Vypinanie hier
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Vypinanie hier
poprosil by som skontrolovat log pretoze posledne dni mi vypne hru (SPINTIRES( par minut po jej spusteni. mozu s tym suvisiet aplikacie imperia online,norton security scan ,ktore sa mi same nainstalovali do notebooku,ked som isnatloval inu aplikaciu a neviem sa ich zbavit ?
Logfile of random's system information tool 1.10 (written by random/random)
Run by user at 2015-01-06 14:51:04
Microsoft Windows 8.1
System drive C: has 30 GB (25%) free of 121 GB
Total RAM: 16264 MB (78% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:51:07, on 6.1.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe
C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
C:\Program Files (x86)\ConMet\ConMet.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\user\Origin\Origin.exe
C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
C:\Program Files (x86)\Down2Home\Down2Home.exe
C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe
C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe
C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe
C:\PROGRA~2\RELEVA~1\rlvknlg32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\user.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Search App by Ask BHO - {4B4D5056-372D-5350-00A7-7A786E7484D7} - (no file)
O2 - BHO: Search App by Ask BHO - {5347542D-5350-006A-76A7-7A786E7484D7} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll
O3 - Toolbar: (no name) - {4B4D5056-372D-5350-00A7-7A786E7484D7} - (no file)
O3 - Toolbar: (no name) - {5347542D-5350-006A-76A7-7A786E7484D7} - (no file)
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [BacKGround Agent] C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [abDocsDllLoader] C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
O4 - HKCU\..\Run: [Pokki] "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [ConMet] C:\Program Files (x86)\ConMet\ConMet.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [EADM] "C:\Users\user\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\RunOnce: [Application Restart #0] C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe --disable-internal-flash --noerrdialogs --no-message-box --disable-extensions --disable-web-security --disable-web-resources --disable-client-side-phishing-detection --enable-file-cookies --disable-sync --disable-breakpad --disable-bundled-ppapi-flash --disable-sync-tabs --disable-speech-input --disable-custom-jumplist --process-per-tab --debug-devtools-frontend="C:\Users\user\AppData\Local\Pokki\Engine\inspector" --no-first-run --lang=en-US --disable-component-update --disable-prompt-on-repost --no-startup-window --disable-translate --disable-logging --disable-desktop-notifications --disable-gpu-process-prelaunch --flag-switches-begin --flag-switches-end --restore-last-session
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
O4 - Global Startup: Down2Home.lnk = C:\Program Files (x86)\Down2Home\Down2Home.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - TODO: <Company name> - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Launch Manager Service (LMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Users\user\Origin\OriginClientService.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: Quick Access Service (QASvc) - Acer Incorporate - C:\Program Files\Acer\Acer Quick Access\QASvc.exe
O23 - Service: RelevantKnowledge - TMRG, Inc. - C:\Program Files (x86)\RelevantKnowledge\rlservice.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: Quick Access RadioMgr Service (RMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: User Experience Improvement Program (UEIPSvc) - acer - C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14825 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
"c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe"
"C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe"
"C:\Program Files (x86)\RelevantKnowledge\rlservice.exe" /service
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\McAfee\MSC\McAPExe.exe"
"C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe"
dashost.exe {b37e4c55-99b5-4f5b-8b4d1609fd1b09c3}
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\wmiprvse.exe
taskeng.exe {61F43574-B4C1-487E-8CBE-FB47F033E949}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer Quick Access\QASvc.exe"
"C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe"
"C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe"
"C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe" "C:\Users\user\AppData\Local\AOP SDK\Acer Infra\acer\SyncAgent" S-1-5-21-1087847046-594235692-4020934395-1002 464 466 "C:\ProgramData\acer\CCD"
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
"C:\Program Files\Acer\Acer Quick Access\RMSvc.exe"
"C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe"
"c:\PROGRA~1\mcafee\vul\mcvulctr.exe" -Embedding
C:\Windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Windows\SysWOW64\rundll32.exe" "c:\PROGRA~2\mcafee\siteadvisor\saHook.dll", saHooker_Initialize_and_Wait
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\siteadvisor\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe" /platui -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe" -boot
"C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe"
"C:\Program Files\Acer\Acer Quick Access\QAEvent.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Launch Manager\LMTray.exe"
"C:\Program Files\Acer\Acer Quick Access\QAMsg.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Dolby Digital Plus\ddp.exe" -autostart
"C:\Users\user\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
"C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe"
"C:\Program Files (x86)\ConMet\ConMet.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Users\user\Origin\Origin.exe" -AutoStart
"C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
"C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe"
"C:\Program Files (x86)\Down2Home\Down2Home.exe"
"C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe"
"C:\Windows\system32\igfxext.exe" -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
"C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe"
"C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe"
"C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe"
"C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe" -hide
"C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe"
"C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe" --type=renderer --disable-breakpad --disable-desktop-notifications --disable-logging --disable-speech-input --lang=en-US --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/OmniboxDisallowInlineHQP/Standard/OmniboxSearchSuggest/13/OneClickSignIn/Standard/Prefetch/ContentPrefetchPrefetchOn/Prerender/Prerender15minTTL/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V1/SpdyCwnd/cwnd10/SpeculativePrefetchingLearning/SpeculativePrefetchingLearningEnabled/Test0PercentDefault/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warm_socket/ --noerrdialogs --disable-client-side-phishing-detection --disable-bundled-ppapi-flash --channel="6700.1.1436746761\240065532" /prefetch:3
"C:\Users\user\AppData\Local\Pokki\Engine\StartMenuIndexer.exe"
"C:\PROGRA~2\RELEVA~1\rlvknlg64.exe" 4540
"C:\PROGRA~2\RELEVA~1\rlvknlg32.exe" 4540
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\Windows\helppane.exe -Embedding
"C:\Windows\FileManager\PhotosApp.exe" -ServerName:Microsoft.Windows.PhotoManager
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --enable-npn-http --use-system-ssl --prerender=disabled --enable-npn-http --use-system-ssl --prerender=disabled
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="11280.0.876284696\1555082434" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3355 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_71/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="11280.2.379786519\1318705809" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe45_ Global\UsGthrCtrlFltPipeMssGthrPipe45 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 592 596 604 65536 600
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\MOJE VECI\auta\KK\PEVNOSTAKY\RSITx64 (1).exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineCore1cfea84c2df5c16.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineCore1d001c0a7fe771.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\Norton Security Scan for user.job - C:\PROGRA~2\NORTON~2\Engine\410~1.28\Nss.exe /scan-quick /scheduled
C:\Windows\tasks\WpsNotifyTask_user.job - C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe -from=task
C:\Windows\tasks\WpsUpdateTask_user.job - C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe -from=task
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-372D-5350-00A7-7A786E7484D7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5350-006A-76A7-7A786E7484D7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-20 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-08-20 256456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\siteadvisor\x64\mcieplg.dll [2014-10-30 294400]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-372D-5350-00A7-7A786E7484D7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5350-006A-76A7-7A786E7484D7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-08-20 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-20 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-08-20 194504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll [2014-10-30 241864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-08-20 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-08-20 256456]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\siteadvisor\x64\mcieplg.dll [2014-10-30 294400]
{4B4D5056-372D-5350-00A7-7A786E7484D7}
{5347542D-5350-006A-76A7-7A786E7484D7}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-08-20 194504]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll [2014-10-30 241864]
{4B4D5056-372D-5350-00A7-7A786E7484D7}
{5347542D-5350-006A-76A7-7A786E7484D7}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-11-19 391152]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-11-19 771056]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-11-19 770032]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-08-27 13647576]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-08-07 1321688]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2014-04-29 134784]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Pokki"=C:\Users\user\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe [2015-01-01 10232648]
"Spotify Web Helper"=C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [2014-07-24 1168896]
"ConMet"=C:\Program Files (x86)\ConMet\ConMet.exe [2014-09-26 4483584]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-10-01 22065760]
"EADM"=C:\Users\user\Origin\Origin.exe [2014-12-26 3618648]
"Sony PC Companion"=C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [2014-10-15 468192]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Application Restart #0"=C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe [2015-01-01 7843656]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"mcpltui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25 537992]
"BacKGround Agent"=C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [2014-11-17 62208]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-20 4085896]
"PMBVolumeWatcher"=C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2014-06-24 2557976]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896]
"abDocsDllLoader"=C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [2014-11-20 90368]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2014-04-29 134784]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Down2Home.lnk - C:\Program Files (x86)\Down2Home\Down2Home.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2013-11-13 624640]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"midi4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-01-06 12:03:56 ----D---- C:\rsit
2015-01-06 12:03:56 ----D---- C:\Program Files\trend micro
2015-01-06 11:30:09 ----SHD---- C:\Config.Msi
2015-01-01 15:12:12 ----A---- C:\Windows\SYSWOW64\rlls.dll
2015-01-01 15:12:12 ----A---- C:\Windows\system32\rlls64.dll
2015-01-01 14:52:36 ----D---- C:\Program Files (x86)\RelevantKnowledge
2015-01-01 14:52:18 ----D---- C:\Users\user\AppData\Roaming\New Version Available
2015-01-01 14:52:17 ----D---- C:\Users\user\AppData\Roaming\MP3 Cutter Joiner Free
2015-01-01 14:48:59 ----D---- C:\Users\user\AppData\Roaming\Opera Software
2015-01-01 14:48:58 ----D---- C:\Users\user\AppData\Roaming\Yandex
2015-01-01 14:48:58 ----D---- C:\Users\user\AppData\Roaming\Mozilla
2015-01-01 14:48:33 ----D---- C:\Windows\system32\drivers\NSSx64
2015-01-01 14:48:33 ----D---- C:\Program Files (x86)\Norton Security Scan
2015-01-01 14:48:31 ----D---- C:\ProgramData\Norton
2015-01-01 14:48:30 ----D---- C:\ProgramData\NortonInstaller
2015-01-01 14:48:30 ----D---- C:\Program Files (x86)\NortonInstaller
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioRecord2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioPlayer2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioInformation2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioFile2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioEditor2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioDesign2.dll
2015-01-01 14:47:06 ----D---- C:\Users\user\AppData\Roaming\ImperiaOnline
2015-01-01 14:24:15 ----SHD---- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2015-01-01 14:24:15 ----HD---- C:\ProgramData\Common Files
2015-01-01 14:24:15 ----D---- C:\ProgramData\TuneUp Software
2015-01-01 14:23:31 ----D---- C:\Program Files (x86)\ASIO4ALL v2
2015-01-01 14:23:26 ----D---- C:\Users\user\AppData\Roaming\IHlpr
2015-01-01 14:23:23 ----D---- C:\Users\user\AppData\Roaming\OpenCandy
2015-01-01 14:23:23 ----A---- C:\Windows\SYSWOW64\rewire.dll
2015-01-01 13:41:50 ----D---- C:\Program Files (x86)\Image-Line
2015-01-01 12:26:21 ----D---- C:\waweshop
2014-12-27 00:36:28 ----D---- C:\Windows\system32\appraiser
2014-12-26 18:53:58 ----D---- C:\Program Files (x86)\Origin Games
2014-12-26 18:43:31 ----D---- C:\Users\user\AppData\Roaming\Origin
2014-12-26 18:37:44 ----D---- C:\ProgramData\Origin
2014-12-26 18:37:44 ----D---- C:\ProgramData\Electronic Arts
2014-12-26 18:09:02 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-12-26 18:09:02 ----A---- C:\Windows\system32\crypt32.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\invagent.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\generaltel.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\devinv.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\appraiser.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\aepic.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\aeinv.dll
2014-12-26 18:08:57 ----A---- C:\Windows\system32\aepdu.dll
2014-12-26 18:08:47 ----A---- C:\Windows\SYSWOW64\MrmCoreR.dll
2014-12-26 18:08:47 ----A---- C:\Windows\system32\MrmCoreR.dll
2014-12-26 18:08:42 ----A---- C:\Windows\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-26 18:08:42 ----A---- C:\Windows\system32\DeviceSetupStatusProvider.dll
2014-12-26 18:01:49 ----D---- C:\Users\user\AppData\Roaming\SpinTires
2014-12-26 18:01:46 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-12-26 18:01:46 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-12-26 18:01:46 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-12-26 18:01:46 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-12-26 18:01:46 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-12-26 18:01:46 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-12-26 18:01:46 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-12-26 18:01:45 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-12-26 18:01:45 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-12-26 18:01:44 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-12-26 18:01:44 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-12-26 18:01:44 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-12-26 18:01:44 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-12-26 18:01:43 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-12-26 18:01:43 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-12-26 18:01:43 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-12-26 18:01:43 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-12-26 18:01:43 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-12-26 18:01:43 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-12-26 18:01:43 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-12-26 18:01:43 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-12-26 18:01:37 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-12-26 18:01:37 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-12-26 18:01:37 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-12-26 18:01:35 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-12-26 18:01:35 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-12-26 18:01:35 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-12-26 18:01:35 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-12-26 18:01:35 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-12-26 18:01:35 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\xinput1_3.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-12-26 18:01:31 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-12-26 18:01:31 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-12-26 18:01:31 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-12-26 18:01:31 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-12-26 18:01:31 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-12-26 18:01:31 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-12-26 18:01:31 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-12-26 18:01:31 ----A---- C:\Windows\system32\d3dx10.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\xinput1_2.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-12-26 18:01:29 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-12-26 18:01:29 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-12-26 18:01:29 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-12-26 18:01:29 ----A---- C:\Windows\system32\xinput1_1.dll
2014-12-26 18:01:29 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-12-26 18:01:29 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-12-26 18:01:26 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-12-26 18:01:26 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-12-26 18:01:26 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-12-26 18:01:26 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-12-26 18:01:26 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-12-26 18:01:26 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-12-26 18:01:26 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-12-26 18:01:26 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-12-26 18:01:25 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-12-26 18:01:25 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-12-26 18:01:25 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-12-26 18:01:25 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-12-26 18:01:25 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-12-26 18:01:25 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-12-26 18:01:24 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-12-26 18:01:24 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-12-26 18:01:23 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-12-26 18:01:23 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-12-26 16:27:07 ----D---- C:\Program Files (x86)\Steam
2014-12-26 16:22:27 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-12-26 16:22:26 ----AC---- C:\Windows\system32\drivers\sdbus.sys
2014-12-26 16:22:26 ----AC---- C:\Windows\system32\drivers\intelpep.sys
2014-12-26 16:22:26 ----AC---- C:\Windows\system32\drivers\dumpsd.sys
2014-12-26 16:22:26 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-12-26 16:22:26 ----A---- C:\Windows\system32\drivers\pdc.sys
2014-12-26 16:22:18 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-12-26 16:22:18 ----A---- C:\Windows\system32\poqexec.exe
2014-12-26 16:22:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-12-26 16:22:05 ----A---- C:\Windows\system32\mshtml.dll
2014-12-26 16:22:03 ----A---- C:\Windows\system32\ieframe.dll
2014-12-26 16:22:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-12-26 16:22:02 ----A---- C:\Windows\system32\wininet.dll
2014-12-26 16:22:02 ----A---- C:\Windows\system32\jscript9.dll
2014-12-26 16:22:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-12-26 16:22:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-12-26 16:22:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-12-26 16:22:01 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-12-26 16:22:01 ----A---- C:\Windows\system32\urlmon.dll
2014-12-26 16:22:01 ----A---- C:\Windows\system32\iertutil.dll
2014-12-26 16:22:00 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-12-26 16:22:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-12-26 16:22:00 ----A---- C:\Windows\system32\ieapfltr.dll
2014-12-26 16:21:59 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-12-26 16:21:59 ----A---- C:\Windows\system32\msfeeds.dll
2014-12-26 16:21:59 ----A---- C:\Windows\system32\iedkcs32.dll
2014-12-26 16:21:59 ----A---- C:\Windows\system32\ie4uinit.exe
2014-12-26 16:21:58 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-12-26 16:21:58 ----A---- C:\Windows\system32\vbscript.dll
2014-12-26 16:21:58 ----A---- C:\Windows\system32\iepeers.dll
2014-12-26 16:21:57 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-12-26 16:21:57 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-12-26 16:21:57 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-12-26 16:21:57 ----A---- C:\Windows\system32\webcheck.dll
2014-12-26 16:21:57 ----A---- C:\Windows\system32\mshtmled.dll
2014-12-26 16:21:57 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-12-26 16:21:57 ----A---- C:\Windows\system32\dxtrans.dll
2014-12-26 16:21:56 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-12-26 16:21:56 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-12-26 16:21:56 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-12-26 16:21:56 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-12-26 16:21:56 ----A---- C:\Windows\system32\jscript.dll
2014-12-26 16:21:56 ----A---- C:\Windows\system32\inetcomm.dll
======List of files/folders modified in the last 1 month======
2015-01-06 14:50:49 ----D---- C:\ProgramData\ConMet
2015-01-06 14:50:40 ----D---- C:\Windows\Prefetch
2015-01-06 14:49:42 ----D---- C:\Windows\Temp
2015-01-06 14:48:48 ----D---- C:\Windows\system32\sru
2015-01-06 14:48:48 ----D---- C:\Users\user\AppData\Roaming\ConMet
2015-01-06 14:48:47 ----D---- C:\Windows\tracing
2015-01-06 13:30:38 ----D---- C:\Windows\Microsoft.NET
2015-01-06 12:13:26 ----D---- C:\Windows\system32\NDF
2015-01-06 12:10:51 ----D---- C:\Windows\Inf
2015-01-06 12:03:56 ----RD---- C:\Program Files
2015-01-06 11:30:26 ----D---- C:\Program Files (x86)\Acer
2015-01-06 11:30:21 ----SHD---- C:\Windows\Installer
2015-01-04 18:36:55 ----SHD---- C:\System Volume Information
2015-01-04 17:38:18 ----D---- C:\Windows\AppReadiness
2015-01-02 16:13:43 ----D---- C:\Program Files (x86)\Common Files
2015-01-02 14:52:07 ----D---- C:\Windows\system32\Tasks
2015-01-02 13:43:30 ----D---- C:\Windows\system32\config
2015-01-02 11:20:11 ----D---- C:\Users\user\AppData\Roaming\Skype
2015-01-01 15:44:50 ----D---- C:\Windows\system32\DriverStore
2015-01-01 15:37:36 ----RD---- C:\Program Files (x86)
2015-01-01 15:37:36 ----D---- C:\Windows\SysWOW64
2015-01-01 15:27:06 ----D---- C:\The KMPlayer
2015-01-01 15:21:15 ----D---- C:\Windows\WinSxS
2015-01-01 15:12:12 ----RD---- C:\Windows\System32
2015-01-01 15:06:06 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-01-01 14:59:54 ----HD---- C:\ProgramData
2015-01-01 14:59:39 ----D---- C:\Windows\system32\catroot
2015-01-01 14:48:38 ----D---- C:\Windows\Tasks
2015-01-01 14:48:33 ----D---- C:\Windows\system32\drivers
2015-01-01 12:26:02 ----SD---- C:\Users\user\AppData\Roaming\Microsoft
2015-01-01 11:35:49 ----HD---- C:\Program Files\WindowsApps
2014-12-30 13:13:27 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-30 13:13:27 ----D---- C:\ProgramData\Sony
2014-12-30 13:13:27 ----D---- C:\Program Files (x86)\Sony
2014-12-28 15:31:02 ----RSD---- C:\Windows\assembly
2014-12-28 15:30:56 ----D---- C:\Windows\Logs
2014-12-27 21:20:24 ----D---- C:\Windows\rescache
2014-12-27 21:17:41 ----D---- C:\Windows\CbsTemp
2014-12-27 01:16:45 ----D---- C:\Users\user\AppData\Roaming\vlc
2014-12-27 00:36:29 ----D---- C:\Program Files\Internet Explorer
2014-12-27 00:36:29 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-27 00:36:28 ----SD---- C:\Windows\system32\CompatTel
2014-12-27 00:36:28 ----SD---- C:\ProgramData\Microsoft
2014-12-27 00:36:28 ----D---- C:\Windows\SYSWOW64\sk-SK
2014-12-27 00:36:28 ----D---- C:\Windows\SYSWOW64\en-US
2014-12-27 00:36:28 ----D---- C:\Windows\system32\sr-Latn-RS
2014-12-27 00:36:28 ----D---- C:\Windows\system32\sr-Latn-CS
2014-12-27 00:36:28 ----D---- C:\Windows\system32\sk-SK
2014-12-27 00:36:28 ----D---- C:\Windows\system32\en-US
2014-12-27 00:36:28 ----D---- C:\Windows\PolicyDefinitions
2014-12-27 00:36:28 ----D---- C:\Windows\AppCompat
2014-12-27 00:35:22 ----D---- C:\Windows\system32\MRT
2014-12-26 20:00:41 ----A---- C:\Windows\system32\MRT.exe
2014-12-26 18:07:38 ----D---- C:\Windows\system32\catroot2
2014-12-26 18:01:24 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-08-20 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-08-20 224896]
R0 BTATH_BUS;@oem17.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\Windows\System32\drivers\btath_bus.sys [2014-04-29 35016]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2013-08-07 644968]
R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2014-06-20 786296]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2014-06-20 348552]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-08-20 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-11-21 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-08-20 427360]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2015-01-02 487216]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-08-20 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-08-20 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-08-20 92008]
R3 AthBTPort;@oem20.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2014-04-29 89800]
R3 athr;@oem16.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athwbx.sys [2014-04-03 3893248]
R3 BTATH_A2DP;@oem19.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2014-04-29 338120]
R3 btath_avdt;@oem19.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\Windows\system32\drivers\btath_avdt.sys [2014-04-29 116424]
R3 BTATH_LWFLT;@oem24.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2014-04-29 77464]
R3 BTATH_RCP;@oem26.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\Windows\System32\drivers\btath_rcp.sys [2014-04-29 137928]
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2014-04-29 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2014-03-18 81920]
R3 cfwids;McAfee Inc. cfwids; C:\Windows\system32\drivers\cfwids.sys [2014-06-20 72128]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2013-11-13 4208640]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-08-27 3613528]
R3 iwdbus;@oem8.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-10-29 27032]
R3 k57nd60a;@oem13.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2013-10-30 458960]
R3 LMDriver;@oem23.inf,%LMDriver.SVCDESC%;Launch Manager Wireless Driver; C:\Windows\System32\drivers\LMDriver.sys [2013-07-17 21360]
R3 MEIx64;@oem11.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-09-04 99288]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\Windows\system32\drivers\mfeapfk.sys [2014-06-20 181704]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2014-06-20 313544]
R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2014-06-20 523792]
R3 mfencbdc;McAfee Inc. mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [2014-07-24 444720]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2014-01-08 12652320]
R3 RadioShim;@oem23.inf,%RadioShim.SVCDESC%;Shim for HID-KMDF Interface layer; C:\Windows\System32\drivers\RadioShim.sys [2013-07-17 14680]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2014-03-18 167424]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-10-01 34544]
R3 SynTP;@oem15.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-10-01 524528]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-08-22 212224]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\Windows\system32\drivers\mfeelamk.sys [2014-06-20 70600]
S3 aswTap;@oem35.inf,%DeviceDescription%;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2014-08-20 44640]
S3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl63a.sys [2013-07-01 8536752]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 HipShieldK;McAfee Inc. HipShieldK; C:\Windows\system32\drivers\HipShieldK.sys [2013-09-23 197704]
S3 intaud_WaveExtensible;@oem7.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-10-29 39320]
S3 IntcDAud;@oem5.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2013-11-13 449496]
S3 mfencrk;McAfee Inc. mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [2014-07-24 96592]
S3 mtkmbim;@oem32.inf,%DriverDesc%;D-Link Mobile Broadband NDIS 6.20 Miniport Driver; C:\Windows\system32\DRIVERS\mtkmbim7_x64.sys [2012-12-13 208896]
S3 RSPCIESTOR;@oem10.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2013-12-13 356056]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2014-04-29 319104]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-20 50344]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2014-11-17 2709760]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2013-07-16 235008]
R2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-12 733696]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-04 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-04 390616]
R2 LMSvc;Launch Manager Service; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [2014-03-17 459496]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2014-04-25 178528]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 mfecore;McAfee Anti-Malware Core; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2014-07-24 1041192]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-06-20 219752]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2014-06-20 189912]
R2 MSK80Service;McAfee Anti-Spam Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-01-08 922912]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2014-01-08 1364256]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [2014-06-24 481304]
R2 RelevantKnowledge;RelevantKnowledge; C:\Program Files (x86)\RelevantKnowledge\rlservice.exe [2013-08-17 186136]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2012-04-24 254512]
R2 SOHDms;Sony Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-01-16 495248]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2014-03-21 2573544]
R3 QASvc;Quick Access Service; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [2014-04-28 457960]
R3 RMSvc;Quick Access RadioMgr Service; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [2014-04-28 449768]
R3 SpfService;VAIO Entertainment Common Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-01 289952]
R3 UEIPSvc;User Experience Improvement Program; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [2014-01-25 222952]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-19 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2013-11-19 279024]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-19 116648]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-08-20 194032]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-12 822232]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe [2013-07-29 334608]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2014-06-12 603424]
S3 Origin Client Service;Origin Client Service; C:\Users\user\Origin\OriginClientService.exe [2014-12-26 1903472]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SOHDs;Sony Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-12-03 79000]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-18 833728]
S4 McOobeSv2;McAfee OOBE Service2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by user at 2015-01-06 14:51:04
Microsoft Windows 8.1
System drive C: has 30 GB (25%) free of 121 GB
Total RAM: 16264 MB (78% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:51:07, on 6.1.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe
C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
C:\Program Files (x86)\ConMet\ConMet.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\user\Origin\Origin.exe
C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
C:\Program Files (x86)\Down2Home\Down2Home.exe
C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe
C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe
C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe
C:\PROGRA~2\RELEVA~1\rlvknlg32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\user.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Search App by Ask BHO - {4B4D5056-372D-5350-00A7-7A786E7484D7} - (no file)
O2 - BHO: Search App by Ask BHO - {5347542D-5350-006A-76A7-7A786E7484D7} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll
O3 - Toolbar: (no name) - {4B4D5056-372D-5350-00A7-7A786E7484D7} - (no file)
O3 - Toolbar: (no name) - {5347542D-5350-006A-76A7-7A786E7484D7} - (no file)
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [BacKGround Agent] C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [abDocsDllLoader] C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
O4 - HKCU\..\Run: [Pokki] "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [ConMet] C:\Program Files (x86)\ConMet\ConMet.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [EADM] "C:\Users\user\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\RunOnce: [Application Restart #0] C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe --disable-internal-flash --noerrdialogs --no-message-box --disable-extensions --disable-web-security --disable-web-resources --disable-client-side-phishing-detection --enable-file-cookies --disable-sync --disable-breakpad --disable-bundled-ppapi-flash --disable-sync-tabs --disable-speech-input --disable-custom-jumplist --process-per-tab --debug-devtools-frontend="C:\Users\user\AppData\Local\Pokki\Engine\inspector" --no-first-run --lang=en-US --disable-component-update --disable-prompt-on-repost --no-startup-window --disable-translate --disable-logging --disable-desktop-notifications --disable-gpu-process-prelaunch --flag-switches-begin --flag-switches-end --restore-last-session
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
O4 - Global Startup: Down2Home.lnk = C:\Program Files (x86)\Down2Home\Down2Home.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - TODO: <Company name> - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Launch Manager Service (LMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Users\user\Origin\OriginClientService.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: Quick Access Service (QASvc) - Acer Incorporate - C:\Program Files\Acer\Acer Quick Access\QASvc.exe
O23 - Service: RelevantKnowledge - TMRG, Inc. - C:\Program Files (x86)\RelevantKnowledge\rlservice.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: Quick Access RadioMgr Service (RMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: User Experience Improvement Program (UEIPSvc) - acer - C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14825 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
"c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe"
"C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe"
"C:\Program Files (x86)\RelevantKnowledge\rlservice.exe" /service
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\McAfee\MSC\McAPExe.exe"
"C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe"
dashost.exe {b37e4c55-99b5-4f5b-8b4d1609fd1b09c3}
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\wmiprvse.exe
taskeng.exe {61F43574-B4C1-487E-8CBE-FB47F033E949}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer Quick Access\QASvc.exe"
"C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe"
"C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe"
"C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe" "C:\Users\user\AppData\Local\AOP SDK\Acer Infra\acer\SyncAgent" S-1-5-21-1087847046-594235692-4020934395-1002 464 466 "C:\ProgramData\acer\CCD"
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
"C:\Program Files\Acer\Acer Quick Access\RMSvc.exe"
"C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe"
"c:\PROGRA~1\mcafee\vul\mcvulctr.exe" -Embedding
C:\Windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Windows\SysWOW64\rundll32.exe" "c:\PROGRA~2\mcafee\siteadvisor\saHook.dll", saHooker_Initialize_and_Wait
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\siteadvisor\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe" /platui -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe" -boot
"C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe"
"C:\Program Files\Acer\Acer Quick Access\QAEvent.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Launch Manager\LMTray.exe"
"C:\Program Files\Acer\Acer Quick Access\QAMsg.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Dolby Digital Plus\ddp.exe" -autostart
"C:\Users\user\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
"C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe"
"C:\Program Files (x86)\ConMet\ConMet.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Users\user\Origin\Origin.exe" -AutoStart
"C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
"C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe"
"C:\Program Files (x86)\Down2Home\Down2Home.exe"
"C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe"
"C:\Windows\system32\igfxext.exe" -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
"C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe"
"C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe"
"C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe"
"C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe" -hide
"C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe"
"C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe" --type=renderer --disable-breakpad --disable-desktop-notifications --disable-logging --disable-speech-input --lang=en-US --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/OmniboxDisallowInlineHQP/Standard/OmniboxSearchSuggest/13/OneClickSignIn/Standard/Prefetch/ContentPrefetchPrefetchOn/Prerender/Prerender15minTTL/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V1/SpdyCwnd/cwnd10/SpeculativePrefetchingLearning/SpeculativePrefetchingLearningEnabled/Test0PercentDefault/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warm_socket/ --noerrdialogs --disable-client-side-phishing-detection --disable-bundled-ppapi-flash --channel="6700.1.1436746761\240065532" /prefetch:3
"C:\Users\user\AppData\Local\Pokki\Engine\StartMenuIndexer.exe"
"C:\PROGRA~2\RELEVA~1\rlvknlg64.exe" 4540
"C:\PROGRA~2\RELEVA~1\rlvknlg32.exe" 4540
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\Windows\helppane.exe -Embedding
"C:\Windows\FileManager\PhotosApp.exe" -ServerName:Microsoft.Windows.PhotoManager
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --enable-npn-http --use-system-ssl --prerender=disabled --enable-npn-http --use-system-ssl --prerender=disabled
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="11280.0.876284696\1555082434" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3355 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_71/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="11280.2.379786519\1318705809" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe45_ Global\UsGthrCtrlFltPipeMssGthrPipe45 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 592 596 604 65536 600
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\MOJE VECI\auta\KK\PEVNOSTAKY\RSITx64 (1).exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineCore1cfea84c2df5c16.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineCore1d001c0a7fe771.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\Norton Security Scan for user.job - C:\PROGRA~2\NORTON~2\Engine\410~1.28\Nss.exe /scan-quick /scheduled
C:\Windows\tasks\WpsNotifyTask_user.job - C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe -from=task
C:\Windows\tasks\WpsUpdateTask_user.job - C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe -from=task
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-372D-5350-00A7-7A786E7484D7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5350-006A-76A7-7A786E7484D7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-20 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-08-20 256456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\siteadvisor\x64\mcieplg.dll [2014-10-30 294400]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-372D-5350-00A7-7A786E7484D7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5350-006A-76A7-7A786E7484D7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-08-20 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-20 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-08-20 194504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll [2014-10-30 241864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-08-20 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2014-08-20 256456]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\siteadvisor\x64\mcieplg.dll [2014-10-30 294400]
{4B4D5056-372D-5350-00A7-7A786E7484D7}
{5347542D-5350-006A-76A7-7A786E7484D7}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2014-08-20 194504]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll [2014-10-30 241864]
{4B4D5056-372D-5350-00A7-7A786E7484D7}
{5347542D-5350-006A-76A7-7A786E7484D7}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-11-19 391152]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-11-19 771056]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-11-19 770032]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-08-27 13647576]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-08-07 1321688]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2014-04-29 134784]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Pokki"=C:\Users\user\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe [2015-01-01 10232648]
"Spotify Web Helper"=C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [2014-07-24 1168896]
"ConMet"=C:\Program Files (x86)\ConMet\ConMet.exe [2014-09-26 4483584]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-10-01 22065760]
"EADM"=C:\Users\user\Origin\Origin.exe [2014-12-26 3618648]
"Sony PC Companion"=C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [2014-10-15 468192]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Application Restart #0"=C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe [2015-01-01 7843656]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"mcpltui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25 537992]
"BacKGround Agent"=C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [2014-11-17 62208]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-20 4085896]
"PMBVolumeWatcher"=C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2014-06-24 2557976]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896]
"abDocsDllLoader"=C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [2014-11-20 90368]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2014-04-29 134784]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Down2Home.lnk - C:\Program Files (x86)\Down2Home\Down2Home.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2013-11-13 624640]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"midi4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-01-06 12:03:56 ----D---- C:\rsit
2015-01-06 12:03:56 ----D---- C:\Program Files\trend micro
2015-01-06 11:30:09 ----SHD---- C:\Config.Msi
2015-01-01 15:12:12 ----A---- C:\Windows\SYSWOW64\rlls.dll
2015-01-01 15:12:12 ----A---- C:\Windows\system32\rlls64.dll
2015-01-01 14:52:36 ----D---- C:\Program Files (x86)\RelevantKnowledge
2015-01-01 14:52:18 ----D---- C:\Users\user\AppData\Roaming\New Version Available
2015-01-01 14:52:17 ----D---- C:\Users\user\AppData\Roaming\MP3 Cutter Joiner Free
2015-01-01 14:48:59 ----D---- C:\Users\user\AppData\Roaming\Opera Software
2015-01-01 14:48:58 ----D---- C:\Users\user\AppData\Roaming\Yandex
2015-01-01 14:48:58 ----D---- C:\Users\user\AppData\Roaming\Mozilla
2015-01-01 14:48:33 ----D---- C:\Windows\system32\drivers\NSSx64
2015-01-01 14:48:33 ----D---- C:\Program Files (x86)\Norton Security Scan
2015-01-01 14:48:31 ----D---- C:\ProgramData\Norton
2015-01-01 14:48:30 ----D---- C:\ProgramData\NortonInstaller
2015-01-01 14:48:30 ----D---- C:\Program Files (x86)\NortonInstaller
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioRecord2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioPlayer2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioInformation2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioFile2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioEditor2.dll
2015-01-01 14:48:11 ----A---- C:\Windows\SYSWOW64\NCTAudioDesign2.dll
2015-01-01 14:47:06 ----D---- C:\Users\user\AppData\Roaming\ImperiaOnline
2015-01-01 14:24:15 ----SHD---- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2015-01-01 14:24:15 ----HD---- C:\ProgramData\Common Files
2015-01-01 14:24:15 ----D---- C:\ProgramData\TuneUp Software
2015-01-01 14:23:31 ----D---- C:\Program Files (x86)\ASIO4ALL v2
2015-01-01 14:23:26 ----D---- C:\Users\user\AppData\Roaming\IHlpr
2015-01-01 14:23:23 ----D---- C:\Users\user\AppData\Roaming\OpenCandy
2015-01-01 14:23:23 ----A---- C:\Windows\SYSWOW64\rewire.dll
2015-01-01 13:41:50 ----D---- C:\Program Files (x86)\Image-Line
2015-01-01 12:26:21 ----D---- C:\waweshop
2014-12-27 00:36:28 ----D---- C:\Windows\system32\appraiser
2014-12-26 18:53:58 ----D---- C:\Program Files (x86)\Origin Games
2014-12-26 18:43:31 ----D---- C:\Users\user\AppData\Roaming\Origin
2014-12-26 18:37:44 ----D---- C:\ProgramData\Origin
2014-12-26 18:37:44 ----D---- C:\ProgramData\Electronic Arts
2014-12-26 18:09:02 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-12-26 18:09:02 ----A---- C:\Windows\system32\crypt32.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\invagent.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\generaltel.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\devinv.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\appraiser.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\aepic.dll
2014-12-26 18:08:58 ----A---- C:\Windows\system32\aeinv.dll
2014-12-26 18:08:57 ----A---- C:\Windows\system32\aepdu.dll
2014-12-26 18:08:47 ----A---- C:\Windows\SYSWOW64\MrmCoreR.dll
2014-12-26 18:08:47 ----A---- C:\Windows\system32\MrmCoreR.dll
2014-12-26 18:08:42 ----A---- C:\Windows\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-26 18:08:42 ----A---- C:\Windows\system32\DeviceSetupStatusProvider.dll
2014-12-26 18:01:49 ----D---- C:\Users\user\AppData\Roaming\SpinTires
2014-12-26 18:01:46 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-12-26 18:01:46 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-12-26 18:01:46 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-12-26 18:01:46 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-12-26 18:01:46 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-12-26 18:01:46 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-12-26 18:01:46 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-12-26 18:01:45 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-12-26 18:01:45 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-12-26 18:01:44 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-12-26 18:01:44 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-12-26 18:01:44 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-12-26 18:01:44 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-12-26 18:01:44 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-12-26 18:01:43 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-12-26 18:01:43 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-12-26 18:01:43 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-12-26 18:01:43 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-12-26 18:01:43 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-12-26 18:01:43 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-12-26 18:01:43 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-12-26 18:01:43 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-12-26 18:01:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-12-26 18:01:42 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-12-26 18:01:41 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-12-26 18:01:41 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-12-26 18:01:40 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-12-26 18:01:39 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-12-26 18:01:39 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-12-26 18:01:38 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-12-26 18:01:37 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-12-26 18:01:37 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-12-26 18:01:37 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-12-26 18:01:37 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-12-26 18:01:36 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-12-26 18:01:35 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-12-26 18:01:35 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-12-26 18:01:35 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-12-26 18:01:35 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-12-26 18:01:35 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-12-26 18:01:35 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-12-26 18:01:34 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-12-26 18:01:33 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\xinput1_3.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-12-26 18:01:32 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-12-26 18:01:31 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-12-26 18:01:31 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-12-26 18:01:31 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-12-26 18:01:31 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-12-26 18:01:31 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-12-26 18:01:31 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-12-26 18:01:31 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-12-26 18:01:31 ----A---- C:\Windows\system32\d3dx10.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-12-26 18:01:30 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\xinput1_2.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-12-26 18:01:30 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-12-26 18:01:29 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-12-26 18:01:29 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-12-26 18:01:29 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-12-26 18:01:29 ----A---- C:\Windows\system32\xinput1_1.dll
2014-12-26 18:01:29 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-12-26 18:01:29 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-12-26 18:01:26 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-12-26 18:01:26 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-12-26 18:01:26 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-12-26 18:01:26 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-12-26 18:01:26 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-12-26 18:01:26 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-12-26 18:01:26 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-12-26 18:01:26 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-12-26 18:01:25 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-12-26 18:01:25 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-12-26 18:01:25 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-12-26 18:01:25 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-12-26 18:01:25 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-12-26 18:01:25 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-12-26 18:01:24 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-12-26 18:01:24 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-12-26 18:01:23 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-12-26 18:01:23 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-12-26 16:27:07 ----D---- C:\Program Files (x86)\Steam
2014-12-26 16:22:27 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-12-26 16:22:26 ----AC---- C:\Windows\system32\drivers\sdbus.sys
2014-12-26 16:22:26 ----AC---- C:\Windows\system32\drivers\intelpep.sys
2014-12-26 16:22:26 ----AC---- C:\Windows\system32\drivers\dumpsd.sys
2014-12-26 16:22:26 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-12-26 16:22:26 ----A---- C:\Windows\system32\drivers\pdc.sys
2014-12-26 16:22:18 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-12-26 16:22:18 ----A---- C:\Windows\system32\poqexec.exe
2014-12-26 16:22:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-12-26 16:22:05 ----A---- C:\Windows\system32\mshtml.dll
2014-12-26 16:22:03 ----A---- C:\Windows\system32\ieframe.dll
2014-12-26 16:22:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-12-26 16:22:02 ----A---- C:\Windows\system32\wininet.dll
2014-12-26 16:22:02 ----A---- C:\Windows\system32\jscript9.dll
2014-12-26 16:22:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-12-26 16:22:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-12-26 16:22:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-12-26 16:22:01 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-12-26 16:22:01 ----A---- C:\Windows\system32\urlmon.dll
2014-12-26 16:22:01 ----A---- C:\Windows\system32\iertutil.dll
2014-12-26 16:22:00 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-12-26 16:22:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-12-26 16:22:00 ----A---- C:\Windows\system32\ieapfltr.dll
2014-12-26 16:21:59 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-12-26 16:21:59 ----A---- C:\Windows\system32\msfeeds.dll
2014-12-26 16:21:59 ----A---- C:\Windows\system32\iedkcs32.dll
2014-12-26 16:21:59 ----A---- C:\Windows\system32\ie4uinit.exe
2014-12-26 16:21:58 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-12-26 16:21:58 ----A---- C:\Windows\system32\vbscript.dll
2014-12-26 16:21:58 ----A---- C:\Windows\system32\iepeers.dll
2014-12-26 16:21:57 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-12-26 16:21:57 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-12-26 16:21:57 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-12-26 16:21:57 ----A---- C:\Windows\system32\webcheck.dll
2014-12-26 16:21:57 ----A---- C:\Windows\system32\mshtmled.dll
2014-12-26 16:21:57 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-12-26 16:21:57 ----A---- C:\Windows\system32\dxtrans.dll
2014-12-26 16:21:56 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-12-26 16:21:56 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-12-26 16:21:56 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-12-26 16:21:56 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-12-26 16:21:56 ----A---- C:\Windows\system32\jscript.dll
2014-12-26 16:21:56 ----A---- C:\Windows\system32\inetcomm.dll
======List of files/folders modified in the last 1 month======
2015-01-06 14:50:49 ----D---- C:\ProgramData\ConMet
2015-01-06 14:50:40 ----D---- C:\Windows\Prefetch
2015-01-06 14:49:42 ----D---- C:\Windows\Temp
2015-01-06 14:48:48 ----D---- C:\Windows\system32\sru
2015-01-06 14:48:48 ----D---- C:\Users\user\AppData\Roaming\ConMet
2015-01-06 14:48:47 ----D---- C:\Windows\tracing
2015-01-06 13:30:38 ----D---- C:\Windows\Microsoft.NET
2015-01-06 12:13:26 ----D---- C:\Windows\system32\NDF
2015-01-06 12:10:51 ----D---- C:\Windows\Inf
2015-01-06 12:03:56 ----RD---- C:\Program Files
2015-01-06 11:30:26 ----D---- C:\Program Files (x86)\Acer
2015-01-06 11:30:21 ----SHD---- C:\Windows\Installer
2015-01-04 18:36:55 ----SHD---- C:\System Volume Information
2015-01-04 17:38:18 ----D---- C:\Windows\AppReadiness
2015-01-02 16:13:43 ----D---- C:\Program Files (x86)\Common Files
2015-01-02 14:52:07 ----D---- C:\Windows\system32\Tasks
2015-01-02 13:43:30 ----D---- C:\Windows\system32\config
2015-01-02 11:20:11 ----D---- C:\Users\user\AppData\Roaming\Skype
2015-01-01 15:44:50 ----D---- C:\Windows\system32\DriverStore
2015-01-01 15:37:36 ----RD---- C:\Program Files (x86)
2015-01-01 15:37:36 ----D---- C:\Windows\SysWOW64
2015-01-01 15:27:06 ----D---- C:\The KMPlayer
2015-01-01 15:21:15 ----D---- C:\Windows\WinSxS
2015-01-01 15:12:12 ----RD---- C:\Windows\System32
2015-01-01 15:06:06 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-01-01 14:59:54 ----HD---- C:\ProgramData
2015-01-01 14:59:39 ----D---- C:\Windows\system32\catroot
2015-01-01 14:48:38 ----D---- C:\Windows\Tasks
2015-01-01 14:48:33 ----D---- C:\Windows\system32\drivers
2015-01-01 12:26:02 ----SD---- C:\Users\user\AppData\Roaming\Microsoft
2015-01-01 11:35:49 ----HD---- C:\Program Files\WindowsApps
2014-12-30 13:13:27 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-30 13:13:27 ----D---- C:\ProgramData\Sony
2014-12-30 13:13:27 ----D---- C:\Program Files (x86)\Sony
2014-12-28 15:31:02 ----RSD---- C:\Windows\assembly
2014-12-28 15:30:56 ----D---- C:\Windows\Logs
2014-12-27 21:20:24 ----D---- C:\Windows\rescache
2014-12-27 21:17:41 ----D---- C:\Windows\CbsTemp
2014-12-27 01:16:45 ----D---- C:\Users\user\AppData\Roaming\vlc
2014-12-27 00:36:29 ----D---- C:\Program Files\Internet Explorer
2014-12-27 00:36:29 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-27 00:36:28 ----SD---- C:\Windows\system32\CompatTel
2014-12-27 00:36:28 ----SD---- C:\ProgramData\Microsoft
2014-12-27 00:36:28 ----D---- C:\Windows\SYSWOW64\sk-SK
2014-12-27 00:36:28 ----D---- C:\Windows\SYSWOW64\en-US
2014-12-27 00:36:28 ----D---- C:\Windows\system32\sr-Latn-RS
2014-12-27 00:36:28 ----D---- C:\Windows\system32\sr-Latn-CS
2014-12-27 00:36:28 ----D---- C:\Windows\system32\sk-SK
2014-12-27 00:36:28 ----D---- C:\Windows\system32\en-US
2014-12-27 00:36:28 ----D---- C:\Windows\PolicyDefinitions
2014-12-27 00:36:28 ----D---- C:\Windows\AppCompat
2014-12-27 00:35:22 ----D---- C:\Windows\system32\MRT
2014-12-26 20:00:41 ----A---- C:\Windows\system32\MRT.exe
2014-12-26 18:07:38 ----D---- C:\Windows\system32\catroot2
2014-12-26 18:01:24 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-08-20 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-08-20 224896]
R0 BTATH_BUS;@oem17.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\Windows\System32\drivers\btath_bus.sys [2014-04-29 35016]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2013-08-07 644968]
R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2014-06-20 786296]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2014-06-20 348552]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-08-20 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-11-21 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-08-20 427360]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2015-01-02 487216]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-08-20 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-08-20 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-08-20 92008]
R3 AthBTPort;@oem20.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2014-04-29 89800]
R3 athr;@oem16.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athwbx.sys [2014-04-03 3893248]
R3 BTATH_A2DP;@oem19.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2014-04-29 338120]
R3 btath_avdt;@oem19.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\Windows\system32\drivers\btath_avdt.sys [2014-04-29 116424]
R3 BTATH_LWFLT;@oem24.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2014-04-29 77464]
R3 BTATH_RCP;@oem26.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\Windows\System32\drivers\btath_rcp.sys [2014-04-29 137928]
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2014-04-29 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2014-03-18 81920]
R3 cfwids;McAfee Inc. cfwids; C:\Windows\system32\drivers\cfwids.sys [2014-06-20 72128]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2013-11-13 4208640]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-08-27 3613528]
R3 iwdbus;@oem8.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-10-29 27032]
R3 k57nd60a;@oem13.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2013-10-30 458960]
R3 LMDriver;@oem23.inf,%LMDriver.SVCDESC%;Launch Manager Wireless Driver; C:\Windows\System32\drivers\LMDriver.sys [2013-07-17 21360]
R3 MEIx64;@oem11.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-09-04 99288]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\Windows\system32\drivers\mfeapfk.sys [2014-06-20 181704]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2014-06-20 313544]
R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2014-06-20 523792]
R3 mfencbdc;McAfee Inc. mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [2014-07-24 444720]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2014-01-08 12652320]
R3 RadioShim;@oem23.inf,%RadioShim.SVCDESC%;Shim for HID-KMDF Interface layer; C:\Windows\System32\drivers\RadioShim.sys [2013-07-17 14680]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2014-03-18 167424]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-10-01 34544]
R3 SynTP;@oem15.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-10-01 524528]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-08-22 212224]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\Windows\system32\drivers\mfeelamk.sys [2014-06-20 70600]
S3 aswTap;@oem35.inf,%DeviceDescription%;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2014-08-20 44640]
S3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl63a.sys [2013-07-01 8536752]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 HipShieldK;McAfee Inc. HipShieldK; C:\Windows\system32\drivers\HipShieldK.sys [2013-09-23 197704]
S3 intaud_WaveExtensible;@oem7.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-10-29 39320]
S3 IntcDAud;@oem5.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2013-11-13 449496]
S3 mfencrk;McAfee Inc. mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [2014-07-24 96592]
S3 mtkmbim;@oem32.inf,%DriverDesc%;D-Link Mobile Broadband NDIS 6.20 Miniport Driver; C:\Windows\system32\DRIVERS\mtkmbim7_x64.sys [2012-12-13 208896]
S3 RSPCIESTOR;@oem10.inf,%Rts5208%;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2013-12-13 356056]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2014-04-29 319104]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-20 50344]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2014-11-17 2709760]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2013-07-16 235008]
R2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-12 733696]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-04 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-04 390616]
R2 LMSvc;Launch Manager Service; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [2014-03-17 459496]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2014-04-25 178528]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 mfecore;McAfee Anti-Malware Core; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2014-07-24 1041192]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-06-20 219752]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2014-06-20 189912]
R2 MSK80Service;McAfee Anti-Spam Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-01-08 922912]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2014-01-08 1364256]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [2014-06-24 481304]
R2 RelevantKnowledge;RelevantKnowledge; C:\Program Files (x86)\RelevantKnowledge\rlservice.exe [2013-08-17 186136]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2012-04-24 254512]
R2 SOHDms;Sony Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-01-16 495248]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2014-03-21 2573544]
R3 QASvc;Quick Access Service; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [2014-04-28 457960]
R3 RMSvc;Quick Access RadioMgr Service; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [2014-04-28 449768]
R3 SpfService;VAIO Entertainment Common Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-01 289952]
R3 UEIPSvc;User Experience Improvement Program; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [2014-01-25 222952]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-19 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2013-11-19 279024]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-19 116648]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-08-20 194032]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-12 822232]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe [2013-07-29 334608]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2014-06-12 603424]
S3 Origin Client Service;Origin Client Service; C:\Users\user\Origin\OriginClientService.exe [2014-12-26 1903472]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SOHDs;Sony Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-12-03 79000]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-18 833728]
S4 McOobeSv2;McAfee OOBE Service2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
-----------------EOF-----------------
Re: Vypinanie hier
Zdravim 
Odinstalujte Google Toolbar.
V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).
Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
- ukoncete vsechny programy
- kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
- kliknete na Scan, pote na Clean
- po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Vypinanie hier
# AdwCleaner v4.106 - Report created 06/01/2015 at 19:12:16
# Updated 21/12/2014 by Xplode
# Database : 2015-01-03.1 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : user - USER-PC
# Running from : D:\MOJE VECI\auta\KK\PEVNOSTAKY\adwcleaner_4.106.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : RelevantKnowledge
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\AskPartnerNetwork
Folder Deleted : C:\ProgramData\ytd video downloader
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
Folder Deleted : C:\Program Files (x86)\AskPartnerNetwork
Folder Deleted : C:\Program Files (x86)\GreenTree Applications
Folder Deleted : C:\Program Files (x86)\RelevantKnowledge
Folder Deleted : C:\users\user\AppData\Local\AskPartnerNetwork
Folder Deleted : C:\users\user\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
Folder Deleted : C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aaaalipaokhkccgmgkdglfinfnfhflko
File Deleted : C:\Windows\SysWOW64\rlls.dll
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_allin1convert.dl.tb.ask.com_0.localstorage
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_allin1convert.dl.tb.ask.com_0.localstorage-journal
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localstorage-journal
File Deleted : C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_aaaalipaokhkccgmgkdglfinfnfhflko_0.localstorage
***** [ Scheduled Tasks ] *****
Task Deleted : LaunchSignup
***** [ Shortcuts ] *****
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Enthusiast Games.lnk
***** [ Registry ] *****
Key Deleted : HKCU\Software\Classes\pokki
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEA63863-87BC-4DCA-A5B5-EB97E3B04806}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D08D9F98-1C78-4704-87E6-368B0023D831}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
Key Deleted : [x64] HKLM\SOFTWARE\AskPartnerNetwork
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v
-\\ Google Chrome v39.0.2171.95
[C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-08-20&apn_dtid=%5ECMD161%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
-\\ Chromium v
[C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-08-20&apn_dtid=%5ECMD161%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
-\\ Comodo Dragon v33.1.0.1
[C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-08-20&apn_dtid=%5ECMD161%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
-\\ Opera v0.0.0.0
[C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-08-20&apn_dtid=%5ECMD161%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
*************************
AdwCleaner[R0].txt - [5131 octets] - [06/01/2015 19:10:58]
AdwCleaner[S0].txt - [5752 octets] - [06/01/2015 19:12:16]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5812 octets] ##########
# Updated 21/12/2014 by Xplode
# Database : 2015-01-03.1 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : user - USER-PC
# Running from : D:\MOJE VECI\auta\KK\PEVNOSTAKY\adwcleaner_4.106.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : RelevantKnowledge
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\AskPartnerNetwork
Folder Deleted : C:\ProgramData\ytd video downloader
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
Folder Deleted : C:\Program Files (x86)\AskPartnerNetwork
Folder Deleted : C:\Program Files (x86)\GreenTree Applications
Folder Deleted : C:\Program Files (x86)\RelevantKnowledge
Folder Deleted : C:\users\user\AppData\Local\AskPartnerNetwork
Folder Deleted : C:\users\user\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
Folder Deleted : C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aaaalipaokhkccgmgkdglfinfnfhflko
File Deleted : C:\Windows\SysWOW64\rlls.dll
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_allin1convert.dl.tb.ask.com_0.localstorage
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_allin1convert.dl.tb.ask.com_0.localstorage-journal
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
File Deleted : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localstorage-journal
File Deleted : C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_aaaalipaokhkccgmgkdglfinfnfhflko_0.localstorage
***** [ Scheduled Tasks ] *****
Task Deleted : LaunchSignup
***** [ Shortcuts ] *****
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Enthusiast Games.lnk
***** [ Registry ] *****
Key Deleted : HKCU\Software\Classes\pokki
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEA63863-87BC-4DCA-A5B5-EB97E3B04806}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D08D9F98-1C78-4704-87E6-368B0023D831}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
Key Deleted : [x64] HKLM\SOFTWARE\AskPartnerNetwork
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v
-\\ Google Chrome v39.0.2171.95
[C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-08-20&apn_dtid=%5ECMD161%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
-\\ Chromium v
[C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-08-20&apn_dtid=%5ECMD161%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
-\\ Comodo Dragon v33.1.0.1
[C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-08-20&apn_dtid=%5ECMD161%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
-\\ Opera v0.0.0.0
[C:\Users\user\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-08-20&apn_dtid=%5ECMD161%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
*************************
AdwCleaner[R0].txt - [5131 octets] - [06/01/2015 19:10:58]
AdwCleaner[S0].txt - [5752 octets] - [06/01/2015 19:12:16]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5812 octets] ##########
Re: Vypinanie hier
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Vypinanie hier
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-01-2015
Ran by user (administrator) on USER-PC on 06-01-2015 19:45:39
Running from D:\APLIKACIE
Loaded Profiles: UpdatusUser & user (Available profiles: UpdatusUser & user)
Platform: Windows 8.1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Spotify Ltd) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
(Mgr. Tomáš Papoušek) C:\Program Files (x86)\ConMet\ConMet.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
(Electronic Arts) C:\Users\user\Origin\Origin.exe
(Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
() C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
(JITServ) C:\Program Files (x86)\Down2Home\Down2Home.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
() C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
() C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe
(TODO: <Company name>) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) D:\APLIKACIE\FRSTLauncher (2).exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [BacKGround Agent] => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [62208 2014-11-17] (Acer Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-20] (AVAST Software)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2557976 2014-06-24] (Sony Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [90368 2014-11-20] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-04-29] ( (Atheros Communications))
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [Spotify Web Helper] => C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1168896 2014-07-24] (Spotify Ltd)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [ConMet] => C:\Program Files (x86)\ConMet\ConMet.exe [4483584 2014-09-26] (Mgr. Tomáš Papoušek)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [EADM] => C:\Users\user\Origin\Origin.exe [3618648 2014-12-26] (Electronic Arts)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [468192 2014-10-15] (Sony)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\RunOnce: [Application Restart #0] => C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe [7843656 2015-01-01] (Pokki)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {20452685-8d58-11e4-826c-18cf5e9178d7} - "F:\startme.exe"
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {5563b307-29d9-11e4-8261-18cf5e9178d7} - "F:\.\StartModem.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Down2Home.lnk
ShortcutTarget: Down2Home.lnk -> C:\Program Files (x86)\Down2Home\Down2Home.exe (JITServ)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [ACloudSyncedRF] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncedSF] -> {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: [S-1-5-21-1087847046-594235692-4020934395-1001] ATTENTION ==> Default URLSearchHook is missing.
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> {C957FF75-C038-4F1A-BF32-2C9EE83C26CC} URL = https://search.yahoo.com/search?fr=chr- ... earchTerms}
BHO: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File
BHO: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO-x32: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File
BHO-x32: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File
Toolbar: HKLM - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File
Toolbar: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-06-11]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-08-20]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-06-11]
Chrome:
=======
CHR DefaultSearchKeyword: Default -> yahoo.com search
CHR DefaultSearchURL: Default -> https://search.yahoo.com/search?ei=utf- ... earchTerms}
CHR DefaultSuggestURL: Default -> https://ff.search.yahoo.com/gossip?outp ... earchTerms}
CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-08-20]
CHR Extension: (Disk Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-08-20]
CHR Extension: (YouTube) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-08-20]
CHR Extension: (Hľadať v Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-08-20]
CHR Extension: (Avast Online Security) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-08-20]
CHR Extension: (Peňaženka Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-20]
CHR Extension: (Gmail) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-08-20]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2014-11-22]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - No Path
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-20]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-04-29] (Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-20] (AVAST Software)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2709760 2014-11-17] (Acer Incorporated)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2139328 2014-05-27] (Comodo Security Solutions, Inc.)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573544 2014-03-21] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [235008 2013-07-16] (TODO: <Company name>) [File not signed]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [459496 2014-03-17] (Acer Incorporate)
R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-29] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [603424 2014-06-12] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-07-24] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-06-20] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-06-20] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 Origin Client Service; C:\Users\user\Origin\OriginClientService.exe [1903472 2014-12-26] (Electronic Arts)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [481304 2014-06-24] (Sony Corporation)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [457960 2014-04-28] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-04-28] (Acer Incorporate)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [222952 2014-01-25] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-20] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-20] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-20] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-20] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-11-21] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-20] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-20] (AVAST Software)
S3 aswTap; C:\Windows\system32\DRIVERS\aswTap.sys [44640 2014-08-20] (The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-20] ()
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3893248 2014-04-03] (Qualcomm Atheros Communications, Inc.)
S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-04-29] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72128 2014-06-20] (McAfee, Inc.)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2015-01-02] (Symantec Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181704 2014-06-20] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313544 2014-06-20] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70600 2014-06-20] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [523792 2014-06-20] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786296 2014-06-20] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [444720 2014-07-24] (McAfee, Inc.)
S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96592 2014-07-24] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348552 2014-06-20] (McAfee, Inc.)
S3 mtkmbim; C:\Windows\system32\DRIVERS\mtkmbim7_x64.sys [208896 2012-12-13] (MediaTek Inc.)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-10-01] (Synaptics Incorporated)
S3 wdf_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [81408 2013-02-21] (MediaTek Inc.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-06 19:45 - 2015-01-06 19:45 - 00015327 _____ () C:\Users\user\AppData\Local\LM.bat
2015-01-06 19:44 - 2015-01-06 19:45 - 00029696 _____ () C:\Users\user\AppData\Local\MSGBOX.EXE
2015-01-06 19:44 - 2015-01-06 19:37 - 02123776 _____ (Farbar) C:\Users\user\Desktop\FRST64.exe
2015-01-06 19:37 - 2015-01-06 19:45 - 00000000 ____D () C:\FRST
2015-01-06 19:15 - 2015-01-06 19:09 - 02173952 _____ () C:\Users\user\Desktop\adwcleaner_4.106.exe
2015-01-06 19:15 - 2015-01-06 14:50 - 01222144 _____ () C:\Users\user\Desktop\RSITx64 (1).exe
2015-01-06 19:10 - 2015-01-06 19:12 - 00000000 ____D () C:\AdwCleaner
2015-01-06 19:07 - 2015-01-06 19:07 - 00000000 __SHD () C:\Users\user\AppData\Local\EmieBrowserModeList
2015-01-06 12:03 - 2015-01-06 14:51 - 00000000 ____D () C:\Program Files\trend micro
2015-01-06 12:03 - 2015-01-06 12:04 - 00000000 ____D () C:\rsit
2015-01-06 11:30 - 2015-01-06 11:30 - 00002005 _____ () C:\Users\Public\Desktop\abPhoto.lnk
2015-01-01 15:12 - 2013-08-17 00:02 - 00859416 _____ (TMRG, Inc.) C:\Windows\system32\rlls64.dll
2015-01-01 14:52 - 2015-01-01 14:52 - 00000000 ____D () C:\Users\user\AppData\Roaming\New Version Available
2015-01-01 14:52 - 2015-01-01 14:52 - 00000000 ____D () C:\Users\user\AppData\Roaming\MP3 Cutter Joiner Free
2015-01-01 14:48 - 2015-01-02 16:17 - 00000466 ____H () C:\Windows\Tasks\Norton Security Scan for user.job
2015-01-01 14:48 - 2015-01-01 14:48 - 00001477 _____ () C:\Users\Public\Desktop\Norton Security Scan.LNK
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Windows\system32\Drivers\NSSx64
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Roaming\Yandex
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Roaming\Opera Software
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Roaming\Mozilla
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Local\IsolatedStorage
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Local\Chromium
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\ProgramData\Norton
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Program Files (x86)\Norton Security Scan
2015-01-01 14:48 - 2005-05-18 11:52 - 01212416 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioInformation2.dll
2015-01-01 14:48 - 2005-05-17 12:37 - 01986560 _____ (NCT Company Ltd.) C:\Windows\SysWOW64\NCTAudioFile2.dll
2015-01-01 14:48 - 2005-04-25 13:01 - 00458752 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioRecord2.dll
2015-01-01 14:48 - 2005-04-25 13:01 - 00458752 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioPlayer2.dll
2015-01-01 14:48 - 2005-04-15 12:08 - 00880640 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioEditor2.dll
2015-01-01 14:48 - 2005-03-29 07:57 - 02084864 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioDesign2.dll
2015-01-01 14:47 - 2015-01-01 15:02 - 00002425 _____ () C:\Users\user\Desktop\Imperia Online.lnk
2015-01-01 14:47 - 2015-01-01 14:47 - 07077536 _____ (TechTouch Soft Co., Ltd. ) C:\Users\user\Downloads\MP3CutterJoinerFree [1].exe
2015-01-01 14:47 - 2015-01-01 14:47 - 00003630 _____ () C:\Windows\System32\Tasks\Imperia Online W4
2015-01-01 14:47 - 2015-01-01 14:47 - 00003630 _____ () C:\Windows\System32\Tasks\Imperia Online W3
2015-01-01 14:47 - 2015-01-01 14:47 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imperia Online
2015-01-01 14:47 - 2015-01-01 14:47 - 00000000 ____D () C:\Users\user\AppData\Roaming\ImperiaOnline
2015-01-01 14:24 - 2015-01-01 14:24 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2015-01-01 14:24 - 2015-01-01 14:24 - 00000000 ____D () C:\ProgramData\TuneUp Software
2015-01-01 14:23 - 2015-01-01 14:38 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2015-01-01 14:23 - 2015-01-01 14:23 - 00000000 ____D () C:\Users\user\Documents\Image-Line
2015-01-01 14:23 - 2015-01-01 14:23 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2015-01-01 14:23 - 2015-01-01 14:23 - 00000000 ____D () C:\Users\user\AppData\Roaming\IHlpr
2015-01-01 14:23 - 2015-01-01 14:23 - 00000000 ____D () C:\Program Files (x86)\ASIO4ALL v2
2015-01-01 14:23 - 2011-10-11 15:45 - 01431552 _____ (Propellerhead Software AB) C:\Windows\SysWOW64\rewire.dll
2015-01-01 14:23 - 2009-09-15 10:14 - 01554944 _____ (HMS http://hp.vector.co.jp/authors/VA012897/) C:\Windows\SysWOW64\vorbis.acm
2015-01-01 13:41 - 2015-01-01 14:38 - 00000000 ____D () C:\Program Files (x86)\Image-Line
2015-01-01 12:26 - 2015-01-01 12:26 - 00000000 ____D () C:\waweshop
2015-01-01 12:05 - 2011-03-12 17:40 - 00655360 _____ (AIV software) C:\Users\user\Desktop\MP3cutter.exe
2015-01-01 12:05 - 1998-06-23 18:00 - 00140096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
2014-12-30 13:13 - 2014-12-30 13:13 - 00002118 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2014-12-30 13:12 - 2014-12-30 13:13 - 28488056 _____ (Sony Mobile Communications ) C:\Users\user\AppData\Local\pcc.exe
2014-12-30 12:25 - 2015-01-01 14:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2014-12-28 15:31 - 2014-12-28 15:31 - 00001058 _____ () C:\Users\Public\Desktop\Crysis 3.lnk
2014-12-28 15:31 - 2014-12-28 15:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crysis 3
2014-12-27 00:36 - 2014-12-27 00:36 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-26 18:53 - 2014-12-27 21:08 - 00000000 ____D () C:\Program Files (x86)\Origin Games
2014-12-26 18:43 - 2014-12-26 18:53 - 00000000 ____D () C:\Users\user\AppData\Roaming\Origin
2014-12-26 18:43 - 2014-12-26 18:53 - 00000000 ____D () C:\Users\user\AppData\Local\Origin
2014-12-26 18:37 - 2015-01-06 19:13 - 00000000 ____D () C:\Users\user\Origin
2014-12-26 18:37 - 2015-01-06 12:38 - 00000000 ____D () C:\ProgramData\Origin
2014-12-26 18:37 - 2014-12-28 15:32 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-12-26 18:37 - 2014-12-26 18:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2014-12-26 18:37 - 2014-12-26 18:37 - 00000850 _____ () C:\Users\Public\Desktop\Origin.lnk
2014-12-26 18:09 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-12-26 18:09 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-12-26 18:08 - 2014-12-04 00:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-26 18:08 - 2014-12-04 00:09 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-26 18:08 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2014-12-26 18:08 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2014-12-26 18:08 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-12-26 18:08 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-12-26 18:01 - 2014-12-29 21:50 - 00000000 ____D () C:\Users\user\AppData\Roaming\SpinTires
2014-12-26 18:01 - 2014-12-28 15:31 - 00027408 _____ () C:\Windows\DirectX.log
2014-12-26 18:01 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-12-26 18:01 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2014-12-26 18:01 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-12-26 18:01 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-12-26 18:01 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-12-26 18:01 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-12-26 18:01 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-12-26 18:01 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-12-26 18:01 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-12-26 18:01 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2014-12-26 18:01 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2014-12-26 18:01 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-12-26 18:01 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-12-26 18:01 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2014-12-26 18:01 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2014-12-26 18:01 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2014-12-26 18:01 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-12-26 18:01 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2014-12-26 18:01 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2014-12-26 18:01 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-12-26 18:01 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-12-26 18:01 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2014-12-26 18:01 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-12-26 18:01 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2014-12-26 18:01 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-12-26 18:01 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2014-12-26 18:01 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-12-26 18:01 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2014-12-26 18:01 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-12-26 18:01 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2014-12-26 18:01 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-12-26 18:01 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2014-12-26 18:01 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-12-26 18:01 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2014-12-26 18:01 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-12-26 18:01 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2014-12-26 18:01 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-12-26 18:01 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2014-12-26 18:01 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-12-26 18:01 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2014-12-26 18:01 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2014-12-26 18:01 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2014-12-26 18:01 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2014-12-26 18:01 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2014-12-26 18:01 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2014-12-26 18:01 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2014-12-26 18:01 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2014-12-26 18:01 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2014-12-26 18:01 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2014-12-26 18:01 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2014-12-26 18:01 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2014-12-26 18:01 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2014-12-26 18:01 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2014-12-26 18:01 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2014-12-26 18:01 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2014-12-26 18:01 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2014-12-26 18:01 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2014-12-26 18:01 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2014-12-26 18:01 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2014-12-26 18:01 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-12-26 18:01 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2014-12-26 18:01 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2014-12-26 18:01 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2014-12-26 18:01 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2014-12-26 18:01 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2014-12-26 18:01 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2014-12-26 18:01 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2014-12-26 18:01 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2014-12-26 18:01 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2014-12-26 18:01 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2014-12-26 18:01 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2014-12-26 18:01 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2014-12-26 18:01 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2014-12-26 18:01 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2014-12-26 18:01 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2014-12-26 18:01 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2014-12-26 18:01 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2014-12-26 18:01 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2014-12-26 18:01 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2014-12-26 18:01 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2014-12-26 18:01 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2014-12-26 18:01 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2014-12-26 18:01 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2014-12-26 18:01 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2014-12-26 18:01 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2014-12-26 18:01 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2014-12-26 18:01 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2014-12-26 18:01 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2014-12-26 18:01 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2014-12-26 18:01 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2014-12-26 18:01 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2014-12-26 18:01 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2014-12-26 18:01 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2014-12-26 18:01 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2014-12-26 17:08 - 2014-12-26 17:08 - 00000222 _____ () C:\Users\user\Desktop\Spintires.url
2014-12-26 17:08 - 2014-12-26 17:08 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-26 16:27 - 2015-01-06 19:29 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-12-26 16:27 - 2014-12-26 16:27 - 00000979 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-12-26 16:27 - 2014-12-26 16:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-26 16:22 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-26 16:22 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-26 16:22 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-26 16:22 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-26 16:22 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-26 16:22 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-26 16:22 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-26 16:22 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-26 16:22 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-26 16:22 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-26 16:22 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-26 16:22 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-26 16:22 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-26 16:22 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-26 16:22 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-26 16:22 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-26 16:22 - 2014-11-07 05:16 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-26 16:22 - 2014-11-07 04:26 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-26 16:22 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-12-26 16:22 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-12-26 16:22 - 2014-10-13 03:43 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2014-12-26 16:22 - 2014-10-13 03:43 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2014-12-26 16:22 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2014-12-26 16:22 - 2014-10-13 03:43 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2014-12-26 16:21 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-26 16:21 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-12-26 16:21 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-26 16:21 - 2014-11-22 03:35 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-12-26 16:21 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-26 16:21 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-12-26 16:21 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-12-26 16:21 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-26 16:21 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-26 16:21 - 2014-11-22 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-12-26 16:21 - 2014-11-22 02:55 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-12-26 16:21 - 2014-11-22 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-12-26 16:21 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-26 16:21 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-26 16:21 - 2014-11-22 02:49 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-26 16:21 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-26 16:21 - 2014-11-22 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-12-26 16:21 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-26 16:21 - 2014-11-22 02:29 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-12-26 16:21 - 2014-11-22 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-12-26 16:21 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-26 16:21 - 2014-11-22 02:23 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-26 16:21 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-20 19:34 - 2014-12-20 19:34 - 00002001 _____ () C:\Users\Public\Desktop\abMedia.lnk
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-06 19:46 - 2014-09-26 13:57 - 00000000 ____D () C:\ProgramData\ConMet
2015-01-06 19:33 - 2014-09-14 09:20 - 00000000 ____D () C:\Users\user\AppData\Local\CrashDumps
2015-01-06 19:26 - 2014-09-26 19:23 - 00000388 _____ () C:\Windows\Tasks\WpsUpdateTask_user.job
2015-01-06 19:24 - 2014-07-24 18:04 - 01833341 _____ () C:\Windows\WindowsUpdate.log
2015-01-06 19:19 - 2014-03-18 11:03 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-06 19:18 - 2014-08-19 03:01 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1087847046-594235692-4020934395-1002
2015-01-06 19:14 - 2014-09-26 13:57 - 00000000 ____D () C:\Users\user\AppData\Roaming\ConMet
2015-01-06 19:13 - 2014-08-20 08:38 - 00000000 ____D () C:\Program Files\Google
2015-01-06 19:13 - 2014-08-19 03:03 - 00000956 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-06 19:13 - 2014-08-19 03:03 - 00000000 ____D () C:\Program Files (x86)\Google
2015-01-06 19:13 - 2014-03-18 10:54 - 00031588 _____ () C:\Windows\PFRO.log
2015-01-06 19:13 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-06 19:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-01-06 19:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-01-06 19:12 - 2014-08-19 03:03 - 00002219 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-01-06 19:12 - 2014-06-11 09:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-01-06 19:07 - 2014-08-19 03:03 - 00000000 ____D () C:\Users\user\AppData\Local\Google
2015-01-06 19:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-01-06 18:01 - 2014-08-20 07:05 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{1C3C6607-C762-495C-91DE-58DF1C53EF4B}
2015-01-06 14:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\tracing
2015-01-06 12:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-06 11:30 - 2014-06-11 09:17 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2015-01-06 11:30 - 2014-06-11 09:17 - 00000000 ____D () C:\Program Files (x86)\Acer
2015-01-06 11:29 - 2014-08-19 02:58 - 00000000 ____D () C:\Users\user\AppData\Local\clear.fi
2015-01-06 11:27 - 2014-08-19 02:56 - 00000000 ____D () C:\Users\user\AppData\Local\Pokki
2015-01-04 17:39 - 2014-08-19 02:58 - 00002330 _____ () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-01-04 17:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-01-02 11:20 - 2014-11-22 15:21 - 00000000 ____D () C:\Users\user\AppData\Roaming\Skype
2015-01-01 15:27 - 2014-08-20 13:52 - 00000000 ____D () C:\The KMPlayer
2015-01-01 14:41 - 2014-09-21 21:17 - 00184320 ___SH () C:\Users\user\Desktop\Thumbs.db
2014-12-31 11:32 - 2014-03-19 12:11 - 00000000 ____D () C:\Users\user\Desktop\MOBAC_1.9.16_plus_mapove_zdroje
2014-12-30 13:14 - 2014-07-24 17:57 - 00136300 _____ () C:\Windows\DPINST.LOG
2014-12-30 13:13 - 2014-08-22 08:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-12-30 13:13 - 2014-08-22 08:05 - 00000000 ____D () C:\ProgramData\Sony
2014-12-30 13:13 - 2014-08-20 08:48 - 00000000 ____D () C:\Program Files (x86)\Sony
2014-12-30 13:13 - 2014-07-24 17:52 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-30 13:11 - 2013-08-22 15:46 - 00041392 _____ () C:\Windows\setupact.log
2014-12-27 21:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-12-27 21:17 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-12-27 01:16 - 2014-09-27 09:05 - 00000000 ____D () C:\Users\user\AppData\Roaming\vlc
2014-12-27 00:36 - 2014-08-22 08:45 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\sk-SK
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppCompat
2014-12-27 00:35 - 2014-08-20 08:47 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-26 20:00 - 2014-08-20 08:47 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-19 20:25 - 2014-08-19 02:58 - 00002159 _____ () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk
Files to move or delete:
====================
C:\Users\user\PMH_3_1_20CZ.exe
Some content of TEMP:
====================
C:\Users\user\AppData\Local\Temp\BackupSetup.exe
C:\Users\user\AppData\Local\Temp\COMAP.EXE
C:\Users\user\AppData\Local\Temp\ochelper.dll
C:\Users\user\AppData\Local\Temp\ochelper.exe
C:\Users\user\AppData\Local\Temp\oct32B5.tmp.exe
C:\Users\user\AppData\Local\Temp\oct4E52.tmp.exe
C:\Users\user\AppData\Local\Temp\oct55D.tmp.exe
C:\Users\user\AppData\Local\Temp\oct7041.tmp.exe
C:\Users\user\AppData\Local\Temp\octBDD6.tmp.exe
C:\Users\user\AppData\Local\Temp\octBFE6.tmp.exe
C:\Users\user\AppData\Local\Temp\PIPInstaller_PTV_.exe
C:\Users\user\AppData\Local\Temp\Quarantine.exe
C:\Users\user\AppData\Local\Temp\SkypeSetup.exe
C:\Users\user\AppData\Local\Temp\sqlite-3.7.151-x86-sqlitejdbc.dll
C:\Users\user\AppData\Local\Temp\sqlite3.dll
C:\Users\user\AppData\Local\Temp\TouchURL.exe
C:\Users\user\AppData\Local\Temp\UNT21A2.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT280E.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT280F.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT2820.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT4121.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT4122.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT4133.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT4B97.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT560D.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT560E.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT560F.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT5934.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT5A2B.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT6EC8.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT750A.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT7DD1.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT7DE1.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT7DF2.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT9A5D.tmp.exe
C:\Users\user\AppData\Local\Temp\UNTA2C1.tmp.exe
C:\Users\user\AppData\Local\Temp\UNTC391.tmp.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-01-06 13:30
==================== End Of Log ============================
Ran by user (administrator) on USER-PC on 06-01-2015 19:45:39
Running from D:\APLIKACIE
Loaded Profiles: UpdatusUser & user (Available profiles: UpdatusUser & user)
Platform: Windows 8.1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Spotify Ltd) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
(Mgr. Tomáš Papoušek) C:\Program Files (x86)\ConMet\ConMet.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
(Electronic Arts) C:\Users\user\Origin\Origin.exe
(Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
() C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
(JITServ) C:\Program Files (x86)\Down2Home\Down2Home.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
() C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
() C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe
(TODO: <Company name>) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) D:\APLIKACIE\FRSTLauncher (2).exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [BacKGround Agent] => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [62208 2014-11-17] (Acer Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-20] (AVAST Software)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2557976 2014-06-24] (Sony Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [90368 2014-11-20] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-04-29] ( (Atheros Communications))
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [Spotify Web Helper] => C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1168896 2014-07-24] (Spotify Ltd)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [ConMet] => C:\Program Files (x86)\ConMet\ConMet.exe [4483584 2014-09-26] (Mgr. Tomáš Papoušek)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [EADM] => C:\Users\user\Origin\Origin.exe [3618648 2014-12-26] (Electronic Arts)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [468192 2014-10-15] (Sony)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\RunOnce: [Application Restart #0] => C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe [7843656 2015-01-01] (Pokki)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {20452685-8d58-11e4-826c-18cf5e9178d7} - "F:\startme.exe"
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {5563b307-29d9-11e4-8261-18cf5e9178d7} - "F:\.\StartModem.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Down2Home.lnk
ShortcutTarget: Down2Home.lnk -> C:\Program Files (x86)\Down2Home\Down2Home.exe (JITServ)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [ACloudSyncedRF] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncedSF] -> {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: [S-1-5-21-1087847046-594235692-4020934395-1001] ATTENTION ==> Default URLSearchHook is missing.
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> {C957FF75-C038-4F1A-BF32-2C9EE83C26CC} URL = https://search.yahoo.com/search?fr=chr- ... earchTerms}
BHO: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File
BHO: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO-x32: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File
BHO-x32: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File
Toolbar: HKLM - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File
Toolbar: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-06-11]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-08-20]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-06-11]
Chrome:
=======
CHR DefaultSearchKeyword: Default -> yahoo.com search
CHR DefaultSearchURL: Default -> https://search.yahoo.com/search?ei=utf- ... earchTerms}
CHR DefaultSuggestURL: Default -> https://ff.search.yahoo.com/gossip?outp ... earchTerms}
CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-08-20]
CHR Extension: (Disk Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-08-20]
CHR Extension: (YouTube) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-08-20]
CHR Extension: (Hľadať v Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-08-20]
CHR Extension: (Avast Online Security) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-08-20]
CHR Extension: (Peňaženka Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-20]
CHR Extension: (Gmail) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-08-20]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2014-11-22]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - No Path
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-20]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-04-29] (Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-20] (AVAST Software)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2709760 2014-11-17] (Acer Incorporated)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2139328 2014-05-27] (Comodo Security Solutions, Inc.)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573544 2014-03-21] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [235008 2013-07-16] (TODO: <Company name>) [File not signed]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [459496 2014-03-17] (Acer Incorporate)
R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-29] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [603424 2014-06-12] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-07-24] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-06-20] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-06-20] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 Origin Client Service; C:\Users\user\Origin\OriginClientService.exe [1903472 2014-12-26] (Electronic Arts)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [481304 2014-06-24] (Sony Corporation)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [457960 2014-04-28] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-04-28] (Acer Incorporate)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [222952 2014-01-25] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-20] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-20] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-20] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-20] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-11-21] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-20] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-20] (AVAST Software)
S3 aswTap; C:\Windows\system32\DRIVERS\aswTap.sys [44640 2014-08-20] (The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-20] ()
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3893248 2014-04-03] (Qualcomm Atheros Communications, Inc.)
S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-04-29] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72128 2014-06-20] (McAfee, Inc.)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2015-01-02] (Symantec Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181704 2014-06-20] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313544 2014-06-20] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70600 2014-06-20] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [523792 2014-06-20] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786296 2014-06-20] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [444720 2014-07-24] (McAfee, Inc.)
S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96592 2014-07-24] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348552 2014-06-20] (McAfee, Inc.)
S3 mtkmbim; C:\Windows\system32\DRIVERS\mtkmbim7_x64.sys [208896 2012-12-13] (MediaTek Inc.)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-10-01] (Synaptics Incorporated)
S3 wdf_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [81408 2013-02-21] (MediaTek Inc.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-06 19:45 - 2015-01-06 19:45 - 00015327 _____ () C:\Users\user\AppData\Local\LM.bat
2015-01-06 19:44 - 2015-01-06 19:45 - 00029696 _____ () C:\Users\user\AppData\Local\MSGBOX.EXE
2015-01-06 19:44 - 2015-01-06 19:37 - 02123776 _____ (Farbar) C:\Users\user\Desktop\FRST64.exe
2015-01-06 19:37 - 2015-01-06 19:45 - 00000000 ____D () C:\FRST
2015-01-06 19:15 - 2015-01-06 19:09 - 02173952 _____ () C:\Users\user\Desktop\adwcleaner_4.106.exe
2015-01-06 19:15 - 2015-01-06 14:50 - 01222144 _____ () C:\Users\user\Desktop\RSITx64 (1).exe
2015-01-06 19:10 - 2015-01-06 19:12 - 00000000 ____D () C:\AdwCleaner
2015-01-06 19:07 - 2015-01-06 19:07 - 00000000 __SHD () C:\Users\user\AppData\Local\EmieBrowserModeList
2015-01-06 12:03 - 2015-01-06 14:51 - 00000000 ____D () C:\Program Files\trend micro
2015-01-06 12:03 - 2015-01-06 12:04 - 00000000 ____D () C:\rsit
2015-01-06 11:30 - 2015-01-06 11:30 - 00002005 _____ () C:\Users\Public\Desktop\abPhoto.lnk
2015-01-01 15:12 - 2013-08-17 00:02 - 00859416 _____ (TMRG, Inc.) C:\Windows\system32\rlls64.dll
2015-01-01 14:52 - 2015-01-01 14:52 - 00000000 ____D () C:\Users\user\AppData\Roaming\New Version Available
2015-01-01 14:52 - 2015-01-01 14:52 - 00000000 ____D () C:\Users\user\AppData\Roaming\MP3 Cutter Joiner Free
2015-01-01 14:48 - 2015-01-02 16:17 - 00000466 ____H () C:\Windows\Tasks\Norton Security Scan for user.job
2015-01-01 14:48 - 2015-01-01 14:48 - 00001477 _____ () C:\Users\Public\Desktop\Norton Security Scan.LNK
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Windows\system32\Drivers\NSSx64
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Roaming\Yandex
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Roaming\Opera Software
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Roaming\Mozilla
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Local\IsolatedStorage
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Local\Chromium
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\ProgramData\Norton
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Program Files (x86)\Norton Security Scan
2015-01-01 14:48 - 2005-05-18 11:52 - 01212416 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioInformation2.dll
2015-01-01 14:48 - 2005-05-17 12:37 - 01986560 _____ (NCT Company Ltd.) C:\Windows\SysWOW64\NCTAudioFile2.dll
2015-01-01 14:48 - 2005-04-25 13:01 - 00458752 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioRecord2.dll
2015-01-01 14:48 - 2005-04-25 13:01 - 00458752 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioPlayer2.dll
2015-01-01 14:48 - 2005-04-15 12:08 - 00880640 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioEditor2.dll
2015-01-01 14:48 - 2005-03-29 07:57 - 02084864 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioDesign2.dll
2015-01-01 14:47 - 2015-01-01 15:02 - 00002425 _____ () C:\Users\user\Desktop\Imperia Online.lnk
2015-01-01 14:47 - 2015-01-01 14:47 - 07077536 _____ (TechTouch Soft Co., Ltd. ) C:\Users\user\Downloads\MP3CutterJoinerFree [1].exe
2015-01-01 14:47 - 2015-01-01 14:47 - 00003630 _____ () C:\Windows\System32\Tasks\Imperia Online W4
2015-01-01 14:47 - 2015-01-01 14:47 - 00003630 _____ () C:\Windows\System32\Tasks\Imperia Online W3
2015-01-01 14:47 - 2015-01-01 14:47 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imperia Online
2015-01-01 14:47 - 2015-01-01 14:47 - 00000000 ____D () C:\Users\user\AppData\Roaming\ImperiaOnline
2015-01-01 14:24 - 2015-01-01 14:24 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2015-01-01 14:24 - 2015-01-01 14:24 - 00000000 ____D () C:\ProgramData\TuneUp Software
2015-01-01 14:23 - 2015-01-01 14:38 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2015-01-01 14:23 - 2015-01-01 14:23 - 00000000 ____D () C:\Users\user\Documents\Image-Line
2015-01-01 14:23 - 2015-01-01 14:23 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2015-01-01 14:23 - 2015-01-01 14:23 - 00000000 ____D () C:\Users\user\AppData\Roaming\IHlpr
2015-01-01 14:23 - 2015-01-01 14:23 - 00000000 ____D () C:\Program Files (x86)\ASIO4ALL v2
2015-01-01 14:23 - 2011-10-11 15:45 - 01431552 _____ (Propellerhead Software AB) C:\Windows\SysWOW64\rewire.dll
2015-01-01 14:23 - 2009-09-15 10:14 - 01554944 _____ (HMS http://hp.vector.co.jp/authors/VA012897/) C:\Windows\SysWOW64\vorbis.acm
2015-01-01 13:41 - 2015-01-01 14:38 - 00000000 ____D () C:\Program Files (x86)\Image-Line
2015-01-01 12:26 - 2015-01-01 12:26 - 00000000 ____D () C:\waweshop
2015-01-01 12:05 - 2011-03-12 17:40 - 00655360 _____ (AIV software) C:\Users\user\Desktop\MP3cutter.exe
2015-01-01 12:05 - 1998-06-23 18:00 - 00140096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
2014-12-30 13:13 - 2014-12-30 13:13 - 00002118 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2014-12-30 13:12 - 2014-12-30 13:13 - 28488056 _____ (Sony Mobile Communications ) C:\Users\user\AppData\Local\pcc.exe
2014-12-30 12:25 - 2015-01-01 14:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2014-12-28 15:31 - 2014-12-28 15:31 - 00001058 _____ () C:\Users\Public\Desktop\Crysis 3.lnk
2014-12-28 15:31 - 2014-12-28 15:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crysis 3
2014-12-27 00:36 - 2014-12-27 00:36 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-26 18:53 - 2014-12-27 21:08 - 00000000 ____D () C:\Program Files (x86)\Origin Games
2014-12-26 18:43 - 2014-12-26 18:53 - 00000000 ____D () C:\Users\user\AppData\Roaming\Origin
2014-12-26 18:43 - 2014-12-26 18:53 - 00000000 ____D () C:\Users\user\AppData\Local\Origin
2014-12-26 18:37 - 2015-01-06 19:13 - 00000000 ____D () C:\Users\user\Origin
2014-12-26 18:37 - 2015-01-06 12:38 - 00000000 ____D () C:\ProgramData\Origin
2014-12-26 18:37 - 2014-12-28 15:32 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-12-26 18:37 - 2014-12-26 18:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2014-12-26 18:37 - 2014-12-26 18:37 - 00000850 _____ () C:\Users\Public\Desktop\Origin.lnk
2014-12-26 18:09 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-12-26 18:09 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-12-26 18:08 - 2014-12-04 00:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-26 18:08 - 2014-12-04 00:09 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-26 18:08 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-26 18:08 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2014-12-26 18:08 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2014-12-26 18:08 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-12-26 18:08 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-12-26 18:01 - 2014-12-29 21:50 - 00000000 ____D () C:\Users\user\AppData\Roaming\SpinTires
2014-12-26 18:01 - 2014-12-28 15:31 - 00027408 _____ () C:\Windows\DirectX.log
2014-12-26 18:01 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-12-26 18:01 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-12-26 18:01 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-12-26 18:01 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-12-26 18:01 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-12-26 18:01 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-12-26 18:01 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2014-12-26 18:01 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-12-26 18:01 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-12-26 18:01 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-12-26 18:01 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2014-12-26 18:01 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-12-26 18:01 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-12-26 18:01 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-12-26 18:01 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-12-26 18:01 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-12-26 18:01 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-12-26 18:01 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-12-26 18:01 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-12-26 18:01 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2014-12-26 18:01 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2014-12-26 18:01 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-12-26 18:01 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-12-26 18:01 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2014-12-26 18:01 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2014-12-26 18:01 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-12-26 18:01 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2014-12-26 18:01 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-12-26 18:01 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2014-12-26 18:01 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2014-12-26 18:01 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-12-26 18:01 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-12-26 18:01 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2014-12-26 18:01 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-12-26 18:01 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2014-12-26 18:01 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-12-26 18:01 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2014-12-26 18:01 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-12-26 18:01 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2014-12-26 18:01 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-12-26 18:01 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2014-12-26 18:01 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-12-26 18:01 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2014-12-26 18:01 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-12-26 18:01 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2014-12-26 18:01 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-12-26 18:01 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2014-12-26 18:01 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-12-26 18:01 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2014-12-26 18:01 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-12-26 18:01 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-12-26 18:01 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2014-12-26 18:01 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2014-12-26 18:01 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2014-12-26 18:01 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2014-12-26 18:01 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2014-12-26 18:01 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2014-12-26 18:01 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2014-12-26 18:01 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2014-12-26 18:01 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2014-12-26 18:01 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2014-12-26 18:01 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2014-12-26 18:01 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2014-12-26 18:01 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2014-12-26 18:01 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2014-12-26 18:01 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2014-12-26 18:01 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2014-12-26 18:01 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2014-12-26 18:01 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2014-12-26 18:01 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2014-12-26 18:01 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2014-12-26 18:01 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2014-12-26 18:01 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-12-26 18:01 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2014-12-26 18:01 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2014-12-26 18:01 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2014-12-26 18:01 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2014-12-26 18:01 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2014-12-26 18:01 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2014-12-26 18:01 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2014-12-26 18:01 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2014-12-26 18:01 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2014-12-26 18:01 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2014-12-26 18:01 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2014-12-26 18:01 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2014-12-26 18:01 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2014-12-26 18:01 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2014-12-26 18:01 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2014-12-26 18:01 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2014-12-26 18:01 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2014-12-26 18:01 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2014-12-26 18:01 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2014-12-26 18:01 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2014-12-26 18:01 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2014-12-26 18:01 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2014-12-26 18:01 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2014-12-26 18:01 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2014-12-26 18:01 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2014-12-26 18:01 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2014-12-26 18:01 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2014-12-26 18:01 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2014-12-26 18:01 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2014-12-26 18:01 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2014-12-26 18:01 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2014-12-26 18:01 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2014-12-26 18:01 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2014-12-26 18:01 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2014-12-26 17:08 - 2014-12-26 17:08 - 00000222 _____ () C:\Users\user\Desktop\Spintires.url
2014-12-26 17:08 - 2014-12-26 17:08 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-26 16:27 - 2015-01-06 19:29 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-12-26 16:27 - 2014-12-26 16:27 - 00000979 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-12-26 16:27 - 2014-12-26 16:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-26 16:22 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-26 16:22 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-26 16:22 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-26 16:22 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-26 16:22 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-26 16:22 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-26 16:22 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-26 16:22 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-26 16:22 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-26 16:22 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-26 16:22 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-26 16:22 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-26 16:22 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-26 16:22 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-26 16:22 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-26 16:22 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-26 16:22 - 2014-11-07 05:16 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-26 16:22 - 2014-11-07 04:26 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-26 16:22 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-12-26 16:22 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-12-26 16:22 - 2014-10-13 03:43 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2014-12-26 16:22 - 2014-10-13 03:43 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2014-12-26 16:22 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2014-12-26 16:22 - 2014-10-13 03:43 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2014-12-26 16:21 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-26 16:21 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-12-26 16:21 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-26 16:21 - 2014-11-22 03:35 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-12-26 16:21 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-26 16:21 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-12-26 16:21 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-12-26 16:21 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-26 16:21 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-26 16:21 - 2014-11-22 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-12-26 16:21 - 2014-11-22 02:55 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-12-26 16:21 - 2014-11-22 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-12-26 16:21 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-26 16:21 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-26 16:21 - 2014-11-22 02:49 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-26 16:21 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-26 16:21 - 2014-11-22 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-12-26 16:21 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-26 16:21 - 2014-11-22 02:29 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-12-26 16:21 - 2014-11-22 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-12-26 16:21 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-26 16:21 - 2014-11-22 02:23 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-26 16:21 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-20 19:34 - 2014-12-20 19:34 - 00002001 _____ () C:\Users\Public\Desktop\abMedia.lnk
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-06 19:46 - 2014-09-26 13:57 - 00000000 ____D () C:\ProgramData\ConMet
2015-01-06 19:33 - 2014-09-14 09:20 - 00000000 ____D () C:\Users\user\AppData\Local\CrashDumps
2015-01-06 19:26 - 2014-09-26 19:23 - 00000388 _____ () C:\Windows\Tasks\WpsUpdateTask_user.job
2015-01-06 19:24 - 2014-07-24 18:04 - 01833341 _____ () C:\Windows\WindowsUpdate.log
2015-01-06 19:19 - 2014-03-18 11:03 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-06 19:18 - 2014-08-19 03:01 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1087847046-594235692-4020934395-1002
2015-01-06 19:14 - 2014-09-26 13:57 - 00000000 ____D () C:\Users\user\AppData\Roaming\ConMet
2015-01-06 19:13 - 2014-08-20 08:38 - 00000000 ____D () C:\Program Files\Google
2015-01-06 19:13 - 2014-08-19 03:03 - 00000956 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-06 19:13 - 2014-08-19 03:03 - 00000000 ____D () C:\Program Files (x86)\Google
2015-01-06 19:13 - 2014-03-18 10:54 - 00031588 _____ () C:\Windows\PFRO.log
2015-01-06 19:13 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-06 19:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-01-06 19:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-01-06 19:12 - 2014-08-19 03:03 - 00002219 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-01-06 19:12 - 2014-06-11 09:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-01-06 19:07 - 2014-08-19 03:03 - 00000000 ____D () C:\Users\user\AppData\Local\Google
2015-01-06 19:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-01-06 18:01 - 2014-08-20 07:05 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{1C3C6607-C762-495C-91DE-58DF1C53EF4B}
2015-01-06 14:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\tracing
2015-01-06 12:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-06 11:30 - 2014-06-11 09:17 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2015-01-06 11:30 - 2014-06-11 09:17 - 00000000 ____D () C:\Program Files (x86)\Acer
2015-01-06 11:29 - 2014-08-19 02:58 - 00000000 ____D () C:\Users\user\AppData\Local\clear.fi
2015-01-06 11:27 - 2014-08-19 02:56 - 00000000 ____D () C:\Users\user\AppData\Local\Pokki
2015-01-04 17:39 - 2014-08-19 02:58 - 00002330 _____ () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-01-04 17:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-01-02 11:20 - 2014-11-22 15:21 - 00000000 ____D () C:\Users\user\AppData\Roaming\Skype
2015-01-01 15:27 - 2014-08-20 13:52 - 00000000 ____D () C:\The KMPlayer
2015-01-01 14:41 - 2014-09-21 21:17 - 00184320 ___SH () C:\Users\user\Desktop\Thumbs.db
2014-12-31 11:32 - 2014-03-19 12:11 - 00000000 ____D () C:\Users\user\Desktop\MOBAC_1.9.16_plus_mapove_zdroje
2014-12-30 13:14 - 2014-07-24 17:57 - 00136300 _____ () C:\Windows\DPINST.LOG
2014-12-30 13:13 - 2014-08-22 08:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-12-30 13:13 - 2014-08-22 08:05 - 00000000 ____D () C:\ProgramData\Sony
2014-12-30 13:13 - 2014-08-20 08:48 - 00000000 ____D () C:\Program Files (x86)\Sony
2014-12-30 13:13 - 2014-07-24 17:52 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-30 13:11 - 2013-08-22 15:46 - 00041392 _____ () C:\Windows\setupact.log
2014-12-27 21:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-12-27 21:17 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-12-27 01:16 - 2014-09-27 09:05 - 00000000 ____D () C:\Users\user\AppData\Roaming\vlc
2014-12-27 00:36 - 2014-08-22 08:45 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\sk-SK
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-27 00:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppCompat
2014-12-27 00:35 - 2014-08-20 08:47 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-26 20:00 - 2014-08-20 08:47 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-19 20:25 - 2014-08-19 02:58 - 00002159 _____ () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk
Files to move or delete:
====================
C:\Users\user\PMH_3_1_20CZ.exe
Some content of TEMP:
====================
C:\Users\user\AppData\Local\Temp\BackupSetup.exe
C:\Users\user\AppData\Local\Temp\COMAP.EXE
C:\Users\user\AppData\Local\Temp\ochelper.dll
C:\Users\user\AppData\Local\Temp\ochelper.exe
C:\Users\user\AppData\Local\Temp\oct32B5.tmp.exe
C:\Users\user\AppData\Local\Temp\oct4E52.tmp.exe
C:\Users\user\AppData\Local\Temp\oct55D.tmp.exe
C:\Users\user\AppData\Local\Temp\oct7041.tmp.exe
C:\Users\user\AppData\Local\Temp\octBDD6.tmp.exe
C:\Users\user\AppData\Local\Temp\octBFE6.tmp.exe
C:\Users\user\AppData\Local\Temp\PIPInstaller_PTV_.exe
C:\Users\user\AppData\Local\Temp\Quarantine.exe
C:\Users\user\AppData\Local\Temp\SkypeSetup.exe
C:\Users\user\AppData\Local\Temp\sqlite-3.7.151-x86-sqlitejdbc.dll
C:\Users\user\AppData\Local\Temp\sqlite3.dll
C:\Users\user\AppData\Local\Temp\TouchURL.exe
C:\Users\user\AppData\Local\Temp\UNT21A2.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT280E.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT280F.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT2820.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT4121.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT4122.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT4133.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT4B97.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT560D.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT560E.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT560F.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT5934.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT5A2B.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT6EC8.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT750A.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT7DD1.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT7DE1.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT7DF2.tmp.exe
C:\Users\user\AppData\Local\Temp\UNT9A5D.tmp.exe
C:\Users\user\AppData\Local\Temp\UNTA2C1.tmp.exe
C:\Users\user\AppData\Local\Temp\UNTC391.tmp.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-01-06 13:30
==================== End Of Log ============================
- Přílohy
-
- Addition.zip
- (10.01 KiB) Staženo 53 x
Re: Vypinanie hier
- Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
- ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
- znovu spustte FRST a kliknete na Fix
- po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi
Kód: Vybrat vše
Start CloseProcesses: HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation) HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\RunOnce: [Application Restart #0] => C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe [7843656 2015-01-01] (Pokki) HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {20452685-8d58-11e4-826c-18cf5e9178d7} - "F:\startme.exe" HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {5563b307-29d9-11e4-8261-18cf5e9178d7} - "F:\.\StartModem.exe" HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = URLSearchHook: [S-1-5-21-1087847046-594235692-4020934395-1001] ATTENTION ==> Default URLSearchHook is missing. SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> {C957FF75-C038-4F1A-BF32-2C9EE83C26CC} URL = https://search.yahoo.com/search?fr=chr- ... =501549&p={searchTerms} BHO: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File BHO: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File BHO-x32: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File BHO-x32: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File Toolbar: HKLM - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File Toolbar: HKLM - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File Toolbar: HKLM-x32 - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File Toolbar: HKLM-x32 - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File Toolbar: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - No Path 2015-01-06 19:45 - 2015-01-06 19:45 - 00015327 _____ () C:\Users\user\AppData\Local\LM.bat 2015-01-06 19:44 - 2015-01-06 19:45 - 00029696 _____ () C:\Users\user\AppData\Local\MSGBOX.EXE 2015-01-06 19:15 - 2015-01-06 19:09 - 02173952 _____ () C:\Users\user\Desktop\adwcleaner_4.106.exe 2015-01-06 19:15 - 2015-01-06 14:50 - 01222144 _____ () C:\Users\user\Desktop\RSITx64 (1).exe 2015-01-06 19:10 - 2015-01-06 19:12 - 00000000 ____D () C:\AdwCleaner 2015-01-06 12:03 - 2015-01-06 14:51 - 00000000 ____D () C:\Program Files\trend micro 2015-01-06 12:03 - 2015-01-06 12:04 - 00000000 ____D () C:\rsit 2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Roaming\Yandex C:\Users\user\PMH_3_1_20CZ.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfea84c2df5c16.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d001c0a7fe771.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Norton Security Scan for user.job => C:\PROGRA~2\NORTON~2\Engine\410~1.28\Nss.exe Task: C:\Windows\Tasks\WpsNotifyTask_user.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe Task: C:\Windows\Tasks\WpsUpdateTask_user.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe AlternateDataStreams: C:\ProgramData\Temp:77E77287 Hosts: EmptyTemp: End
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Vypinanie hier
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 06-01-2015
Ran by user at 2015-01-06 20:51:27 Run:1
Running from C:\Users\user\Desktop
Loaded Profiles: UpdatusUser & user (Available profiles: UpdatusUser & user)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\RunOnce: [Application Restart #0] => C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe [7843656 2015-01-01] (Pokki)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {20452685-8d58-11e4-826c-18cf5e9178d7} - "F:\startme.exe"
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {5563b307-29d9-11e4-8261-18cf5e9178d7} - "F:\.\StartModem.exe"
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
URLSearchHook: [S-1-5-21-1087847046-594235692-4020934395-1001] ATTENTION ==> Default URLSearchHook is missing.
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> {C957FF75-C038-4F1A-BF32-2C9EE83C26CC} URL = https://search.yahoo.com/search?fr=chr- ... =501549&p={searchTerms}
BHO: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File
BHO: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File
BHO-x32: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File
BHO-x32: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File
Toolbar: HKLM - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File
Toolbar: HKLM - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File
Toolbar: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - No Path
2015-01-06 19:45 - 2015-01-06 19:45 - 00015327 _____ () C:\Users\user\AppData\Local\LM.bat
2015-01-06 19:44 - 2015-01-06 19:45 - 00029696 _____ () C:\Users\user\AppData\Local\MSGBOX.EXE
2015-01-06 19:15 - 2015-01-06 19:09 - 02173952 _____ () C:\Users\user\Desktop\adwcleaner_4.106.exe
2015-01-06 19:15 - 2015-01-06 14:50 - 01222144 _____ () C:\Users\user\Desktop\RSITx64 (1).exe
2015-01-06 19:10 - 2015-01-06 19:12 - 00000000 ____D () C:\AdwCleaner
2015-01-06 12:03 - 2015-01-06 14:51 - 00000000 ____D () C:\Program Files\trend micro
2015-01-06 12:03 - 2015-01-06 12:04 - 00000000 ____D () C:\rsit
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Roaming\Yandex
C:\Users\user\PMH_3_1_20CZ.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfea84c2df5c16.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d001c0a7fe771.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Norton Security Scan for user.job => C:\PROGRA~2\NORTON~2\Engine\410~1.28\Nss.exe
Task: C:\Windows\Tasks\WpsNotifyTask_user.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe
Task: C:\Windows\Tasks\WpsUpdateTask_user.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe
AlternateDataStreams: C:\ProgramData\Temp:77E77287
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoFolderOptions => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoControlPanel => value deleted successfully.
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #0 => value deleted successfully.
"HKU\S-1-5-21-1087847046-594235692-4020934395-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{20452685-8d58-11e4-826c-18cf5e9178d7}" => Key deleted successfully.
HKCR\CLSID\{20452685-8d58-11e4-826c-18cf5e9178d7} => Key not found.
"HKU\S-1-5-21-1087847046-594235692-4020934395-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5563b307-29d9-11e4-8261-18cf5e9178d7}" => Key deleted successfully.
HKCR\CLSID\{5563b307-29d9-11e4-8261-18cf5e9178d7} => Key not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Local Page => Value was restored successfully.
Error setting Default URLSearchHook.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-21-1087847046-594235692-4020934395-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-1087847046-594235692-4020934395-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C957FF75-C038-4F1A-BF32-2C9EE83C26CC}" => Key deleted successfully.
HKCR\CLSID\{C957FF75-C038-4F1A-BF32-2C9EE83C26CC} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-372D-5350-00A7-7A786E7484D7}" => Key deleted successfully.
HKCR\CLSID\{4B4D5056-372D-5350-00A7-7A786E7484D7} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5350-006A-76A7-7A786E7484D7}" => Key deleted successfully.
HKCR\CLSID\{5347542D-5350-006A-76A7-7A786E7484D7} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-372D-5350-00A7-7A786E7484D7}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{4B4D5056-372D-5350-00A7-7A786E7484D7} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5350-006A-76A7-7A786E7484D7}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{5347542D-5350-006A-76A7-7A786E7484D7} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{4B4D5056-372D-5350-00A7-7A786E7484D7} => value deleted successfully.
HKCR\CLSID\{4B4D5056-372D-5350-00A7-7A786E7484D7} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{5347542D-5350-006A-76A7-7A786E7484D7} => value deleted successfully.
HKCR\CLSID\{5347542D-5350-006A-76A7-7A786E7484D7} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{4B4D5056-372D-5350-00A7-7A786E7484D7} => value deleted successfully.
HKCR\Wow6432Node\CLSID\{4B4D5056-372D-5350-00A7-7A786E7484D7} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{5347542D-5350-006A-76A7-7A786E7484D7} => value deleted successfully.
HKCR\Wow6432Node\CLSID\{5347542D-5350-006A-76A7-7A786E7484D7} => Key not found.
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => Key not found.
"C:\Users\user\AppData\Local\LM.bat" => File/Directory not found.
"C:\Users\user\AppData\Local\MSGBOX.EXE" => File/Directory not found.
C:\Users\user\Desktop\adwcleaner_4.106.exe => Moved successfully.
C:\Users\user\Desktop\RSITx64 (1).exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\rsit => Moved successfully.
C:\Users\user\AppData\Roaming\Yandex => Moved successfully.
C:\Users\user\PMH_3_1_20CZ.exe => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfea84c2df5c16.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d001c0a7fe771.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\Norton Security Scan for user.job not found.
C:\Windows\Tasks\WpsNotifyTask_user.job => Moved successfully.
C:\Windows\Tasks\WpsUpdateTask_user.job => Moved successfully.
C:\ProgramData\Temp => ":77E77287" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 7.1 GB temporary data.
The system needed a reboot.
==== End of Fixlog 20:51:40 ====
Ran by user at 2015-01-06 20:51:27 Run:1
Running from C:\Users\user\Desktop
Loaded Profiles: UpdatusUser & user (Available profiles: UpdatusUser & user)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\RunOnce: [Application Restart #0] => C:\Users\user\AppData\Local\Pokki\Engine\HostAppService.exe [7843656 2015-01-01] (Pokki)
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {20452685-8d58-11e4-826c-18cf5e9178d7} - "F:\startme.exe"
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\...\MountPoints2: {5563b307-29d9-11e4-8261-18cf5e9178d7} - "F:\.\StartModem.exe"
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
URLSearchHook: [S-1-5-21-1087847046-594235692-4020934395-1001] ATTENTION ==> Default URLSearchHook is missing.
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> {C957FF75-C038-4F1A-BF32-2C9EE83C26CC} URL = https://search.yahoo.com/search?fr=chr- ... =501549&p={searchTerms}
BHO: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File
BHO: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File
BHO-x32: No Name -> {4B4D5056-372D-5350-00A7-7A786E7484D7} -> No File
BHO-x32: No Name -> {5347542D-5350-006A-76A7-7A786E7484D7} -> No File
Toolbar: HKLM - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File
Toolbar: HKLM - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - No Name - {4B4D5056-372D-5350-00A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File
Toolbar: HKU\S-1-5-21-1087847046-594235692-4020934395-1002 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - No Path
2015-01-06 19:45 - 2015-01-06 19:45 - 00015327 _____ () C:\Users\user\AppData\Local\LM.bat
2015-01-06 19:44 - 2015-01-06 19:45 - 00029696 _____ () C:\Users\user\AppData\Local\MSGBOX.EXE
2015-01-06 19:15 - 2015-01-06 19:09 - 02173952 _____ () C:\Users\user\Desktop\adwcleaner_4.106.exe
2015-01-06 19:15 - 2015-01-06 14:50 - 01222144 _____ () C:\Users\user\Desktop\RSITx64 (1).exe
2015-01-06 19:10 - 2015-01-06 19:12 - 00000000 ____D () C:\AdwCleaner
2015-01-06 12:03 - 2015-01-06 14:51 - 00000000 ____D () C:\Program Files\trend micro
2015-01-06 12:03 - 2015-01-06 12:04 - 00000000 ____D () C:\rsit
2015-01-01 14:48 - 2015-01-01 14:48 - 00000000 ____D () C:\Users\user\AppData\Roaming\Yandex
C:\Users\user\PMH_3_1_20CZ.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfea84c2df5c16.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d001c0a7fe771.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Norton Security Scan for user.job => C:\PROGRA~2\NORTON~2\Engine\410~1.28\Nss.exe
Task: C:\Windows\Tasks\WpsNotifyTask_user.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe
Task: C:\Windows\Tasks\WpsUpdateTask_user.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe
AlternateDataStreams: C:\ProgramData\Temp:77E77287
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoFolderOptions => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoControlPanel => value deleted successfully.
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #0 => value deleted successfully.
"HKU\S-1-5-21-1087847046-594235692-4020934395-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{20452685-8d58-11e4-826c-18cf5e9178d7}" => Key deleted successfully.
HKCR\CLSID\{20452685-8d58-11e4-826c-18cf5e9178d7} => Key not found.
"HKU\S-1-5-21-1087847046-594235692-4020934395-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5563b307-29d9-11e4-8261-18cf5e9178d7}" => Key deleted successfully.
HKCR\CLSID\{5563b307-29d9-11e4-8261-18cf5e9178d7} => Key not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Local Page => Value was restored successfully.
Error setting Default URLSearchHook.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-21-1087847046-594235692-4020934395-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-1087847046-594235692-4020934395-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C957FF75-C038-4F1A-BF32-2C9EE83C26CC}" => Key deleted successfully.
HKCR\CLSID\{C957FF75-C038-4F1A-BF32-2C9EE83C26CC} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-372D-5350-00A7-7A786E7484D7}" => Key deleted successfully.
HKCR\CLSID\{4B4D5056-372D-5350-00A7-7A786E7484D7} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5350-006A-76A7-7A786E7484D7}" => Key deleted successfully.
HKCR\CLSID\{5347542D-5350-006A-76A7-7A786E7484D7} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-372D-5350-00A7-7A786E7484D7}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{4B4D5056-372D-5350-00A7-7A786E7484D7} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5347542D-5350-006A-76A7-7A786E7484D7}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{5347542D-5350-006A-76A7-7A786E7484D7} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{4B4D5056-372D-5350-00A7-7A786E7484D7} => value deleted successfully.
HKCR\CLSID\{4B4D5056-372D-5350-00A7-7A786E7484D7} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{5347542D-5350-006A-76A7-7A786E7484D7} => value deleted successfully.
HKCR\CLSID\{5347542D-5350-006A-76A7-7A786E7484D7} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{4B4D5056-372D-5350-00A7-7A786E7484D7} => value deleted successfully.
HKCR\Wow6432Node\CLSID\{4B4D5056-372D-5350-00A7-7A786E7484D7} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{5347542D-5350-006A-76A7-7A786E7484D7} => value deleted successfully.
HKCR\Wow6432Node\CLSID\{5347542D-5350-006A-76A7-7A786E7484D7} => Key not found.
HKU\S-1-5-21-1087847046-594235692-4020934395-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => Key not found.
"C:\Users\user\AppData\Local\LM.bat" => File/Directory not found.
"C:\Users\user\AppData\Local\MSGBOX.EXE" => File/Directory not found.
C:\Users\user\Desktop\adwcleaner_4.106.exe => Moved successfully.
C:\Users\user\Desktop\RSITx64 (1).exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\rsit => Moved successfully.
C:\Users\user\AppData\Roaming\Yandex => Moved successfully.
C:\Users\user\PMH_3_1_20CZ.exe => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfea84c2df5c16.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d001c0a7fe771.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\Norton Security Scan for user.job not found.
C:\Windows\Tasks\WpsNotifyTask_user.job => Moved successfully.
C:\Windows\Tasks\WpsUpdateTask_user.job => Moved successfully.
C:\ProgramData\Temp => ":77E77287" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 7.1 GB temporary data.
The system needed a reboot.
==== End of Fixlog 20:51:40 ====
Re: Vypinanie hier
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.


Přispějete na provoz fóra?