Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Policejní vir

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
balix
Návštěvník
Návštěvník
Příspěvky: 126
Registrován: 25 dub 2013 16:57

Policejní vir

#1 Příspěvek od balix »

Dobrý den. Dnes se mi v prohlížeči objevil Policejní vir. Proto prosím o kontrolu logu.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Blaze at 2015-04-26 07:24:08
Microsoft Windows 8.1
System drive C: has 689 GB (76%) free of 905 GB
Total RAM: 8139 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:24:10, on 26. 4. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Users\Blaze\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Blaze.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O9 - Extra button: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\WINDOWS\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: ExpressCache - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 9820 bytes

======Listing Processes======





wininit.exe


winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-24b781a3-3db3-4618-a011-ffa38c1a4a03 -SystemEventPortName:HostProcess-77df7bbb-85c3-4fa3-8ca4-6068f1def261 -IoCancelEventPortName:HostProcess-5fe14756-3810-40d5-ba33-c564f6eb940c -NonStateChangingEventPortName:HostProcess-08550545-e874-48e5-bd40-87d2560980b1 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:0a8248b6-4d29-45c9-8596-4f887df98651 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 749878536720
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\SysWOW64\PnkBstrA.exe
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" 9794b87b-e789-432b-ba31-6149d27d5801 1
\??\C:\WINDOWS\system32\conhost.exe 0x4

"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe

C:\WINDOWS\Explorer.EXE
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
taskhostex.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Windows\RTFTrack.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Realtek\Audio\HDA\FMAPP.exe"
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe" /m
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Users\Blaze\AppData\Local\Steam\htmlcache" -steampid 4752 -buildid 1428965940 -steamid "0" --blacklist-accelerated-compositing --process-per-tab --disable-accelerated-video-decode --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-accelerated-video-decode --disable-delegated-renderer --disable-gpu-compositing --disable-threaded-compositing --enable-pinch --enable-software-compositing --no-sandbox --enable-direct-write --lang=en-US --lang=en-US --product-version="Valve Steam Client" --enable-pinch --disable-accelerated-compositing --disable-gpu-compositing --channel="856.9.1685536811\288402259" /prefetch:673131151
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-accelerated-video-decode --disable-delegated-renderer --disable-gpu-compositing --disable-threaded-compositing --enable-pinch --enable-software-compositing --no-sandbox --enable-direct-write --lang=en-US --lang=en-US --product-version="Valve Steam Client" --enable-pinch --disable-accelerated-compositing --disable-gpu-compositing --channel="856.10.948461151\710031979" /prefetch:673131151
C:\WINDOWS\system32\wbem\wmiprvse.exe

C:\Users\Blaze\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Blaze\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Blaze\AppData\Roaming\Mozilla\Firefox\Profiles\cwl9atgv.default-1428576093703

prefs.js - "browser.startup.homepage" - "https://seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtsFT"=C:\windows\RTFTrack.exe [2012-08-06 6334096]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-07-27 12937872]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-07-10 1214608]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2012-08-16 665400]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2012-08-09 11554688]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-08-10 4196432]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2015-01-23 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2015-01-23 191544]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-03-28 2673296]
"ShadowPlay"=C:\windows\system32\nvspcap64.dll [2015-03-28 1570672]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-08-16 2916152]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-04-14 2889408]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-07-17 56128]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2012-07-26 508656]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2012-07-27 167024]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\NVIDIA~1\3DVISI~1\NVSTIN~1.DLL"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-04-23 22:25:30 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2015-04-23 22:25:30 ----A---- C:\WINDOWS\system32\rascfg.dll
2015-04-23 22:25:30 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2015-04-23 22:25:30 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2015-04-23 20:02:46 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2015-04-23 20:00:59 ----D---- C:\ProgramData\EA Core
2015-04-23 20:00:58 ----D---- C:\ProgramData\EA Logs
2015-04-23 11:59:08 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2015-04-23 11:59:08 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2015-04-23 11:59:06 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-04-23 11:59:05 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2015-04-23 11:59:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-04-23 11:59:02 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2015-04-23 11:59:01 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-04-23 11:59:00 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-04-23 11:59:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-04-23 11:59:00 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2015-04-23 11:59:00 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-04-23 11:59:00 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-04-23 11:59:00 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2015-04-23 11:58:59 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2015-04-23 11:58:59 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2015-04-23 11:58:59 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2015-04-23 11:58:59 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\WSDMon.dll
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\WSDApi.dll
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\WinSCard.dll
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\vpnike.dll
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\untfs.dll
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\spoolsv.exe
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2015-04-23 11:58:59 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-04-23 11:58:58 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2015-04-23 11:58:58 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2015-04-23 11:58:58 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2015-04-23 11:58:58 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2015-04-23 11:58:58 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2015-04-23 11:58:58 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\rasapi32.dll
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\nshwfp.dll
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2015-04-23 11:58:58 ----A---- C:\WINDOWS\system32\BFE.DLL
2015-04-23 11:58:57 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2015-04-23 11:58:57 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2015-04-23 11:58:57 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\VSSVC.exe
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\vsstrace.dll
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\vssapi.dll
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\rasdiag.dll
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\drivers\sermouse.sys
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2015-04-23 11:58:57 ----A---- C:\WINDOWS\system32\dnsapi.dll
2015-04-23 11:58:56 ----A---- C:\WINDOWS\system32\rasser.dll
2015-04-23 11:58:56 ----A---- C:\WINDOWS\system32\rasmxs.dll
2015-04-23 11:58:55 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2015-04-23 11:58:55 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2015-04-23 11:58:55 ----A---- C:\WINDOWS\splwow64.exe
2015-04-23 11:58:54 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2015-04-23 11:58:53 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2015-04-23 11:58:53 ----A---- C:\WINDOWS\system32\eventcls.dll
2015-04-23 11:58:52 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2015-04-23 11:58:47 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2015-04-23 11:58:47 ----A---- C:\WINDOWS\system32\wpdshext.dll
2015-04-23 11:58:03 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-04-23 11:58:02 ----A---- C:\WINDOWS\system32\invagent.dll
2015-04-23 11:58:02 ----A---- C:\WINDOWS\system32\devinv.dll
2015-04-23 11:58:02 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-04-23 11:58:02 ----A---- C:\WINDOWS\system32\aepic.dll
2015-04-23 11:58:02 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-04-23 11:58:02 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-04-23 11:58:02 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-04-23 11:57:59 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-04-23 11:28:43 ----D---- C:\Program Files (x86)\Rockstar Games
2015-04-23 11:28:24 ----D---- C:\Program Files\Rockstar Games
2015-04-23 08:50:24 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-04-23 08:50:23 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-04-23 08:15:36 ----D---- C:\Program Files (x86)\Origin Games
2015-04-23 08:14:24 ----D---- C:\Users\Blaze\AppData\Roaming\Origin
2015-04-23 08:12:42 ----D---- C:\ProgramData\Origin
2015-04-23 08:12:41 ----D---- C:\ProgramData\Electronic Arts
2015-04-23 08:12:38 ----D---- C:\Program Files (x86)\Origin
2015-04-22 18:27:53 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-04-16 01:48:45 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-04-16 01:48:44 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-04-16 01:43:43 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-04-16 01:43:42 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-04-16 01:43:29 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-04-16 01:43:28 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-04-16 01:43:09 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-04-16 01:43:09 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-04-16 01:43:08 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-04-16 00:57:43 ----SHD---- C:\Recovery
2015-04-16 00:57:31 ----DC---- C:\WINDOWS\Panther
2015-04-16 00:56:01 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-04-16 00:56:01 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-04-16 00:56:01 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-04-16 00:56:01 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-04-16 00:56:01 ----A---- C:\WINDOWS\system32\wer.dll
2015-04-16 00:56:01 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-04-16 00:56:01 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-04-16 00:56:01 ----A---- C:\WINDOWS\system32\ci.dll
2015-04-16 00:56:01 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-04-16 00:54:47 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-04-16 00:54:47 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-04-16 00:54:37 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-04-16 00:54:37 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-04-16 00:54:37 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-04-16 00:54:37 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-04-16 00:54:37 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-04-16 00:54:37 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-04-16 00:54:24 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-04-16 00:54:24 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-04-16 00:54:18 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-04-16 00:54:18 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-04-16 00:54:12 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-04-16 00:54:12 ----A---- C:\WINDOWS\system32\schannel.dll
2015-04-16 00:54:03 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2015-04-16 00:54:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-16 00:54:03 ----A---- C:\WINDOWS\system32\WSShared.dll
2015-04-16 00:54:03 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\wininet.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\jscript.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-04-16 00:53:34 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-04-16 00:44:01 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-04-16 00:44:01 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-04-16 00:43:57 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-04-16 00:43:54 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2015-04-16 00:43:51 ----A---- C:\WINDOWS\system32\rdpudd.dll
2015-04-16 00:43:51 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2015-04-16 00:43:48 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-04-16 00:43:48 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-04-16 00:43:45 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2015-04-16 00:43:45 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2015-04-16 00:43:45 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2015-04-16 00:43:45 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2015-04-16 00:43:45 ----A---- C:\WINDOWS\system32\eapphost.dll
2015-04-16 00:43:45 ----A---- C:\WINDOWS\system32\eappgnui.dll
2015-04-16 00:43:45 ----A---- C:\WINDOWS\system32\eappcfg.dll
2015-04-16 00:43:45 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2015-04-16 00:43:42 ----D---- C:\Users\Blaze\AppData\Roaming\CyberLink
2015-04-16 00:43:41 ----A---- C:\WINDOWS\system32\win32k.sys
2015-04-16 00:43:31 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-04-16 00:43:31 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-04-16 00:43:31 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-04-16 00:43:31 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-04-16 00:43:31 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-04-16 00:43:07 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-04-16 00:43:07 ----SD---- C:\WINDOWS\system32\GWX
2015-04-16 00:43:01 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2015-04-16 00:43:01 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2015-04-16 00:42:56 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-04-16 00:42:56 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-04-16 00:42:56 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-04-16 00:42:56 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-04-16 00:42:56 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-04-16 00:42:56 ----A---- C:\WINDOWS\system32\wow64.dll
2015-04-16 00:42:56 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-04-16 00:42:56 ----A---- C:\WINDOWS\system32\tdh.dll
2015-04-16 00:42:56 ----A---- C:\WINDOWS\system32\sechost.dll
2015-04-16 00:42:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-04-16 00:42:56 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-04-16 00:42:56 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-04-16 00:42:42 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2015-04-16 00:42:42 ----A---- C:\WINDOWS\system32\drivers\hidbth.sys
2015-04-16 00:42:39 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-04-16 00:42:39 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-04-16 00:42:39 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-04-16 00:42:39 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-04-16 00:42:33 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-04-16 00:42:30 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-04-16 00:42:30 ----A---- C:\WINDOWS\system32\msctf.dll
2015-04-16 00:42:23 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-04-16 00:42:23 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-04-16 00:42:23 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-04-16 00:42:23 ----A---- C:\WINDOWS\system32\certcli.dll
2015-04-16 00:41:46 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2015-04-16 00:41:46 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2015-04-16 00:41:46 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2015-04-16 00:41:46 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2015-04-16 00:41:46 ----A---- C:\WINDOWS\system32\mfc42u.dll
2015-04-16 00:41:46 ----A---- C:\WINDOWS\system32\mfc42.dll
2015-04-16 00:41:46 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2015-04-16 00:41:43 ----A---- C:\WINDOWS\system32\ubpm.dll
2015-04-16 00:41:40 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-04-16 00:41:40 ----A---- C:\WINDOWS\system32\authui.dll
2015-04-16 00:41:34 ----A---- C:\WINDOWS\system32\lsm.dll
2015-04-16 00:41:27 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-04-16 00:41:27 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-04-16 00:41:24 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2015-04-16 00:41:24 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2015-04-16 00:41:21 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-04-16 00:41:21 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-04-16 00:41:11 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-04-16 00:41:11 ----A---- C:\WINDOWS\system32\calc.exe
2015-04-16 00:40:56 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-04-16 00:40:56 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wups2.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wups.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-04-16 00:40:56 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-04-16 00:40:45 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-04-16 00:40:40 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-04-16 00:40:40 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-04-16 00:40:35 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2015-04-16 00:40:35 ----A---- C:\WINDOWS\system32\SHCore.dll
2015-04-16 00:40:35 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-04-16 00:40:13 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-04-16 00:39:22 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-04-16 00:39:22 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-04-16 00:39:16 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-04-16 00:39:16 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-04-16 00:38:55 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-04-16 00:38:55 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-04-16 00:38:55 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-04-16 00:37:43 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-04-16 00:37:43 ----A---- C:\WINDOWS\explorer.exe
2015-04-16 00:37:40 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-04-16 00:37:36 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-04-16 00:37:36 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-04-16 00:37:29 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-04-16 00:37:26 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2015-04-16 00:37:26 ----A---- C:\WINDOWS\system32\photowiz.dll
2015-04-16 00:37:19 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-04-16 00:37:19 ----A---- C:\WINDOWS\system32\shell32.dll
2015-04-16 00:37:12 ----A---- C:\WINDOWS\system32\win32spl.dll
2015-04-16 00:37:12 ----A---- C:\WINDOWS\system32\localspl.dll
2015-04-16 00:37:09 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-04-16 00:37:09 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-04-16 00:37:09 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-04-16 00:37:09 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-04-16 00:37:09 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-04-16 00:37:09 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-04-16 00:34:46 ----D---- C:\Users\Blaze\AppData\Roaming\Identities
2015-04-16 00:33:40 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-04-16 00:33:40 ----D---- C:\Program Files (x86)\MSBuild
2015-04-16 00:33:38 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-04-16 00:33:38 ----D---- C:\Program Files\Reference Assemblies
2015-04-16 00:33:38 ----D---- C:\Program Files\MSBuild
2015-04-16 00:33:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-04-16 00:33:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-04-16 00:32:58 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-04-16 00:32:56 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-04-16 00:32:14 ----SHD---- C:\ProgramData\Šablony
2015-04-16 00:32:14 ----SHD---- C:\ProgramData\Plocha
2015-04-16 00:32:14 ----SHD---- C:\ProgramData\Nabídka Start
2015-04-16 00:32:14 ----SHD---- C:\ProgramData\Dokumenty
2015-04-16 00:32:14 ----SHD---- C:\ProgramData\Data aplikací
2015-04-16 00:31:27 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-04-16 00:12:33 ----SD---- C:\Users\Blaze\AppData\Roaming\Microsoft
2015-04-16 00:03:30 ----D---- C:\Intel
2015-04-16 00:02:40 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-04-16 00:02:40 ----D---- C:\Program Files\Realtek
2015-04-16 00:02:12 ----A---- C:\WINDOWS\SYSWOW64\oemdspif.dll
2015-04-16 00:02:12 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-04-16 00:02:12 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-04-16 00:02:12 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-04-16 00:02:12 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-04-16 00:02:12 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-04-16 00:02:12 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-04-16 00:01:54 ----D---- C:\ProgramData\NVIDIA Corporation
2015-04-16 00:01:43 ----D---- C:\Program Files\NVIDIA Corporation
2015-04-16 00:01:39 ----D---- C:\Program Files\Synaptics
2015-04-16 00:00:26 ----D---- C:\WINDOWS\Prefetch
2015-04-14 00:06:45 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2015-04-14 00:04:25 ----A---- C:\WINDOWS\system32\nvhdap64.dll
2015-04-14 00:04:25 ----A---- C:\WINDOWS\system32\nvhdagenco6420103.dll
2015-04-14 00:04:25 ----A---- C:\WINDOWS\system32\nvdispgenco6435012.dll
2015-04-14 00:04:25 ----A---- C:\WINDOWS\system32\nvdispco6435012.dll
2015-04-14 00:04:25 ----A---- C:\WINDOWS\system32\drivers\nvhda64v.sys
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\nvopencl.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\nvcuda.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\nvapi64.dll
2015-04-14 00:04:24 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2015-04-13 03:44:55 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-04-13 03:44:33 ----D---- C:\WINDOWS\system32\appraiser
2015-04-11 15:03:14 ----A---- C:\WINDOWS\system32\MpSigStub.exe
2015-04-10 20:52:57 ----D---- C:\AdwCleaner
2015-04-10 13:39:16 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2015-04-10 13:39:16 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2015-04-10 13:39:15 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2015-04-10 13:39:15 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2015-04-10 13:34:36 ----A---- C:\WINDOWS\system32\drivers\nvvad64v.sys
2015-04-10 13:34:35 ----A---- C:\WINDOWS\SYSWOW64\nvaudcap32v.dll
2015-04-10 13:34:35 ----A---- C:\WINDOWS\system32\nvaudcap64v.dll
2015-04-10 13:34:33 ----A---- C:\WINDOWS\system32\nvdispgenco6434788.dll
2015-04-10 13:34:33 ----A---- C:\WINDOWS\system32\nvdispco6434788.dll
2015-04-10 13:33:04 ----D---- C:\NVIDIA
2015-04-10 13:07:50 ----A---- C:\WINDOWS\system32\drivers\ewusbnet.sys
2015-04-10 11:00:31 ----D---- C:\rsit
2015-04-10 11:00:31 ----D---- C:\Program Files\trend micro
2015-04-09 22:08:48 ----D---- C:\WINDOWS\system32\MRT
2015-04-09 22:08:46 ----A---- C:\WINDOWS\system32\MRT.exe
2015-04-09 21:55:46 ----A---- C:\WINDOWS\system32\netcfg-40651359.txt
2015-04-09 21:55:46 ----A---- C:\WINDOWS\system32\netcfg-40651328.txt
2015-04-09 21:41:57 ----A---- C:\WINDOWS\system32\netcfg-39822390.txt
2015-04-09 21:41:54 ----A---- C:\WINDOWS\system32\netcfg-39818703.txt
2015-04-09 21:41:52 ----A---- C:\WINDOWS\system32\netcfg-39817312.txt
2015-04-09 21:41:42 ----A---- C:\WINDOWS\system32\netcfg-39806718.txt
2015-04-09 21:13:16 ----A---- C:\WINDOWS\system32\netcfg-38100843.txt
2015-04-09 21:13:16 ----A---- C:\WINDOWS\system32\netcfg-38100796.txt
2015-04-09 21:13:02 ----A---- C:\WINDOWS\system32\netcfg-38086765.txt
2015-04-09 21:13:02 ----A---- C:\WINDOWS\system32\netcfg-38086718.txt
2015-04-09 21:02:46 ----A---- C:\WINDOWS\system32\netcfg-37471109.txt
2015-04-09 21:02:46 ----A---- C:\WINDOWS\system32\netcfg-37471062.txt
2015-04-09 21:01:48 ----A---- C:\WINDOWS\system32\netcfg-37412796.txt
2015-04-09 21:01:48 ----A---- C:\WINDOWS\system32\netcfg-37412765.txt
2015-04-09 20:23:00 ----A---- C:\WINDOWS\system32\netcfg-35084921.txt
2015-04-09 20:22:58 ----A---- C:\WINDOWS\system32\netcfg-35083484.txt
2015-04-09 20:22:55 ----A---- C:\WINDOWS\system32\netcfg-35079843.txt
2015-04-09 20:22:50 ----A---- C:\WINDOWS\system32\netcfg-35075375.txt
2015-04-09 20:01:56 ----A---- C:\WINDOWS\SYSWOW64\EasyAntiCheat.exe
2015-04-09 19:53:16 ----A---- C:\WINDOWS\system32\netcfg-33300984.txt
2015-04-09 19:53:16 ----A---- C:\WINDOWS\system32\netcfg-33300953.txt
2015-04-09 19:53:11 ----A---- C:\WINDOWS\system32\netcfg-33296250.txt
2015-04-09 19:53:11 ----A---- C:\WINDOWS\system32\netcfg-33296218.txt
2015-04-09 19:46:35 ----A---- C:\WINDOWS\system32\netcfg-32900203.txt
2015-04-09 19:46:33 ----A---- C:\WINDOWS\system32\netcfg-32898250.txt
2015-04-09 19:46:30 ----A---- C:\WINDOWS\system32\netcfg-32895125.txt
2015-04-09 19:46:25 ----A---- C:\WINDOWS\system32\netcfg-32890234.txt
2015-04-09 19:46:00 ----D---- C:\Program Files (x86)\Steam
2015-04-09 19:46:00 ----D---- C:\Program Files (x86)\SpeedFan
2015-04-09 19:44:49 ----A---- C:\WINDOWS\system32\netcfg-281375.txt
2015-04-09 19:44:48 ----A---- C:\WINDOWS\system32\netcfg-279828.txt
2015-04-09 19:44:30 ----D---- C:\Users\Blaze\AppData\Roaming\Mozilla
2015-04-09 19:44:24 ----D---- C:\ProgramData\Mozilla
2015-04-09 19:44:24 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-09 19:39:33 ----D---- C:\Users\Blaze\AppData\Roaming\Macromedia
2015-04-09 19:39:22 ----A---- C:\WINDOWS\system32\netcfg-1156593.txt
2015-04-09 19:39:22 ----A---- C:\WINDOWS\system32\netcfg-1156562.txt
2015-04-09 19:39:14 ----A---- C:\WINDOWS\system32\netcfg-1148609.txt
2015-04-09 19:39:14 ----A---- C:\WINDOWS\system32\netcfg-1148562.txt
2015-04-09 19:38:56 ----A---- C:\WINDOWS\system32\netcfg-1130593.txt
2015-04-09 19:38:18 ----A---- C:\WINDOWS\system32\netcfg-1092250.txt
2015-04-09 19:37:34 ----A---- C:\WINDOWS\system32\netcfg-1048140.txt
2015-04-09 19:37:32 ----A---- C:\WINDOWS\system32\netcfg-1046437.txt
2015-04-09 19:37:13 ----A---- C:\WINDOWS\system32\netcfg-1027546.txt
2015-04-09 19:37:11 ----A---- C:\WINDOWS\system32\netcfg-1025046.txt
2015-04-09 19:37:09 ----A---- C:\WINDOWS\system32\netcfg-1023625.txt
2015-04-09 19:37:08 ----A---- C:\WINDOWS\system32\netcfg-32333265.txt
2015-04-09 19:37:08 ----A---- C:\WINDOWS\system32\netcfg-32333234.txt
2015-04-09 19:37:03 ----A---- C:\WINDOWS\system32\netcfg-32328281.txt
2015-04-09 19:37:03 ----A---- C:\WINDOWS\system32\netcfg-32328203.txt
2015-04-09 19:36:59 ----A---- C:\WINDOWS\system32\netcfg-1013656.txt
2015-04-09 19:34:52 ----A---- C:\WINDOWS\system32\netcfg-32197359.txt
2015-04-09 19:34:47 ----A---- C:\WINDOWS\system32\netcfg-32192375.txt
2015-04-09 19:26:21 ----D---- C:\Users\Blaze\AppData\Roaming\Intel Corporation
2015-04-09 19:24:31 ----D---- C:\Users\Blaze\AppData\Roaming\Adobe
2015-04-09 19:22:11 ----D---- C:\Users\Blaze\AppData\Roaming\Intel
2015-04-09 19:14:16 ----ASH---- C:\swapfile.sys
2015-04-09 19:14:14 ----SHD---- C:\System Volume Information
2015-04-09 19:14:14 ----ASH---- C:\pagefile.sys
2015-04-09 19:14:08 ----ASH---- C:\hiberfil.sys
2015-04-09 16:41:20 ----A---- C:\WINDOWS\system32\netcfg-21793156.txt
2015-04-09 16:41:20 ----A---- C:\WINDOWS\system32\netcfg-21793125.txt
2015-04-09 16:24:00 ----A---- C:\WINDOWS\system32\netcfg-20753656.txt
2015-04-09 16:23:48 ----A---- C:\WINDOWS\system32\netcfg-20741578.txt
2015-04-09 16:17:48 ----A---- C:\WINDOWS\system32\netcfg-20381062.txt
2015-04-09 14:07:13 ----RHD---- C:\Users\Blaze\AppData\Roaming\SecuROM
2015-04-09 14:07:13 ----A---- C:\WINDOWS\SYSWOW64\CmdLineExt_x64.dll
2015-04-09 14:07:06 ----D---- C:\WINDOWS\SYSWOW64\xlive
2015-04-09 14:07:06 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2015-04-09 13:53:51 ----D---- C:\KMPlayer
2015-04-09 13:34:58 ----D---- C:\Program Files (x86)\World of Warcraft
2015-04-09 12:51:55 ----A---- C:\WINDOWS\system32\netcfg-8032750.txt
2015-04-09 12:51:53 ----A---- C:\WINDOWS\system32\netcfg-8031187.txt
2015-04-09 12:51:43 ----D---- C:\Program Files (x86)\Hearthstone
2015-04-09 12:51:34 ----A---- C:\WINDOWS\system32\netcfg-8011781.txt
2015-04-09 12:51:32 ----A---- C:\WINDOWS\system32\netcfg-8010203.txt
2015-04-09 12:51:22 ----A---- C:\WINDOWS\system32\netcfg-7999781.txt
2015-04-09 12:51:20 ----A---- C:\WINDOWS\system32\netcfg-7998375.txt
2015-04-09 12:48:24 ----D---- C:\Users\Blaze\AppData\Roaming\NVIDIA
2015-04-09 12:48:03 ----D---- C:\Users\Blaze\AppData\Roaming\Battle.net
2015-04-09 12:47:49 ----D---- C:\ProgramData\Blizzard Entertainment
2015-04-09 12:47:49 ----D---- C:\Program Files (x86)\Battle.net
2015-04-09 12:46:44 ----D---- C:\ProgramData\Battle.net
2015-04-09 12:30:12 ----D---- C:\Users\Blaze\AppData\Roaming\WinRAR
2015-04-09 12:30:00 ----D---- C:\Program Files\WinRAR
2015-04-09 12:13:45 ----D---- C:\ProgramData\Bohemia Interactive Studio
2015-04-09 12:11:04 ----D---- C:\Program Files (x86)\Dotjosh Studios
2015-04-09 12:08:32 ----D---- C:\Users\Blaze\AppData\Roaming\Telefónica Móviles
2015-04-09 12:07:46 ----D---- C:\Program Files (x86)\O2
2015-04-09 12:01:52 ----D---- C:\Users\Blaze\AppData\Roaming\uTorrent
2015-04-09 11:18:16 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2015-04-09 11:18:16 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2015-04-09 11:18:15 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2015-04-09 11:18:14 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2015-04-09 11:18:14 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2015-04-09 11:18:12 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2015-04-09 11:18:12 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2015-04-09 11:18:12 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2015-04-09 11:18:12 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2015-04-09 11:18:12 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2015-04-09 11:18:12 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2015-04-09 11:18:11 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2015-04-09 11:18:11 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2015-04-09 11:18:10 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2015-04-09 11:18:09 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2015-04-09 11:18:08 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2015-04-09 11:18:07 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2015-04-09 11:18:07 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2015-04-09 11:18:07 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2015-04-09 11:18:07 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2015-04-09 11:18:07 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2015-04-09 11:18:07 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2015-04-09 11:18:06 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2015-04-09 11:18:06 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2015-04-09 11:18:06 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2015-04-09 11:18:06 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2015-04-09 11:18:06 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2015-04-09 11:18:06 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2015-04-09 11:18:06 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2015-04-09 11:18:06 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2015-04-09 11:18:05 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2015-04-09 11:18:04 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2015-04-09 11:18:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2015-04-09 11:18:04 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2015-04-09 11:18:04 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2015-04-09 11:18:04 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2015-04-09 11:18:04 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2015-04-09 11:18:03 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2015-04-09 11:18:03 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2015-04-09 11:18:02 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2015-04-09 11:18:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2015-04-09 11:18:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2015-04-09 11:18:02 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2015-04-09 11:18:02 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2015-04-09 11:18:02 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2015-04-09 11:18:02 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2015-04-09 11:18:02 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2015-04-09 11:18:01 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2015-04-09 11:18:00 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2015-04-09 11:18:00 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2015-04-09 11:18:00 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2015-04-09 11:18:00 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2015-04-09 11:18:00 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2015-04-09 11:18:00 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2015-04-09 11:18:00 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2015-04-09 11:18:00 ----A---- C:\WINDOWS\system32\d3dx10.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2015-04-09 11:17:59 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2015-04-09 11:17:58 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2015-04-09 11:17:58 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2015-04-09 11:17:58 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2015-04-09 11:17:58 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2015-04-09 11:17:58 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2015-04-09 11:17:58 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2015-04-09 11:17:53 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2015-04-09 11:17:53 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2015-04-09 11:17:52 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2015-04-09 11:17:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2015-04-09 11:17:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2015-04-09 11:17:51 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2015-04-09 11:17:51 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2015-04-09 11:13:17 ----D---- C:\Users\Blaze\AppData\Roaming\Skype
2015-04-09 11:12:46 ----RD---- C:\Program Files (x86)\Skype
2015-04-09 11:12:42 ----D---- C:\ProgramData\Skype
2015-04-09 11:10:10 ----D---- C:\Users\Blaze\AppData\Roaming\TS3Client
2015-04-09 11:10:00 ----D---- C:\Program Files\TeamSpeak 3 Client
2015-04-09 11:06:37 ----A---- C:\WINDOWS\system32\netcfg-1715281.txt
2015-04-09 11:06:03 ----A---- C:\WINDOWS\system32\netcfg-1680734.txt
2015-04-09 10:54:06 ----D---- C:\Program Files\Common Files\Intel
2015-04-09 10:54:06 ----D---- C:\Program Files (x86)\Cisco
2015-04-09 10:53:31 ----D---- C:\ProgramData\Package Cache
2015-04-09 10:53:19 ----A---- C:\WINDOWS\system32\netcfg-917093.txt

======List of files/folders modified in the last 1 month======

2015-04-26 07:00:00 ----D---- C:\WINDOWS\system32\sru
2015-04-26 01:20:06 ----D---- C:\WINDOWS\Temp
2015-04-25 23:04:22 ----D---- C:\WINDOWS\AppCompat
2015-04-25 23:01:38 ----D---- C:\WINDOWS\Microsoft.NET
2015-04-25 22:21:29 ----D---- C:\WINDOWS\system32\drivers
2015-04-25 19:53:07 ----D---- C:\WINDOWS\system32\config
2015-04-25 19:48:58 ----RD---- C:\WINDOWS\System32
2015-04-25 19:48:58 ----D---- C:\WINDOWS\Inf
2015-04-25 19:48:58 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-04-25 19:46:28 ----D---- C:\WINDOWS\system32\wdi
2015-04-25 19:45:21 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-04-25 19:42:55 ----D---- C:\WINDOWS\WinSxS
2015-04-25 19:42:34 ----D---- C:\ProgramData\NVIDIA
2015-04-25 19:41:40 ----SD---- C:\WINDOWS\system32\CompatTel
2015-04-25 19:41:38 ----D---- C:\WINDOWS\system32\wbem
2015-04-25 19:41:36 ----D---- C:\WINDOWS\apppatch
2015-04-25 19:41:33 ----D---- C:\WINDOWS\system32\DriverStore
2015-04-25 19:36:49 ----D---- C:\WINDOWS\SysWOW64
2015-04-25 19:36:48 ----D---- C:\WINDOWS\SYSWOW64\setup
2015-04-25 19:36:47 ----D---- C:\WINDOWS\system32\setup
2015-04-25 19:36:46 ----D---- C:\Windows
2015-04-23 22:26:01 ----D---- C:\WINDOWS\CbsTemp
2015-04-23 22:22:37 ----D---- C:\WINDOWS\system32\en-US
2015-04-23 20:02:46 ----RD---- C:\Program Files (x86)
2015-04-23 20:00:59 ----HD---- C:\ProgramData
2015-04-23 11:59:45 ----D---- C:\WINDOWS\system32\catroot2
2015-04-23 11:29:09 ----SHD---- C:\WINDOWS\Installer
2015-04-23 11:28:24 ----RD---- C:\Program Files
2015-04-23 08:50:40 ----D---- C:\Program Files (x86)\Common Files
2015-04-23 08:50:22 ----D---- C:\WINDOWS\system32\LogFiles
2015-04-23 08:49:18 ----RSD---- C:\WINDOWS\assembly
2015-04-23 08:48:16 ----D---- C:\WINDOWS\Logs
2015-04-23 08:20:56 ----D---- C:\WINDOWS\AppReadiness
2015-04-23 08:20:55 ----HD---- C:\Program Files\WindowsApps
2015-04-22 03:35:37 ----D---- C:\WINDOWS\rescache
2015-04-17 16:18:10 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-04-16 16:52:46 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-04-16 16:52:46 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-04-16 03:59:27 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-04-16 03:59:27 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-04-16 03:59:27 ----D---- C:\WINDOWS\system32\cs-CZ
2015-04-16 03:53:44 ----D---- C:\WINDOWS\system32\restore
2015-04-16 00:56:05 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-04-16 00:54:42 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-04-16 00:54:08 ----D---- C:\WINDOWS\WinStore
2015-04-16 00:53:48 ----D---- C:\Program Files\Internet Explorer
2015-04-16 00:52:20 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-04-16 00:52:20 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-04-16 00:52:20 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-04-16 00:52:20 ----D---- C:\WINDOWS\SYSWOW64\en
2015-04-16 00:52:20 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2015-04-16 00:52:20 ----D---- C:\WINDOWS\servicing
2015-04-16 00:52:20 ----D---- C:\Program Files\Windows Photo Viewer
2015-04-16 00:52:20 ----D---- C:\Program Files\Windows Mail
2015-04-16 00:52:20 ----D---- C:\Program Files\Windows Journal
2015-04-16 00:52:20 ----D---- C:\Program Files\Windows Defender
2015-04-16 00:52:20 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-04-16 00:52:20 ----D---- C:\Program Files (x86)\Windows Mail
2015-04-16 00:52:20 ----D---- C:\Program Files (x86)\Windows Defender
2015-04-16 00:52:19 ----D---- C:\WINDOWS\system32\winrm
2015-04-16 00:52:19 ----D---- C:\WINDOWS\system32\slmgr
2015-04-16 00:52:19 ----D---- C:\WINDOWS\system32\migwiz
2015-04-16 00:52:19 ----D---- C:\WINDOWS\system32\en
2015-04-16 00:52:19 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-04-16 00:52:19 ----D---- C:\WINDOWS\system32\Boot
2015-04-16 00:52:19 ----D---- C:\WINDOWS\en-US
2015-04-16 00:52:18 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-04-16 00:52:18 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-04-16 00:43:48 ----D---- C:\ProgramData\CyberLink
2015-04-16 00:40:24 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-16 00:39:06 ----D---- C:\WINDOWS\PolicyDefinitions
2015-04-16 00:37:23 ----RD---- C:\WINDOWS\ToastData
2015-04-16 00:36:47 ----SHD---- C:\$Recycle.Bin
2015-04-16 00:34:11 ----D---- C:\WINDOWS\SoftwareDistribution
2015-04-16 00:33:38 ----RSD---- C:\WINDOWS\Fonts
2015-04-16 00:32:14 ----D---- C:\Program Files\Windows NT
2015-04-16 00:32:09 ----D---- C:\WINDOWS\debug
2015-04-16 00:31:58 ----D---- C:\WINDOWS\Registration
2015-04-16 00:31:43 ----D---- C:\WINDOWS\system32\Tasks
2015-04-16 00:30:16 ----RSD---- C:\WINDOWS\Media
2015-04-16 00:18:01 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-04-16 00:18:01 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2015-04-16 00:18:01 ----D---- C:\WINDOWS\system32\Sysprep
2015-04-16 00:18:00 ----D---- C:\WINDOWS\Tasks
2015-04-16 00:17:04 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-04-16 00:17:04 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-04-16 00:17:03 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-04-16 00:17:03 ----D---- C:\WINDOWS\SYSWOW64\SDA
2015-04-16 00:17:03 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-04-16 00:17:03 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-04-16 00:17:03 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-04-16 00:17:02 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-04-16 00:17:02 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-04-16 00:17:01 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-04-16 00:17:00 ----HD---- C:\WINDOWS\system32\WLANProfiles
2015-04-16 00:16:59 ----D---- C:\WINDOWS\system32\WCN
2015-04-16 00:16:58 ----D---- C:\WINDOWS\system32\spool
2015-04-16 00:16:56 ----D---- C:\WINDOWS\system32\oobe
2015-04-16 00:16:56 ----D---- C:\WINDOWS\system32\MUI
2015-04-16 00:16:56 ----D---- C:\WINDOWS\system32\IME
2015-04-16 00:16:55 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-04-16 00:14:56 ----D---- C:\WINDOWS\Help
2015-04-16 00:14:56 ----D---- C:\WINDOWS\DigitalLocker
2015-04-16 00:14:55 ----RD---- C:\Users
2015-04-16 00:14:54 ----D---- C:\ProgramData\PRICache
2015-04-16 00:14:53 ----SD---- C:\ProgramData\Microsoft
2015-04-16 00:14:50 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-04-16 00:14:50 ----D---- C:\Program Files (x86)\Windows Media Player
2015-04-16 00:14:45 ----SHD---- C:\Program Files\Windows Sidebar
2015-04-16 00:14:45 ----D---- C:\Program Files\Windows Media Player
2015-04-16 00:14:39 ----D---- C:\Program Files\Common Files\microsoft shared
2015-04-16 00:14:39 ----D---- C:\Program Files\Common Files
2015-04-16 00:13:28 ----D---- C:\WINDOWS\system32\Recovery
2015-04-16 00:02:32 ----D---- C:\WINDOWS\twain_32
2015-04-14 20:40:01 ----D---- C:\WINDOWS\AUInstallAgent
2015-04-14 01:24:21 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-04-10 20:53:52 ----D---- C:\Program Files (x86)\Amazon
2015-04-10 13:39:13 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-04-10 12:40:05 ----D---- C:\WINDOWS\LiveKernelReports
2015-04-09 21:02:43 ----D---- C:\WINDOWS\ModemLogs
2015-04-09 19:42:56 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-09 19:42:54 ----D---- C:\Program Files (x86)\Lenovo
2015-04-09 19:38:50 ----HD---- C:\WINDOWS\ELAMBKUP
2015-04-09 11:06:29 ----D---- C:\Program Files\Intel
2015-04-09 10:54:54 ----D---- C:\ProgramData\Intel
2015-04-09 10:54:06 ----D---- C:\Program Files (x86)\Intel
2015-04-09 10:54:04 ----D---- C:\ProgramData\Intel.sav
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\OpenCL.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 excsd;ExpressCache Storage Filter Driver; C:\WINDOWS\system32\DRIVERS\excsd.sys [2012-03-30 95024]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-09 645952]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2015-01-23 39008]
R1 excfs;ExpressCache File System Filter Driver; C:\WINDOWS\system32\DRIVERS\excfs.sys [2012-03-30 23344]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 speedfan;speedfan; \??\C:\windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R3 ACPIVPC;@oem43.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2015-01-23 33560]
R3 AMPPAL;@oem47.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-05-21 165344]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2012-07-15 825344]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2012-07-04 55848]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-08-01 4103056]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-06-22 174176]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem2.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NETwNe64;@oem45.inf,%NIC_Service_DispName_WIN8_64%;Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\system32\DRIVERS\Netwew00.sys [2013-10-08 3345376]
R3 NVHDA;@oem55.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-04-09 195728]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-04-09 10423952]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-03-28 19600]
R3 nvvad_WaveExtensible;@oem56.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-03-13 38032]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2015-04-16 167424]
R3 rtsuvc;@oem23.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2012-08-06 8226832]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2012-08-16 43832]
R3 SynTP;@oem6.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2012-08-16 447800]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2013-05-21 772064]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-08-08 1091520]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-08-08 1112000]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-09-12 135984]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2013-08-28 626416]
R2 ExpressCache;ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [2012-03-30 79664]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-03-28 1152144]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-07-09 7168]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-21 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 277824]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-03-28 1878672]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-03-28 22995600]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-04-08 936264]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2015-04-23 76152]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2013-08-28 149744]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-04-08 410952]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 365376]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-04-14 836288]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-19 268464]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-04-09 967040]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 EasyAntiCheat;EasyAntiCheat; C:\WINDOWS\syswow64\EasyAntiCheat.exe [2015-04-17 235744]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-22 148080]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2013-08-28 273136]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-04-23 1931632]

-----------------EOF-----------------

+log z AdwCleaneru:

# AdwCleaner v4.202 - Log vytvořen 26/04/2015 v 07:28:05
# Aktualizováno 23/04/2015 by Xplode
# Databáze : 2015-04-23.2 [Server]
# Operační system : Windows 8.1 (x64)
# Uživatelské jméno : Blaze - IDEA-PC
# Spuštěno z : C:\Users\Blaze\Downloads\adwcleaner_4.202.exe
# Nastavení : Čištění

***** [ Služby ] *****


***** [ Soubory / Složky ] *****


***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****


***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v37.0.2 (x86 cs)


*************************

AdwCleaner[R0].txt - [791 bytů] - [10/04/2015 20:53:01]
AdwCleaner[R1].txt - [854 bytů] - [26/04/2015 07:27:12]
AdwCleaner[S0].txt - [851 bytů] - [10/04/2015 20:53:51]
AdwCleaner[S1].txt - [780 bytů] - [26/04/2015 07:28:05]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [837 bytů] ##########

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Policejní vir

#2 Příspěvek od Márty84 »

Zdravim :)

Posledni dve kontroly jste nedokoncil. Ma cenu to zacinat? :?:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

balix
Návštěvník
Návštěvník
Příspěvky: 126
Registrován: 25 dub 2013 16:57

Re: Policejní vir

#3 Příspěvek od balix »

Vše jelo jak má, po minulých kontrolách akorát jsem pak zapoměl dopsat na forum že už je vše OK. Teď se bojím abych neměl nějaký vir v PC když mi to tu ukázalo ten policejní vir.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Policejní vir

#4 Příspěvek od Márty84 »

Jo zapomnel, ach ta pamet :arcisit:

Pokud to bylo jen v prohlizeci, neni to takova hruza.

:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=29&t=137928 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

balix
Návštěvník
Návštěvník
Příspěvky: 126
Registrován: 25 dub 2013 16:57

Re: Policejní vir

#5 Příspěvek od balix »

alwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 28. 4. 2015
Čas skenování: 2:38:20
Protokol: mbamtest.txt
Správce: Ano

Verze: 2.01.6.1022
Databáze malwaru: v2015.04.05.02
Databáze rootkitů: v2015.04.21.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Blaze

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 568644
Uplynulý čas: 55 min, 40 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 0
(Nenalezeny žádné škodlivé položky)

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Policejní vir

#6 Příspěvek od Márty84 »

:arrow: MBAM muzete odinstalovat.

:arrow: Dejte logy podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100 - vypnete na chvili antivir, je mozne, ze to bude blokovat jako skodnou, ale pouzivame to porad, jedna se o falesny poplach :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

balix
Návštěvník
Návštěvník
Příspěvky: 126
Registrován: 25 dub 2013 16:57

Re: Policejní vir

#7 Příspěvek od balix »

Bohužel mi nejde ten Váš Launcher stáhnout ani když vypnu antivirový systém :(. Ve správce stahování je napsáno Blokováno: Může obsahovat virus nebo spyware. Zkoušel jsem i vypínat antivirus ale pořád to píše to samé.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Policejní vir

#8 Příspěvek od Márty84 »

Nekterym uzivatelum to blokujou primo prohlizece :boxed: Havet to neobsahuje, ale jde to hodne do hloubky a to se jim nelibi. Log je pak ale podrobnejsi a cisteni dukladnejsi. Co se da delat, tak dejte logy ze samotneho FRST, bez pouziti Launcheru.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

balix
Návštěvník
Návštěvník
Příspěvky: 126
Registrován: 25 dub 2013 16:57

Re: Policejní vir

#9 Příspěvek od balix »

Log byl prilis dlouhy a nevesel se tak jsem ho zabalil do .rar a posilam ho.
Přílohy
FRST.rar
(15.59 KiB) Staženo 39 x

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Policejní vir

#10 Příspěvek od Márty84 »

:arrow: Napiste mi velikost adresare plochy (C:\Users\Blaze\Plocha)



:!: Vypnete antivir, at nebrani programu v praci.
:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe a ulozte nejlepe na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]
[CreateRestorePoint]

:services
SkypeUpdate
AdobeFlashPlayerUpdateSvc

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\ProgramData\Malwarebytes
C:\Users\Blaze\Downloads\mbam-setup-2.1.6.1022.exe

:reg
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=-
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl10"=-
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

balix
Návštěvník
Návštěvník
Příspěvky: 126
Registrován: 25 dub 2013 16:57

Re: Policejní vir

#11 Příspěvek od balix »

C:\Users\Blaze\Plocha => velikost 22.6 MB

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Blaze
->Temp folder emptied: 240992473 bytes
->Temporary Internet Files folder emptied: 6527822 bytes
->FireFox cache emptied: 371286456 bytes
->Flash cache emptied: 4952 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default.migrated

User: Public

User: UpdatusUser
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 23032278 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 612,00 mb


[EMPTYFLASH]

User: All Users

User: Blaze
->Flash cache emptied: 0 bytes

User: Default

User: Default User

User: Default.migrated

User: Public

User: UpdatusUser

Total Flash Files Cleaned = 0,00 mb

C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTM Restore Point
========== SERVICES/DRIVERS ==========
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
C:\WINDOWS\tasks\Adobe Flash Player Updater.job moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Quarantine folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware folder moved successfully.
C:\ProgramData\Malwarebytes folder moved successfully.
C:\Users\Blaze\Downloads\mbam-setup-2.1.6.1022.exe moved successfully.
========== REGISTRY ==========
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Steam deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\RemoteControl10 deleted successfully.

OTM by OldTimer - Version 3.1.21.0 log created on 04292015_133428

Files moved on Reboot...
C:\Users\Blaze\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a848_e330f25ac01818f1_0_0.bin moved successfully.
C:\Users\Blaze\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a848_e330f25ac01818f1_0_0.toc moved successfully.
C:\Users\Blaze\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a848_e330f25ac01818f1_1_0.bin moved successfully.
C:\Users\Blaze\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a848_e330f25ac01818f1_1_0.toc moved successfully.
C:\Users\Blaze\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a848_e330f25ac01818f1_3_0.bin moved successfully.
C:\Users\Blaze\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a848_e330f25ac01818f1_3_0.toc moved successfully.
C:\Users\Blaze\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.

Registry entries deleted on Reboot...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Policejní vir

#12 Příspěvek od Márty84 »

:!: Vsechny tyto programy - vcetne pripadne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)

:arrow:
vyosek píše: :arrow: DelFix https://toolslib.net/downloads/finish/2/
  • Stahnete a spustte
  • Ponechte zatrzitkou pouze u volby Remove disinfection tools
  • Kliknete na Run
:arrow: Stahnete Ccleaner http://www.filehippo.com/download_ccleaner a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!
(Pokud je v pc vice uzivatelskych uctu, pouzijte program i v nich)

:arrow: Defragmentujte disk(y) (SSD Disky ne!)
Stahnete program Defraggler https://www.piriform.com/defraggler/download/standard
Pri instalaci opet pozor na toolbar a dalsi nesmysly.
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak napiste, jak je na tom pc.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

balix
Návštěvník
Návštěvník
Příspěvky: 126
Registrován: 25 dub 2013 16:57

Re: Policejní vir

#13 Příspěvek od balix »

Dobry den, tak notebook bezi krasne, dik za pomoc! :D

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Policejní vir

#14 Příspěvek od Márty84 »

To jsem rad :)

Nemate zac! ;-)

Mejte se a treba zase nekdy :bye:

:closed:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno