
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Kontrola Logu / PC seká
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
Patriciusdd
- Návštěvník

- Příspěvky: 10
- Registrován: 12 črc 2015 13:55
Kontrola Logu / PC seká
Dobrý deň, chcel by som Vás poprosiť o kontrolu LOGU z RSITU. Počítač občas sekne a je dosť spomalený, snažil som sa ho trošku prečistiť, no stále to pretrváva. Ďakujem
Logfile of random's system information tool 1.10 (written by random/random)
Run by Spravca at 2015-07-12 14:57:04
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 107 GB (35%) free of 305 GB
Total RAM: 2924 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:57:13, on 12. 7. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\trend micro\Spravca.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} (20-20 3D Viewer for IKEA) - http://kitchenplanner.ikea.com/SK/Core/ ... _Win32.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8186 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {58A56DDB-5A1A-4BEE-A051-DD2B18E0BCEB}
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe17_ Global\UsGthrCtrlFltPipeMssGthrPipe17 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Users\Spravca\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-10 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-10 42272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-06-10 649608]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-06-24 6806144]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-05-03 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2015-07-12 14:57:05 ----D---- C:\Program Files\trend micro
2015-07-12 14:57:04 ----D---- C:\rsit
2015-07-11 16:23:10 ----SHD---- C:\Config.Msi
2015-06-19 16:57:22 ----A---- C:\Windows\system32\wmp.dll
2015-06-19 16:57:20 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-19 16:57:14 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-19 16:57:13 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-19 16:57:01 ----A---- C:\Windows\system32\kerberos.dll
2015-06-19 16:57:01 ----A---- C:\Windows\system32\diagtrack.dll
2015-06-19 16:57:00 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-19 16:56:59 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\lsasrv.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\kernel32.dll
2015-06-19 16:56:57 ----A---- C:\Windows\system32\advapi32.dll
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntdll.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\wow64.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-06-19 16:56:53 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-06-19 16:56:53 ----A---- C:\Windows\system32\conhost.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\tracerpt.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\srcore.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-06-19 16:56:51 ----A---- C:\Windows\system32\winsrv.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\rstrui.exe
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\tdh.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-06-19 16:56:49 ----A---- C:\Windows\system32\wdigest.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\sechost.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\system32\ncrypt.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\TSpkg.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\sspicli.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\smss.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\lsass.exe
2015-06-19 16:56:45 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-06-19 16:56:45 ----A---- C:\Windows\system32\typeperf.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\relog.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\auditpol.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-06-19 16:56:43 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-06-19 16:56:42 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\csrsrv.dll
2015-06-19 16:56:41 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-06-19 16:56:41 ----A---- C:\Windows\system32\diskperf.exe
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\sspisrv.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\credssp.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64win.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64cpu.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-06-19 16:56:33 ----A---- C:\Windows\system32\apisetschema.dll
2015-06-19 16:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:32 ----A---- C:\Windows\SYSWOW64\user.exe
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\adtschema.dll
2015-06-19 16:56:30 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\UtcResources.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\msobjs.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\invagent.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\generaltel.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\appraiser.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aepic.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aeinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\devinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\acmigration.dll
2015-06-19 16:55:15 ----A---- C:\Windows\system32\aepdu.dll
2015-06-19 16:55:10 ----A---- C:\Windows\system32\win32k.sys
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\iernonce.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-19 16:54:43 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 16:54:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-19 16:54:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-19 16:54:38 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\urlmon.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-19 16:54:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-19 16:54:36 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-19 16:54:35 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-19 16:54:35 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\iesetup.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-19 16:54:33 ----A---- C:\Windows\system32\iertutil.dll
2015-06-19 16:54:32 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-19 16:54:32 ----A---- C:\Windows\system32\vbscript.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-19 16:54:31 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-19 16:54:30 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-19 16:54:29 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-19 16:54:28 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieui.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieframe.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript.dll
2015-06-19 16:54:24 ----A---- C:\Windows\system32\wininet.dll
2015-06-19 16:54:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-19 16:54:22 ----A---- C:\Windows\system32\msrating.dll
2015-06-19 16:54:16 ----A---- C:\Windows\system32\mshtml.dll
2015-06-19 16:51:37 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-06-19 16:51:37 ----A---- C:\Windows\system32\comctl32.dll
2015-06-19 16:51:31 ----A---- C:\Windows\system32\drivers\stream.sys
======List of files/folders modified in the last 1 month======
2015-07-12 14:57:05 ----RD---- C:\Program Files
2015-07-12 14:57:04 ----D---- C:\Windows\Temp
2015-07-12 14:09:29 ----D---- C:\Windows\tracing
2015-07-12 13:13:24 ----D---- C:\Windows\system32\config
2015-07-12 11:23:13 ----SHD---- C:\System Volume Information
2015-07-11 17:06:37 ----D---- C:\Windows\SoftwareDistribution
2015-07-11 17:03:52 ----D---- C:\Windows
2015-07-11 17:03:51 ----D---- C:\Windows\inf
2015-07-11 17:03:29 ----A---- C:\Windows\SYSWOW64\log.txt
2015-07-11 17:00:06 ----D---- C:\Users\Spravca\AppData\Roaming\uTorrent
2015-07-11 16:59:50 ----D---- C:\Windows\Logs
2015-07-11 16:59:50 ----D---- C:\Windows\debug
2015-07-11 16:47:40 ----RD---- C:\Program Files (x86)
2015-07-11 16:26:54 ----SHD---- C:\Windows\Installer
2015-07-11 16:26:51 ----D---- C:\Program Files\Common Files
2015-07-11 16:26:40 ----D---- C:\ProgramData\Autodesk
2015-07-11 16:26:32 ----D---- C:\Windows\System32
2015-07-11 16:26:00 ----RSD---- C:\Windows\assembly
2015-07-11 16:25:58 ----D---- C:\Users\Spravca\AppData\Roaming\Autodesk
2015-07-11 16:25:55 ----RSD---- C:\Windows\Fonts
2015-07-11 16:25:11 ----D---- C:\Windows\Downloaded Program Files
2015-07-11 16:24:17 ----D---- C:\Windows\Microsoft.NET
2015-07-11 16:19:04 ----D---- C:\Users\Spravca\AppData\Roaming\inkscape
2015-07-11 16:18:24 ----D---- C:\Program Files (x86)\Google
2015-07-11 16:15:34 ----HD---- C:\ProgramData
2015-07-11 16:15:34 ----D---- C:\Program Files (x86)\AskPartnerNetwork
2015-07-11 16:09:19 ----D---- C:\Windows\pss
2015-07-10 20:50:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-09 20:46:41 ----D---- C:\Windows\SysWOW64
2015-07-09 20:46:36 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-07-08 22:52:21 ----D---- C:\Users\Spravca\AppData\Roaming\Skype
2015-07-08 16:00:54 ----SD---- C:\Users\Spravca\AppData\Roaming\Microsoft
2015-07-08 13:42:28 ----D---- C:\Windows\system32\NDF
2015-07-06 18:04:03 ----D---- C:\Windows\rescache
2015-07-06 14:33:58 ----D---- C:\Windows\system32\drivers
2015-07-06 14:33:53 ----D---- C:\Windows\system32\DriverStore
2015-07-05 12:08:23 ----N---- C:\Windows\system32\MpSigStub.exe
2015-06-20 09:50:19 ----D---- C:\Windows\Prefetch
2015-06-20 09:46:43 ----D---- C:\Windows\winsxs
2015-06-20 09:42:50 ----D---- C:\Program Files\Windows Media Player
2015-06-20 09:42:50 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-20 09:42:49 ----SD---- C:\Windows\system32\CompatTel
2015-06-20 09:42:49 ----D---- C:\Windows\system32\appraiser
2015-06-20 09:42:48 ----D---- C:\Windows\AppPatch
2015-06-20 09:42:45 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-20 09:42:44 ----D---- C:\Windows\system32\en-US
2015-06-20 09:42:38 ----D---- C:\Program Files\Internet Explorer
2015-06-20 09:42:37 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\system32\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\PolicyDefinitions
2015-06-20 09:42:33 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-19 21:14:30 ----D---- C:\ProgramData\Microsoft Help
2015-06-19 21:11:32 ----D---- C:\Windows\system32\MRT
2015-06-19 21:02:42 ----A---- C:\Windows\system32\MRT.exe
2015-06-19 16:39:22 ----D---- C:\Windows\system32\catroot2
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-06-10 130048]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-11-21 25816]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-08-20 1800192]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 mzbjeqsp;mzbjeqsp; \??\C:\Windows\system32\drivers\mzbjeqsp.sys []
S1 qvuoqzcg;qvuoqzcg; \??\C:\Windows\system32\drivers\qvuoqzcg.sys []
S2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys []
S3 ASUSProcObsrv;ASUS Process Creation/Termination Observer; \??\D:\I386\AsPrOb64.sys []
S3 massfilter_hs;ZTE HandSet Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter_hs.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-01-30 129752]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2014-11-21 63704]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s1018bus;Sony Ericsson Device 1018 driver (WDM); C:\Windows\system32\DRIVERS\s1018bus.sys [2009-03-25 113704]
S3 s1018mdfl;Sony Ericsson Device 1018 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1018mdfl.sys [2009-03-25 19496]
S3 s1018mdm;Sony Ericsson Device 1018 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1018mdm.sys [2009-03-25 153128]
S3 s1018mgmt;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1018mgmt.sys [2009-03-25 133160]
S3 s1018nd5;Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1018nd5.sys [2009-03-25 34856]
S3 s1018obex;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1018obex.sys [2009-03-25 128552]
S3 s1018unic;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1018unic.sys [2009-03-25 146472]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2015-04-30 23200]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-01-31 19232]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-11-21 969016]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-09 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-12-11 1432400]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-02-08 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-11 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-11-21 1871160]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Spravca at 2015-07-12 14:57:04
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 107 GB (35%) free of 305 GB
Total RAM: 2924 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:57:13, on 12. 7. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\trend micro\Spravca.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} (20-20 3D Viewer for IKEA) - http://kitchenplanner.ikea.com/SK/Core/ ... _Win32.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8186 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {58A56DDB-5A1A-4BEE-A051-DD2B18E0BCEB}
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe17_ Global\UsGthrCtrlFltPipeMssGthrPipe17 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Users\Spravca\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-10 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-10 42272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-06-10 649608]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-06-24 6806144]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-05-03 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2015-07-12 14:57:05 ----D---- C:\Program Files\trend micro
2015-07-12 14:57:04 ----D---- C:\rsit
2015-07-11 16:23:10 ----SHD---- C:\Config.Msi
2015-06-19 16:57:22 ----A---- C:\Windows\system32\wmp.dll
2015-06-19 16:57:20 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-19 16:57:14 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-19 16:57:13 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-19 16:57:01 ----A---- C:\Windows\system32\kerberos.dll
2015-06-19 16:57:01 ----A---- C:\Windows\system32\diagtrack.dll
2015-06-19 16:57:00 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-19 16:56:59 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\lsasrv.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\kernel32.dll
2015-06-19 16:56:57 ----A---- C:\Windows\system32\advapi32.dll
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntdll.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\wow64.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-06-19 16:56:53 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-06-19 16:56:53 ----A---- C:\Windows\system32\conhost.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\tracerpt.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\srcore.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-06-19 16:56:51 ----A---- C:\Windows\system32\winsrv.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\rstrui.exe
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\tdh.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-06-19 16:56:49 ----A---- C:\Windows\system32\wdigest.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\sechost.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\system32\ncrypt.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\TSpkg.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\sspicli.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\smss.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\lsass.exe
2015-06-19 16:56:45 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-06-19 16:56:45 ----A---- C:\Windows\system32\typeperf.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\relog.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\auditpol.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-06-19 16:56:43 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-06-19 16:56:42 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\csrsrv.dll
2015-06-19 16:56:41 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-06-19 16:56:41 ----A---- C:\Windows\system32\diskperf.exe
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\sspisrv.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\credssp.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64win.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64cpu.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-06-19 16:56:33 ----A---- C:\Windows\system32\apisetschema.dll
2015-06-19 16:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:32 ----A---- C:\Windows\SYSWOW64\user.exe
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\adtschema.dll
2015-06-19 16:56:30 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\UtcResources.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\msobjs.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\invagent.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\generaltel.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\appraiser.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aepic.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aeinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\devinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\acmigration.dll
2015-06-19 16:55:15 ----A---- C:\Windows\system32\aepdu.dll
2015-06-19 16:55:10 ----A---- C:\Windows\system32\win32k.sys
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\iernonce.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-19 16:54:43 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 16:54:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-19 16:54:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-19 16:54:38 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\urlmon.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-19 16:54:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-19 16:54:36 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-19 16:54:35 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-19 16:54:35 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\iesetup.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-19 16:54:33 ----A---- C:\Windows\system32\iertutil.dll
2015-06-19 16:54:32 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-19 16:54:32 ----A---- C:\Windows\system32\vbscript.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-19 16:54:31 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-19 16:54:30 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-19 16:54:29 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-19 16:54:28 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieui.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieframe.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript.dll
2015-06-19 16:54:24 ----A---- C:\Windows\system32\wininet.dll
2015-06-19 16:54:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-19 16:54:22 ----A---- C:\Windows\system32\msrating.dll
2015-06-19 16:54:16 ----A---- C:\Windows\system32\mshtml.dll
2015-06-19 16:51:37 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-06-19 16:51:37 ----A---- C:\Windows\system32\comctl32.dll
2015-06-19 16:51:31 ----A---- C:\Windows\system32\drivers\stream.sys
======List of files/folders modified in the last 1 month======
2015-07-12 14:57:05 ----RD---- C:\Program Files
2015-07-12 14:57:04 ----D---- C:\Windows\Temp
2015-07-12 14:09:29 ----D---- C:\Windows\tracing
2015-07-12 13:13:24 ----D---- C:\Windows\system32\config
2015-07-12 11:23:13 ----SHD---- C:\System Volume Information
2015-07-11 17:06:37 ----D---- C:\Windows\SoftwareDistribution
2015-07-11 17:03:52 ----D---- C:\Windows
2015-07-11 17:03:51 ----D---- C:\Windows\inf
2015-07-11 17:03:29 ----A---- C:\Windows\SYSWOW64\log.txt
2015-07-11 17:00:06 ----D---- C:\Users\Spravca\AppData\Roaming\uTorrent
2015-07-11 16:59:50 ----D---- C:\Windows\Logs
2015-07-11 16:59:50 ----D---- C:\Windows\debug
2015-07-11 16:47:40 ----RD---- C:\Program Files (x86)
2015-07-11 16:26:54 ----SHD---- C:\Windows\Installer
2015-07-11 16:26:51 ----D---- C:\Program Files\Common Files
2015-07-11 16:26:40 ----D---- C:\ProgramData\Autodesk
2015-07-11 16:26:32 ----D---- C:\Windows\System32
2015-07-11 16:26:00 ----RSD---- C:\Windows\assembly
2015-07-11 16:25:58 ----D---- C:\Users\Spravca\AppData\Roaming\Autodesk
2015-07-11 16:25:55 ----RSD---- C:\Windows\Fonts
2015-07-11 16:25:11 ----D---- C:\Windows\Downloaded Program Files
2015-07-11 16:24:17 ----D---- C:\Windows\Microsoft.NET
2015-07-11 16:19:04 ----D---- C:\Users\Spravca\AppData\Roaming\inkscape
2015-07-11 16:18:24 ----D---- C:\Program Files (x86)\Google
2015-07-11 16:15:34 ----HD---- C:\ProgramData
2015-07-11 16:15:34 ----D---- C:\Program Files (x86)\AskPartnerNetwork
2015-07-11 16:09:19 ----D---- C:\Windows\pss
2015-07-10 20:50:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-09 20:46:41 ----D---- C:\Windows\SysWOW64
2015-07-09 20:46:36 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-07-08 22:52:21 ----D---- C:\Users\Spravca\AppData\Roaming\Skype
2015-07-08 16:00:54 ----SD---- C:\Users\Spravca\AppData\Roaming\Microsoft
2015-07-08 13:42:28 ----D---- C:\Windows\system32\NDF
2015-07-06 18:04:03 ----D---- C:\Windows\rescache
2015-07-06 14:33:58 ----D---- C:\Windows\system32\drivers
2015-07-06 14:33:53 ----D---- C:\Windows\system32\DriverStore
2015-07-05 12:08:23 ----N---- C:\Windows\system32\MpSigStub.exe
2015-06-20 09:50:19 ----D---- C:\Windows\Prefetch
2015-06-20 09:46:43 ----D---- C:\Windows\winsxs
2015-06-20 09:42:50 ----D---- C:\Program Files\Windows Media Player
2015-06-20 09:42:50 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-20 09:42:49 ----SD---- C:\Windows\system32\CompatTel
2015-06-20 09:42:49 ----D---- C:\Windows\system32\appraiser
2015-06-20 09:42:48 ----D---- C:\Windows\AppPatch
2015-06-20 09:42:45 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-20 09:42:44 ----D---- C:\Windows\system32\en-US
2015-06-20 09:42:38 ----D---- C:\Program Files\Internet Explorer
2015-06-20 09:42:37 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\system32\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\PolicyDefinitions
2015-06-20 09:42:33 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-19 21:14:30 ----D---- C:\ProgramData\Microsoft Help
2015-06-19 21:11:32 ----D---- C:\Windows\system32\MRT
2015-06-19 21:02:42 ----A---- C:\Windows\system32\MRT.exe
2015-06-19 16:39:22 ----D---- C:\Windows\system32\catroot2
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-06-10 130048]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2014-11-21 25816]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-08-20 1800192]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 mzbjeqsp;mzbjeqsp; \??\C:\Windows\system32\drivers\mzbjeqsp.sys []
S1 qvuoqzcg;qvuoqzcg; \??\C:\Windows\system32\drivers\qvuoqzcg.sys []
S2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys []
S3 ASUSProcObsrv;ASUS Process Creation/Termination Observer; \??\D:\I386\AsPrOb64.sys []
S3 massfilter_hs;ZTE HandSet Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter_hs.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-01-30 129752]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2014-11-21 63704]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s1018bus;Sony Ericsson Device 1018 driver (WDM); C:\Windows\system32\DRIVERS\s1018bus.sys [2009-03-25 113704]
S3 s1018mdfl;Sony Ericsson Device 1018 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1018mdfl.sys [2009-03-25 19496]
S3 s1018mdm;Sony Ericsson Device 1018 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1018mdm.sys [2009-03-25 153128]
S3 s1018mgmt;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1018mgmt.sys [2009-03-25 133160]
S3 s1018nd5;Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1018nd5.sys [2009-03-25 34856]
S3 s1018obex;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1018obex.sys [2009-03-25 128552]
S3 s1018unic;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1018unic.sys [2009-03-25 146472]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2015-04-30 23200]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-01-31 19232]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-11-21 969016]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-09 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-12-11 1432400]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-02-08 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-11 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-11-21 1871160]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola Logu / PC seká
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
Patriciusdd
- Návštěvník

- Příspěvky: 10
- Registrován: 12 črc 2015 13:55
Re: Kontrola Logu / PC seká
tu je výpis z ADW -
# AdwCleaner v4.208 - Log vytvorený 12/07/2015 at 18:42:19
# Aktualizované 09/07/2015 by Xplode
# Databáza : 2015-07-11.1 [Server]
# Operačný systém : Windows 7 Professional Service Pack 1 (x64)
# Uživateľské meno : Spravca - ASUSA52F
# Spustené z : C:\Users\Spravca\Desktop\adwcleaner_4.208.exe
# Nastavenia : Čistenie
***** [ Služby ] *****
***** [ Súbory / Priečinky ] *****
Priečinok Zmazané : C:\ProgramData\apn
Priečinok Zmazané : C:\ProgramData\Babylon
Priečinok Zmazané : C:\ProgramData\BrowserProtect
Priečinok Zmazané : C:\ProgramData\epicscale
Priečinok Zmazané : C:\Program Files (x86)\AskPartnerNetwork
Priečinok Zmazané : C:\Users\Spravca\AppData\Roaming\Babylon
Priečinok Zmazané : C:\Users\Spravca\AppData\Roaming\YourFileDownloader
Priečinok Zmazané : C:\Users\Spravca\AppData\Roaming\Allmyapps
Priečinok Zmazané : C:\Users\Spravca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Allmyapps
***** [ Naplánované úlohy ] *****
Úloha Zmazané : BrowserProtect
Úloha Zmazané : YourFile DownloaderUpdate
***** [ Zástupcovia ] *****
***** [ Registre ] *****
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Prod.cap
Kľúč registra Zmazané : HKCU\Software\5ee88d1e06ae514
Kľúč registra Zmazané : HKLM\SOFTWARE\5ee88d1e06ae514
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Kľúč registra Zmazané : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4B71-B0A3-3D82E62A6909}
Kľúč registra Zmazané : HKCU\Software\PIP
Kľúč registra Zmazané : HKCU\Software\YourFileDownloader
Kľúč registra Zmazané : HKCU\Software\EpicScale
Kľúč registra Zmazané : HKLM\SOFTWARE\Babylon
Kľúč registra Zmazané : HKLM\SOFTWARE\PIP
Kľúč registra Zmazané : HKLM\SOFTWARE\YourFileDownloader
Kľúč registra Zmazané : HKU\.DEFAULT\Software\AskPartnerNetwork
***** [ Webové prehliadače ] *****
-\\ Internet Explorer v11.0.9600.17840
-\\ Google Chrome v43.0.2357.132
[C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Zmazané [Homepage] : management","nativeMessaging","searchProvider","startupPages","storage","tabs","webRequest","webRequestBlocking"],"explicit_host":["hxxp://*/*","hxxps://*/*"],"manifest_permissions":[],"scriptable_host":["*://*.ask.com/
[C:\Users\Spravca\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Zmazané [Search Provider] : hxxp://search.babylon.com/web/{searchTerms}?babsrc=browsersearch
[C:\Users\Spravca\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Zmazané [Search Provider] : hxxp://search.sweetim.com/search.asp?src=6&crg=3.1010000&q={searchTerms}&barid={8A7CA8A8-E60F-11E0-A4C3-20CF3053DC93}
[C:\Users\Spravca\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Zmazané [Search Provider] : hxxp://www.search.ask.com/web?p2=%5EB1V%5EYYYY ... earchTerms}
[C:\Users\Spravca\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Zmazané [Homepage] : management","nativeMessaging","searchProvider","startupPages","storage","tabs","webRequest","webRequestBlocking"],"explicit_host":["hxxp://*/*","hxxps://*/*"],"manifest_permissions":[],"scriptable_host":["*://*.ask.com/
-\\ Comodo Dragon v
[C:\Users\Spravca\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Zmazané [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2015-01-15&apn_dtid=%5ECMD011%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
*************************
AdwCleaner[R0].txt - [4300 bajtov] - [12/07/2015 18:40:52]
AdwCleaner[S0].txt - [4048 bajtov] - [12/07/2015 18:42:19]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4108 bajtov] ##########
# AdwCleaner v4.208 - Log vytvorený 12/07/2015 at 18:42:19
# Aktualizované 09/07/2015 by Xplode
# Databáza : 2015-07-11.1 [Server]
# Operačný systém : Windows 7 Professional Service Pack 1 (x64)
# Uživateľské meno : Spravca - ASUSA52F
# Spustené z : C:\Users\Spravca\Desktop\adwcleaner_4.208.exe
# Nastavenia : Čistenie
***** [ Služby ] *****
***** [ Súbory / Priečinky ] *****
Priečinok Zmazané : C:\ProgramData\apn
Priečinok Zmazané : C:\ProgramData\Babylon
Priečinok Zmazané : C:\ProgramData\BrowserProtect
Priečinok Zmazané : C:\ProgramData\epicscale
Priečinok Zmazané : C:\Program Files (x86)\AskPartnerNetwork
Priečinok Zmazané : C:\Users\Spravca\AppData\Roaming\Babylon
Priečinok Zmazané : C:\Users\Spravca\AppData\Roaming\YourFileDownloader
Priečinok Zmazané : C:\Users\Spravca\AppData\Roaming\Allmyapps
Priečinok Zmazané : C:\Users\Spravca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Allmyapps
***** [ Naplánované úlohy ] *****
Úloha Zmazané : BrowserProtect
Úloha Zmazané : YourFile DownloaderUpdate
***** [ Zástupcovia ] *****
***** [ Registre ] *****
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Prod.cap
Kľúč registra Zmazané : HKCU\Software\5ee88d1e06ae514
Kľúč registra Zmazané : HKLM\SOFTWARE\5ee88d1e06ae514
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Kľúč registra Zmazané : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4B71-B0A3-3D82E62A6909}
Kľúč registra Zmazané : HKCU\Software\PIP
Kľúč registra Zmazané : HKCU\Software\YourFileDownloader
Kľúč registra Zmazané : HKCU\Software\EpicScale
Kľúč registra Zmazané : HKLM\SOFTWARE\Babylon
Kľúč registra Zmazané : HKLM\SOFTWARE\PIP
Kľúč registra Zmazané : HKLM\SOFTWARE\YourFileDownloader
Kľúč registra Zmazané : HKU\.DEFAULT\Software\AskPartnerNetwork
***** [ Webové prehliadače ] *****
-\\ Internet Explorer v11.0.9600.17840
-\\ Google Chrome v43.0.2357.132
[C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Zmazané [Homepage] : management","nativeMessaging","searchProvider","startupPages","storage","tabs","webRequest","webRequestBlocking"],"explicit_host":["hxxp://*/*","hxxps://*/*"],"manifest_permissions":[],"scriptable_host":["*://*.ask.com/
[C:\Users\Spravca\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Zmazané [Search Provider] : hxxp://search.babylon.com/web/{searchTerms}?babsrc=browsersearch
[C:\Users\Spravca\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Zmazané [Search Provider] : hxxp://search.sweetim.com/search.asp?src=6&crg=3.1010000&q={searchTerms}&barid={8A7CA8A8-E60F-11E0-A4C3-20CF3053DC93}
[C:\Users\Spravca\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Zmazané [Search Provider] : hxxp://www.search.ask.com/web?p2=%5EB1V%5EYYYY ... earchTerms}
[C:\Users\Spravca\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Zmazané [Homepage] : management","nativeMessaging","searchProvider","startupPages","storage","tabs","webRequest","webRequestBlocking"],"explicit_host":["hxxp://*/*","hxxps://*/*"],"manifest_permissions":[],"scriptable_host":["*://*.ask.com/
-\\ Comodo Dragon v
[C:\Users\Spravca\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] - Zmazané [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2015-01-15&apn_dtid=%5ECMD011%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
*************************
AdwCleaner[R0].txt - [4300 bajtov] - [12/07/2015 18:40:52]
AdwCleaner[S0].txt - [4048 bajtov] - [12/07/2015 18:42:19]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4108 bajtov] ##########
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola Logu / PC seká
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
Patriciusdd
- Návštěvník

- Příspěvky: 10
- Registrován: 12 črc 2015 13:55
Re: Kontrola Logu / PC seká
Tu to je -
Logfile of random's system information tool 1.10 (written by random/random)
Run by Spravca at 2015-07-12 19:56:22
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 85 GB (28%) free of 305 GB
Total RAM: 2924 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:56:29, on 12. 7. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\trend micro\Spravca.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} (20-20 3D Viewer for IKEA) - http://kitchenplanner.ikea.com/SK/Core/ ... _Win32.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8219 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 536 540 548 65536 544
"C:\Users\Spravca\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-10 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-10 42272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-06-10 649608]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe [2015-07-08 1694560]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-06-24 6806144]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-05-03 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2015-07-12 18:40:50 ----D---- C:\AdwCleaner
2015-07-12 14:57:05 ----D---- C:\Program Files\trend micro
2015-07-12 14:57:04 ----D---- C:\rsit
2015-07-11 16:23:10 ----SHD---- C:\Config.Msi
2015-06-19 16:57:22 ----A---- C:\Windows\system32\wmp.dll
2015-06-19 16:57:20 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-19 16:57:14 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-19 16:57:13 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-19 16:57:01 ----A---- C:\Windows\system32\kerberos.dll
2015-06-19 16:57:01 ----A---- C:\Windows\system32\diagtrack.dll
2015-06-19 16:57:00 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-19 16:56:59 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\lsasrv.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\kernel32.dll
2015-06-19 16:56:57 ----A---- C:\Windows\system32\advapi32.dll
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntdll.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\wow64.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-06-19 16:56:53 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-06-19 16:56:53 ----A---- C:\Windows\system32\conhost.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\tracerpt.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\srcore.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-06-19 16:56:51 ----A---- C:\Windows\system32\winsrv.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\rstrui.exe
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\tdh.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-06-19 16:56:49 ----A---- C:\Windows\system32\wdigest.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\sechost.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\system32\ncrypt.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\TSpkg.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\sspicli.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\smss.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\lsass.exe
2015-06-19 16:56:45 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-06-19 16:56:45 ----A---- C:\Windows\system32\typeperf.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\relog.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\auditpol.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-06-19 16:56:43 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-06-19 16:56:42 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\csrsrv.dll
2015-06-19 16:56:41 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-06-19 16:56:41 ----A---- C:\Windows\system32\diskperf.exe
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\sspisrv.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\credssp.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64win.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64cpu.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-06-19 16:56:33 ----A---- C:\Windows\system32\apisetschema.dll
2015-06-19 16:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:32 ----A---- C:\Windows\SYSWOW64\user.exe
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\adtschema.dll
2015-06-19 16:56:30 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\UtcResources.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\msobjs.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\invagent.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\generaltel.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\appraiser.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aepic.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aeinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\devinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\acmigration.dll
2015-06-19 16:55:15 ----A---- C:\Windows\system32\aepdu.dll
2015-06-19 16:55:10 ----A---- C:\Windows\system32\win32k.sys
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\iernonce.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-19 16:54:43 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 16:54:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-19 16:54:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-19 16:54:38 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\urlmon.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-19 16:54:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-19 16:54:36 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-19 16:54:35 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-19 16:54:35 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\iesetup.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-19 16:54:33 ----A---- C:\Windows\system32\iertutil.dll
2015-06-19 16:54:32 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-19 16:54:32 ----A---- C:\Windows\system32\vbscript.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-19 16:54:31 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-19 16:54:30 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-19 16:54:29 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-19 16:54:28 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieui.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieframe.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript.dll
2015-06-19 16:54:24 ----A---- C:\Windows\system32\wininet.dll
2015-06-19 16:54:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-19 16:54:22 ----A---- C:\Windows\system32\msrating.dll
2015-06-19 16:54:16 ----A---- C:\Windows\system32\mshtml.dll
2015-06-19 16:51:37 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-06-19 16:51:37 ----A---- C:\Windows\system32\comctl32.dll
2015-06-19 16:51:31 ----A---- C:\Windows\system32\drivers\stream.sys
======List of files/folders modified in the last 1 month======
2015-07-12 19:55:30 ----D---- C:\Users\Spravca\AppData\Roaming\uTorrent
2015-07-12 18:59:48 ----D---- C:\Windows\Temp
2015-07-12 18:55:44 ----D---- C:\Windows\system32\config
2015-07-12 18:44:41 ----A---- C:\Windows\SYSWOW64\log.txt
2015-07-12 18:42:24 ----D---- C:\Windows\system32\Tasks
2015-07-12 18:42:22 ----RD---- C:\Program Files (x86)
2015-07-12 18:42:22 ----HD---- C:\ProgramData
2015-07-12 17:05:17 ----D---- C:\Windows\System32
2015-07-12 17:05:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-12 17:05:16 ----D---- C:\Windows\inf
2015-07-12 17:05:11 ----D---- C:\Users\Spravca\AppData\Roaming\Skype
2015-07-12 16:06:18 ----D---- C:\Windows\tracing
2015-07-12 15:07:48 ----SHD---- C:\System Volume Information
2015-07-12 15:07:42 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-12 15:07:12 ----D---- C:\Windows\system32\drivers
2015-07-12 14:57:05 ----RD---- C:\Program Files
2015-07-11 17:06:37 ----D---- C:\Windows\SoftwareDistribution
2015-07-11 17:03:52 ----D---- C:\Windows
2015-07-11 16:59:50 ----D---- C:\Windows\Logs
2015-07-11 16:59:50 ----D---- C:\Windows\debug
2015-07-11 16:57:54 ----D---- C:\Windows\pss
2015-07-11 16:26:54 ----SHD---- C:\Windows\Installer
2015-07-11 16:26:51 ----D---- C:\Program Files\Common Files
2015-07-11 16:26:40 ----D---- C:\ProgramData\Autodesk
2015-07-11 16:26:00 ----RSD---- C:\Windows\assembly
2015-07-11 16:25:58 ----D---- C:\Users\Spravca\AppData\Roaming\Autodesk
2015-07-11 16:25:55 ----RSD---- C:\Windows\Fonts
2015-07-11 16:25:11 ----D---- C:\Windows\Downloaded Program Files
2015-07-11 16:24:17 ----D---- C:\Windows\Microsoft.NET
2015-07-11 16:19:04 ----D---- C:\Users\Spravca\AppData\Roaming\inkscape
2015-07-11 16:18:24 ----D---- C:\Program Files (x86)\Google
2015-07-09 20:46:41 ----D---- C:\Windows\SysWOW64
2015-07-09 20:46:36 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-07-08 16:00:54 ----SD---- C:\Users\Spravca\AppData\Roaming\Microsoft
2015-07-08 13:42:28 ----D---- C:\Windows\system32\NDF
2015-07-06 18:04:03 ----D---- C:\Windows\rescache
2015-07-06 14:33:53 ----D---- C:\Windows\system32\DriverStore
2015-07-05 12:08:23 ----N---- C:\Windows\system32\MpSigStub.exe
2015-06-20 09:50:19 ----D---- C:\Windows\Prefetch
2015-06-20 09:46:43 ----D---- C:\Windows\winsxs
2015-06-20 09:42:50 ----D---- C:\Program Files\Windows Media Player
2015-06-20 09:42:50 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-20 09:42:49 ----SD---- C:\Windows\system32\CompatTel
2015-06-20 09:42:49 ----D---- C:\Windows\system32\appraiser
2015-06-20 09:42:48 ----D---- C:\Windows\AppPatch
2015-06-20 09:42:45 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-20 09:42:44 ----D---- C:\Windows\system32\en-US
2015-06-20 09:42:38 ----D---- C:\Program Files\Internet Explorer
2015-06-20 09:42:37 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\system32\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\PolicyDefinitions
2015-06-20 09:42:33 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-19 21:14:30 ----D---- C:\ProgramData\Microsoft Help
2015-06-19 21:11:32 ----D---- C:\Windows\system32\MRT
2015-06-19 21:02:42 ----A---- C:\Windows\system32\MRT.exe
2015-06-19 16:39:22 ----D---- C:\Windows\system32\catroot2
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-06-10 130048]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-08-20 1800192]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 mzbjeqsp;mzbjeqsp; \??\C:\Windows\system32\drivers\mzbjeqsp.sys []
S1 qvuoqzcg;qvuoqzcg; \??\C:\Windows\system32\drivers\qvuoqzcg.sys []
S2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys []
S3 ASUSProcObsrv;ASUS Process Creation/Termination Observer; \??\D:\I386\AsPrOb64.sys []
S3 massfilter_hs;ZTE HandSet Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter_hs.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-07-12 113880]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s1018bus;Sony Ericsson Device 1018 driver (WDM); C:\Windows\system32\DRIVERS\s1018bus.sys [2009-03-25 113704]
S3 s1018mdfl;Sony Ericsson Device 1018 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1018mdfl.sys [2009-03-25 19496]
S3 s1018mdm;Sony Ericsson Device 1018 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1018mdm.sys [2009-03-25 153128]
S3 s1018mgmt;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1018mgmt.sys [2009-03-25 133160]
S3 s1018nd5;Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1018nd5.sys [2009-03-25 34856]
S3 s1018obex;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1018obex.sys [2009-03-25 128552]
S3 s1018unic;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1018unic.sys [2009-03-25 146472]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2015-04-30 23200]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]
S3 zgwhsdiag;HSPA WCDMA Handset Diagnostic Port; C:\Windows\system32\DRIVERS\gwhsdiag.sys []
S3 zgwhsmdm;HSPAHandSet WCDMA Handset USB Modem; C:\Windows\system32\DRIVERS\gwhsmdm.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-01-31 19232]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-09 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-12-11 1432400]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-02-08 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-11 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Spravca at 2015-07-12 19:56:22
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 85 GB (28%) free of 305 GB
Total RAM: 2924 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:56:29, on 12. 7. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\trend micro\Spravca.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} (20-20 3D Viewer for IKEA) - http://kitchenplanner.ikea.com/SK/Core/ ... _Win32.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8219 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 536 540 548 65536 544
"C:\Users\Spravca\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-10 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-10 42272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-06-10 649608]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe [2015-07-08 1694560]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-06-24 6806144]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-05-03 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2015-07-12 18:40:50 ----D---- C:\AdwCleaner
2015-07-12 14:57:05 ----D---- C:\Program Files\trend micro
2015-07-12 14:57:04 ----D---- C:\rsit
2015-07-11 16:23:10 ----SHD---- C:\Config.Msi
2015-06-19 16:57:22 ----A---- C:\Windows\system32\wmp.dll
2015-06-19 16:57:20 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-19 16:57:14 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-19 16:57:13 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-19 16:57:01 ----A---- C:\Windows\system32\kerberos.dll
2015-06-19 16:57:01 ----A---- C:\Windows\system32\diagtrack.dll
2015-06-19 16:57:00 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-19 16:56:59 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\lsasrv.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\kernel32.dll
2015-06-19 16:56:57 ----A---- C:\Windows\system32\advapi32.dll
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntdll.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\wow64.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-06-19 16:56:53 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-06-19 16:56:53 ----A---- C:\Windows\system32\conhost.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\tracerpt.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\srcore.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-06-19 16:56:51 ----A---- C:\Windows\system32\winsrv.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\rstrui.exe
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\tdh.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-06-19 16:56:49 ----A---- C:\Windows\system32\wdigest.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\sechost.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\system32\ncrypt.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\TSpkg.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\sspicli.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\smss.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\lsass.exe
2015-06-19 16:56:45 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-06-19 16:56:45 ----A---- C:\Windows\system32\typeperf.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\relog.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\auditpol.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-06-19 16:56:43 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-06-19 16:56:42 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\csrsrv.dll
2015-06-19 16:56:41 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-06-19 16:56:41 ----A---- C:\Windows\system32\diskperf.exe
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\sspisrv.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\credssp.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64win.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64cpu.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-06-19 16:56:33 ----A---- C:\Windows\system32\apisetschema.dll
2015-06-19 16:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:32 ----A---- C:\Windows\SYSWOW64\user.exe
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\adtschema.dll
2015-06-19 16:56:30 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\UtcResources.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\msobjs.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\invagent.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\generaltel.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\appraiser.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aepic.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aeinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\devinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\acmigration.dll
2015-06-19 16:55:15 ----A---- C:\Windows\system32\aepdu.dll
2015-06-19 16:55:10 ----A---- C:\Windows\system32\win32k.sys
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\iernonce.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-19 16:54:43 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 16:54:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-19 16:54:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-19 16:54:38 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\urlmon.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-19 16:54:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-19 16:54:36 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-19 16:54:35 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-19 16:54:35 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\iesetup.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-19 16:54:33 ----A---- C:\Windows\system32\iertutil.dll
2015-06-19 16:54:32 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-19 16:54:32 ----A---- C:\Windows\system32\vbscript.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-19 16:54:31 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-19 16:54:30 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-19 16:54:29 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-19 16:54:28 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieui.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieframe.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript.dll
2015-06-19 16:54:24 ----A---- C:\Windows\system32\wininet.dll
2015-06-19 16:54:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-19 16:54:22 ----A---- C:\Windows\system32\msrating.dll
2015-06-19 16:54:16 ----A---- C:\Windows\system32\mshtml.dll
2015-06-19 16:51:37 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-06-19 16:51:37 ----A---- C:\Windows\system32\comctl32.dll
2015-06-19 16:51:31 ----A---- C:\Windows\system32\drivers\stream.sys
======List of files/folders modified in the last 1 month======
2015-07-12 19:55:30 ----D---- C:\Users\Spravca\AppData\Roaming\uTorrent
2015-07-12 18:59:48 ----D---- C:\Windows\Temp
2015-07-12 18:55:44 ----D---- C:\Windows\system32\config
2015-07-12 18:44:41 ----A---- C:\Windows\SYSWOW64\log.txt
2015-07-12 18:42:24 ----D---- C:\Windows\system32\Tasks
2015-07-12 18:42:22 ----RD---- C:\Program Files (x86)
2015-07-12 18:42:22 ----HD---- C:\ProgramData
2015-07-12 17:05:17 ----D---- C:\Windows\System32
2015-07-12 17:05:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-12 17:05:16 ----D---- C:\Windows\inf
2015-07-12 17:05:11 ----D---- C:\Users\Spravca\AppData\Roaming\Skype
2015-07-12 16:06:18 ----D---- C:\Windows\tracing
2015-07-12 15:07:48 ----SHD---- C:\System Volume Information
2015-07-12 15:07:42 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-12 15:07:12 ----D---- C:\Windows\system32\drivers
2015-07-12 14:57:05 ----RD---- C:\Program Files
2015-07-11 17:06:37 ----D---- C:\Windows\SoftwareDistribution
2015-07-11 17:03:52 ----D---- C:\Windows
2015-07-11 16:59:50 ----D---- C:\Windows\Logs
2015-07-11 16:59:50 ----D---- C:\Windows\debug
2015-07-11 16:57:54 ----D---- C:\Windows\pss
2015-07-11 16:26:54 ----SHD---- C:\Windows\Installer
2015-07-11 16:26:51 ----D---- C:\Program Files\Common Files
2015-07-11 16:26:40 ----D---- C:\ProgramData\Autodesk
2015-07-11 16:26:00 ----RSD---- C:\Windows\assembly
2015-07-11 16:25:58 ----D---- C:\Users\Spravca\AppData\Roaming\Autodesk
2015-07-11 16:25:55 ----RSD---- C:\Windows\Fonts
2015-07-11 16:25:11 ----D---- C:\Windows\Downloaded Program Files
2015-07-11 16:24:17 ----D---- C:\Windows\Microsoft.NET
2015-07-11 16:19:04 ----D---- C:\Users\Spravca\AppData\Roaming\inkscape
2015-07-11 16:18:24 ----D---- C:\Program Files (x86)\Google
2015-07-09 20:46:41 ----D---- C:\Windows\SysWOW64
2015-07-09 20:46:36 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-07-08 16:00:54 ----SD---- C:\Users\Spravca\AppData\Roaming\Microsoft
2015-07-08 13:42:28 ----D---- C:\Windows\system32\NDF
2015-07-06 18:04:03 ----D---- C:\Windows\rescache
2015-07-06 14:33:53 ----D---- C:\Windows\system32\DriverStore
2015-07-05 12:08:23 ----N---- C:\Windows\system32\MpSigStub.exe
2015-06-20 09:50:19 ----D---- C:\Windows\Prefetch
2015-06-20 09:46:43 ----D---- C:\Windows\winsxs
2015-06-20 09:42:50 ----D---- C:\Program Files\Windows Media Player
2015-06-20 09:42:50 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-20 09:42:49 ----SD---- C:\Windows\system32\CompatTel
2015-06-20 09:42:49 ----D---- C:\Windows\system32\appraiser
2015-06-20 09:42:48 ----D---- C:\Windows\AppPatch
2015-06-20 09:42:45 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-20 09:42:44 ----D---- C:\Windows\system32\en-US
2015-06-20 09:42:38 ----D---- C:\Program Files\Internet Explorer
2015-06-20 09:42:37 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\system32\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\PolicyDefinitions
2015-06-20 09:42:33 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-19 21:14:30 ----D---- C:\ProgramData\Microsoft Help
2015-06-19 21:11:32 ----D---- C:\Windows\system32\MRT
2015-06-19 21:02:42 ----A---- C:\Windows\system32\MRT.exe
2015-06-19 16:39:22 ----D---- C:\Windows\system32\catroot2
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-06-10 130048]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-08-20 1800192]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 mzbjeqsp;mzbjeqsp; \??\C:\Windows\system32\drivers\mzbjeqsp.sys []
S1 qvuoqzcg;qvuoqzcg; \??\C:\Windows\system32\drivers\qvuoqzcg.sys []
S2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys []
S3 ASUSProcObsrv;ASUS Process Creation/Termination Observer; \??\D:\I386\AsPrOb64.sys []
S3 massfilter_hs;ZTE HandSet Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter_hs.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-07-12 113880]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s1018bus;Sony Ericsson Device 1018 driver (WDM); C:\Windows\system32\DRIVERS\s1018bus.sys [2009-03-25 113704]
S3 s1018mdfl;Sony Ericsson Device 1018 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1018mdfl.sys [2009-03-25 19496]
S3 s1018mdm;Sony Ericsson Device 1018 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1018mdm.sys [2009-03-25 153128]
S3 s1018mgmt;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1018mgmt.sys [2009-03-25 133160]
S3 s1018nd5;Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1018nd5.sys [2009-03-25 34856]
S3 s1018obex;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1018obex.sys [2009-03-25 128552]
S3 s1018unic;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1018unic.sys [2009-03-25 146472]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2015-04-30 23200]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]
S3 zgwhsdiag;HSPA WCDMA Handset Diagnostic Port; C:\Windows\system32\DRIVERS\gwhsdiag.sys []
S3 zgwhsmdm;HSPAHandSet WCDMA Handset USB Modem; C:\Windows\system32\DRIVERS\gwhsmdm.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-01-31 19232]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-09 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-12-11 1432400]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-02-08 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-11 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola Logu / PC seká
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\system32\drivers\mzbjeqsp.sys
C:\Windows\system32\drivers\qvuoqzcg.sys
:services
mzbjeqsp
qvuoqzcg
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
Patriciusdd
- Návštěvník

- Příspěvky: 10
- Registrován: 12 črc 2015 13:55
Re: Kontrola Logu / PC seká
tu je log z RSITU -
Logfile of random's system information tool 1.10 (written by random/random)
Run by Spravca at 2015-07-12 21:35:40
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 97 GB (32%) free of 305 GB
Total RAM: 2924 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:35:57, on 12. 7. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\trend micro\Spravca.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} (20-20 3D Viewer for IKEA) - http://kitchenplanner.ikea.com/SK/Core/ ... _Win32.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8219 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {204B7BE0-BF57-475B-9AC8-DB312366FD67}
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
C:\Windows\servicing\TrustedInstaller.exe
taskeng.exe {64FE0681-EB00-4295-BAFD-715FCF7DA92D}
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\notepad.exe" C:\_OTM\MovedFiles\07122015_212846.log
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-607885046-3242699342-1829271559-10002_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-607885046-3242699342-1829271559-10002 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Users\Spravca\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-10 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-10 42272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-06-10 649608]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe [2015-07-08 1694560]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-06-24 6806144]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-05-03 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2015-07-12 21:28:46 ----D---- C:\_OTM
2015-07-12 18:40:50 ----D---- C:\AdwCleaner
2015-07-12 14:57:05 ----D---- C:\Program Files\trend micro
2015-07-12 14:57:04 ----D---- C:\rsit
2015-07-11 16:23:10 ----SHD---- C:\Config.Msi
2015-06-19 16:57:22 ----A---- C:\Windows\system32\wmp.dll
2015-06-19 16:57:20 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-19 16:57:14 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-19 16:57:13 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-19 16:57:01 ----A---- C:\Windows\system32\kerberos.dll
2015-06-19 16:57:01 ----A---- C:\Windows\system32\diagtrack.dll
2015-06-19 16:57:00 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-19 16:56:59 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\lsasrv.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\kernel32.dll
2015-06-19 16:56:57 ----A---- C:\Windows\system32\advapi32.dll
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntdll.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\wow64.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-06-19 16:56:53 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-06-19 16:56:53 ----A---- C:\Windows\system32\conhost.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\tracerpt.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\srcore.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-06-19 16:56:51 ----A---- C:\Windows\system32\winsrv.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\rstrui.exe
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\tdh.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-06-19 16:56:49 ----A---- C:\Windows\system32\wdigest.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\sechost.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\system32\ncrypt.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\TSpkg.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\sspicli.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\smss.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\lsass.exe
2015-06-19 16:56:45 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-06-19 16:56:45 ----A---- C:\Windows\system32\typeperf.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\relog.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\auditpol.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-06-19 16:56:43 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-06-19 16:56:42 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\csrsrv.dll
2015-06-19 16:56:41 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-06-19 16:56:41 ----A---- C:\Windows\system32\diskperf.exe
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\sspisrv.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\credssp.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64win.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64cpu.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-06-19 16:56:33 ----A---- C:\Windows\system32\apisetschema.dll
2015-06-19 16:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:32 ----A---- C:\Windows\SYSWOW64\user.exe
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\adtschema.dll
2015-06-19 16:56:30 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\UtcResources.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\msobjs.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\invagent.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\generaltel.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\appraiser.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aepic.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aeinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\devinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\acmigration.dll
2015-06-19 16:55:15 ----A---- C:\Windows\system32\aepdu.dll
2015-06-19 16:55:10 ----A---- C:\Windows\system32\win32k.sys
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\iernonce.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-19 16:54:43 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 16:54:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-19 16:54:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-19 16:54:38 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\urlmon.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-19 16:54:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-19 16:54:36 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-19 16:54:35 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-19 16:54:35 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\iesetup.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-19 16:54:33 ----A---- C:\Windows\system32\iertutil.dll
2015-06-19 16:54:32 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-19 16:54:32 ----A---- C:\Windows\system32\vbscript.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-19 16:54:31 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-19 16:54:30 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-19 16:54:29 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-19 16:54:28 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieui.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieframe.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript.dll
2015-06-19 16:54:24 ----A---- C:\Windows\system32\wininet.dll
2015-06-19 16:54:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-19 16:54:22 ----A---- C:\Windows\system32\msrating.dll
2015-06-19 16:54:16 ----A---- C:\Windows\system32\mshtml.dll
2015-06-19 16:51:37 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-06-19 16:51:37 ----A---- C:\Windows\system32\comctl32.dll
2015-06-19 16:51:31 ----A---- C:\Windows\system32\drivers\stream.sys
======List of files/folders modified in the last 1 month======
2015-07-12 21:34:09 ----D---- C:\Users\Spravca\AppData\Roaming\uTorrent
2015-07-12 21:32:40 ----D---- C:\Windows\Temp
2015-07-12 21:31:44 ----D---- C:\Windows\system32\config
2015-07-12 21:31:15 ----A---- C:\Windows\SYSWOW64\log.txt
2015-07-12 21:28:47 ----D---- C:\Windows\Tasks
2015-07-12 21:21:56 ----SHD---- C:\System Volume Information
2015-07-12 18:42:24 ----D---- C:\Windows\system32\Tasks
2015-07-12 18:42:22 ----RD---- C:\Program Files (x86)
2015-07-12 18:42:22 ----HD---- C:\ProgramData
2015-07-12 17:05:17 ----D---- C:\Windows\System32
2015-07-12 17:05:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-12 17:05:16 ----D---- C:\Windows\inf
2015-07-12 17:05:11 ----D---- C:\Users\Spravca\AppData\Roaming\Skype
2015-07-12 16:06:18 ----D---- C:\Windows\tracing
2015-07-12 15:07:42 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-12 15:07:12 ----D---- C:\Windows\system32\drivers
2015-07-12 14:57:05 ----RD---- C:\Program Files
2015-07-11 17:06:37 ----D---- C:\Windows\SoftwareDistribution
2015-07-11 17:03:52 ----D---- C:\Windows
2015-07-11 16:59:50 ----D---- C:\Windows\Logs
2015-07-11 16:59:50 ----D---- C:\Windows\debug
2015-07-11 16:57:54 ----D---- C:\Windows\pss
2015-07-11 16:26:54 ----SHD---- C:\Windows\Installer
2015-07-11 16:26:51 ----D---- C:\Program Files\Common Files
2015-07-11 16:26:40 ----D---- C:\ProgramData\Autodesk
2015-07-11 16:26:00 ----RSD---- C:\Windows\assembly
2015-07-11 16:25:58 ----D---- C:\Users\Spravca\AppData\Roaming\Autodesk
2015-07-11 16:25:55 ----RSD---- C:\Windows\Fonts
2015-07-11 16:25:11 ----D---- C:\Windows\Downloaded Program Files
2015-07-11 16:24:17 ----D---- C:\Windows\Microsoft.NET
2015-07-11 16:19:04 ----D---- C:\Users\Spravca\AppData\Roaming\inkscape
2015-07-11 16:18:24 ----D---- C:\Program Files (x86)\Google
2015-07-09 20:46:41 ----D---- C:\Windows\SysWOW64
2015-07-09 20:46:36 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-07-08 16:00:54 ----SD---- C:\Users\Spravca\AppData\Roaming\Microsoft
2015-07-08 13:42:28 ----D---- C:\Windows\system32\NDF
2015-07-06 18:04:03 ----D---- C:\Windows\rescache
2015-07-06 14:33:53 ----D---- C:\Windows\system32\DriverStore
2015-07-05 12:08:23 ----N---- C:\Windows\system32\MpSigStub.exe
2015-06-20 09:50:19 ----D---- C:\Windows\Prefetch
2015-06-20 09:46:43 ----D---- C:\Windows\winsxs
2015-06-20 09:42:50 ----D---- C:\Program Files\Windows Media Player
2015-06-20 09:42:50 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-20 09:42:49 ----SD---- C:\Windows\system32\CompatTel
2015-06-20 09:42:49 ----D---- C:\Windows\system32\appraiser
2015-06-20 09:42:48 ----D---- C:\Windows\AppPatch
2015-06-20 09:42:45 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-20 09:42:44 ----D---- C:\Windows\system32\en-US
2015-06-20 09:42:38 ----D---- C:\Program Files\Internet Explorer
2015-06-20 09:42:37 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\system32\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\PolicyDefinitions
2015-06-20 09:42:33 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-19 21:14:30 ----D---- C:\ProgramData\Microsoft Help
2015-06-19 21:11:32 ----D---- C:\Windows\system32\MRT
2015-06-19 21:02:42 ----A---- C:\Windows\system32\MRT.exe
2015-06-19 16:39:22 ----D---- C:\Windows\system32\catroot2
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-06-10 130048]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-08-20 1800192]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys []
S3 ASUSProcObsrv;ASUS Process Creation/Termination Observer; \??\D:\I386\AsPrOb64.sys []
S3 massfilter_hs;ZTE HandSet Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter_hs.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-07-12 113880]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s1018bus;Sony Ericsson Device 1018 driver (WDM); C:\Windows\system32\DRIVERS\s1018bus.sys [2009-03-25 113704]
S3 s1018mdfl;Sony Ericsson Device 1018 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1018mdfl.sys [2009-03-25 19496]
S3 s1018mdm;Sony Ericsson Device 1018 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1018mdm.sys [2009-03-25 153128]
S3 s1018mgmt;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1018mgmt.sys [2009-03-25 133160]
S3 s1018nd5;Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1018nd5.sys [2009-03-25 34856]
S3 s1018obex;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1018obex.sys [2009-03-25 128552]
S3 s1018unic;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1018unic.sys [2009-03-25 146472]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2015-04-30 23200]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]
S3 zgwhsdiag;HSPA WCDMA Handset Diagnostic Port; C:\Windows\system32\DRIVERS\gwhsdiag.sys []
S3 zgwhsmdm;HSPAHandSet WCDMA Handset USB Modem; C:\Windows\system32\DRIVERS\gwhsmdm.sys []
S3 zgwhsnmea;WCDMA Handset NMEA Port; C:\Windows\system32\DRIVERS\gwhsnmea.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-01-31 19232]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-09 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-12-11 1432400]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-02-08 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-11 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Spravca at 2015-07-12 21:35:40
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 97 GB (32%) free of 305 GB
Total RAM: 2924 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:35:57, on 12. 7. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\trend micro\Spravca.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} (20-20 3D Viewer for IKEA) - http://kitchenplanner.ikea.com/SK/Core/ ... _Win32.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8219 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {204B7BE0-BF57-475B-9AC8-DB312366FD67}
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
C:\Windows\servicing\TrustedInstaller.exe
taskeng.exe {64FE0681-EB00-4295-BAFD-715FCF7DA92D}
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\notepad.exe" C:\_OTM\MovedFiles\07122015_212846.log
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-607885046-3242699342-1829271559-10002_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-607885046-3242699342-1829271559-10002 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Users\Spravca\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-10 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-10 42272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-06-10 649608]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Spravca\AppData\Roaming\uTorrent\uTorrent.exe [2015-07-08 1694560]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-06-24 6806144]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-05-03 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2015-07-12 21:28:46 ----D---- C:\_OTM
2015-07-12 18:40:50 ----D---- C:\AdwCleaner
2015-07-12 14:57:05 ----D---- C:\Program Files\trend micro
2015-07-12 14:57:04 ----D---- C:\rsit
2015-07-11 16:23:10 ----SHD---- C:\Config.Msi
2015-06-19 16:57:22 ----A---- C:\Windows\system32\wmp.dll
2015-06-19 16:57:20 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\spwmp.dll
2015-06-19 16:57:15 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-19 16:57:14 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-19 16:57:13 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-19 16:57:01 ----A---- C:\Windows\system32\kerberos.dll
2015-06-19 16:57:01 ----A---- C:\Windows\system32\diagtrack.dll
2015-06-19 16:57:00 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-19 16:56:59 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\lsasrv.dll
2015-06-19 16:56:58 ----A---- C:\Windows\system32\kernel32.dll
2015-06-19 16:56:57 ----A---- C:\Windows\system32\advapi32.dll
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-06-19 16:56:56 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-06-19 16:56:55 ----A---- C:\Windows\system32\ntdll.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\wow64.dll
2015-06-19 16:56:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-06-19 16:56:53 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-06-19 16:56:53 ----A---- C:\Windows\system32\conhost.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\tracerpt.exe
2015-06-19 16:56:52 ----A---- C:\Windows\system32\srcore.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-06-19 16:56:51 ----A---- C:\Windows\system32\winsrv.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\schannel.dll
2015-06-19 16:56:51 ----A---- C:\Windows\system32\rstrui.exe
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-06-19 16:56:50 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\tdh.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\msv1_0.dll
2015-06-19 16:56:50 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-06-19 16:56:49 ----A---- C:\Windows\system32\wdigest.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\sechost.dll
2015-06-19 16:56:49 ----A---- C:\Windows\system32\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-06-19 16:56:48 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-06-19 16:56:48 ----A---- C:\Windows\system32\ncrypt.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-06-19 16:56:47 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\TSpkg.dll
2015-06-19 16:56:47 ----A---- C:\Windows\system32\sspicli.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-06-19 16:56:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\smss.exe
2015-06-19 16:56:46 ----A---- C:\Windows\system32\lsass.exe
2015-06-19 16:56:45 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-06-19 16:56:45 ----A---- C:\Windows\system32\typeperf.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\relog.exe
2015-06-19 16:56:45 ----A---- C:\Windows\system32\auditpol.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-06-19 16:56:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-06-19 16:56:43 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-06-19 16:56:42 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\srclient.dll
2015-06-19 16:56:42 ----A---- C:\Windows\system32\csrsrv.dll
2015-06-19 16:56:41 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-06-19 16:56:41 ----A---- C:\Windows\system32\diskperf.exe
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\sspisrv.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\secur32.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\ntvdm64.dll
2015-06-19 16:56:40 ----A---- C:\Windows\system32\credssp.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-06-19 16:56:39 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64win.dll
2015-06-19 16:56:39 ----A---- C:\Windows\system32\wow64cpu.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-06-19 16:56:38 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-19 16:56:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-19 16:56:35 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-19 16:56:34 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-19 16:56:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-06-19 16:56:33 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-06-19 16:56:33 ----A---- C:\Windows\system32\apisetschema.dll
2015-06-19 16:56:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-19 16:56:32 ----A---- C:\Windows\SYSWOW64\user.exe
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\msaudite.dll
2015-06-19 16:56:31 ----A---- C:\Windows\system32\adtschema.dll
2015-06-19 16:56:30 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\UtcResources.dll
2015-06-19 16:56:30 ----A---- C:\Windows\system32\msobjs.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\invagent.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\generaltel.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\appraiser.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aepic.dll
2015-06-19 16:55:17 ----A---- C:\Windows\system32\aeinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\devinv.dll
2015-06-19 16:55:16 ----A---- C:\Windows\system32\acmigration.dll
2015-06-19 16:55:15 ----A---- C:\Windows\system32\aepdu.dll
2015-06-19 16:55:10 ----A---- C:\Windows\system32\win32k.sys
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-19 16:54:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-19 16:54:47 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-19 16:54:45 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-19 16:54:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\iernonce.dll
2015-06-19 16:54:44 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-19 16:54:43 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-19 16:54:43 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 16:54:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-19 16:54:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-19 16:54:39 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-19 16:54:38 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-19 16:54:37 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\urlmon.dll
2015-06-19 16:54:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-19 16:54:36 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-19 16:54:36 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-19 16:54:36 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-19 16:54:35 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-19 16:54:35 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\iesetup.dll
2015-06-19 16:54:34 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-19 16:54:33 ----A---- C:\Windows\system32\iertutil.dll
2015-06-19 16:54:32 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-19 16:54:32 ----A---- C:\Windows\system32\vbscript.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-19 16:54:31 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-19 16:54:31 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-19 16:54:30 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-19 16:54:29 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-19 16:54:28 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieui.dll
2015-06-19 16:54:27 ----A---- C:\Windows\system32\ieframe.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-19 16:54:26 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript9.dll
2015-06-19 16:54:25 ----A---- C:\Windows\system32\jscript.dll
2015-06-19 16:54:24 ----A---- C:\Windows\system32\wininet.dll
2015-06-19 16:54:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-19 16:54:22 ----A---- C:\Windows\system32\msrating.dll
2015-06-19 16:54:16 ----A---- C:\Windows\system32\mshtml.dll
2015-06-19 16:51:37 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-06-19 16:51:37 ----A---- C:\Windows\system32\comctl32.dll
2015-06-19 16:51:31 ----A---- C:\Windows\system32\drivers\stream.sys
======List of files/folders modified in the last 1 month======
2015-07-12 21:34:09 ----D---- C:\Users\Spravca\AppData\Roaming\uTorrent
2015-07-12 21:32:40 ----D---- C:\Windows\Temp
2015-07-12 21:31:44 ----D---- C:\Windows\system32\config
2015-07-12 21:31:15 ----A---- C:\Windows\SYSWOW64\log.txt
2015-07-12 21:28:47 ----D---- C:\Windows\Tasks
2015-07-12 21:21:56 ----SHD---- C:\System Volume Information
2015-07-12 18:42:24 ----D---- C:\Windows\system32\Tasks
2015-07-12 18:42:22 ----RD---- C:\Program Files (x86)
2015-07-12 18:42:22 ----HD---- C:\ProgramData
2015-07-12 17:05:17 ----D---- C:\Windows\System32
2015-07-12 17:05:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-12 17:05:16 ----D---- C:\Windows\inf
2015-07-12 17:05:11 ----D---- C:\Users\Spravca\AppData\Roaming\Skype
2015-07-12 16:06:18 ----D---- C:\Windows\tracing
2015-07-12 15:07:42 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-12 15:07:12 ----D---- C:\Windows\system32\drivers
2015-07-12 14:57:05 ----RD---- C:\Program Files
2015-07-11 17:06:37 ----D---- C:\Windows\SoftwareDistribution
2015-07-11 17:03:52 ----D---- C:\Windows
2015-07-11 16:59:50 ----D---- C:\Windows\Logs
2015-07-11 16:59:50 ----D---- C:\Windows\debug
2015-07-11 16:57:54 ----D---- C:\Windows\pss
2015-07-11 16:26:54 ----SHD---- C:\Windows\Installer
2015-07-11 16:26:51 ----D---- C:\Program Files\Common Files
2015-07-11 16:26:40 ----D---- C:\ProgramData\Autodesk
2015-07-11 16:26:00 ----RSD---- C:\Windows\assembly
2015-07-11 16:25:58 ----D---- C:\Users\Spravca\AppData\Roaming\Autodesk
2015-07-11 16:25:55 ----RSD---- C:\Windows\Fonts
2015-07-11 16:25:11 ----D---- C:\Windows\Downloaded Program Files
2015-07-11 16:24:17 ----D---- C:\Windows\Microsoft.NET
2015-07-11 16:19:04 ----D---- C:\Users\Spravca\AppData\Roaming\inkscape
2015-07-11 16:18:24 ----D---- C:\Program Files (x86)\Google
2015-07-09 20:46:41 ----D---- C:\Windows\SysWOW64
2015-07-09 20:46:36 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-07-08 16:00:54 ----SD---- C:\Users\Spravca\AppData\Roaming\Microsoft
2015-07-08 13:42:28 ----D---- C:\Windows\system32\NDF
2015-07-06 18:04:03 ----D---- C:\Windows\rescache
2015-07-06 14:33:53 ----D---- C:\Windows\system32\DriverStore
2015-07-05 12:08:23 ----N---- C:\Windows\system32\MpSigStub.exe
2015-06-20 09:50:19 ----D---- C:\Windows\Prefetch
2015-06-20 09:46:43 ----D---- C:\Windows\winsxs
2015-06-20 09:42:50 ----D---- C:\Program Files\Windows Media Player
2015-06-20 09:42:50 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-20 09:42:49 ----SD---- C:\Windows\system32\CompatTel
2015-06-20 09:42:49 ----D---- C:\Windows\system32\appraiser
2015-06-20 09:42:48 ----D---- C:\Windows\AppPatch
2015-06-20 09:42:45 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-20 09:42:44 ----D---- C:\Windows\system32\en-US
2015-06-20 09:42:38 ----D---- C:\Program Files\Internet Explorer
2015-06-20 09:42:37 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\system32\sk-SK
2015-06-20 09:42:35 ----D---- C:\Windows\PolicyDefinitions
2015-06-20 09:42:33 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-19 21:14:30 ----D---- C:\ProgramData\Microsoft Help
2015-06-19 21:11:32 ----D---- C:\Windows\system32\MRT
2015-06-19 21:02:42 ----A---- C:\Windows\system32\MRT.exe
2015-06-19 16:39:22 ----D---- C:\Windows\system32\catroot2
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-06-10 130048]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-08-20 1800192]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys []
S3 ASUSProcObsrv;ASUS Process Creation/Termination Observer; \??\D:\I386\AsPrOb64.sys []
S3 massfilter_hs;ZTE HandSet Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter_hs.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-07-12 113880]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s1018bus;Sony Ericsson Device 1018 driver (WDM); C:\Windows\system32\DRIVERS\s1018bus.sys [2009-03-25 113704]
S3 s1018mdfl;Sony Ericsson Device 1018 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1018mdfl.sys [2009-03-25 19496]
S3 s1018mdm;Sony Ericsson Device 1018 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1018mdm.sys [2009-03-25 153128]
S3 s1018mgmt;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1018mgmt.sys [2009-03-25 133160]
S3 s1018nd5;Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1018nd5.sys [2009-03-25 34856]
S3 s1018obex;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1018obex.sys [2009-03-25 128552]
S3 s1018unic;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1018unic.sys [2009-03-25 146472]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2015-04-30 23200]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]
S3 zgwhsdiag;HSPA WCDMA Handset Diagnostic Port; C:\Windows\system32\DRIVERS\gwhsdiag.sys []
S3 zgwhsmdm;HSPAHandSet WCDMA Handset USB Modem; C:\Windows\system32\DRIVERS\gwhsmdm.sys []
S3 zgwhsnmea;WCDMA Handset NMEA Port; C:\Windows\system32\DRIVERS\gwhsnmea.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-01-31 19232]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-09 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-12-11 1432400]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25 107848]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-02-08 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-11 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola Logu / PC seká
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
Patriciusdd
- Návštěvník

- Příspěvky: 10
- Registrován: 12 črc 2015 13:55
Re: Kontrola Logu / PC seká
Dobrý večer, ospravedlňujem sa , že odpisujem takto neskoro. Postupoval som podľa Vaších pokynov, no mám pocit, že sa to vôbec nezlepšilo skôr zhoršilo. RAM je skoro maximálne zaťažená pritom mám zapnutých minimálne aplikácii/súborov a CPU je v pohode.
- Přílohy
-
- Bez názvu.png (118.71 KiB) Zobrazeno 1514 x
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola Logu / PC seká
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
Patriciusdd
- Návštěvník

- Příspěvky: 10
- Registrován: 12 črc 2015 13:55
Re: Kontrola Logu / PC seká
Tu to je -
Malwarebytes Anti-Malware
www.malwarebytes.org
Dátum skenovania: 16. 7. 2015
Scan ??as: 20:04
Logfile: zh.txt
Správca: áno
Verzia: 2.1.8.1057
Malware databázy: v2015.07.16.05
Rootkit databázy: v2015.07.16.01
Licencia: Zadarmo
Ochrana pred škodlivým softvérom: Telesne
Škodlivých webových stránok Ochrana: Telesne
Sebaobrany: Telesne
OS: Windows 7 Service Pack 1
CPU: x64
Systém súborov: NTFS
Používateľ: Spravca
Typ skenu: Hrozba Scan
Výsledok: Dokon??ené
Objekty naskenované: 380857
Uplynulý ??as: 50 min, 15 sec
Pamäť: Povolené
Pri spustení: Povolené
Súborový systém: Povolené
Archív: Povolené
Rootkity: Telesne
Heuristiky: Povolené
ŠTEŇA: Povolené
VYKUROVAC: Povolené
Procesy: 0
(Žiadne zákernej položky neboli zistené)
Moduly: 0
(Žiadne zákernej položky neboli zistené)
Kľú??e databázy Registry: 0
(Žiadne zákernej položky neboli zistené)
Hodnoty databázy Registry: 0
(Žiadne zákernej položky neboli zistené)
Údaje databázy Registry: 0
(Žiadne zákernej položky neboli zistené)
Prie??inky: 0
(Žiadne zákernej položky neboli zistené)
Súbory: 0
(Žiadne zákernej položky neboli zistené)
Fyzický sektory: 0
(Žiadne zákernej položky neboli zistené)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Dátum skenovania: 16. 7. 2015
Scan ??as: 20:04
Logfile: zh.txt
Správca: áno
Verzia: 2.1.8.1057
Malware databázy: v2015.07.16.05
Rootkit databázy: v2015.07.16.01
Licencia: Zadarmo
Ochrana pred škodlivým softvérom: Telesne
Škodlivých webových stránok Ochrana: Telesne
Sebaobrany: Telesne
OS: Windows 7 Service Pack 1
CPU: x64
Systém súborov: NTFS
Používateľ: Spravca
Typ skenu: Hrozba Scan
Výsledok: Dokon??ené
Objekty naskenované: 380857
Uplynulý ??as: 50 min, 15 sec
Pamäť: Povolené
Pri spustení: Povolené
Súborový systém: Povolené
Archív: Povolené
Rootkity: Telesne
Heuristiky: Povolené
ŠTEŇA: Povolené
VYKUROVAC: Povolené
Procesy: 0
(Žiadne zákernej položky neboli zistené)
Moduly: 0
(Žiadne zákernej položky neboli zistené)
Kľú??e databázy Registry: 0
(Žiadne zákernej položky neboli zistené)
Hodnoty databázy Registry: 0
(Žiadne zákernej položky neboli zistené)
Údaje databázy Registry: 0
(Žiadne zákernej položky neboli zistené)
Prie??inky: 0
(Žiadne zákernej položky neboli zistené)
Súbory: 0
(Žiadne zákernej položky neboli zistené)
Fyzický sektory: 0
(Žiadne zákernej položky neboli zistené)
(end)
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola Logu / PC seká
Toto je OK, problém nezpůsobuje havěť. Který proces nejvíce zatěžuje RAM?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
Patriciusdd
- Návštěvník

- Příspěvky: 10
- Registrován: 12 črc 2015 13:55
Re: Kontrola Logu / PC seká
Najviac asi Chrome... mam otvorenú len Vašu stránku a vyzerá to takto -
- Přílohy
-
- Bez názvu.png (60.48 KiB) Zobrazeno 1502 x
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola Logu / PC seká
Jj, vidím. Když Chrome zavřete, zatížení je v normálu? Zkuste povypínat všechna rozšíření a pak je postupně zapínejte, až zjistíte, které z nich problém způsobuje.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
Patriciusdd
- Návštěvník

- Příspěvky: 10
- Registrován: 12 črc 2015 13:55
Re: Kontrola Logu / PC seká
Keď vypnem Chrome PC ide dobre. Skúšal som ukončovať procesy patriace Chromu a Adblock požieral celkom veľké množstvo pamäte, tak ten som ihneď aj odstranil, no ostané tri ani netuším čo znamenajú... Mam otvorené len jednu web stránku.
Přispějete na provoz fóra?