:\Windows\system32\win32k.sys
2014-11-12 19:27:10 ----A---- C:\Windows\system32\packager.dll
2014-11-12 19:27:09 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-11-12 19:27:09 ----A---- C:\Windows\system32\msi.dll
2014-11-12 19:27:08 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-11-12 19:27:08 ----A---- C:\Windows\system32\oleaut32.dll
2014-11-10 20:13:02 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-11-08 16:14:47 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2014-11-07 13:21:12 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvopencl.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvoglv64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvoglshim64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvinitx.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\NvIFR64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\NvFBC64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvdispgenco6434460.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvdispco6434460.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvcuvid.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvcuda.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvcompiler.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-11-02 21:08:19 ----DC---- C:\Windows\system32\DRVSTORE
2014-11-02 21:08:19 ----A---- C:\Windows\system32\drivers\usbfilter.sys
2014-11-02 21:08:17 ----D---- C:\Program Files\ATI
2014-11-02 21:07:07 ----D---- C:\Program Files\ATI Technologies
2014-11-02 21:04:43 ----D---- C:\Program Files (x86)\ATI Technologies
2014-11-02 20:26:06 ----D---- C:\MSI
2014-11-02 20:24:57 ----A---- C:\Windows\acpimof.dll
2014-10-31 22:12:13 ----D---- C:\Users\Karliczek\AppData\Roaming\NVIDIA
2014-10-31 14:31:22 ----D---- C:\Program Files (x86)\RivaTuner Statistics Server
2014-10-31 14:31:02 ----D---- C:\Program Files (x86)\MSI Afterburner
2014-10-31 14:27:34 ----D---- C:\ProgramData\NVIDIA
2014-10-31 14:27:08 ----D---- C:\Program Files (x86)\Intel
2014-10-31 14:27:08 ----D---- C:\Intel
2014-10-31 14:27:06 ----D---- C:\Program Files (x86)\MSI
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvvsvc.exe
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvsvcr.dll
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvsvc64.dll
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvshext.dll
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvmctray.dll
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvcpl.dll
2014-10-31 14:26:29 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-10-31 14:26:29 ----A---- C:\Windows\system32\OpenCL.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvwgf2umx.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvumdshimx.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvhdap64.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvdispgenco6434448.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvdispco6434448.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2014-10-31 14:25:45 ----A---- C:\Windows\system32\nvapi64.dll
2014-10-31 14:18:49 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2014-10-31 14:18:49 ----A---- C:\Windows\system32\nvaudcap64v.dll
2014-10-31 14:18:49 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2014-10-31 14:18:34 ----D---- C:\temp
2014-10-20 07:51:23 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-10-20 07:51:19 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-10-20 07:51:19 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-10-20 07:51:19 ----A---- C:\Windows\SYSWOW64\java.exe
2014-10-20 07:51:15 ----D---- C:\Program Files (x86)\Java
2014-10-19 16:13:27 ----D---- C:\Program Files (x86)\GeminiRue
2014-10-17 10:39:34 ----A---- C:\Windows\SYSWOW64\mscories.dll
2014-10-17 10:39:34 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2014-10-17 10:39:34 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-10-17 10:39:34 ----A---- C:\Windows\system32\mscories.dll
2014-10-17 10:39:34 ----A---- C:\Windows\system32\mscorier.dll
2014-10-17 10:39:34 ----A---- C:\Windows\system32\dfshim.dll
2014-10-17 10:39:14 ----A---- C:\Windows\system32\rdpcorets.dll
2014-10-17 10:39:11 ----A---- C:\Windows\SYSWOW64\rastls.dll
2014-10-17 10:39:11 ----A---- C:\Windows\system32\rastls.dll
2014-10-17 10:39:09 ----A---- C:\Windows\SYSWOW64\winsta.dll
2014-10-17 10:39:09 ----A---- C:\Windows\system32\winsta.dll
2014-10-17 10:39:09 ----A---- C:\Windows\system32\winlogon.exe
2014-10-17 10:39:09 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-10-17 10:39:09 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-10-17 10:39:09 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-10-17 10:39:06 ----A---- C:\Windows\system32\mstscax.dll
2014-10-17 10:39:05 ----A---- C:\Windows\SYSWOW64\mstscax.dll
======List of files/folders modified in the last 1 month======
2014-11-15 08:31:22 ----D---- C:\Windows\Temp
2014-11-15 08:26:07 ----D---- C:\Program Files
2014-11-15 08:21:55 ----D---- C:\Windows\System32
2014-11-15 08:21:55 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-11-15 08:21:54 ----D---- C:\Windows\inf
2014-11-15 08:14:59 ----D---- C:\Program Files (x86)\Steam
2014-11-15 01:28:52 ----D---- C:\Windows\system32\config
2014-11-15 01:11:38 ----D---- C:\Windows
2014-11-15 00:59:32 ----D---- C:\Windows\SysWOW64
2014-11-15 00:56:42 ----D---- C:\Program Files (x86)\Common Files
2014-11-15 00:56:41 ----HD---- C:\ProgramData
2014-11-15 00:43:37 ----D---- C:\Users\Karliczek\AppData\Roaming\DAEMON Tools Lite
2014-11-15 00:43:22 ----D---- C:\Windows\Logs
2014-11-15 00:43:22 ----D---- C:\Windows\debug
2014-11-15 00:14:28 ----D---- C:\ProgramData\Origin
2014-11-15 00:07:22 ----D---- C:\Users\Karliczek\AppData\Roaming\vlc
2014-11-15 00:06:58 ----D---- C:\Users\Karliczek\AppData\Roaming\uTorrent
2014-11-14 22:44:33 ----D---- C:\Program Files (x86)\Origin
2014-11-14 10:43:58 ----D---- C:\Windows\system32\Tasks
2014-11-14 10:35:13 ----D---- C:\Windows\rescache
2014-11-13 22:23:10 ----SHD---- C:\Windows\Installer
2014-11-13 22:22:36 ----RSD---- C:\Windows\assembly
2014-11-13 22:22:20 ----SHD---- C:\System Volume Information
2014-11-13 20:06:12 ----D---- C:\Windows\Microsoft.NET
2014-11-13 14:46:21 ----D---- C:\Windows\winsxs
2014-11-13 14:45:23 ----SD---- C:\Windows\system32\CompatTel
2014-11-13 14:45:22 ----D---- C:\Windows\SYSWOW64\en-US
2014-11-13 14:45:22 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-11-13 14:45:22 ----D---- C:\Windows\system32\en-US
2014-11-13 14:45:22 ----D---- C:\Windows\system32\drivers
2014-11-13 14:45:22 ----D---- C:\Windows\system32\cs-CZ
2014-11-13 14:45:22 ----D---- C:\Program Files\Internet Explorer
2014-11-13 14:45:22 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-12 21:56:21 ----D---- C:\Windows\system32\MRT
2014-11-12 21:55:13 ----A---- C:\Windows\system32\MRT.exe
2014-11-12 21:10:23 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-11-12 19:27:03 ----D---- C:\Windows\system32\catroot2
2014-11-12 19:27:03 ----D---- C:\Windows\system32\catroot
2014-11-11 10:54:40 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-10 21:03:29 ----RD---- C:\Program Files (x86)
2014-11-09 16:28:37 ----A---- C:\Windows\GPU-Z.INI
2014-11-08 16:14:34 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-11-08 16:14:26 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-11-08 15:54:06 ----D---- C:\Users\Karliczek\AppData\Roaming\Skype
2014-11-07 13:21:16 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-11-07 13:21:10 ----D---- C:\Windows\system32\DriverStore
2014-11-02 21:10:18 ----HD---- C:\Program Files (x86)\Temp
2014-10-31 20:40:48 ----D---- C:\Windows\SYSWOW64\directx
2014-10-31 14:26:38 ----D---- C:\Windows\Help
2014-10-31 14:26:38 ----D---- C:\Program Files\NVIDIA Corporation
2014-10-31 14:26:27 ----D---- C:\ProgramData\NVIDIA Corporation
2014-10-28 06:34:58 ----N---- C:\Windows\system32\MpSigStub.exe
2014-10-23 16:02:13 ----D---- C:\ProgramData\Codemasters
2014-10-20 07:53:45 ----D---- C:\ProgramData\Oracle
2014-10-19 15:52:30 ----D---- C:\ProgramData\Skype
2014-10-18 20:55:28 ----D---- C:\Program Files (x86)\Ubisoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-08-01 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-08-01 224896]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2011-11-02 21616]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-08-01 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-08-01 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-08-01 427360]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-01-28 283064]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-08-01 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-08-01 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-08-01 92008]
R3 EtronHub3;Etron USB 3.0 Extensible Hub Driver; C:\Windows\System32\Drivers\EtronHub3.sys [2011-07-29 56960]
R3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver; C:\Windows\System32\Drivers\EtronXHCI.sys [2011-07-29 79104]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-10-30 4201104]
R3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [2010-10-22 14136]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2014-10-16 197408]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-29 44672]
R3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\Windows\system32\DRIVERS\xusb21.sys [2009-08-13 73984]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 rzjstk;Razer Virtual Joystick Driver; C:\Windows\system32\DRIVERS\rzjstk.sys [2014-05-19 27816]
S3 rzkeypadendpt;Razer Keypad Endpoint; C:\Windows\system32\DRIVERS\rzkeypadendpt.sys [2014-05-19 32936]
S3 rzudd;Razer Mouse Driver; C:\Windows\system32\DRIVERS\rzudd.sys [2014-05-19 155816]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
S3 xnacc;Služba ovladače pro řadič XBOX 360 pro systém Windows; C:\Windows\system32\DRIVERS\xnacc.sys [2009-07-14 679936]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-01 50344]
R2 GamingApp_Service;GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [2014-03-13 20512]
R2 MSI_LiveUpdate_Service;MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2014-10-24 1730000]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-10-30 935232]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-11-08 76888]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-10-30 411968]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R2 WUAUCLT;WUAUCLT; C:\Users\Karliczek\AppData\Roaming\nssm.exe [2014-06-29 294912]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-12 833728]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12 267440]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [2014-09-02 614624]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-10 114288]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2014-11-05 1900400]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-12-30 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
děkuji za ochotu
Run by Karliczek at 2014-11-15 08:31:20
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 51 GB (42%) free of 122 GB
Total RAM: 8173 MB (74% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:31:23, on 15.11.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17420)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Karliczek.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark - C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: GamingApp_Service - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSI_LiveUpdate_Service - Micro-Star International - C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WUAUCLT - Unknown owner - C:\Users\Karliczek\AppData\Roaming\nssm.exe
--
End of file - 8727 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\Users\Karliczek\AppData\Roaming\nssm.exe
\??\C:\Windows\system32\conhost.exe "-1007933515686020715801037105-726158575-2098236181930525555865638723356469148
"C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe" -a X11 -o stratum+tcp://x11.ltcrabbit.com:3332 -u Jimbo.worker -p 0 -t 2
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Program Files (x86)\Steam\config\htmlcache" -cookiepath "C:\Program Files (x86)\Steam\config\cookies" -steampid 1156 --blacklist-accelerated-compositing --process-per-tab --disable-accelerated-video-decode --enable-direct-write
WLIDSvcM.exe 2688
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {6AF4938D-77B6-48A9-A3C4-273BA403E883}
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Karliczek\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Karliczek\AppData\Roaming\Mozilla\Firefox\Profiles\n3aor69t.default-1410868349812
prefs.js - "browser.startup.homepage" - "www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.71.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-01 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-10-20 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-01 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-10-20 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-10-26 13213840]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-10-29 1234064]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2014-11-12 1940160]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Live Update]
C:\Program Files (x86)\MSI\Live Update\Live Update.exe [2014-10-24 3484624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^GIGABYTE OC_GURU.lnk]
C:\PROGRA~2\GIGABYTE\GIGABY~1\OC_GURU.exe [2014-05-16 23322624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Karliczek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat výstrahy inkoustu - HP Deskjet 1050 J410 series.lnk]
C:\Windows\system32\RunDll32.exe [2009-07-14 45568]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-01 4085896]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2012-08-31 508656]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.FPS1"=frapsv64.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"VIDC.RTV1"=rtvcvfw64.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-11-15 08:26:07 ----D---- C:\rsit
2014-11-15 08:26:07 ----D---- C:\Program Files\trend micro
2014-11-15 01:11:34 ----AD---- C:\Windows\rundll16.exe
2014-11-15 01:11:34 ----AD---- C:\Windows\logo1_.exe
2014-11-15 01:10:29 ----A---- C:\Windows\ntbtlog.txt
2014-11-15 00:59:32 ----AD---- C:\Windows\VDLL.DLL
2014-11-15 00:59:32 ----AD---- C:\Windows\SYSWOW64\runouce.exe
2014-11-15 00:59:32 ----AD---- C:\Windows\RUNDL132.EXE
2014-11-15 00:59:32 ----AD---- C:\Windows\logo_1.exe
2014-11-15 00:56:47 ----A---- C:\Windows\SYSWOW64\msvcr80.dll
2014-11-15 00:56:46 ----A---- C:\Windows\SYSWOW64\msvcp80.dll
2014-11-15 00:56:45 ----A---- C:\Windows\SYSWOW64\eEmpty.exe
2014-11-15 00:56:41 ----D---- C:\ProgramData\MicroWorld
2014-11-14 22:47:47 ----D---- C:\Ubisoft
2014-11-14 10:52:19 ----D---- C:\ProgramData\KONAMI
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\nssm.exe
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\nircmd.exe
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll
2014-11-14 10:43:59 ----SH---- C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll
2014-11-12 19:28:03 ----A---- C:\Windows\system32\generaltel.dll
2014-11-12 19:28:03 ----A---- C:\Windows\system32\aepdu.dll
2014-11-12 19:28:03 ----A---- C:\Windows\system32\aeinv.dll
2014-11-12 19:28:02 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2014-11-12 19:28:02 ----A---- C:\Windows\system32\termsrv.dll
2014-11-12 19:28:02 ----A---- C:\Windows\system32\lsasrv.dll
2014-11-12 19:28:02 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-11-12 19:28:02 ----A---- C:\Windows\system32\adtschema.dll
2014-11-12 19:28:01 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-11-12 19:28:01 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-11-12 19:28:01 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2014-11-12 19:28:01 ----A---- C:\Windows\system32\msaudite.dll
2014-11-12 19:28:00 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-11-12 19:28:00 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-11-12 19:27:59 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-11-12 19:27:59 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 19:27:59 ----A---- C:\Windows\system32\iernonce.dll
2014-11-12 19:27:59 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-11-12 19:27:59 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-11-12 19:27:59 ----A---- C:\Windows\system32\ie4uinit.exe
2014-11-12 19:27:58 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-11-12 19:27:58 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-11-12 19:27:58 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-11-12 19:27:58 ----A---- C:\Windows\system32\urlmon.dll
2014-11-12 19:27:58 ----A---- C:\Windows\system32\iedkcs32.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-11-12 19:27:57 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-11-12 19:27:57 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 19:27:57 ----A---- C:\Windows\system32\msfeeds.dll
2014-11-12 19:27:57 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 19:27:57 ----A---- C:\Windows\system32\dxtrans.dll
2014-11-12 19:27:56 ----A---- C:\Windows\system32\iesetup.dll
2014-11-12 19:27:56 ----A---- C:\Windows\system32\iertutil.dll
2014-11-12 19:27:56 ----A---- C:\Windows\system32\ieapfltr.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-11-12 19:27:55 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-11-12 19:27:55 ----A---- C:\Windows\system32\jsproxy.dll
2014-11-12 19:27:55 ----A---- C:\Windows\system32\ieUnatt.exe
2014-11-12 19:27:54 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\mshtmled.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\jscript9diag.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\ieui.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\ieframe.dll
2014-11-12 19:27:54 ----A---- C:\Windows\system32\dxtmsft.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\wininet.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\vbscript.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\msrating.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-11-12 19:27:53 ----A---- C:\Windows\system32\jscript9.dll
2014-11-12 19:27:52 ----A---- C:\Windows\system32\mshtml.dll
2014-11-12 19:27:17 ----A---- C:\Windows\system32\msxml3.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-11-12 19:27:16 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\msxml3r.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\IMJP10K.DLL
2014-11-12 19:27:16 ----A---- C:\Windows\system32\EncDump.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\audiosrv.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\AudioSes.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-11-12 19:27:16 ----A---- C:\Windows\system32\AudioEng.dll
2014-11-12 19:27:15 ----A---- C:\Windows\system32\schannel.dll
2014-11-12 19:27:15 ----A---- C:\Windows\system32\ncrypt.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-11-12 19:27:14 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\wdigest.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\TSpkg.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\msv1_0.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\kerberos.dll
2014-11-12 19:27:14 ----A---- C:\Windows\system32\credssp.dll
2014-11-12 19:27:10 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-11-12 19:27:10 ----A---- C:\Windows\system32\win32k.sys
2014-11-12 19:27:10 ----A---- C:\Windows\system32\packager.dll
2014-11-12 19:27:09 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-11-12 19:27:09 ----A---- C:\Windows\system32\msi.dll
2014-11-12 19:27:08 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-11-12 19:27:08 ----A---- C:\Windows\system32\oleaut32.dll
2014-11-10 20:13:02 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-11-08 16:14:47 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2014-11-07 13:21:12 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-11-07 13:19:56 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvopencl.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvoglv64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvoglshim64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvinitx.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\NvIFR64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\NvFBC64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvdispgenco6434460.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvdispco6434460.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvcuvid.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvcuda.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\nvcompiler.dll
2014-11-07 13:19:56 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-11-02 21:08:19 ----DC---- C:\Windows\system32\DRVSTORE
2014-11-02 21:08:19 ----A---- C:\Windows\system32\drivers\usbfilter.sys
2014-11-02 21:08:17 ----D---- C:\Program Files\ATI
2014-11-02 21:07:07 ----D---- C:\Program Files\ATI Technologies
2014-11-02 21:04:43 ----D---- C:\Program Files (x86)\ATI Technologies
2014-11-02 20:26:06 ----D---- C:\MSI
2014-11-02 20:24:57 ----A---- C:\Windows\acpimof.dll
2014-10-31 22:12:13 ----D---- C:\Users\Karliczek\AppData\Roaming\NVIDIA
2014-10-31 14:31:22 ----D---- C:\Program Files (x86)\RivaTuner Statistics Server
2014-10-31 14:31:02 ----D---- C:\Program Files (x86)\MSI Afterburner
2014-10-31 14:27:34 ----D---- C:\ProgramData\NVIDIA
2014-10-31 14:27:08 ----D---- C:\Program Files (x86)\Intel
2014-10-31 14:27:08 ----D---- C:\Intel
2014-10-31 14:27:06 ----D---- C:\Program Files (x86)\MSI
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvvsvc.exe
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvsvcr.dll
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvsvc64.dll
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvshext.dll
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvmctray.dll
2014-10-31 14:26:38 ----A---- C:\Windows\system32\nvcpl.dll
2014-10-31 14:26:29 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-10-31 14:26:29 ----A---- C:\Windows\system32\OpenCL.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvwgf2umx.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvumdshimx.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvhdap64.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvdispgenco6434448.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\nvdispco6434448.dll
2014-10-31 14:25:46 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2014-10-31 14:25:45 ----A---- C:\Windows\system32\nvapi64.dll
2014-10-31 14:18:49 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2014-10-31 14:18:49 ----A---- C:\Windows\system32\nvaudcap64v.dll
2014-10-31 14:18:49 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2014-10-31 14:18:34 ----D---- C:\temp
2014-10-20 07:51:23 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-10-20 07:51:19 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-10-20 07:51:19 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-10-20 07:51:19 ----A---- C:\Windows\SYSWOW64\java.exe
2014-10-20 07:51:15 ----D---- C:\Program Files (x86)\Java
2014-10-19 16:13:27 ----D---- C:\Program Files (x86)\GeminiRue
2014-10-17 10:39:34 ----A---- C:\Windows\SYSWOW64\mscories.dll
2014-10-17 10:39:34 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2014-10-17 10:39:34 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-10-17 10:39:34 ----A---- C:\Windows\system32\mscories.dll
2014-10-17 10:39:34 ----A---- C:\Windows\system32\mscorier.dll
2014-10-17 10:39:34 ----A---- C:\Windows\system32\dfshim.dll
2014-10-17 10:39:14 ----A---- C:\Windows\system32\rdpcorets.dll
2014-10-17 10:39:11 ----A---- C:\Windows\SYSWOW64\rastls.dll
2014-10-17 10:39:11 ----A---- C:\Windows\system32\rastls.dll
2014-10-17 10:39:09 ----A---- C:\Windows\SYSWOW64\winsta.dll
2014-10-17 10:39:09 ----A---- C:\Windows\system32\winsta.dll
2014-10-17 10:39:09 ----A---- C:\Windows\system32\winlogon.exe
2014-10-17 10:39:09 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-10-17 10:39:09 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-10-17 10:39:09 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-10-17 10:39:06 ----A---- C:\Windows\system32\mstscax.dll
2014-10-17 10:39:05 ----A---- C:\Windows\SYSWOW64\mstscax.dll
======List of files/folders modified in the last 1 month======
2014-11-15 08:31:22 ----D---- C:\Windows\Temp
2014-11-15 08:26:07 ----D---- C:\Program Files
2014-11-15 08:21:55 ----D---- C:\Windows\System32
2014-11-15 08:21:55 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-11-15 08:21:54 ----D---- C:\Windows\inf
2014-11-15 08:14:59 ----D---- C:\Program Files (x86)\Steam
2014-11-15 01:28:52 ----D---- C:\Windows\system32\config
2014-11-15 01:11:38 ----D---- C:\Windows
2014-11-15 00:59:32 ----D---- C:\Windows\SysWOW64
2014-11-15 00:56:42 ----D---- C:\Program Files (x86)\Common Files
2014-11-15 00:56:41 ----HD---- C:\ProgramData
2014-11-15 00:43:37 ----D---- C:\Users\Karliczek\AppData\Roaming\DAEMON Tools Lite
2014-11-15 00:43:22 ----D---- C:\Windows\Logs
2014-11-15 00:43:22 ----D---- C:\Windows\debug
2014-11-15 00:14:28 ----D---- C:\ProgramData\Origin
2014-11-15 00:07:22 ----D---- C:\Users\Karliczek\AppData\Roaming\vlc
2014-11-15 00:06:58 ----D---- C:\Users\Karliczek\AppData\Roaming\uTorrent
2014-11-14 22:44:33 ----D---- C:\Program Files (x86)\Origin
2014-11-14 10:43:58 ----D---- C:\Windows\system32\Tasks
2014-11-14 10:35:13 ----D---- C:\Windows\rescache
2014-11-13 22:23:10 ----SHD---- C:\Windows\Installer
2014-11-13 22:22:36 ----RSD---- C:\Windows\assembly
2014-11-13 22:22:20 ----SHD---- C:\System Volume Information
2014-11-13 20:06:12 ----D---- C:\Windows\Microsoft.NET
2014-11-13 14:46:21 ----D---- C:\Windows\winsxs
2014-11-13 14:45:23 ----SD---- C:\Windows\system32\CompatTel
2014-11-13 14:45:22 ----D---- C:\Windows\SYSWOW64\en-US
2014-11-13 14:45:22 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-11-13 14:45:22 ----D---- C:\Windows\system32\en-US
2014-11-13 14:45:22 ----D---- C:\Windows\system32\drivers
2014-11-13 14:45:22 ----D---- C:\Windows\system32\cs-CZ
2014-11-13 14:45:22 ----D---- C:\Program Files\Internet Explorer
2014-11-13 14:45:22 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-12 21:56:21 ----D---- C:\Windows\system32\MRT
2014-11-12 21:55:13 ----A---- C:\Windows\system32\MRT.exe
2014-11-12 21:10:23 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-11-12 19:27:03 ----D---- C:\Windows\system32\catroot2
2014-11-12 19:27:03 ----D---- C:\Windows\system32\catroot
2014-11-11 10:54:40 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-10 21:03:29 ----RD---- C:\Program Files (x86)
2014-11-09 16:28:37 ----A---- C:\Windows\GPU-Z.INI
2014-11-08 16:14:34 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-11-08 16:14:26 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-11-08 15:54:06 ----D---- C:\Users\Karliczek\AppData\Roaming\Skype
2014-11-07 13:21:16 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-11-07 13:21:10 ----D---- C:\Windows\system32\DriverStore
2014-11-02 21:10:18 ----HD---- C:\Program Files (x86)\Temp
2014-10-31 20:40:48 ----D---- C:\Windows\SYSWOW64\directx
2014-10-31 14:26:38 ----D---- C:\Windows\Help
2014-10-31 14:26:38 ----D---- C:\Program Files\NVIDIA Corporation
2014-10-31 14:26:27 ----D---- C:\ProgramData\NVIDIA Corporation
2014-10-28 06:34:58 ----N---- C:\Windows\system32\MpSigStub.exe
2014-10-23 16:02:13 ----D---- C:\ProgramData\Codemasters
2014-10-20 07:53:45 ----D---- C:\ProgramData\Oracle
2014-10-19 15:52:30 ----D---- C:\ProgramData\Skype
2014-10-18 20:55:28 ----D---- C:\Program Files (x86)\Ubisoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-08-01 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-08-01 224896]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2011-11-02 21616]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-08-01 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-08-01 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-08-01 427360]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-01-28 283064]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-08-01 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-08-01 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-08-01 92008]
R3 EtronHub3;Etron USB 3.0 Extensible Hub Driver; C:\Windows\System32\Drivers\EtronHub3.sys [2011-07-29 56960]
R3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver; C:\Windows\System32\Drivers\EtronXHCI.sys [2011-07-29 79104]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-10-30 4201104]
R3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [2010-10-22 14136]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2014-10-16 197408]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-29 44672]
R3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\Windows\system32\DRIVERS\xusb21.sys [2009-08-13 73984]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 rzjstk;Razer Virtual Joystick Driver; C:\Windows\system32\DRIVERS\rzjstk.sys [2014-05-19 27816]
S3 rzkeypadendpt;Razer Keypad Endpoint; C:\Windows\system32\DRIVERS\rzkeypadendpt.sys [2014-05-19 32936]
S3 rzudd;Razer Mouse Driver; C:\Windows\system32\DRIVERS\rzudd.sys [2014-05-19 155816]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
S3 xnacc;Služba ovladače pro řadič XBOX 360 pro systém Windows; C:\Windows\system32\DRIVERS\xnacc.sys [2009-07-14 679936]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-01 50344]
R2 GamingApp_Service;GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [2014-03-13 20512]
R2 MSI_LiveUpdate_Service;MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2014-10-24 1730000]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-10-30 935232]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-11-08 76888]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-10-30 411968]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R2 WUAUCLT;WUAUCLT; C:\Users\Karliczek\AppData\Roaming\nssm.exe [2014-06-29 294912]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-12 833728]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12 267440]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [2014-09-02 614624]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-10 114288]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2014-11-05 1900400]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-12-30 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
děkuji za ochotu

Re: smschvost.exe vytěžuje CPU na 25%
Prijemne sobotni dopoledne Vam preju 
Soubory nize otestuje na virustotal.com (link dejte sem), at vime s kym presne mame tu cest
Na zaklade RSIT logu nemuzu tohoto (dle meho nazoru) BC minera maznout, takze dejte log FRST.txt (prilozte i Addition.txt) - http://forum.viry.cz/viewtopic.php?f=13&t=133100


Kód: Vybrat vše
C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
C:\Users\Karliczek\AppData\Roaming\nssm.exe
C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll
C:\Windows\rundll16.exe

Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: smschvost.exe vytěžuje CPU na 25%
Také přeji krasné dopoledne
Ten posledni soubor C:\Windows\rundll16.exe je složka a ta je prázdná...
https://www.virustotal.com/cs/file/96b3 ... 416048415/
https://www.virustotal.com/cs/file/8209 ... 416048542/
https://www.virustotal.com/cs/file/2897 ... 416048617/
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-11-2014
Ran by Karliczek (administrator) on FX-8320 on 15-11-2014 11:57:47
Running from C:\Users\Karliczek\Desktop
Loaded Profile: Karliczek (Available profiles: Karliczek)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Micro-Star International) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Users\Karliczek\AppData\Roaming\nssm.exe
() C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_223.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_223.exe
(forum.viry.cz) C:\Users\Karliczek\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13213840 2012-10-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1234064 2012-10-29] (Realtek Semiconductor)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-01] (AVAST Software)
HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508656 2012-08-31] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1940160 2014-11-12] (Valve Corporation)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\MountPoints2: {c43dfcc4-8862-11e3-9402-902b34afd3fb} - I:\setup.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-01-01] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
SearchScopes: HKCU - {1E5BD180-2725-421F-8F9B-0A3E0D90406F} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKCU - {26CEABAF-ECC2-45AD-89B5-C99FDE55B5A8} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {5986FC2C-7DD5-4FAA-845C-C2E773843CDC} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {80C7FC42-A818-4038-8D9C-210B59698DE8} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {915C0F02-D0B0-4508-B7A3-B4967E11C7DA} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {9E33704D-4D95-4672-8129-4CEA3A7780A1} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKCU - {9F847188-B2E4-4AE9-A080-A79C651AEE09} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {D0A17525-C5CB-4F0A-B55F-9B010D4008AE} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
SearchScopes: HKCU - {E31C520E-25DE-444A-BA4D-A1EEADF8B7A7} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Karliczek\AppData\Roaming\Mozilla\Firefox\Profiles\n3aor69t.default-1410868349812
FF Homepage: http://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\ddg.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Adblock Plus - C:\Users\Karliczek\AppData\Roaming\Mozilla\Firefox\Profiles\n3aor69t.default-1410868349812\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-27]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-12-30]
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-01]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-01] (AVAST Software)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [614624 2014-09-02] (Futuremark)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [20512 2014-03-13] (Micro-Star Int'l Co., Ltd.)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [1730000 2014-10-24] (Micro-Star International)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-11-05] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-11-08] ()
R2 WUAUCLT; C:\Users\Karliczek\AppData\Roaming\nssm.exe [294912 2014-06-29] () [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21616 2011-11-02] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-01] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-01] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-01] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-01] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-08-01] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-01] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-01] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-01] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-28] (Disc Soft Ltd)
R3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [14136 2010-10-22] (MSI)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 rzjstk; C:\Windows\System32\DRIVERS\rzjstk.sys [27816 2014-05-19] (Razer Inc)
S3 rzkeypadendpt; C:\Windows\System32\DRIVERS\rzkeypadendpt.sys [32936 2014-05-19] (Razer Inc)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-15 11:57 - 2014-11-15 11:57 - 00012692 _____ () C:\Users\Karliczek\Desktop\FRST.txt
2014-11-15 11:57 - 2014-11-15 11:57 - 00000000 ____D () C:\FRST
2014-11-15 11:56 - 2014-11-15 11:56 - 00112640 _____ (forum.viry.cz) C:\Users\Karliczek\Desktop\FRSTLauncher.exe
2014-11-15 11:53 - 2014-11-15 11:53 - 02116608 _____ (Farbar) C:\Users\Karliczek\Desktop\FRST64.exe
2014-11-15 08:26 - 2014-11-15 08:31 - 00000000 ____D () C:\Program Files\trend micro
2014-11-15 08:26 - 2014-11-15 08:26 - 00000000 ____D () C:\rsit
2014-11-15 08:25 - 2014-11-15 08:25 - 01222144 _____ () C:\Users\Karliczek\Downloads\RSITx64.exe
2014-11-15 01:14 - 2014-11-15 01:14 - 00295453 _____ () C:\Users\Karliczek\Documents\pinfect.zip
2014-11-15 01:11 - 2014-11-15 01:11 - 00000000 ____D () C:\Windows\rundll16.exe
2014-11-15 01:11 - 2014-11-15 01:11 - 00000000 ____D () C:\Windows\logo1_.exe
2014-11-15 01:07 - 2014-11-15 01:07 - 05505026 _____ () C:\Windows\hklmSW.reg
2014-11-15 01:07 - 2014-11-15 01:07 - 03223330 _____ () C:\Windows\REGBK00.ZIP
2014-11-15 00:59 - 2014-11-15 00:59 - 00000000 ____D () C:\Windows\VDLL.DLL
2014-11-15 00:59 - 2014-11-15 00:59 - 00000000 ____D () C:\Windows\SysWOW64\runouce.exe
2014-11-15 00:59 - 2014-11-15 00:59 - 00000000 ____D () C:\Windows\RUNDL132.EXE
2014-11-15 00:59 - 2014-11-15 00:59 - 00000000 ____D () C:\Windows\logo_1.exe
2014-11-15 00:56 - 2014-11-15 01:11 - 00000054 _____ () C:\Windows\Lic.xxx
2014-11-15 00:56 - 2014-11-15 00:56 - 00632064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr80.dll
2014-11-15 00:56 - 2014-11-15 00:56 - 00554240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp80.dll
2014-11-15 00:56 - 2014-11-15 00:56 - 00034048 _____ (MicroWorld Technologies Inc.) C:\Windows\SysWOW64\eEmpty.exe
2014-11-15 00:56 - 2014-11-15 00:56 - 00000000 __SHD () C:\Users\Karliczek\AppData\Local\EmieBrowserModeList
2014-11-15 00:56 - 2014-11-15 00:56 - 00000000 ____D () C:\ProgramData\MicroWorld
2014-11-15 00:56 - 2005-09-22 23:22 - 00000522 _____ () C:\Windows\SysWOW64\Microsoft.VC80.CRT.manifest
2014-11-15 00:54 - 2014-11-15 00:54 - 00000000 ____D () C:\Users\Karliczek\Desktop\MWAV antivirus+návod+keygen
2014-11-15 00:48 - 2014-11-15 00:51 - 68973214 _____ () C:\Users\Karliczek\Downloads\MWAV-antivirus+návod+keygen.rar
2014-11-15 00:45 - 2014-11-15 08:14 - 00000168 _____ () C:\Windows\setupact.log
2014-11-15 00:45 - 2014-11-15 00:45 - 00000000 _____ () C:\Windows\setuperr.log
2014-11-14 22:47 - 2014-11-14 22:47 - 00000000 ____D () C:\Ubisoft
2014-11-14 10:52 - 2014-11-14 10:52 - 00000000 ____D () C:\Users\Karliczek\Documents\KONAMI
2014-11-14 10:52 - 2014-11-14 10:52 - 00000000 ____D () C:\ProgramData\KONAMI
2014-11-14 10:44 - 2014-11-14 10:44 - 00000615 _____ () C:\Users\Public\Desktop\Pro Evolution Soccer 2015.lnk
2014-11-14 10:43 - 2014-11-14 20:16 - 00003816 _____ () C:\Windows\System32\Tasks\Java Updater
2014-11-14 10:43 - 2014-06-29 12:35 - 00294912 ___SH () C:\Users\Karliczek\AppData\Roaming\nssm.exe
2014-11-14 10:43 - 2014-05-24 20:09 - 00603763 ___SH () C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll
2014-11-14 10:43 - 2014-05-24 20:09 - 00244224 ___SH () C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
2014-11-14 10:43 - 2014-05-24 20:09 - 00042496 ___SH (Open Source Software community project) C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll
2014-11-14 10:43 - 2014-05-04 10:16 - 00207360 ___SH (CodePlex Community) C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll
2014-11-14 10:43 - 2013-08-11 14:41 - 00044032 ___SH (NirSoft) C:\Users\Karliczek\AppData\Roaming\nircmd.exe
2014-11-13 22:23 - 2014-11-13 22:40 - 00000000 ____D () C:\Users\Karliczek\Documents\Assassin's Creed Unity
2014-11-12 19:28 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 19:28 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 19:28 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 19:28 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 19:28 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 19:28 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 19:28 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-12 19:28 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 19:28 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 19:28 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 19:28 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-12 19:28 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-12 19:28 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 19:28 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 19:27 - 2014-11-12 19:27 - 00000233 _____ () C:\Users\Karliczek\Desktop\Assassin’s Creed Unity.url
2014-11-12 19:27 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 19:27 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 19:27 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-12 19:27 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 19:27 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 19:27 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 19:27 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 19:27 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 19:27 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 19:27 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 19:27 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 19:27 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 19:27 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 19:27 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 19:27 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 19:27 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 19:27 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-12 19:27 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 19:27 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 19:27 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 19:27 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 19:27 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 19:27 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 19:27 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 19:27 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 19:27 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 19:27 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 19:27 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 19:27 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 19:27 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 19:27 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 19:27 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 19:27 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 19:27 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 19:27 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 19:27 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 19:27 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 19:27 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-12 19:27 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 19:27 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 19:27 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 19:27 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 19:27 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 19:27 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 19:27 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 19:27 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 19:27 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-12 19:27 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 19:27 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 19:27 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 19:27 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 19:27 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 19:27 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 19:27 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 19:27 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 19:27 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 19:27 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 19:27 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-12 19:27 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 19:27 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 19:27 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 19:27 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 19:27 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 19:27 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 19:27 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 19:27 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 19:27 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 19:27 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 19:27 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-12 19:27 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 19:27 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-12 19:27 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 19:27 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-12 19:27 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-12 19:27 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-10 20:13 - 2014-11-10 20:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-10 15:41 - 2014-11-10 15:41 - 17598234 _____ () C:\Users\Karliczek\Downloads\Amalur_CZ_Steam_0.8.exe
2014-11-08 16:31 - 2014-11-08 16:32 - 00000000 ____D () C:\Users\Karliczek\Documents\Battlefield 4
2014-11-08 16:30 - 2014-11-08 16:30 - 01402920 _____ () C:\Users\Karliczek\Downloads\battlelog-web-plugins_2.5.1_149.exe
2014-11-08 16:30 - 2014-11-08 16:30 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\ESN
2014-11-08 16:14 - 2014-11-09 15:23 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins
2014-11-08 16:14 - 2014-11-08 16:14 - 00001009 _____ () C:\Users\Public\Desktop\Battlefield 4.lnk
2014-11-08 16:14 - 2014-11-08 16:14 - 00000993 _____ () C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk
2014-11-08 16:02 - 2014-11-08 16:02 - 00000000 ____D () C:\Users\Karliczek\Desktop\Piloxing-oficiální-CD-Love-yourself
2014-11-08 15:23 - 2014-11-08 15:26 - 57982308 _____ () C:\Users\Karliczek\Downloads\Piloxing-oficiální-CD-Love-yourself.zip
2014-11-08 15:06 - 2014-11-08 15:08 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\Culling_Of_The_Cows
2014-11-07 13:21 - 2014-11-07 13:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-11-07 13:21 - 2014-10-30 01:56 - 00614728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-11-07 13:19 - 2014-10-30 05:53 - 31890064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 24554824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 20922696 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 19966856 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 18497600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 17258696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 16886168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 14029400 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 13942368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 13189832 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-11-07 13:19 - 2014-10-30 05:53 - 11395672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 11333848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 04289856 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 04011840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 02849224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 01876296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434460.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 01539272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434460.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00961224 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00932168 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00922944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00896144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00870112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00502080 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00416912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00391824 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00352016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00349504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00303600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00174856 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00156840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-11-07 13:12 - 2014-11-07 13:13 - 306024872 _____ (NVIDIA Corporation) C:\Users\Karliczek\Downloads\344.60-desktop-win8-win7-winvista-64bit-international-whql.exe
2014-11-04 21:41 - 2014-11-04 21:41 - 00835460 _____ () C:\Users\Karliczek\Downloads\Crack CoDW.rar
2014-11-04 21:23 - 2014-11-04 21:23 - 00000847 _____ () C:\Users\Karliczek\Desktop\Call of Duty Advanced Warfare.lnk
2014-11-04 21:23 - 2014-11-04 21:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Advanced Warfare
2014-11-02 21:08 - 2014-11-02 21:08 - 00000000 ____D () C:\Program Files\ATI
2014-11-02 21:08 - 2010-11-29 04:50 - 00044672 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2014-11-02 21:07 - 2014-11-02 21:07 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-11-02 21:04 - 2014-11-02 21:08 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-11-02 20:26 - 2014-11-02 20:26 - 00002045 _____ () C:\Users\Public\Desktop\MSI Live Update 6.lnk
2014-11-02 20:26 - 2014-11-02 20:26 - 00000000 ____D () C:\MSI
2014-11-02 20:24 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2014-10-31 22:12 - 2014-11-06 13:12 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\NVIDIA
2014-10-31 14:31 - 2014-10-31 20:40 - 00001100 _____ () C:\Users\Karliczek\Desktop\MSI Afterburner.lnk
2014-10-31 14:31 - 2014-10-31 20:40 - 00000000 ____D () C:\Program Files (x86)\RivaTuner Statistics Server
2014-10-31 14:31 - 2014-10-31 20:40 - 00000000 ____D () C:\Program Files (x86)\MSI Afterburner
2014-10-31 14:31 - 2014-10-31 14:31 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2014-10-31 14:31 - 2014-10-31 14:31 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2014-10-31 14:27 - 2014-11-15 08:14 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-31 14:27 - 2014-11-02 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2014-10-31 14:27 - 2014-11-02 20:26 - 00000000 ____D () C:\Program Files (x86)\MSI
2014-10-31 14:27 - 2014-10-31 14:27 - 00001163 _____ () C:\Users\Public\Desktop\MSI Gaming APP.lnk
2014-10-31 14:27 - 2014-10-31 14:27 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-10-31 14:27 - 2014-10-31 14:27 - 00000000 ____D () C:\Intel
2014-10-31 14:26 - 2014-10-30 05:53 - 00073872 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-10-31 14:26 - 2014-10-30 05:53 - 00060744 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 06880968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 03533632 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 02558792 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 00935232 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-10-31 14:26 - 2014-10-30 03:10 - 00385352 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 00061640 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-10-31 14:26 - 2014-10-27 01:34 - 04066553 _____ () C:\Windows\system32\nvcoproc.bin
2014-10-31 14:25 - 2014-10-30 05:53 - 20966504 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-10-31 14:25 - 2014-10-30 05:53 - 03237528 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-10-31 14:25 - 2014-10-30 05:53 - 00987008 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-10-31 14:25 - 2014-10-30 05:53 - 00027024 _____ () C:\Windows\system32\nvinfo.pb
2014-10-31 14:25 - 2014-10-16 17:54 - 01876296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434448.dll
2014-10-31 14:25 - 2014-10-16 17:54 - 01539272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434448.dll
2014-10-31 14:25 - 2014-10-16 17:54 - 01538880 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2014-10-31 14:25 - 2014-10-16 17:54 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2014-10-31 14:25 - 2014-10-16 17:54 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2014-10-31 14:18 - 2014-10-31 15:11 - 00000000 ____D () C:\temp
2014-10-31 14:18 - 2014-03-31 17:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2014-10-31 14:18 - 2014-03-31 17:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2014-10-31 14:18 - 2014-03-31 17:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-10-28 18:22 - 2014-10-28 18:22 - 00001315 _____ () C:\Users\Public\Desktop\Crusader No Remorse.lnk
2014-10-20 07:51 - 2014-10-20 07:51 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-10-20 07:51 - 2014-10-20 07:51 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-10-20 07:51 - 2014-10-20 07:51 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-10-20 07:51 - 2014-10-20 07:51 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-10-20 07:51 - 2014-10-20 07:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-10-20 07:51 - 2014-10-20 07:51 - 00000000 ____D () C:\Program Files (x86)\Java
2014-10-19 16:13 - 2014-10-19 16:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gemini Rue
2014-10-19 16:13 - 2014-10-19 16:13 - 00000000 ____D () C:\Program Files (x86)\GeminiRue
2014-10-19 16:11 - 2014-10-19 16:11 - 235947989 _____ ( ) C:\Users\Karliczek\Downloads\geminiruecz-setup.exe
2014-10-17 10:39 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-10-17 10:39 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-10-17 10:39 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-17 10:39 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-17 10:39 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-17 10:39 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-17 10:39 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-17 10:39 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-17 10:39 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-17 10:39 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-17 10:39 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-10-17 10:39 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-15 11:10 - 2014-02-22 10:34 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-15 09:38 - 2012-12-30 20:10 - 01825671 _____ () C:\Windows\WindowsUpdate.log
2014-11-15 08:22 - 2009-07-14 05:45 - 00023744 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-15 08:22 - 2009-07-14 05:45 - 00023744 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-15 08:21 - 2009-07-14 16:18 - 00668640 _____ () C:\Windows\system32\perfh005.dat
2014-11-15 08:21 - 2009-07-14 16:18 - 00141300 _____ () C:\Windows\system32\perfc005.dat
2014-11-15 08:21 - 2009-07-14 06:13 - 01583642 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-15 08:14 - 2013-12-30 21:37 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-11-15 08:14 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-15 01:25 - 2014-01-02 00:49 - 00007594 _____ () C:\Users\Karliczek\AppData\Local\resmon.resmoncfg
2014-11-15 01:15 - 2012-12-30 20:31 - 00002222 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-11-15 00:43 - 2014-01-28 23:39 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\DAEMON Tools Lite
2014-11-15 00:14 - 2013-12-30 21:50 - 00000000 ____D () C:\ProgramData\Origin
2014-11-15 00:07 - 2014-06-18 09:00 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\vlc
2014-11-15 00:06 - 2013-12-30 22:08 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\uTorrent
2014-11-14 22:44 - 2013-12-30 21:50 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-11-14 20:16 - 2012-12-30 20:31 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-14 10:44 - 2014-03-16 16:03 - 00001128 _____ () C:\Users\Karliczek\AppData\Local\MRDownloader.nast
2014-11-14 10:35 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-13 22:23 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-11-13 14:46 - 2009-07-14 05:45 - 00267368 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-13 14:45 - 2014-05-08 00:23 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-12 21:56 - 2013-12-30 22:37 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-12 21:55 - 2013-12-30 22:37 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-12 21:10 - 2014-02-22 10:34 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-12 21:10 - 2013-12-30 22:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-12 21:10 - 2013-12-30 22:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-11 19:16 - 2014-03-16 16:11 - 00049985 _____ () C:\Users\Karliczek\AppData\Local\MRDownloader.err
2014-11-11 10:54 - 2013-12-30 21:29 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-09 16:52 - 2013-12-31 16:40 - 00000000 ____D () C:\Users\Karliczek\Documents\3DMark
2014-11-09 16:28 - 2013-12-31 16:41 - 00000022 _____ () C:\Windows\GPU-Z.INI
2014-11-08 16:14 - 2013-12-31 13:27 - 00281872 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2014-11-08 16:14 - 2013-12-31 13:27 - 00281872 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2014-11-08 16:14 - 2013-12-31 13:27 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-11-08 15:54 - 2014-01-06 22:44 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\Skype
2014-11-07 13:21 - 2013-12-30 21:34 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-11-02 21:10 - 2012-12-30 20:14 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-11-01 21:37 - 2014-04-04 16:36 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\2K Games
2014-10-31 20:40 - 2014-01-14 19:52 - 00000000 ____D () C:\Windows\SysWOW64\directx
2014-10-31 14:26 - 2013-12-30 21:34 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-31 14:26 - 2013-12-30 21:32 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-31 14:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help
2014-10-31 14:19 - 2014-10-01 09:09 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\NVIDIA Corporation
2014-10-28 06:34 - 2013-12-30 21:31 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-10-27 09:40 - 2014-09-21 15:18 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\Adobe
2014-10-24 19:09 - 2013-12-30 21:48 - 00000000 ____D () C:\Users\Karliczek\Documents\my games
2014-10-23 16:02 - 2014-06-13 15:36 - 00000000 ____D () C:\ProgramData\Codemasters
2014-10-23 10:59 - 2009-07-14 06:08 - 00032554 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-22 15:49 - 2014-09-24 14:42 - 00000976 _____ () C:\Users\Public\Desktop\FIFA 15.lnk
2014-10-20 07:53 - 2014-10-12 19:36 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-19 15:52 - 2014-01-06 22:44 - 00000000 ____D () C:\ProgramData\Skype
2014-10-18 20:55 - 2013-12-30 21:58 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
Some content of TEMP:
====================
C:\Users\Karliczek\AppData\Local\Temp\avxdisk.dll
C:\Users\Karliczek\AppData\Local\Temp\bdc.exe
C:\Users\Karliczek\AppData\Local\Temp\bdcore.dll
C:\Users\Karliczek\AppData\Local\Temp\bdfltlib.dll
C:\Users\Karliczek\AppData\Local\Temp\bdfltlib2k.dll
C:\Users\Karliczek\AppData\Local\Temp\bdupdateservice.dll
C:\Users\Karliczek\AppData\Local\Temp\DEVCON.EXE
C:\Users\Karliczek\AppData\Local\Temp\download.exe
C:\Users\Karliczek\AppData\Local\Temp\eEmpty.exe
C:\Users\Karliczek\AppData\Local\Temp\encdec.dll
C:\Users\Karliczek\AppData\Local\Temp\esupdate.exe
C:\Users\Karliczek\AppData\Local\Temp\FSSync.dll
C:\Users\Karliczek\AppData\Local\Temp\Getvlist.exe
C:\Users\Karliczek\AppData\Local\Temp\ikave.dll
C:\Users\Karliczek\AppData\Local\Temp\ipc.dll
C:\Users\Karliczek\AppData\Local\Temp\kave.dll
C:\Users\Karliczek\AppData\Local\Temp\kavvlg.dll
C:\Users\Karliczek\AppData\Local\Temp\KK.EXE
C:\Users\Karliczek\AppData\Local\Temp\msvclnt.dll
C:\Users\Karliczek\AppData\Local\Temp\msvcp80.dll
C:\Users\Karliczek\AppData\Local\Temp\msvcr80.dll
C:\Users\Karliczek\AppData\Local\Temp\msvl64.dll
C:\Users\Karliczek\AppData\Local\Temp\msvlclnt.dll
C:\Users\Karliczek\AppData\Local\Temp\MWAVL.exe
C:\Users\Karliczek\AppData\Local\Temp\MWAVReg.EXE
C:\Users\Karliczek\AppData\Local\Temp\mwunzip.dll
C:\Users\Karliczek\AppData\Local\Temp\prLoader.dll
C:\Users\Karliczek\AppData\Local\Temp\red32.dll
C:\Users\Karliczek\AppData\Local\Temp\reload.exe
C:\Users\Karliczek\AppData\Local\Temp\scan.dll
C:\Users\Karliczek\AppData\Local\Temp\ScanningProcess.exe
C:\Users\Karliczek\AppData\Local\Temp\setpriv.exe
C:\Users\Karliczek\AppData\Local\Temp\test2.exe
C:\Users\Karliczek\AppData\Local\Temp\unregx.exe
C:\Users\Karliczek\AppData\Local\Temp\viewtcp.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-15 09:49
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Crucial M4) (Fixed) (Total:119.24 GB) (Free:49.22 GB) NTFS
Drive d: (Samsung 500) (Fixed) (Total:465.66 GB) (Free:70.04 GB) NTFS
Drive g: (Seagate 250) (Fixed) (Total:232.88 GB) (Free:110.16 GB) NTFS
Drive h: (Seagate 2TB) (Fixed) (Total:1863 GB) (Free:323.1 GB) NTFS
Drive i: (Pro Evolution Soccer 2015) (CDROM) (Total:5.98 GB) (Free:0 GB) UDF
Drive k: (WD 1TB) (Fixed) (Total:931.39 GB) (Free:130 GB) NTFS
Available physical RAM: 5786.36 MB
Total physical RAM: 8173.24 MB
Percentage of memory in use: 29%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 9A9216DD)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000)
Disk: 2 (Size: 119.2 GB) (Disk ID: C4F446E0)
Partition 1: (Not Active) - (Size=119.2 GB) - (Type=07 NTFS)
Disk: 3 (Size: 232.9 GB) (Disk ID: F4ACF4AC)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Karliczek\Desktop" je 156 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update
C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Live Update
C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay
C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^GIGABYTE OC_GURU.lnk
C:\PROGRA~2\GIGABYTE\GIGABY~1\OC_GURU.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Karliczek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat v�strahy inkoustu - HP Deskjet 1050 J410 series.lnk
C:\Windows\system32\RunDll32.exe
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================

https://www.virustotal.com/cs/file/96b3 ... 416048415/
https://www.virustotal.com/cs/file/8209 ... 416048542/
https://www.virustotal.com/cs/file/2897 ... 416048617/
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-11-2014
Ran by Karliczek (administrator) on FX-8320 on 15-11-2014 11:57:47
Running from C:\Users\Karliczek\Desktop
Loaded Profile: Karliczek (Available profiles: Karliczek)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Micro-Star International) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Users\Karliczek\AppData\Roaming\nssm.exe
() C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_223.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_223.exe
(forum.viry.cz) C:\Users\Karliczek\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13213840 2012-10-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1234064 2012-10-29] (Realtek Semiconductor)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-01] (AVAST Software)
HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508656 2012-08-31] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1940160 2014-11-12] (Valve Corporation)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\MountPoints2: {c43dfcc4-8862-11e3-9402-902b34afd3fb} - I:\setup.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-01-01] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
SearchScopes: HKCU - {1E5BD180-2725-421F-8F9B-0A3E0D90406F} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKCU - {26CEABAF-ECC2-45AD-89B5-C99FDE55B5A8} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {5986FC2C-7DD5-4FAA-845C-C2E773843CDC} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {80C7FC42-A818-4038-8D9C-210B59698DE8} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {915C0F02-D0B0-4508-B7A3-B4967E11C7DA} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {9E33704D-4D95-4672-8129-4CEA3A7780A1} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKCU - {9F847188-B2E4-4AE9-A080-A79C651AEE09} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {D0A17525-C5CB-4F0A-B55F-9B010D4008AE} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
SearchScopes: HKCU - {E31C520E-25DE-444A-BA4D-A1EEADF8B7A7} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Karliczek\AppData\Roaming\Mozilla\Firefox\Profiles\n3aor69t.default-1410868349812
FF Homepage: http://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\ddg.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Adblock Plus - C:\Users\Karliczek\AppData\Roaming\Mozilla\Firefox\Profiles\n3aor69t.default-1410868349812\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-27]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-12-30]
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-01]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-01] (AVAST Software)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [614624 2014-09-02] (Futuremark)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [20512 2014-03-13] (Micro-Star Int'l Co., Ltd.)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [1730000 2014-10-24] (Micro-Star International)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-11-05] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-11-08] ()
R2 WUAUCLT; C:\Users\Karliczek\AppData\Roaming\nssm.exe [294912 2014-06-29] () [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21616 2011-11-02] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-01] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-01] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-01] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-01] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-08-01] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-01] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-01] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-01] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-28] (Disc Soft Ltd)
R3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [14136 2010-10-22] (MSI)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 rzjstk; C:\Windows\System32\DRIVERS\rzjstk.sys [27816 2014-05-19] (Razer Inc)
S3 rzkeypadendpt; C:\Windows\System32\DRIVERS\rzkeypadendpt.sys [32936 2014-05-19] (Razer Inc)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-15 11:57 - 2014-11-15 11:57 - 00012692 _____ () C:\Users\Karliczek\Desktop\FRST.txt
2014-11-15 11:57 - 2014-11-15 11:57 - 00000000 ____D () C:\FRST
2014-11-15 11:56 - 2014-11-15 11:56 - 00112640 _____ (forum.viry.cz) C:\Users\Karliczek\Desktop\FRSTLauncher.exe
2014-11-15 11:53 - 2014-11-15 11:53 - 02116608 _____ (Farbar) C:\Users\Karliczek\Desktop\FRST64.exe
2014-11-15 08:26 - 2014-11-15 08:31 - 00000000 ____D () C:\Program Files\trend micro
2014-11-15 08:26 - 2014-11-15 08:26 - 00000000 ____D () C:\rsit
2014-11-15 08:25 - 2014-11-15 08:25 - 01222144 _____ () C:\Users\Karliczek\Downloads\RSITx64.exe
2014-11-15 01:14 - 2014-11-15 01:14 - 00295453 _____ () C:\Users\Karliczek\Documents\pinfect.zip
2014-11-15 01:11 - 2014-11-15 01:11 - 00000000 ____D () C:\Windows\rundll16.exe
2014-11-15 01:11 - 2014-11-15 01:11 - 00000000 ____D () C:\Windows\logo1_.exe
2014-11-15 01:07 - 2014-11-15 01:07 - 05505026 _____ () C:\Windows\hklmSW.reg
2014-11-15 01:07 - 2014-11-15 01:07 - 03223330 _____ () C:\Windows\REGBK00.ZIP
2014-11-15 00:59 - 2014-11-15 00:59 - 00000000 ____D () C:\Windows\VDLL.DLL
2014-11-15 00:59 - 2014-11-15 00:59 - 00000000 ____D () C:\Windows\SysWOW64\runouce.exe
2014-11-15 00:59 - 2014-11-15 00:59 - 00000000 ____D () C:\Windows\RUNDL132.EXE
2014-11-15 00:59 - 2014-11-15 00:59 - 00000000 ____D () C:\Windows\logo_1.exe
2014-11-15 00:56 - 2014-11-15 01:11 - 00000054 _____ () C:\Windows\Lic.xxx
2014-11-15 00:56 - 2014-11-15 00:56 - 00632064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr80.dll
2014-11-15 00:56 - 2014-11-15 00:56 - 00554240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp80.dll
2014-11-15 00:56 - 2014-11-15 00:56 - 00034048 _____ (MicroWorld Technologies Inc.) C:\Windows\SysWOW64\eEmpty.exe
2014-11-15 00:56 - 2014-11-15 00:56 - 00000000 __SHD () C:\Users\Karliczek\AppData\Local\EmieBrowserModeList
2014-11-15 00:56 - 2014-11-15 00:56 - 00000000 ____D () C:\ProgramData\MicroWorld
2014-11-15 00:56 - 2005-09-22 23:22 - 00000522 _____ () C:\Windows\SysWOW64\Microsoft.VC80.CRT.manifest
2014-11-15 00:54 - 2014-11-15 00:54 - 00000000 ____D () C:\Users\Karliczek\Desktop\MWAV antivirus+návod+keygen
2014-11-15 00:48 - 2014-11-15 00:51 - 68973214 _____ () C:\Users\Karliczek\Downloads\MWAV-antivirus+návod+keygen.rar
2014-11-15 00:45 - 2014-11-15 08:14 - 00000168 _____ () C:\Windows\setupact.log
2014-11-15 00:45 - 2014-11-15 00:45 - 00000000 _____ () C:\Windows\setuperr.log
2014-11-14 22:47 - 2014-11-14 22:47 - 00000000 ____D () C:\Ubisoft
2014-11-14 10:52 - 2014-11-14 10:52 - 00000000 ____D () C:\Users\Karliczek\Documents\KONAMI
2014-11-14 10:52 - 2014-11-14 10:52 - 00000000 ____D () C:\ProgramData\KONAMI
2014-11-14 10:44 - 2014-11-14 10:44 - 00000615 _____ () C:\Users\Public\Desktop\Pro Evolution Soccer 2015.lnk
2014-11-14 10:43 - 2014-11-14 20:16 - 00003816 _____ () C:\Windows\System32\Tasks\Java Updater
2014-11-14 10:43 - 2014-06-29 12:35 - 00294912 ___SH () C:\Users\Karliczek\AppData\Roaming\nssm.exe
2014-11-14 10:43 - 2014-05-24 20:09 - 00603763 ___SH () C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll
2014-11-14 10:43 - 2014-05-24 20:09 - 00244224 ___SH () C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
2014-11-14 10:43 - 2014-05-24 20:09 - 00042496 ___SH (Open Source Software community project) C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll
2014-11-14 10:43 - 2014-05-04 10:16 - 00207360 ___SH (CodePlex Community) C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll
2014-11-14 10:43 - 2013-08-11 14:41 - 00044032 ___SH (NirSoft) C:\Users\Karliczek\AppData\Roaming\nircmd.exe
2014-11-13 22:23 - 2014-11-13 22:40 - 00000000 ____D () C:\Users\Karliczek\Documents\Assassin's Creed Unity
2014-11-12 19:28 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 19:28 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 19:28 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 19:28 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 19:28 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 19:28 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 19:28 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-12 19:28 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 19:28 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 19:28 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 19:28 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-12 19:28 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-12 19:28 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 19:28 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 19:27 - 2014-11-12 19:27 - 00000233 _____ () C:\Users\Karliczek\Desktop\Assassin’s Creed Unity.url
2014-11-12 19:27 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 19:27 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 19:27 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-12 19:27 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 19:27 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 19:27 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 19:27 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 19:27 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 19:27 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 19:27 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 19:27 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 19:27 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 19:27 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 19:27 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 19:27 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 19:27 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 19:27 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-12 19:27 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 19:27 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 19:27 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 19:27 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 19:27 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 19:27 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 19:27 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 19:27 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 19:27 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 19:27 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 19:27 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 19:27 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 19:27 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 19:27 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 19:27 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 19:27 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 19:27 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 19:27 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 19:27 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 19:27 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 19:27 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-12 19:27 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 19:27 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 19:27 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 19:27 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 19:27 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 19:27 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 19:27 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 19:27 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 19:27 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-12 19:27 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 19:27 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 19:27 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 19:27 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 19:27 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 19:27 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 19:27 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 19:27 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 19:27 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 19:27 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 19:27 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-12 19:27 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 19:27 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 19:27 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 19:27 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 19:27 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 19:27 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 19:27 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 19:27 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 19:27 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 19:27 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 19:27 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-12 19:27 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-12 19:27 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-12 19:27 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 19:27 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-12 19:27 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 19:27 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-12 19:27 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-12 19:27 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-10 20:13 - 2014-11-10 20:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-10 15:41 - 2014-11-10 15:41 - 17598234 _____ () C:\Users\Karliczek\Downloads\Amalur_CZ_Steam_0.8.exe
2014-11-08 16:31 - 2014-11-08 16:32 - 00000000 ____D () C:\Users\Karliczek\Documents\Battlefield 4
2014-11-08 16:30 - 2014-11-08 16:30 - 01402920 _____ () C:\Users\Karliczek\Downloads\battlelog-web-plugins_2.5.1_149.exe
2014-11-08 16:30 - 2014-11-08 16:30 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\ESN
2014-11-08 16:14 - 2014-11-09 15:23 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins
2014-11-08 16:14 - 2014-11-08 16:14 - 00001009 _____ () C:\Users\Public\Desktop\Battlefield 4.lnk
2014-11-08 16:14 - 2014-11-08 16:14 - 00000993 _____ () C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk
2014-11-08 16:02 - 2014-11-08 16:02 - 00000000 ____D () C:\Users\Karliczek\Desktop\Piloxing-oficiální-CD-Love-yourself
2014-11-08 15:23 - 2014-11-08 15:26 - 57982308 _____ () C:\Users\Karliczek\Downloads\Piloxing-oficiální-CD-Love-yourself.zip
2014-11-08 15:06 - 2014-11-08 15:08 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\Culling_Of_The_Cows
2014-11-07 13:21 - 2014-11-07 13:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-11-07 13:21 - 2014-10-30 01:56 - 00614728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-11-07 13:19 - 2014-10-30 05:53 - 31890064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 24554824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 20922696 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 19966856 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 18497600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 17258696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 16886168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 14029400 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 13942368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 13189832 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-11-07 13:19 - 2014-10-30 05:53 - 11395672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 11333848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 04289856 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 04011840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 02849224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 01876296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434460.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 01539272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434460.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00961224 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00932168 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00922944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00896144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00870112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00502080 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00416912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00391824 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00352016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00349504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00303600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00174856 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-11-07 13:19 - 2014-10-30 05:53 - 00156840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-11-07 13:12 - 2014-11-07 13:13 - 306024872 _____ (NVIDIA Corporation) C:\Users\Karliczek\Downloads\344.60-desktop-win8-win7-winvista-64bit-international-whql.exe
2014-11-04 21:41 - 2014-11-04 21:41 - 00835460 _____ () C:\Users\Karliczek\Downloads\Crack CoDW.rar
2014-11-04 21:23 - 2014-11-04 21:23 - 00000847 _____ () C:\Users\Karliczek\Desktop\Call of Duty Advanced Warfare.lnk
2014-11-04 21:23 - 2014-11-04 21:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Advanced Warfare
2014-11-02 21:08 - 2014-11-02 21:08 - 00000000 ____D () C:\Program Files\ATI
2014-11-02 21:08 - 2010-11-29 04:50 - 00044672 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2014-11-02 21:07 - 2014-11-02 21:07 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-11-02 21:04 - 2014-11-02 21:08 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-11-02 20:26 - 2014-11-02 20:26 - 00002045 _____ () C:\Users\Public\Desktop\MSI Live Update 6.lnk
2014-11-02 20:26 - 2014-11-02 20:26 - 00000000 ____D () C:\MSI
2014-11-02 20:24 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2014-10-31 22:12 - 2014-11-06 13:12 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\NVIDIA
2014-10-31 14:31 - 2014-10-31 20:40 - 00001100 _____ () C:\Users\Karliczek\Desktop\MSI Afterburner.lnk
2014-10-31 14:31 - 2014-10-31 20:40 - 00000000 ____D () C:\Program Files (x86)\RivaTuner Statistics Server
2014-10-31 14:31 - 2014-10-31 20:40 - 00000000 ____D () C:\Program Files (x86)\MSI Afterburner
2014-10-31 14:31 - 2014-10-31 14:31 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2014-10-31 14:31 - 2014-10-31 14:31 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2014-10-31 14:27 - 2014-11-15 08:14 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-31 14:27 - 2014-11-02 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2014-10-31 14:27 - 2014-11-02 20:26 - 00000000 ____D () C:\Program Files (x86)\MSI
2014-10-31 14:27 - 2014-10-31 14:27 - 00001163 _____ () C:\Users\Public\Desktop\MSI Gaming APP.lnk
2014-10-31 14:27 - 2014-10-31 14:27 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-10-31 14:27 - 2014-10-31 14:27 - 00000000 ____D () C:\Intel
2014-10-31 14:26 - 2014-10-30 05:53 - 00073872 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-10-31 14:26 - 2014-10-30 05:53 - 00060744 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 06880968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 03533632 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 02558792 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 00935232 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-10-31 14:26 - 2014-10-30 03:10 - 00385352 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-10-31 14:26 - 2014-10-30 03:10 - 00061640 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-10-31 14:26 - 2014-10-27 01:34 - 04066553 _____ () C:\Windows\system32\nvcoproc.bin
2014-10-31 14:25 - 2014-10-30 05:53 - 20966504 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-10-31 14:25 - 2014-10-30 05:53 - 03237528 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-10-31 14:25 - 2014-10-30 05:53 - 00987008 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-10-31 14:25 - 2014-10-30 05:53 - 00027024 _____ () C:\Windows\system32\nvinfo.pb
2014-10-31 14:25 - 2014-10-16 17:54 - 01876296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434448.dll
2014-10-31 14:25 - 2014-10-16 17:54 - 01539272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434448.dll
2014-10-31 14:25 - 2014-10-16 17:54 - 01538880 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2014-10-31 14:25 - 2014-10-16 17:54 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2014-10-31 14:25 - 2014-10-16 17:54 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2014-10-31 14:18 - 2014-10-31 15:11 - 00000000 ____D () C:\temp
2014-10-31 14:18 - 2014-03-31 17:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2014-10-31 14:18 - 2014-03-31 17:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2014-10-31 14:18 - 2014-03-31 17:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-10-28 18:22 - 2014-10-28 18:22 - 00001315 _____ () C:\Users\Public\Desktop\Crusader No Remorse.lnk
2014-10-20 07:51 - 2014-10-20 07:51 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-10-20 07:51 - 2014-10-20 07:51 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-10-20 07:51 - 2014-10-20 07:51 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-10-20 07:51 - 2014-10-20 07:51 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-10-20 07:51 - 2014-10-20 07:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-10-20 07:51 - 2014-10-20 07:51 - 00000000 ____D () C:\Program Files (x86)\Java
2014-10-19 16:13 - 2014-10-19 16:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gemini Rue
2014-10-19 16:13 - 2014-10-19 16:13 - 00000000 ____D () C:\Program Files (x86)\GeminiRue
2014-10-19 16:11 - 2014-10-19 16:11 - 235947989 _____ ( ) C:\Users\Karliczek\Downloads\geminiruecz-setup.exe
2014-10-17 10:39 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-10-17 10:39 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-10-17 10:39 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-17 10:39 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-17 10:39 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-17 10:39 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-17 10:39 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-17 10:39 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-17 10:39 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-17 10:39 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-17 10:39 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-10-17 10:39 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-17 10:39 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-15 11:10 - 2014-02-22 10:34 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-15 09:38 - 2012-12-30 20:10 - 01825671 _____ () C:\Windows\WindowsUpdate.log
2014-11-15 08:22 - 2009-07-14 05:45 - 00023744 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-15 08:22 - 2009-07-14 05:45 - 00023744 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-15 08:21 - 2009-07-14 16:18 - 00668640 _____ () C:\Windows\system32\perfh005.dat
2014-11-15 08:21 - 2009-07-14 16:18 - 00141300 _____ () C:\Windows\system32\perfc005.dat
2014-11-15 08:21 - 2009-07-14 06:13 - 01583642 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-15 08:14 - 2013-12-30 21:37 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-11-15 08:14 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-15 01:25 - 2014-01-02 00:49 - 00007594 _____ () C:\Users\Karliczek\AppData\Local\resmon.resmoncfg
2014-11-15 01:15 - 2012-12-30 20:31 - 00002222 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-11-15 00:43 - 2014-01-28 23:39 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\DAEMON Tools Lite
2014-11-15 00:14 - 2013-12-30 21:50 - 00000000 ____D () C:\ProgramData\Origin
2014-11-15 00:07 - 2014-06-18 09:00 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\vlc
2014-11-15 00:06 - 2013-12-30 22:08 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\uTorrent
2014-11-14 22:44 - 2013-12-30 21:50 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-11-14 20:16 - 2012-12-30 20:31 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-14 10:44 - 2014-03-16 16:03 - 00001128 _____ () C:\Users\Karliczek\AppData\Local\MRDownloader.nast
2014-11-14 10:35 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-13 22:23 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-11-13 14:46 - 2009-07-14 05:45 - 00267368 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-13 14:45 - 2014-05-08 00:23 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-12 21:56 - 2013-12-30 22:37 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-12 21:55 - 2013-12-30 22:37 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-12 21:10 - 2014-02-22 10:34 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-12 21:10 - 2013-12-30 22:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-12 21:10 - 2013-12-30 22:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-11 19:16 - 2014-03-16 16:11 - 00049985 _____ () C:\Users\Karliczek\AppData\Local\MRDownloader.err
2014-11-11 10:54 - 2013-12-30 21:29 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-09 16:52 - 2013-12-31 16:40 - 00000000 ____D () C:\Users\Karliczek\Documents\3DMark
2014-11-09 16:28 - 2013-12-31 16:41 - 00000022 _____ () C:\Windows\GPU-Z.INI
2014-11-08 16:14 - 2013-12-31 13:27 - 00281872 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2014-11-08 16:14 - 2013-12-31 13:27 - 00281872 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2014-11-08 16:14 - 2013-12-31 13:27 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-11-08 15:54 - 2014-01-06 22:44 - 00000000 ____D () C:\Users\Karliczek\AppData\Roaming\Skype
2014-11-07 13:21 - 2013-12-30 21:34 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-11-02 21:10 - 2012-12-30 20:14 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-11-01 21:37 - 2014-04-04 16:36 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\2K Games
2014-10-31 20:40 - 2014-01-14 19:52 - 00000000 ____D () C:\Windows\SysWOW64\directx
2014-10-31 14:26 - 2013-12-30 21:34 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-31 14:26 - 2013-12-30 21:32 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-31 14:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help
2014-10-31 14:19 - 2014-10-01 09:09 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\NVIDIA Corporation
2014-10-28 06:34 - 2013-12-30 21:31 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-10-27 09:40 - 2014-09-21 15:18 - 00000000 ____D () C:\Users\Karliczek\AppData\Local\Adobe
2014-10-24 19:09 - 2013-12-30 21:48 - 00000000 ____D () C:\Users\Karliczek\Documents\my games
2014-10-23 16:02 - 2014-06-13 15:36 - 00000000 ____D () C:\ProgramData\Codemasters
2014-10-23 10:59 - 2009-07-14 06:08 - 00032554 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-22 15:49 - 2014-09-24 14:42 - 00000976 _____ () C:\Users\Public\Desktop\FIFA 15.lnk
2014-10-20 07:53 - 2014-10-12 19:36 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-19 15:52 - 2014-01-06 22:44 - 00000000 ____D () C:\ProgramData\Skype
2014-10-18 20:55 - 2013-12-30 21:58 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
Some content of TEMP:
====================
C:\Users\Karliczek\AppData\Local\Temp\avxdisk.dll
C:\Users\Karliczek\AppData\Local\Temp\bdc.exe
C:\Users\Karliczek\AppData\Local\Temp\bdcore.dll
C:\Users\Karliczek\AppData\Local\Temp\bdfltlib.dll
C:\Users\Karliczek\AppData\Local\Temp\bdfltlib2k.dll
C:\Users\Karliczek\AppData\Local\Temp\bdupdateservice.dll
C:\Users\Karliczek\AppData\Local\Temp\DEVCON.EXE
C:\Users\Karliczek\AppData\Local\Temp\download.exe
C:\Users\Karliczek\AppData\Local\Temp\eEmpty.exe
C:\Users\Karliczek\AppData\Local\Temp\encdec.dll
C:\Users\Karliczek\AppData\Local\Temp\esupdate.exe
C:\Users\Karliczek\AppData\Local\Temp\FSSync.dll
C:\Users\Karliczek\AppData\Local\Temp\Getvlist.exe
C:\Users\Karliczek\AppData\Local\Temp\ikave.dll
C:\Users\Karliczek\AppData\Local\Temp\ipc.dll
C:\Users\Karliczek\AppData\Local\Temp\kave.dll
C:\Users\Karliczek\AppData\Local\Temp\kavvlg.dll
C:\Users\Karliczek\AppData\Local\Temp\KK.EXE
C:\Users\Karliczek\AppData\Local\Temp\msvclnt.dll
C:\Users\Karliczek\AppData\Local\Temp\msvcp80.dll
C:\Users\Karliczek\AppData\Local\Temp\msvcr80.dll
C:\Users\Karliczek\AppData\Local\Temp\msvl64.dll
C:\Users\Karliczek\AppData\Local\Temp\msvlclnt.dll
C:\Users\Karliczek\AppData\Local\Temp\MWAVL.exe
C:\Users\Karliczek\AppData\Local\Temp\MWAVReg.EXE
C:\Users\Karliczek\AppData\Local\Temp\mwunzip.dll
C:\Users\Karliczek\AppData\Local\Temp\prLoader.dll
C:\Users\Karliczek\AppData\Local\Temp\red32.dll
C:\Users\Karliczek\AppData\Local\Temp\reload.exe
C:\Users\Karliczek\AppData\Local\Temp\scan.dll
C:\Users\Karliczek\AppData\Local\Temp\ScanningProcess.exe
C:\Users\Karliczek\AppData\Local\Temp\setpriv.exe
C:\Users\Karliczek\AppData\Local\Temp\test2.exe
C:\Users\Karliczek\AppData\Local\Temp\unregx.exe
C:\Users\Karliczek\AppData\Local\Temp\viewtcp.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-15 09:49
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Crucial M4) (Fixed) (Total:119.24 GB) (Free:49.22 GB) NTFS
Drive d: (Samsung 500) (Fixed) (Total:465.66 GB) (Free:70.04 GB) NTFS
Drive g: (Seagate 250) (Fixed) (Total:232.88 GB) (Free:110.16 GB) NTFS
Drive h: (Seagate 2TB) (Fixed) (Total:1863 GB) (Free:323.1 GB) NTFS
Drive i: (Pro Evolution Soccer 2015) (CDROM) (Total:5.98 GB) (Free:0 GB) UDF
Drive k: (WD 1TB) (Fixed) (Total:931.39 GB) (Free:130 GB) NTFS
Available physical RAM: 5786.36 MB
Total physical RAM: 8173.24 MB
Percentage of memory in use: 29%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 9A9216DD)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000)
Disk: 2 (Size: 119.2 GB) (Disk ID: C4F446E0)
Partition 1: (Not Active) - (Size=119.2 GB) - (Type=07 NTFS)
Disk: 3 (Size: 232.9 GB) (Disk ID: F4ACF4AC)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Karliczek\Desktop" je 156 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update
C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Live Update
C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay
C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^GIGABYTE OC_GURU.lnk
C:\PROGRA~2\GIGABYTE\GIGABY~1\OC_GURU.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Karliczek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat v�strahy inkoustu - HP Deskjet 1050 J410 series.lnk
C:\Windows\system32\RunDll32.exe
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (9.63 KiB) Staženo 40 x
Re: smschvost.exe vytěžuje CPU na 25%


Kód: Vybrat vše
C:\Users\Karliczek\AppData\Roaming\nssm.exe
C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll
C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll
C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll
C:\Users\Karliczek\AppData\Roaming\nircmd.exe



- Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
- ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
- znovu spustte FRST a kliknete na Fix
- po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi
Kód: Vybrat vše
Start CloseProcesses: Task: {1FE9F9A0-0265-45DC-8F74-4059649443EC} - System32\Tasks\Java Updater => C:\Users\Karliczek\AppData\Roaming\nircmd.exe [2013-08-11] (NirSoft) 2014-11-14 10:43 - 2014-11-14 20:16 - 00003816 _____ () C:\Windows\System32\Tasks\Java Updater 2014-11-14 10:43 - 2014-06-29 12:35 - 00294912 ___SH () C:\Users\Karliczek\AppData\Roaming\nssm.exe 2014-11-14 10:43 - 2014-05-24 20:09 - 00603763 ___SH () C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll 2014-11-14 10:43 - 2014-05-24 20:09 - 00244224 ___SH () C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe 2014-11-14 10:43 - 2014-05-24 20:09 - 00042496 ___SH (Open Source Software community project) C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll 2014-11-14 10:43 - 2014-05-04 10:16 - 00207360 ___SH (CodePlex Community) C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll 2014-11-14 10:43 - 2013-08-11 14:41 - 00044032 ___SH (NirSoft) C:\Users\Karliczek\AppData\Roaming\nircmd.exe 2014-11-15 00:54 - 2014-11-15 00:54 - 00000000 ____D () C:\Users\Karliczek\Desktop\MWAV antivirus+návod+keygen 2014-11-15 00:48 - 2014-11-15 00:51 - 68973214 _____ () C:\Users\Karliczek\Downloads\MWAV-antivirus+návod+keygen.rar R2 WUAUCLT; C:\Users\Karliczek\AppData\Roaming\nssm.exe [294912 2014-06-29] () [File not signed] 2014-11-04 21:41 - 2014-11-04 21:41 - 00835460 _____ () C:\Users\Karliczek\Downloads\Crack CoDW.rar HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation) HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\MountPoints2: {c43dfcc4-8862-11e3-9402-902b34afd3fb} - I:\setup.exe Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f Hosts: EmptyTemp: End
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: smschvost.exe vytěžuje CPU na 25%
Za warez se omlouvám..Na Steamu mám přes 250 her občas něco stáhnu když to chci nejdříve zkusit když nedělají dema ale jen minimálně...Jinak k těm souborům se nemůžu dostat vůbec mi to nechce PC najít..
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-11-2014
Ran by Karliczek at 2014-11-15 12:43:03 Run:1
Running from C:\Users\Karliczek\Desktop
Loaded Profile: Karliczek (Available profiles: Karliczek)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
Task: {1FE9F9A0-0265-45DC-8F74-4059649443EC} - System32\Tasks\Java Updater => C:\Users\Karliczek\AppData\Roaming\nircmd.exe [2013-08-11] (NirSoft)
2014-11-14 10:43 - 2014-11-14 20:16 - 00003816 _____ () C:\Windows\System32\Tasks\Java Updater
2014-11-14 10:43 - 2014-06-29 12:35 - 00294912 ___SH () C:\Users\Karliczek\AppData\Roaming\nssm.exe
2014-11-14 10:43 - 2014-05-24 20:09 - 00603763 ___SH () C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll
2014-11-14 10:43 - 2014-05-24 20:09 - 00244224 ___SH () C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
2014-11-14 10:43 - 2014-05-24 20:09 - 00042496 ___SH (Open Source Software community project) C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll
2014-11-14 10:43 - 2014-05-04 10:16 - 00207360 ___SH (CodePlex Community) C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll
2014-11-14 10:43 - 2013-08-11 14:41 - 00044032 ___SH (NirSoft) C:\Users\Karliczek\AppData\Roaming\nircmd.exe
2014-11-15 00:54 - 2014-11-15 00:54 - 00000000 ____D () C:\Users\Karliczek\Desktop\MWAV antivirus+návod+keygen
2014-11-15 00:48 - 2014-11-15 00:51 - 68973214 _____ () C:\Users\Karliczek\Downloads\MWAV-antivirus+návod+keygen.rar
R2 WUAUCLT; C:\Users\Karliczek\AppData\Roaming\nssm.exe [294912 2014-06-29] () [File not signed]
2014-11-04 21:41 - 2014-11-04 21:41 - 00835460 _____ () C:\Users\Karliczek\Downloads\Crack CoDW.rar
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\MountPoints2: {c43dfcc4-8862-11e3-9402-902b34afd3fb} - I:\setup.exe
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{1FE9F9A0-0265-45DC-8F74-4059649443EC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1FE9F9A0-0265-45DC-8F74-4059649443EC}" => Key deleted successfully.
C:\Windows\System32\Tasks\Java Updater => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Java Updater" => Key deleted successfully.
"C:\Windows\System32\Tasks\Java Updater" => File/Directory not found.
C:\Users\Karliczek\AppData\Roaming\nssm.exe => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\nircmd.exe => Moved successfully.
"C:\Users\Karliczek\Desktop\MWAV antivirus+návod+keygen" => File/Directory not found.
"C:\Users\Karliczek\Downloads\MWAV-antivirus+návod+keygen.rar" => File/Directory not found.
WUAUCLT => Service deleted successfully.
C:\Users\Karliczek\Downloads\Crack CoDW.rar => Moved successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
"HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c43dfcc4-8862-11e3-9402-902b34afd3fb}" => Key deleted successfully.
"HKCR\CLSID\{c43dfcc4-8862-11e3-9402-902b34afd3fb}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value deleted successfully.
"HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => Key not found.
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 914.7 MB temporary data.
The system needed a reboot.
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-11-2014
Ran by Karliczek at 2014-11-15 12:43:03 Run:1
Running from C:\Users\Karliczek\Desktop
Loaded Profile: Karliczek (Available profiles: Karliczek)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
Task: {1FE9F9A0-0265-45DC-8F74-4059649443EC} - System32\Tasks\Java Updater => C:\Users\Karliczek\AppData\Roaming\nircmd.exe [2013-08-11] (NirSoft)
2014-11-14 10:43 - 2014-11-14 20:16 - 00003816 _____ () C:\Windows\System32\Tasks\Java Updater
2014-11-14 10:43 - 2014-06-29 12:35 - 00294912 ___SH () C:\Users\Karliczek\AppData\Roaming\nssm.exe
2014-11-14 10:43 - 2014-05-24 20:09 - 00603763 ___SH () C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll
2014-11-14 10:43 - 2014-05-24 20:09 - 00244224 ___SH () C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe
2014-11-14 10:43 - 2014-05-24 20:09 - 00042496 ___SH (Open Source Software community project) C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll
2014-11-14 10:43 - 2014-05-04 10:16 - 00207360 ___SH (CodePlex Community) C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll
2014-11-14 10:43 - 2013-08-11 14:41 - 00044032 ___SH (NirSoft) C:\Users\Karliczek\AppData\Roaming\nircmd.exe
2014-11-15 00:54 - 2014-11-15 00:54 - 00000000 ____D () C:\Users\Karliczek\Desktop\MWAV antivirus+návod+keygen
2014-11-15 00:48 - 2014-11-15 00:51 - 68973214 _____ () C:\Users\Karliczek\Downloads\MWAV-antivirus+návod+keygen.rar
R2 WUAUCLT; C:\Users\Karliczek\AppData\Roaming\nssm.exe [294912 2014-06-29] () [File not signed]
2014-11-04 21:41 - 2014-11-04 21:41 - 00835460 _____ () C:\Users\Karliczek\Downloads\Crack CoDW.rar
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\...\MountPoints2: {c43dfcc4-8862-11e3-9402-902b34afd3fb} - I:\setup.exe
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{1FE9F9A0-0265-45DC-8F74-4059649443EC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1FE9F9A0-0265-45DC-8F74-4059649443EC}" => Key deleted successfully.
C:\Windows\System32\Tasks\Java Updater => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Java Updater" => Key deleted successfully.
"C:\Windows\System32\Tasks\Java Updater" => File/Directory not found.
C:\Users\Karliczek\AppData\Roaming\nssm.exe => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\libcurl-4.dll => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\SMSvcHost.exe => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\pthreadGC2-w64.dll => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\Microsoft.Win32.TaskScheduler.dll => Moved successfully.
C:\Users\Karliczek\AppData\Roaming\nircmd.exe => Moved successfully.
"C:\Users\Karliczek\Desktop\MWAV antivirus+návod+keygen" => File/Directory not found.
"C:\Users\Karliczek\Downloads\MWAV-antivirus+návod+keygen.rar" => File/Directory not found.
WUAUCLT => Service deleted successfully.
C:\Users\Karliczek\Downloads\Crack CoDW.rar => Moved successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
"HKU\S-1-5-21-2173492835-1418260648-1569503516-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c43dfcc4-8862-11e3-9402-902b34afd3fb}" => Key deleted successfully.
"HKCR\CLSID\{c43dfcc4-8862-11e3-9402-902b34afd3fb}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value deleted successfully.
"HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => Key not found.
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 914.7 MB temporary data.
The system needed a reboot.
==== End of Fixlog ====
Re: smschvost.exe vytěžuje CPU na 25%


Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: smschvost.exe vytěžuje CPU na 25%
Aktualizace jsem zkoušel a zdá se že je to funkční..Odkaz: http://leteckaposta.cz/463927983 děkuji
Re: smschvost.exe vytěžuje CPU na 25%


- Stahnete a spustte DelFix - https://toolslib.net/downloads/viewdownload/2-delfix/
- Oznacte jen moznost "Remove disinfection tools"
- kliknete na Run
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: smschvost.exe vytěžuje CPU na 25%
Mockrát děkuji za váš čas a ještě jednou se omlouvám...vytížení procesoru je pryč.... 

Re: smschvost.exe vytěžuje CPU na 25%
Nemate zac, rad jsem pomohl 
Preju Vam prijemny prodlouzeny vikend... a vetsi obezretnost na to, co si do PC natahujete


Preju Vam prijemny prodlouzeny vikend... a vetsi obezretnost na to, co si do PC natahujete


Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.