Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

delta-home

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
jacho6380
Návštěvník
Návštěvník
Příspěvky: 104
Registrován: 05 pro 2007 18:14
Bydliště: Kuchyňa 531

delta-home

#1 Příspěvek od jacho6380 »

Zdravim pani

tak decka opet uradovali, zbytocnosti som vyhadzal von ale vo vsetkych prehliadacoch sa mi spusta delta-home a neviem sa jej zbavit, vycistenie registrov nepomohlo, je to niekde poriadne zasite odkial sa to natahuje

Logfile of random's system information tool 1.10 (written by random/random)
Run by Matus at 2015-06-26 22:23:21
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 126 GB (63%) free of 200 GB
Total RAM: 6030 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:23:26, on 26. 6. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Windows\inf\msqqrvdku\msqqrvdku.exe
D:\hry\hamachy\hamachi-2-ui.exe
C:\Users\Matus\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.25.0\dsrsetup.exe
C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe
C:\Program Files (x86)\Opera\29.0.1795.47\opera_crashreporter.exe
C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe
C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe
C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe
C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe
C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe
C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe
C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe
C:\Program Files\trend micro\Matus.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: LuckyTab Class - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} - C:\Program Files (x86)\MiuiTab\SupTab.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocník pri prihlasovaní v konte Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [MSStp] C:\Windows\inf\msstp.vbe
O4 - HKLM\..\Run: [mncsvmgSrv] C:\Windows\system32\mncsvmg.vbe
O4 - HKLM\..\Run: [msyauxsSrv] C:\Windows\inf\msyauxs.vbe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "D:\hry\hamachy\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Desura] C:\Program Files (x86)\Desura\desura.exe -autostart
O4 - HKCU\..\Policies\Explorer\Run: [WindowsApp] C:\Users\Matus\AppData\Roaming\Microsoft\WindowsApp-d.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-777158793-1256143048-397861824-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-777158793-1256143048-397861824-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASNB4LDRSvc Service (ASNB4LDRSvc) - Unknown owner - C:\Program Files (x86)\ASUS\Wireless Console 3\ASNB4LDRSvc.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Desura Install Service - Desura Net Pty Ltd - C:\Program Files (x86)\Common Files\Desura\desura_service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\hry\hamachy\hamachi-2.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IHProtect Service - XTab system - C:\Program Files (x86)\XTab\ProtectService.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MaintainerSvc9.74.490744 - Unknown owner - C:\ProgramData\b6e31346-5839-4cca-ab24-0578c508b4f4\maintainer.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PicexaService - Taiwan Shui Mu Chih Ching Technology Limited - C:\Program Files (x86)\Picexa\PicexaSvc.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - SysTool PasSame LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: WinZiper service (winzipersvc) - Taiwan Shui Mu Chih Ching Technology Limited. - C:\Program Files (x86)\WinZipper\winzipersvc.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Wlan Agent - Atheros - C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation\Ath_WlanAgent.exe

--
End of file - 12840 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
c:\windows\system32\svchost.exe -k dcomlaunch
"C:\Windows\system32\nvvsvc.exe"
c:\windows\system32\svchost.exe -k rpcss
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
c:\windows\system32\svchost.exe -k localservicenetworkrestricted
"C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted
c:\windows\system32\svchost.exe -k localservice
c:\windows\system32\svchost.exe -k netsvcs
c:\windows\system32\svchost.exe -k gpsvcgroup
C:\Windows\servicing\TrustedInstaller.exe
c:\windows\system32\svchost.exe -k networkservice
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
C:\Windows\system32\WLANExt.exe 26760352
\??\C:\Windows\system32\conhost.exe "503300158-497328544-579713597447320361-2838415811136361681017163007-1116973459
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files (x86)\Picexa\PicexaSvc.exe"
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
"C:\Program Files (x86)\WinZipper\winzipersvc.exe"
C:\Windows\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k localservicenonetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\ASNB4LDRSvc.exe"
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
c:\windows\system32\svchost.exe -k utcsvc
"C:\Program Files (x86)\XTab\ProtectService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe"
C:\Windows\SysWOW64\IoctlSvc.exe
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\SysWOW64\PnkBstrB.exe
c:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3228
"C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation\Ath_WlanAgent.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
D:\hry\hamachy\hamachi-2.exe -s
D:\hry\hamachy\LMIGuardianSvc /escort 3652 /CUSTOM Hamachi
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
c:\windows\system32\svchost.exe -k bthsvcs
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Windows\system32\Dwm.exe"
ATKOSD.exe
C:\Windows\Explorer.EXE
WDC.exe
taskeng.exe {D6DA4EE1-FE2D-49F0-B2C9-D4FF85488BE1}
taskeng.exe {AAEE4C3C-C102-41C6-846E-D764ED9D31B6}
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
C:\Windows\inf\msqqrvdku\msqqrvdku.exe -o stratum+tcp://mint.bitminter.com:3333 -u troyboy_broomb -p harifle
\??\C:\Windows\system32\conhost.exe "-1320507030-956462077-1044820884-13522393361788876801303832374-20442258341860207680
"D:\hry\hamachy\hamachi-2-ui.exe" --auto-start
D:\hry\hamachy\LMIGuardianSvc /escort 5148 /CUSTOM Hamachi
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Users\Matus\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.25.0\dsrsetup.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor

"C:\ProgramData\b6e31346-5839-4cca-ab24-0578c508b4f4\maintainer.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe" --ran-launcher http://www.delta-homes.com/?type=sc&ts= ... X734GS07DS
"C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe" --ran-launcher http://www.delta-homes.com/?type=sc&ts= ... X734GS07DS /crash-reporter-parent-id=2660
"C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe" --type=gpu-process --channel="2660.0.1379884774\810450110" --enable-proprietary-media-types-playback --crash-reporter-pid=6864 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,19,42 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.2963 --enable-proprietary-media-types-playback --crash-reporter-pid=6864 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe" --type=renderer --alt-high-dpi-setting=96 --disable-direct-npapi-requests --enable-deferred-image-decoding --lang=sk --enable-proprietary-media-types-playback --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --ppapi-flash-path="C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_17_0_0_188.dll" --ppapi-flash-version=17.0.0.188 --crash-reporter-pid=6864 --device-scale-factor=1 --font-cache-shared-mem-suffix=2660 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="2660.2.394678947\1828707833" /prefetch:673131151
"C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe" --type=renderer --alt-high-dpi-setting=96 --disable-direct-npapi-requests --enable-deferred-image-decoding --lang=sk --enable-proprietary-media-types-playback --disable-client-side-phishing-detection --ppapi-flash-path="C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_17_0_0_188.dll" --ppapi-flash-version=17.0.0.188 --crash-reporter-pid=6864 --device-scale-factor=1 --font-cache-shared-mem-suffix=2660 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="2660.3.1107370976\753691329" /prefetch:673131151
"C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe" --type=renderer --alt-high-dpi-setting=96 --disable-direct-npapi-requests --enable-deferred-image-decoding --lang=sk --enable-proprietary-media-types-playback --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --ppapi-flash-path="C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_17_0_0_188.dll" --ppapi-flash-version=17.0.0.188 --crash-reporter-pid=6864 --device-scale-factor=1 --font-cache-shared-mem-suffix=2660 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="2660.6.1493479990\910275619" /prefetch:673131151
"C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe" --type=renderer --alt-high-dpi-setting=96 --disable-direct-npapi-requests --enable-deferred-image-decoding --lang=sk --enable-proprietary-media-types-playback --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --ppapi-flash-path="C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_17_0_0_188.dll" --ppapi-flash-version=17.0.0.188 --crash-reporter-pid=6864 --device-scale-factor=1 --font-cache-shared-mem-suffix=2660 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="2660.8.1242927627\1480732445" /prefetch:673131151
"C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe" --type=renderer --alt-high-dpi-setting=96 --disable-direct-npapi-requests --enable-deferred-image-decoding --lang=sk --enable-proprietary-media-types-playback --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --ppapi-flash-path="C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_17_0_0_188.dll" --ppapi-flash-version=17.0.0.188 --crash-reporter-pid=6864 --device-scale-factor=1 --font-cache-shared-mem-suffix=2660 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="2660.9.643601636\279994264" /prefetch:673131151
"C:\Program Files (x86)\Opera\29.0.1795.47\opera.exe" --type=renderer --alt-high-dpi-setting=96 --disable-direct-npapi-requests --enable-deferred-image-decoding --lang=sk --enable-proprietary-media-types-playback --disable-client-side-phishing-detection --ppapi-flash-path="C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_17_0_0_188.dll" --ppapi-flash-version=17.0.0.188 --crash-reporter-pid=6864 --device-scale-factor=1 --font-cache-shared-mem-suffix=2660 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="2660.10.1077736732\820757898" /prefetch:673131151
C:\Windows\system32\sppsvc.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe8_ Global\UsGthrCtrlFltPipeMssGthrPipe8 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
"C:\Users\Matus\Downloads\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-10-10 553896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01 2133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-10-10 211880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}]
LuckyTab Class - C:\Program Files (x86)\MiuiTab\SupTab.dll [2015-06-10 544896]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-08-29 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01 1724032]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-08-29 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-05-30 13550152]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-08-27 399832]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"Desura"=C:\Program Files (x86)\Desura\desura.exe [2015-04-06 2679392]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"WindowsApp"=C:\Users\Matus\AppData\Roaming\Microsoft\WindowsApp-d.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtTray]
C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [2014-02-17 389368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Desura]
C:\Program Files (x86)\Desura\desura.exe [2015-04-06 2679392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
C:\Program Files (x86)\Origin\Origin.exe [2015-05-15 3632472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\Windows\system32\igfxtray.exe [2014-08-27 171992]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Jenkat Games Arcade App]
C:\Users\Matus\AppData\Roaming\JGArcadeApp\Jenkat Games Arcade App\JGAA.exe [2014-09-09 4476416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msxsetlwSrv]
C:\Windows\system32\msxsetlw.vbe msvdshlo mssptgs []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-08 2221352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\Windows\system32\igfxpers.exe [2014-08-27 442328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-12-11 30877280]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2013-01-11 328504]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2012-10-17 205184]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-12-20 291280]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896]
"MSStp"=C:\Windows\inf\msstp.vbe [2014-03-05 1584]
"mncsvmgSrv"=C:\Windows\system32\mncsvmg.vbe []
"msyauxsSrv"=C:\Windows\inf\msyauxs.vbe [2013-08-27 1558]
"LogMeIn Hamachi Ui"=D:\hry\hamachy\hamachi-2-ui.exe [2015-03-30 3978600]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2014-08-27 442880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-06-26 22:23:21 ----D---- C:\rsit
2015-06-26 22:23:21 ----D---- C:\Program Files\trend micro
2015-06-14 19:30:06 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-14 19:30:06 ----A---- C:\Windows\system32\spwmp.dll
2015-06-14 19:30:06 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-14 19:30:05 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-14 19:30:03 ----A---- C:\Windows\system32\wmp.dll
2015-06-14 19:30:01 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-14 19:30:00 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-14 19:30:00 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-14 19:29:26 ----A---- C:\Windows\system32\aepdu.dll
2015-06-14 19:29:26 ----A---- C:\Windows\system32\acmigration.dll
2015-06-14 19:29:25 ----A---- C:\Windows\system32\generaltel.dll
2015-06-14 19:29:24 ----A---- C:\Windows\system32\invagent.dll
2015-06-14 19:29:24 ----A---- C:\Windows\system32\devinv.dll
2015-06-14 19:29:24 ----A---- C:\Windows\system32\appraiser.dll
2015-06-14 19:29:24 ----A---- C:\Windows\system32\aepic.dll
2015-06-14 19:29:24 ----A---- C:\Windows\system32\aeinv.dll
2015-06-14 19:21:18 ----A---- C:\Windows\system32\lsass.exe
2015-06-14 19:21:13 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-06-14 19:21:13 ----A---- C:\Windows\system32\msaudite.dll
2015-06-14 19:21:10 ----A---- C:\Windows\system32\TSpkg.dll
2015-06-14 19:21:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-14 19:21:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-14 19:21:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-14 19:21:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-14 19:21:07 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-14 19:21:07 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-14 19:21:07 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-14 19:21:07 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-14 19:21:07 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-14 19:21:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-14 19:21:03 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-14 19:21:03 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-06-14 19:21:03 ----A---- C:\Windows\system32\msobjs.dll
2015-06-14 19:21:02 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-06-14 19:20:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-14 19:20:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-14 19:20:58 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-14 19:20:58 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-14 19:20:58 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-14 19:20:57 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-14 19:20:56 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-14 19:20:47 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-06-14 19:20:47 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-06-14 19:20:47 ----A---- C:\Windows\system32\apisetschema.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-14 19:20:43 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-14 19:20:43 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-06-14 19:20:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-14 19:20:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-14 19:20:42 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-14 19:20:42 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-14 19:20:42 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-14 19:20:42 ----A---- C:\Windows\SYSWOW64\user.exe
2015-06-14 19:20:41 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-14 19:20:41 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-14 19:20:38 ----A---- C:\Windows\system32\wdigest.dll
2015-06-14 19:20:38 ----A---- C:\Windows\system32\msv1_0.dll
2015-06-14 19:20:37 ----A---- C:\Windows\system32\schannel.dll
2015-06-14 19:20:35 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-06-14 19:20:35 ----A---- C:\Windows\system32\sechost.dll
2015-06-14 19:20:34 ----A---- C:\Windows\system32\diskperf.exe
2015-06-14 19:20:34 ----A---- C:\Windows\system32\csrsrv.dll
2015-06-14 19:20:33 ----A---- C:\Windows\system32\typeperf.exe
2015-06-14 19:20:33 ----A---- C:\Windows\system32\relog.exe
2015-06-14 19:20:32 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-06-14 19:20:32 ----A---- C:\Windows\system32\winsrv.dll
2015-06-14 19:20:32 ----A---- C:\Windows\system32\ntvdm64.dll
2015-06-14 19:20:32 ----A---- C:\Windows\system32\conhost.exe
2015-06-14 19:20:31 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-06-14 19:20:31 ----A---- C:\Windows\system32\sspisrv.dll
2015-06-14 19:20:31 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-14 19:20:31 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-06-14 19:20:28 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-06-14 19:20:28 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-06-14 19:20:27 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-06-14 19:20:27 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-06-14 19:20:27 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-06-14 19:20:27 ----A---- C:\Windows\system32\UtcResources.dll
2015-06-14 19:20:27 ----A---- C:\Windows\system32\diagtrack.dll
2015-06-14 19:20:27 ----A---- C:\Windows\system32\credssp.dll
2015-06-14 19:20:26 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-06-14 19:20:26 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-06-14 19:20:26 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-06-14 19:20:26 ----A---- C:\Windows\system32\sspicli.dll
2015-06-14 19:20:26 ----A---- C:\Windows\system32\srclient.dll
2015-06-14 19:20:26 ----A---- C:\Windows\system32\secur32.dll
2015-06-14 19:20:26 ----A---- C:\Windows\system32\rstrui.exe
2015-06-14 19:20:25 ----A---- C:\Windows\system32\tdh.dll
2015-06-14 19:20:25 ----A---- C:\Windows\system32\srcore.dll
2015-06-14 19:20:24 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-06-14 19:20:24 ----A---- C:\Windows\system32\auditpol.exe
2015-06-14 19:20:23 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-06-14 19:20:23 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-06-14 19:20:23 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-06-14 19:20:23 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-06-14 19:20:23 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-06-14 19:20:22 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-06-14 19:20:22 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-06-14 19:20:22 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-06-14 19:20:22 ----A---- C:\Windows\system32\tracerpt.exe
2015-06-14 19:20:22 ----A---- C:\Windows\system32\ncrypt.dll
2015-06-14 19:20:22 ----A---- C:\Windows\system32\logman.exe
2015-06-14 19:20:21 ----A---- C:\Windows\system32\wow64cpu.dll
2015-06-14 19:20:21 ----A---- C:\Windows\system32\wow64.dll
2015-06-14 19:20:21 ----A---- C:\Windows\system32\smss.exe
2015-06-14 19:20:20 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-06-14 19:20:20 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-06-14 19:20:20 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-06-14 19:20:20 ----A---- C:\Windows\system32\kerberos.dll
2015-06-14 19:20:20 ----A---- C:\Windows\system32\advapi32.dll
2015-06-14 19:20:20 ----A---- C:\Windows\system32\adtschema.dll
2015-06-14 19:20:19 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-06-14 19:20:19 ----A---- C:\Windows\system32\lsasrv.dll
2015-06-14 19:20:18 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-06-14 19:20:18 ----A---- C:\Windows\system32\wow64win.dll
2015-06-14 19:20:18 ----A---- C:\Windows\system32\ntdll.dll
2015-06-14 19:20:18 ----A---- C:\Windows\system32\kernel32.dll
2015-06-14 19:20:17 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-06-14 19:20:17 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-06-14 19:20:16 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-06-14 19:17:10 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-06-14 19:17:10 ----A---- C:\Windows\system32\comctl32.dll
2015-06-14 19:15:30 ----A---- C:\Windows\system32\win32k.sys
2015-06-14 19:03:36 ----A---- C:\Windows\system32\drivers\stream.sys
2015-06-14 19:00:57 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-14 19:00:57 ----A---- C:\Windows\system32\ieui.dll
2015-06-14 19:00:04 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-14 17:32:00 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-14 17:32:00 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-14 17:31:59 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-14 17:31:57 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-14 17:31:54 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-14 17:31:53 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-14 11:31:19 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-14 11:31:18 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-14 11:31:18 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-14 11:31:18 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-14 11:31:17 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-14 11:31:17 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-14 11:31:16 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-14 11:31:16 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-14 11:31:15 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-14 11:31:15 ----A---- C:\Windows\system32\msrating.dll
2015-06-14 11:31:15 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-14 11:31:13 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-14 11:31:12 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-14 11:31:10 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-14 11:31:10 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-14 11:31:10 ----A---- C:\Windows\system32\iesetup.dll
2015-06-14 11:31:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-14 11:31:09 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-14 11:31:09 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-14 11:31:09 ----A---- C:\Windows\system32\iernonce.dll
2015-06-14 11:31:09 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-14 11:31:08 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-14 11:31:07 ----A---- C:\Windows\system32\vbscript.dll
2015-06-14 11:31:07 ----A---- C:\Windows\system32\jscript.dll
2015-06-14 11:31:06 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-14 11:31:05 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-14 11:31:04 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-14 11:31:04 ----A---- C:\Windows\system32\mshtml.dll
2015-06-14 11:31:03 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-14 11:30:55 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-14 11:30:55 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-14 11:30:54 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-14 11:30:54 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-14 11:30:53 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-14 11:30:49 ----A---- C:\Windows\system32\wininet.dll
2015-06-14 11:30:48 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-14 11:30:48 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-14 11:30:48 ----A---- C:\Windows\system32\iertutil.dll
2015-06-14 11:30:47 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-14 11:30:47 ----A---- C:\Windows\system32\urlmon.dll
2015-06-14 11:30:45 ----A---- C:\Windows\system32\ieframe.dll
2015-06-14 11:30:44 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-14 11:30:42 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-14 11:30:41 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-14 11:30:41 ----A---- C:\Windows\system32\jscript9.dll
2015-06-11 20:35:49 ----D---- C:\Windows\system32\log
2015-06-11 20:35:42 ----D---- C:\Program Files (x86)\Picexa
2015-06-11 20:35:37 ----D---- C:\Program Files (x86)\Elex-tech
2015-06-10 19:36:07 ----D---- C:\Program Files (x86)\WinZipper
2015-06-10 19:35:20 ----D---- C:\Program Files (x86)\MiuiTab

======List of files/folders modified in the last 1 month======

2015-06-26 22:23:21 ----RD---- C:\Program Files
2015-06-26 22:23:02 ----D---- C:\Windows\Temp
2015-06-26 22:03:13 ----D---- C:\ProgramData\b6e31346-5839-4cca-ab24-0578c508b4f4
2015-06-26 21:55:19 ----D---- C:\Windows\system32\drivers
2015-06-26 21:52:32 ----D---- C:\Windows\system32\Tasks
2015-06-26 21:52:23 ----HD---- C:\ProgramData
2015-06-26 21:52:18 ----D---- C:\Program Files (x86)\gate snapper
2015-06-26 21:50:49 ----RD---- C:\Program Files (x86)
2015-06-26 21:46:16 ----D---- C:\Program Files (x86)\Counter-Strike 1.6
2015-06-26 21:42:51 ----SHD---- C:\System Volume Information
2015-06-26 21:42:04 ----D---- C:\Windows\inf
2015-06-26 21:42:01 ----D---- C:\Windows\debug
2015-06-26 21:42:01 ----D---- C:\Windows
2015-06-26 21:40:11 ----D---- C:\Program Files (x86)\Opera
2015-06-16 16:42:34 ----A---- C:\Windows\win.ini
2015-06-15 18:47:09 ----D---- C:\Windows\System32
2015-06-15 18:47:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-06-15 16:14:22 ----D---- C:\Windows\rescache
2015-06-15 14:20:36 ----A---- C:\Windows\SYSWOW64\log.txt
2015-06-15 14:18:52 ----D---- C:\Windows\winsxs
2015-06-15 14:18:17 ----A---- C:\Windows\SYSWOW64\bscs.ini
2015-06-15 14:18:11 ----D---- C:\Windows\system32\config
2015-06-15 14:15:05 ----D---- C:\Windows\SysWOW64
2015-06-15 14:15:05 ----D---- C:\Program Files\Windows Media Player
2015-06-15 14:15:05 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-15 14:15:04 ----SD---- C:\Windows\system32\CompatTel
2015-06-15 14:15:02 ----D---- C:\Windows\system32\appraiser
2015-06-15 14:15:01 ----D---- C:\Windows\AppPatch
2015-06-15 14:14:53 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-15 14:14:49 ----D---- C:\Windows\system32\en-US
2015-06-15 14:14:35 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-06-15 14:14:35 ----D---- C:\Program Files\Internet Explorer
2015-06-15 14:14:32 ----D---- C:\Windows\system32\sk-SK
2015-06-15 14:14:32 ----D---- C:\Windows\PolicyDefinitions
2015-06-15 14:14:29 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-15 14:14:24 ----SHD---- C:\Windows\Installer
2015-06-15 14:14:24 ----D---- C:\ProgramData\Microsoft Help
2015-06-14 19:13:45 ----D---- C:\Windows\system32\MRT
2015-06-14 19:04:42 ----A---- C:\Windows\system32\MRT.exe
2015-06-14 11:30:46 ----D---- C:\Program Files (x86)\Google
2015-06-11 20:43:20 ----D---- C:\Windows\system32\catroot2
2015-06-11 07:46:46 ----SD---- C:\Windows\SYSWOW64\GWX
2015-06-11 07:46:46 ----SD---- C:\Windows\system32\GWX
2015-06-10 22:03:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-06-10 20:31:30 ----D---- C:\Windows\system32\wfp
2015-06-10 20:31:30 ----D---- C:\Windows\system32\DriverStore
2015-06-10 20:31:29 ----D---- C:\Windows\system32\NDF
2015-06-10 20:31:16 ----D---- C:\Program Files (x86)\XTab
2015-06-10 20:31:16 ----D---- C:\Program Files (x86)\sizlsearch
2015-06-10 20:31:08 ----D---- C:\Windows\system32\wbem
2015-06-10 20:31:08 ----D---- C:\Windows\registration
2015-06-10 20:30:50 ----D---- C:\Users\Matus\AppData\Roaming\DAEMON Tools Lite
2015-06-10 19:39:17 ----D---- C:\Windows\Tasks
2015-06-10 19:34:56 ----D---- C:\ProgramData\WindowsMangerProtect
2015-06-10 19:34:54 ----RD---- C:\Program Files (x86)\Skype
2015-06-10 19:29:14 ----D---- C:\Windows\system32\LogFiles

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iusb3hcs;Ovládač prepínača hostiteľského radiča Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-12-04 20024]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2013-12-10 32544]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-09-01 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2012-06-11 2811904]
R3 ATP;ASUS Input Device; C:\Windows\system32\DRIVERS\AsusTP.sys [2013-12-12 70928]
R3 BtAudioBusSrv;Ralink Bluetooth Audio Bus Service; C:\Windows\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\Windows\System32\Drivers\BtL2caScoIf.sys [2013-04-26 54064]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-08-27 5358464]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-06-04 3441992]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-08-27 342528]
R3 iusb3hub;Ovládač rozbočovača Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-12-04 358456]
R3 iusb3xhc;Ovládač hostiteľského radiča Intel(R) USB 3.0 eXtensible; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-12-04 791608]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-07-02 62784]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSBASTOR;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2012-02-01 292968]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-06-12 726160]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-05-13 36328]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-03-08 48488]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 146920]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2011-02-16 14464]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R2 ASNB4LDRSvc;ASNB4LDRSvc Service; C:\Program Files (x86)\ASUS\Wireless Console 3\ASNB4LDRSvc.exe [2013-11-15 31864]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2014-02-17 1579880]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2015-05-01 1394816]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2015-05-01 1772672]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; D:\hry\hamachy\hamachi-2.exe [2015-03-30 2490216]
R2 IHProtect Service;IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [2015-04-30 158816]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 MaintainerSvc9.74.490744;MaintainerSvc9.74.490744; C:\ProgramData\b6e31346-5839-4cca-ab24-0578c508b4f4\maintainer.exe [2015-06-26 128240]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-10-23 922912]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-12-10 1364256]
R2 PicexaService;PicexaService; C:\Program Files (x86)\Picexa\PicexaSvc.exe [2015-06-10 393880]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [2006-12-19 81920]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-10-01 75136]
R2 PnkBstrB;PnkBstrB; C:\Windows\syswow64\PnkBstrB.exe [2014-10-01 189248]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R2 WindowsMangerProtect;WindowsMangerProtect Service; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [2015-06-04 347136]
R2 winzipersvc;WinZiper service; C:\Program Files (x86)\WinZipper\winzipersvc.exe [2015-06-05 471696]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2013-12-16 145656]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-30 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-10 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-08-27 277464]
S3 Desura Install Service;Desura Install Service; C:\Program Files (x86)\Common Files\Desura\desura_service.exe [2015-04-06 1046624]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-08-30 116648]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-05-15 1931632]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-08-27 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: delta-home

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jacho6380
Návštěvník
Návštěvník
Příspěvky: 104
Registrován: 05 pro 2007 18:14
Bydliště: Kuchyňa 531

Re: delta-home

#3 Příspěvek od jacho6380 »

# AdwCleaner v4.207 - Log vytvorený 26/06/2015 at 22:52:31
# Aktualizované 21/06/2015 by Xplode
# Databáza : 2015-06-23.1 [Server]
# Operačný systém : Windows 7 Professional Service Pack 1 (x64)
# Uživateľské meno : Matus - MATUS-PC
# Spustené z : C:\Users\Matus\Desktop\adwcleaner_4.207.exe
# Nastavenia : Čistenie

***** [ Služby ] *****

[#] Služba Zmazané : IHProtect Service
[#] Služba Zmazané : WindowsMangerProtect
[#] Služba Zmazané : winzipersvc
[#] Služba Zmazané : PicexaService
Služba Zmazané : {0b2579ce-d533-4c40-935e-6a0facfd77e1}w64
Služba Zmazané : {16157a7c-3016-4fc7-9199-91e5eca0f905}Gw64
Služba Zmazané : {475ad0ad-e406-46eb-a3d2-6bc1d8161b62}w64
Služba Zmazané : {4845ffe9-f9c4-49f8-8d12-98cf7c6714cc}Gw64
Služba Zmazané : {4a053818-d714-4ae9-a858-ecc472a00067}w64
Služba Zmazané : {4f4ee081-bdb1-4abe-bb70-34a9d0c3a882}w64
Služba Zmazané : {5a0cd6b8-473b-426d-943b-aae6e51d4fc7}w64
Služba Zmazané : {80497fe6-6cf0-4105-a85c-8263c4ffc2ba}Gw64
Služba Zmazané : {8ec56453-7951-4d60-92b1-9dbc550539fa}w64
Služba Zmazané : {903a8ed4-c0d8-41dd-8d81-14ad7d0a3d2f}w64
Služba Zmazané : {92bdec0e-5f16-404f-8e3b-2cd72b8adbe0}w64
Služba Zmazané : {982245f6-1668-4378-8c8e-eef87d9d5d41}w64
Služba Zmazané : {9ab9ad4b-f251-4afd-b0f7-156991e0822b}w64
Služba Zmazané : {9d5747ee-0448-4681-8337-1555de75a3b6}Gw64
Služba Zmazané : {a0beb853-e924-4a16-8528-4006d8167839}w64
Služba Zmazané : {a2ac9bc5-d78a-47c9-bae6-570b90355f6d}w64
Služba Zmazané : {a759b80a-85a2-4c93-b500-f798d7aa06dc}w64
Služba Zmazané : {a7ee1250-095f-4f56-83d9-160c5da7cb0f}w64
Služba Zmazané : {a8003665-2b92-467f-8634-a322f29a78d6}w64
Služba Zmazané : {b7fc5ac5-5d11-4a0d-8eed-3da3289d4af0}w64
Služba Zmazané : {b81de0b6-0e40-47db-81f4-4c83e8d3e8ee}w64
Služba Zmazané : {b9047a59-3d6c-46b8-aca2-5dfcacb2736f}w64
Služba Zmazané : {bf73dcbe-6545-4605-8025-24c21b830839}w64
Služba Zmazané : {c7353e47-8bfa-4580-bfb0-7d83d0e8d695}w64
Služba Zmazané : {e40e3f43-b914-49d9-ac0f-ff07d6233307}w64
Služba Zmazané : {e94a4447-e5fb-4bbb-9938-771b0125c477}w64
Služba Zmazané : {ede3fec0-6560-4c7e-a5fa-cdc069c31d95}w64
Služba Zmazané : {f74fab14-547b-4297-bcb6-cee89cad312d}w64
Služba Zmazané : {fd10cee5-1b00-4433-a349-4c4d1226980a}w64
Služba Zmazané : {fe664e05-ca54-48aa-9e3b-a84e4855dc9e}Gw64
[#] Služba Zmazané : MaintainerSvc9.74.490744

***** [ Súbory / Priečinky ] *****

Priečinok Zmazané : C:\ProgramData\IePluginServices
Priečinok Zmazané : C:\ProgramData\WindowsMangerProtect
Priečinok Zmazané : C:\ProgramData\IHProtectUpDate
Priečinok Zmazané : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZipper
Priečinok Zmazané : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa
Priečinok Zmazané : C:\Program Files (x86)\sizlsearch
Priečinok Zmazané : C:\Program Files (x86)\SupTab
Priečinok Zmazané : C:\Program Files (x86)\WinZipper
Priečinok Zmazané : C:\Program Files (x86)\Elex-tech
Priečinok Zmazané : C:\Program Files (x86)\XTab
Priečinok Zmazané : C:\Program Files (x86)\Picexa
Priečinok Zmazané : C:\Program Files (x86)\miuitab
Priečinok Zmazané : C:\Program Files\PC Optimizer Pro
Priečinok Zmazané : C:\Users\Matus\AppData\Local\pay-by-ads
Priečinok Zmazané : C:\Users\Matus\AppData\Roaming\WinZipper
Priečinok Zmazané : C:\Users\Matus\AppData\Roaming\Picexa Viewer
[!] Priečinok Zmazané : C:\Users\Matus\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh.crx
Súbor Zmazané : C:\Windows\System32\log\iSafeKrnlCall.log
Súbor Zmazané : C:\Windows\System32\drivers\{0b2579ce-d533-4c40-935e-6a0facfd77e1}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{16157a7c-3016-4fc7-9199-91e5eca0f905}Gw64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{475ad0ad-e406-46eb-a3d2-6bc1d8161b62}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{4845ffe9-f9c4-49f8-8d12-98cf7c6714cc}Gw64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{4a053818-d714-4ae9-a858-ecc472a00067}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{4f4ee081-bdb1-4abe-bb70-34a9d0c3a882}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{5a0cd6b8-473b-426d-943b-aae6e51d4fc7}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{80497fe6-6cf0-4105-a85c-8263c4ffc2ba}Gw64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{8ec56453-7951-4d60-92b1-9dbc550539fa}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{903a8ed4-c0d8-41dd-8d81-14ad7d0a3d2f}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{92bdec0e-5f16-404f-8e3b-2cd72b8adbe0}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{982245f6-1668-4378-8c8e-eef87d9d5d41}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{9ab9ad4b-f251-4afd-b0f7-156991e0822b}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{9d5747ee-0448-4681-8337-1555de75a3b6}Gw64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{a0beb853-e924-4a16-8528-4006d8167839}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{a2ac9bc5-d78a-47c9-bae6-570b90355f6d}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{a759b80a-85a2-4c93-b500-f798d7aa06dc}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{a7ee1250-095f-4f56-83d9-160c5da7cb0f}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{a8003665-2b92-467f-8634-a322f29a78d6}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{b7fc5ac5-5d11-4a0d-8eed-3da3289d4af0}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{b81de0b6-0e40-47db-81f4-4c83e8d3e8ee}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{b9047a59-3d6c-46b8-aca2-5dfcacb2736f}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{bf73dcbe-6545-4605-8025-24c21b830839}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{c7353e47-8bfa-4580-bfb0-7d83d0e8d695}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{e40e3f43-b914-49d9-ac0f-ff07d6233307}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{e94a4447-e5fb-4bbb-9938-771b0125c477}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{ede3fec0-6560-4c7e-a5fa-cdc069c31d95}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{f74fab14-547b-4297-bcb6-cee89cad312d}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{fd10cee5-1b00-4433-a349-4c4d1226980a}w64.sys
Súbor Zmazané : C:\Windows\System32\drivers\{fe664e05-ca54-48aa-9e3b-a84e4855dc9e}Gw64.sys
Súbor Zmazané : C:\Users\Matus\AppData\Roaming\Mozilla\Firefox\Profiles\fz2h6j3e.default\searchplugins\dsrlte.xml
Súbor Zmazané : C:\Users\Matus\AppData\Roaming\Mozilla\Firefox\Profiles\fz2h6j3e.default\user.js
Súbor Zmazané : C:\Users\Matus\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.delta-homes.com_0.localstorage
Súbor Zmazané : C:\Users\Matus\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.delta-homes.com_0.localstorage-journal
Súbor Zmazané : C:\Users\Matus\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.delta-homes.com_0.localstorage
Súbor Zmazané : C:\Users\Matus\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.delta-homes.com_0.localstorage-journal

***** [ Naplánované úlohy ] *****

Úloha Zmazané : LaunchSignup

***** [ Zástupcovia ] *****

Zástupca Dezinfikované : C:\Users\Public\Desktop\Opera.lnk
Zástupca Dezinfikované : C:\Users\Matus\Desktop\f.lnk
Zástupca Dezinfikované : C:\Users\Matus\Desktop\Internet Explorer.lnk
Zástupca Dezinfikované : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
Zástupca Dezinfikované : C:\Users\Matus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Zástupca Dezinfikované : C:\Users\Matus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Zástupca Dezinfikované : C:\Users\Matus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Zástupca Dezinfikované : C:\Users\Matus\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Zástupca Dezinfikované : C:\Users\Matus\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Zástupca Dezinfikované : C:\Users\Matus\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk

***** [ Registre ] *****

Kľúč registra Zmazané : HKLM\SOFTWARE\Google\Chrome\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh
Kľúč registra Zmazané : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices
Kľúč registra Zmazané : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Kľúč registra Zmazané : HKCU\Software\Classes\keepmysearch
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\WinZipper
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\WinZipper
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\WinZipper
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\PicexaViewer.bmp
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\PicexaViewer.gif
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\PicexaViewer.ico
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\PicexaViewer.jpeg
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\PicexaViewer.jpg
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\PicexaViewer.png
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\PicexaViewer.tif
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\WinZipper
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.001
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.7z
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.arj
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.bz2
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.bzip2
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.cab
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.cpio
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.deb
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.dmg
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.fat
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.gz
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.gzip
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.hfs
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.iso
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.lha
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.lzh
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.lzma
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.ntfs
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.rar
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.rpm
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.squashfs
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.swm
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.tar
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.taz
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.tbz
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.tbz2
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.tgz
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.tpz
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.txz
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.vhd
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.wim
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.xar
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.xz
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.z
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\WinZipper.zip
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DEDAF650-12B8-48F5-A843-BBA100716106}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\CLSID\{4F622628-7632-4B28-B184-D7BA0CA3273B}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{0FEB2313-F89B-4AC6-8153-84025604A06A}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{02F878DF-E2BE-4B85-8CB4-A0D2D4E2ED7F}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{2AF343DD-3102-4F9D-AC95-DCA4C95382C7}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{3137BC14-D8D7-4B67-8FFA-2E0B2E9D541B}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{4CA2AC92-971B-47B1-ACB6-357B552155AC}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{52C5395B-1FCD-47FA-A834-FD830701C2D5}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{5D3DCC39-9233-4330-94E9-DA92BE49CA1A}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{615FACDF-DADB-440D-AC91-8AAB0AE9E3AD}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{762D463B-C45A-456D-A80D-8689C297C91E}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{7A6BE473-7960-44D0-BD54-D23DA76353DF}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{803F550E-BAAE-42BB-8917-64BA0006AB17}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{8D5BC51D-C9D3-43B9-B728-B30677B7C7E8}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{991C9D8D-A789-4DB9-BDFC-5F33398B04BF}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{A5ACC874-D943-483F-A2D1-14598D51F872}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{B0474212-0D9D-4361-90B3-B89D1A44275D}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{BFDE183A-C6FE-41D2-80F9-586C29210AC2}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{D83C83BF-3EDD-4410-ADAB-5295116DD8C7}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{DD260902-9420-4055-A956-9152EB4F3E6A}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{EB1F9F3C-5526-4DAE-BD4B-3EAA7715DA9F}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{F1912128-469A-4138-AA26-9699C15BB13E}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{F68DC16C-9C2B-455B-8853-7E4D34BAA3F4}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{FBA8498F-B3A0-4942-A2BF-E0CB7BC7E000}
Kľúč registra Zmazané : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\OldSearch
Kľúč registra Zmazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1657BBE2-FBB6-4BB5-80EA-64A3EA034353}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{5A9FC391-FF70-44AA-A80C-53AE7260AF65}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{DF5A7012-61A6-4FD7-84A5-2FE80AB6A684}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
Kľúč registra Zmazané : HKCU\Software\pc optimizer pro
Kľúč registra Zmazané : HKCU\Software\Softonic
Kľúč registra Zmazané : HKCU\Software\SupHpUISoft
Kľúč registra Zmazané : HKCU\Software\V9
Kľúč registra Zmazané : HKCU\Software\TNT2
Kľúč registra Zmazané : HKCU\Software\DownLite
Kľúč registra Zmazané : HKLM\SOFTWARE\hdcode
Kľúč registra Zmazané : HKLM\SOFTWARE\SupDp
Kľúč registra Zmazané : HKLM\SOFTWARE\SupTab
Kľúč registra Zmazané : HKLM\SOFTWARE\supWindowsMangerProtect
Kľúč registra Zmazané : HKLM\SOFTWARE\V9
Kľúč registra Zmazané : HKLM\SOFTWARE\winzipersvc
Kľúč registra Zmazané : HKLM\SOFTWARE\IHProtect
Kľúč registra Zmazané : HKLM\SOFTWARE\PicexaSvc
Kľúč registra Zmazané : HKLM\SOFTWARE\Picexa
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\winzipper
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Picexa

***** [ Webové prehliadače ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Mozilla Firefox v

[fz2h6j3e.default\prefs.js] - Riadok Zmazané : user_pref("browser.startup.homepage", "hxxp://rts.dsrlte.com?affID=na");

-\\ Google Chrome v43.0.2357.130


-\\ Opera v29.0.1795.47


*************************

AdwCleaner[R0].txt - [19066 bajtov] - [26/06/2015 22:45:11]
AdwCleaner[S0].txt - [17461 bajtov] - [26/06/2015 22:52:31]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [17522 bajtov] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: delta-home

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět