Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

log - (použit ComboFix) - poraďte - nerozumim

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

log - (použit ComboFix) - poraďte - nerozumim

#1 Příspěvek od Tady. »

ComboFix 15-08-01.01 - PC 02.08.2015 7:44.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2814.1695 [GMT 2:00]
Spuštěný z: c:\users\PC\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-02 do 2015-08-02 )))))))))))))))))))))))))))))))
.
.
2015-08-02 05:56 . 2015-08-02 05:56 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-08-01 04:52 . 2015-08-01 04:52 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{873B21F6-7537-474D-B4C3-FCCB88D477C0}\offreg.1004.dll
2015-07-31 12:13 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{873B21F6-7537-474D-B4C3-FCCB88D477C0}\mpengine.dll
2015-07-29 11:06 . 2015-07-29 11:06 -------- d-----w- c:\windows\Migration
2015-07-29 10:57 . 2015-07-29 10:57 -------- d-----w- c:\program files\7-Zip
2015-07-29 10:39 . 2011-03-12 21:55 876032 ----a-w- c:\windows\system32\XpsPrint.dll
2015-07-29 10:39 . 2015-07-03 05:19 474624 ----a-w- c:\program files\Internet Explorer\ieinstal.exe
2015-07-29 10:39 . 2015-07-03 05:18 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-29 08:30 . 2015-07-29 08:30 -------- d-----w- c:\program files\Windows Portable Devices
2015-07-29 08:24 . 2015-01-29 01:35 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2015-07-29 08:22 . 2015-01-29 01:35 975360 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-07-29 08:21 . 2015-06-25 02:57 2066432 ----a-w- c:\windows\system32\win32k.sys
2015-07-29 08:18 . 2015-07-14 16:02 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-29 08:18 . 2015-07-14 14:23 296960 ----a-w- c:\windows\system32\atmfd.dll
2015-07-29 08:17 . 2015-07-03 16:04 1316864 ----a-w- c:\windows\system32\ole32.dll
2015-07-29 08:01 . 2014-06-26 22:17 99480 ----a-w- c:\windows\system32\infocardapi.dll
2015-07-29 08:01 . 2014-06-26 22:17 8856 ----a-w- c:\windows\system32\icardres.dll
2015-07-29 08:01 . 2014-06-26 22:17 619664 ----a-w- c:\windows\system32\icardagt.exe
2015-07-29 08:01 . 2014-06-06 04:28 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-07-29 08:00 . 2015-03-09 01:01 1249280 ----a-w- c:\windows\system32\msxml3.dll
2015-07-29 08:00 . 2014-08-27 00:55 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-07-29 07:59 . 2014-06-15 22:18 1131664 ----a-w- c:\windows\system32\dfshim.dll
2015-07-29 07:59 . 2014-06-13 18:22 81560 ----a-w- c:\windows\system32\mscories.dll
2015-07-29 07:59 . 2014-06-13 18:22 156824 ----a-w- c:\windows\system32\mscorier.dll
2015-07-29 07:51 . 2015-06-17 16:50 2264576 ----a-w- c:\windows\system32\msi.dll
2015-07-29 07:51 . 2015-06-17 15:09 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-07-29 07:51 . 2014-06-02 10:31 332800 ----a-w- c:\windows\system32\msihnd.dll
2015-07-29 07:51 . 2014-06-02 10:30 1993728 ----a-w- c:\windows\system32\authui.dll
2015-07-29 07:51 . 2014-06-02 10:30 33280 ----a-w- c:\windows\system32\appinfo.dll
2015-07-29 07:51 . 2014-06-02 08:56 82432 ----a-w- c:\windows\system32\consent.exe
2015-07-29 07:44 . 2014-10-10 01:00 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-29 07:44 . 2014-10-09 23:22 619520 ----a-w- c:\windows\system32\adtschema.dll
2015-07-29 07:44 . 2014-10-10 01:01 449536 ----a-w- c:\windows\system32\termsrv.dll
2015-07-29 07:42 . 2014-12-19 00:25 115200 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2015-07-29 07:41 . 2015-06-12 16:01 298496 ----a-w- c:\windows\system32\gdi32.dll
2015-07-29 07:40 . 2014-11-04 00:19 2048 ----a-w- c:\windows\system32\tzres.dll
2015-07-29 07:35 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2015-07-29 07:35 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2015-07-29 07:35 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2015-07-29 07:24 . 2015-04-24 15:54 532480 ----a-w- c:\windows\system32\comctl32.dll
2015-07-29 07:10 . 2015-03-05 02:32 244152 ----a-w- c:\windows\system32\clfs.sys
2015-07-29 07:10 . 2015-03-05 02:23 57344 ----a-w- c:\windows\system32\clfsw32.dll
2015-07-29 07:09 . 2015-03-14 02:21 1205168 ----a-w- c:\windows\system32\ntdll.dll
2015-07-29 07:09 . 2015-01-09 02:04 49152 ----a-w- c:\windows\system32\csrsrv.dll
2015-07-29 07:09 . 2015-01-09 00:18 64000 ----a-w- c:\windows\system32\smss.exe
2015-07-29 07:09 . 2015-03-13 01:51 3604920 ----a-w- c:\windows\system32\ntkrnlpa.exe
2015-07-29 07:09 . 2015-03-13 01:51 3552184 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-07-29 07:07 . 2014-10-24 01:04 67072 ----a-w- c:\windows\system32\packager.dll
2015-07-29 06:57 . 2015-04-19 21:24 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2015-07-29 06:57 . 2015-04-19 21:24 189952 ----a-w- c:\windows\system32\d3d10core.dll
2015-07-29 06:57 . 2015-04-19 21:24 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2015-07-29 06:57 . 2015-04-19 20:18 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2015-07-29 06:57 . 2015-04-19 20:13 682496 ----a-w- c:\windows\system32\d2d1.dll
2015-07-29 06:57 . 2015-04-19 21:24 1029120 ----a-w- c:\windows\system32\d3d10.dll
2015-07-29 06:57 . 2015-04-19 20:19 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2015-07-29 06:57 . 2015-04-19 20:12 1072640 ----a-w- c:\windows\system32\DWrite.dll
2015-07-29 06:57 . 2015-04-19 20:12 801792 ----a-w- c:\windows\system32\FntCache.dll
2015-07-29 06:56 . 2014-11-26 02:05 564224 ----a-w- c:\windows\system32\oleaut32.dll
2015-07-29 06:50 . 2015-06-12 14:27 305152 ----a-w- c:\program files\Internet Explorer\ieuser.exe
2015-07-29 06:48 . 2015-04-30 13:14 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 06:44 . 2012-02-01 13:58 47104 ----a-w- c:\program files\Windows Journal\PDIALOG.exe
2015-07-29 06:44 . 2015-04-08 01:11 939008 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2015-07-29 06:44 . 2015-04-07 23:35 1850880 ----a-w- c:\program files\Windows Journal\Journal.exe
2015-07-29 06:44 . 2012-02-01 15:10 1404928 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\InkObj.dll
2015-07-29 06:44 . 2015-04-08 01:11 1219584 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2015-07-29 06:44 . 2015-04-08 01:11 985088 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2015-07-29 06:44 . 2015-04-08 01:11 967168 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2015-07-29 06:38 . 2015-01-21 02:02 807936 ----a-w- c:\windows\system32\msctf.dll
2015-07-29 06:37 . 2014-08-12 02:25 729600 ----a-w- c:\windows\system32\IMJP10K.DLL
2015-07-29 06:33 . 2015-07-29 06:33 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2015-07-29 06:32 . 2015-07-29 06:32 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2015-07-29 06:32 . 2015-07-29 06:32 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2015-07-29 06:19 . 2014-10-03 01:18 274432 ----a-w- c:\windows\system32\AUDIOKSE.dll
2015-07-29 06:19 . 2014-10-03 01:17 170496 ----a-w- c:\windows\system32\EncDump.dll
2015-07-29 06:19 . 2014-10-03 01:17 396800 ----a-w- c:\windows\system32\AudioEng.dll
2015-07-29 06:19 . 2014-10-03 01:17 316928 ----a-w- c:\windows\system32\audiosrv.dll
2015-07-29 06:13 . 2014-12-06 03:14 48640 ----a-w- c:\windows\system32\nlaapi.dll
2015-07-29 06:13 . 2014-12-06 03:14 174080 ----a-w- c:\windows\system32\nlasvc.dll
2015-07-29 06:13 . 2014-12-06 03:14 93184 ----a-w- c:\windows\system32\ncsi.dll
2015-07-27 17:38 . 2015-05-31 08:11 225792 ----a-w- c:\windows\system32\cewmdm.dll
2015-07-27 17:32 . 2015-04-10 23:22 279552 ----a-w- c:\windows\system32\services.exe
2015-07-27 17:19 . 2015-06-27 14:21 217088 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-27 17:19 . 2015-06-27 14:21 81408 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-27 17:19 . 2015-01-09 00:17 107008 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-07-27 17:19 . 2015-06-27 16:02 218112 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-27 17:19 . 2015-06-27 16:03 783872 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-27 17:19 . 2015-06-27 16:02 501248 ----a-w- c:\windows\system32\kerberos.dll
2015-07-27 17:19 . 2015-06-27 16:01 801280 ----a-w- c:\windows\system32\advapi32.dll
2015-07-27 17:19 . 2015-06-12 13:13 440768 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-27 17:19 . 2015-04-30 16:03 279040 ----a-w- c:\windows\system32\schannel.dll
2015-07-27 17:19 . 2014-10-10 01:00 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-27 17:18 . 2014-09-04 23:27 143360 ----a-w- c:\windows\system32\drivers\fastfat.sys
2015-07-27 17:12 . 2014-12-08 01:59 306176 ----a-w- c:\windows\system32\scesrv.dll
2015-07-27 17:11 . 2012-07-26 02:46 9728 ----a-w- c:\windows\system32\Wdfres.dll
2015-07-27 17:11 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll
2015-07-27 17:11 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll
2015-07-27 17:11 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2015-07-27 17:11 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2015-07-27 17:11 . 2009-07-14 12:12 16896 ----a-w- c:\windows\system32\winusb.dll
2015-07-27 17:11 . 2012-07-26 03:39 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2015-07-27 17:11 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe
2015-07-27 17:11 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll
2015-07-27 17:11 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2015-07-27 17:10 . 2015-05-04 22:50 7680 ----a-w- c:\windows\system32\spwmp.dll
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\msdxm.ocx
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\dxmasf.dll
2015-07-27 17:10 . 2015-05-04 21:21 107520 ----a-w- c:\program files\Windows Media Player\wmpconfig.exe
2015-07-27 17:10 . 2015-05-04 21:21 168960 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2015-07-27 17:10 . 2015-05-04 21:21 107520 ----a-w- c:\program files\Windows Media Player\wmpshare.exe
2015-07-27 17:10 . 2015-05-04 21:21 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2015-07-27 16:47 . 2014-12-06 03:14 153600 ----a-w- c:\windows\system32\profsvc.dll
2015-07-27 16:45 . 2012-06-05 16:47 708608 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2015-07-27 16:45 . 2011-02-22 14:13 288768 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2015-07-27 16:44 . 2011-08-25 16:15 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2015-07-27 16:44 . 2011-08-25 16:14 238080 ----a-w- c:\windows\system32\oleacc.dll
2015-07-27 16:44 . 2011-08-25 13:31 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2015-07-27 16:44 . 2013-06-29 02:07 197632 ----a-w- c:\windows\system32\drivers\usbhub.sys
2015-07-27 16:44 . 2013-06-29 02:07 226304 ----a-w- c:\windows\system32\drivers\usbport.sys
2015-07-27 16:44 . 2013-06-29 02:06 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2015-07-27 16:44 . 2011-05-05 13:54 39936 ----a-w- c:\windows\system32\drivers\usbehci.sys
2015-07-27 16:44 . 2011-05-05 13:54 19456 ----a-w- c:\windows\system32\drivers\usbohci.sys
2015-07-27 16:44 . 2014-03-10 01:22 1401344 ----a-w- c:\windows\system32\msxml6.dll
2015-07-27 16:43 . 2013-10-22 07:19 158208 ----a-w- c:\windows\system32\imagehlp.dll
2015-07-27 16:43 . 2012-02-29 15:11 5120 ----a-w- c:\windows\system32\wmi.dll
2015-07-27 16:43 . 2012-02-29 13:32 12800 ----a-w- c:\windows\system32\drivers\fs_rec.sys
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-02 04:56 . 2008-09-10 05:59 45056 ----a-w- c:\windows\system32\acovcnt.exe
2015-07-29 06:34 . 2015-07-29 06:34 203776 ----a-w- c:\windows\system32\webcheck.dll
2015-07-29 06:33 . 2015-07-29 06:33 4096 ----a-w- c:\windows\system32\drivers\cs-CZ\dxgkrnl.sys.mui
2015-06-12 16:01 . 2015-07-29 06:50 54272 ----a-w- c:\windows\apppatch\iebrshim.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-07-19 12:11 692512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2008-07-15 7651328]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-07-19 6109776]
"Windows Mobile-based device management"="c:\windows\WindowsMobile\wmdSync.exe" [2008-01-21 215552]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-5-27 752168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2008-01-11 20:16 39792 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-09-10 05:55 47672 ----a-w- c:\windows\AsScrProlog.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-09-10 05:56 33136 ----a-w- c:\windows\ASScrPro.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-07-19 02:52 104936 ----a-w- c:\program files\CyberLink\Power2Go\CLMLSvc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2015-07-19 14:14 116648 ----atw- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
2008-01-12 05:40 98304 ----a-w- c:\program files\ATK Hotkey\HControlUser.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-06-09 17:16 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
2008-06-14 01:11 210216 ----a-w- c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2008-06-13 05:52 6183456 ----a-w- c:\windows\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
2007-11-20 10:15 1826816 ----a-w- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2008-01-21 19:17 61440 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
2007-12-07 02:12 1029416 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 17:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
2015-08-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.asus.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.0.0.138
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
SafeBoot-WudfPf
SafeBoot-WudfRd
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2015-08-02 07:56
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
C:\ADSM_PData_0150
.
sken byl úspešně dokončen
skryté soubory: 1
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
Celkový čas: 2015-08-02 07:59:58
ComboFix-quarantined-files.txt 2015-08-02 05:59
.
Před spuštěním: Volných bajtů: 92 767 092 736
Po spuštění: Volných bajtů: 93 052 874 752
.
- - End Of File - - 6F4F710DF1EDF8748BE88B743C70A45B
64B1E91C5C6C2157642651010728F90F

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: log - (použit ComboFix) - poraďte - nerozumim

#2 Příspěvek od Márty84 »

Zdravim :-)

Cemu nerozumite?

Jaky je problem?

Kdo a proc spoustel ComboFix?!? :twisted:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

Re: log - (použit ComboFix) - poraďte - nerozumim

#3 Příspěvek od Tady. »

Zdravím marty84, tak si sypu popel na hlavu. :oops:
Zoufalé ženy dělají zoufalé věci. Jasně, teď taky vidím, že sem ......
Jenže člověk si myslí, že všechno zvládne a nemá čas číst hodiny informace a detaily.
Takže největší problém včera byl, že se mi po zapnutí PC nechtěl ani za nic spustit antivir, PC běželo děsně pomalu...no a upřímně..nevim přesně co ještě. (Dělala jsem to za pochodu - prostě u toho vařila :?: a tak podobně.) Tak sem zabrouzdala na viry.cz, do oka padl ten CF a bylo.
Ovšem je fakt, že teď se PC zdá ok. Antivir jsem musela odinstalovat a zase nainstalovat a teď šlape. Jsem poučena a děkuji za slušné zacházení - mohla jsem si vykoledovat i poslání někam :oops: Tak díky.
Log předkládám:
Logfile of random's system information tool 1.10 (written by random/random)
Run by PC at 2015-08-03 06:11:04
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 87 GB (73%) free of 119 GB
Total RAM: 2814 MB (57% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:11:24, on 3.8.2015
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16669)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Windows\WindowsMobile\wmdSync.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Users\PC\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\PC\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\PC\Desktop\RSIT.exe
C:\Program Files\trend micro\PC.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: AMD Safely Remove Disk Drive (SafeRemove) - AMD - C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe

--
End of file - 3982 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job - C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job - C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-02 559624]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2008-07-15 7651328]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2008-01-21 215552]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-08-02 6109776]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\AsScrProlog.exe [2008-09-10 47672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2008-09-10 33136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
C:\Program Files\ATK Hotkey\HcontrolUser.exe [2008-01-12 98304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-06-14 210216]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2008-06-13 6183456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
C:\Windows\Skytel.exe [2007-11-20 1826816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-07 1029416]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.l3codecp"=l3codecp.acm
"wave5"=serwvdrv.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-08-03 06:11:04 ----D---- C:\rsit
2015-08-03 06:11:04 ----D---- C:\Program Files\trend micro
2015-08-02 10:00:46 ----D---- C:\snapshots
2015-08-02 09:46:33 ----D---- C:\Users\PC\AppData\Roaming\AVAST Software
2015-08-02 09:06:46 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2015-08-02 09:06:46 ----A---- C:\Windows\system32\drivers\aswStmXP.sys
2015-08-02 09:06:45 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2015-08-02 09:06:45 ----A---- C:\Windows\system32\drivers\aswSP.sys
2015-08-02 09:06:44 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2015-08-02 09:06:44 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2015-08-02 09:06:43 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2015-08-02 09:06:43 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2015-08-02 09:06:41 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2015-08-02 09:06:40 ----A---- C:\Windows\system32\drivers\ngvss.sys
2015-08-02 09:06:38 ----A---- C:\Windows\system32\aswBoot.exe
2015-08-02 09:06:27 ----A---- C:\Windows\avastSS.scr
2015-08-02 08:54:46 ----D---- C:\Program Files\AVAST Software
2015-08-02 08:00:08 ----SHD---- C:\$RECYCLE.BIN
2015-08-02 07:59:59 ----A---- C:\ComboFix.txt
2015-08-02 07:56:23 ----D---- C:\Windows\temp
2015-08-02 07:42:18 ----A---- C:\Windows\zip.exe
2015-08-02 07:42:18 ----A---- C:\Windows\SWSC.exe
2015-08-02 07:42:18 ----A---- C:\Windows\SWREG.exe
2015-08-02 07:42:18 ----A---- C:\Windows\sed.exe
2015-08-02 07:42:18 ----A---- C:\Windows\PEV.exe
2015-08-02 07:42:18 ----A---- C:\Windows\NIRCMD.exe
2015-08-02 07:42:18 ----A---- C:\Windows\MBR.exe
2015-08-02 07:42:18 ----A---- C:\Windows\grep.exe
2015-08-02 07:42:11 ----D---- C:\ComboFix
2015-08-02 07:42:05 ----D---- C:\Qoobox
2015-08-02 07:36:13 ----D---- C:\Windows\erdnt
2015-08-02 06:55:31 ----ASH---- C:\hiberfil.sys
2015-08-02 06:54:35 ----D---- C:\Windows\pss
2015-08-02 06:44:52 ----A---- C:\Windows\ntbtlog.txt
2015-07-29 13:06:05 ----D---- C:\Windows\Migration
2015-07-29 12:57:17 ----D---- C:\Program Files\7-Zip
2015-07-29 12:39:19 ----A---- C:\Windows\system32\XpsPrint.dll
2015-07-29 12:39:17 ----A---- C:\Windows\system32\mshtml.dll
2015-07-29 10:30:11 ----D---- C:\Program Files\Windows Portable Devices
2015-07-29 10:24:29 ----A---- C:\Windows\system32\WMPhoto.dll
2015-07-29 10:22:16 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-07-29 10:21:01 ----A---- C:\Windows\system32\win32k.sys
2015-07-29 10:18:54 ----A---- C:\Windows\system32\atmlib.dll
2015-07-29 10:18:54 ----A---- C:\Windows\system32\atmfd.dll
2015-07-29 10:17:47 ----A---- C:\Windows\system32\ole32.dll
2015-07-29 10:01:54 ----A---- C:\Windows\system32\infocardapi.dll
2015-07-29 10:01:54 ----A---- C:\Windows\system32\icardres.dll
2015-07-29 10:01:54 ----A---- C:\Windows\system32\icardagt.exe
2015-07-29 10:01:48 ----A---- C:\Windows\system32\TsWpfWrp.exe
2015-07-29 10:00:30 ----A---- C:\Windows\system32\msxml3r.dll
2015-07-29 10:00:30 ----A---- C:\Windows\system32\msxml3.dll
2015-07-29 09:59:05 ----A---- C:\Windows\system32\mscories.dll
2015-07-29 09:59:05 ----A---- C:\Windows\system32\mscorier.dll
2015-07-29 09:59:05 ----A---- C:\Windows\system32\dfshim.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\msihnd.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\msiexec.exe
2015-07-29 09:51:55 ----A---- C:\Windows\system32\msi.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\consent.exe
2015-07-29 09:51:55 ----A---- C:\Windows\system32\authui.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\appinfo.dll
2015-07-29 09:44:02 ----A---- C:\Windows\system32\msaudite.dll
2015-07-29 09:44:01 ----A---- C:\Windows\system32\adtschema.dll
2015-07-29 09:44:00 ----A---- C:\Windows\system32\termsrv.dll
2015-07-29 09:42:57 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-07-29 09:41:56 ----A---- C:\Windows\system32\gdi32.dll
2015-07-29 09:40:34 ----A---- C:\Windows\system32\tzres.dll
2015-07-29 09:35:31 ----A---- C:\Windows\system32\UIAnimation.dll
2015-07-29 09:35:30 ----A---- C:\Windows\system32\UIRibbonRes.dll
2015-07-29 09:35:30 ----A---- C:\Windows\system32\UIRibbon.dll
2015-07-29 09:33:16 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2015-07-29 09:33:16 ----A---- C:\Windows\system32\wpdbusenum.dll
2015-07-29 09:33:16 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2015-07-29 09:33:13 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WPDSp.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\wpdshext.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WpdMtpUS.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WpdMtp.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WpdConns.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\wpd_ci.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\drivers\WpdUsb.sys
2015-07-29 09:24:10 ----A---- C:\Windows\system32\comctl32.dll
2015-07-29 09:10:41 ----A---- C:\Windows\system32\clfsw32.dll
2015-07-29 09:10:41 ----A---- C:\Windows\system32\clfs.sys
2015-07-29 09:09:27 ----A---- C:\Windows\system32\smss.exe
2015-07-29 09:09:27 ----A---- C:\Windows\system32\ntdll.dll
2015-07-29 09:09:27 ----A---- C:\Windows\system32\csrsrv.dll
2015-07-29 09:09:26 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-07-29 09:09:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-07-29 09:07:55 ----A---- C:\Windows\system32\packager.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10level9.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10core.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10_1core.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10_1.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d2d1.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\FntCache.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\DWrite.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\d3d10warp.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\d3d10.dll
2015-07-29 08:56:29 ----A---- C:\Windows\system32\oleaut32.dll
2015-07-29 08:48:01 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 08:38:46 ----A---- C:\Windows\system32\msctf.dll
2015-07-29 08:37:36 ----A---- C:\Windows\system32\IMJP10K.DLL
2015-07-29 08:34:59 ----A---- C:\Windows\system32\wininet.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\urlmon.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\msrating.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\msls31.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\jsproxy.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\iertutil.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2015-07-29 08:34:58 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2015-07-29 08:34:58 ----A---- C:\Windows\system32\mshtmler.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\ieui.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\iesysprep.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\ieframe.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\url.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\iesetup.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\iernonce.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\iedkcs32.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\ieapfltr.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\ieapfltr.dat
2015-07-29 08:34:57 ----A---- C:\Windows\system32\ie4uinit.exe
2015-07-29 08:34:57 ----A---- C:\Windows\system32\icardie.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\dxtmsft.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\wextract.exe
2015-07-29 08:34:56 ----A---- C:\Windows\system32\webcheck.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\licmgr10.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\inseng.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\iexpress.exe
2015-07-29 08:34:55 ----A---- C:\Windows\system32\vbscript.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\pngfilt.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\occache.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\mshta.exe
2015-07-29 08:34:54 ----A---- C:\Windows\system32\jscript9.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\jscript.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\ieUnatt.exe
2015-07-29 08:34:54 ----A---- C:\Windows\system32\ieakui.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\ieaksie.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\admparse.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\msfeedssync.exe
2015-07-29 08:34:53 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\imgutil.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\iepeers.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\ieakeng.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\IEAdvpack.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\advpack.dll
2015-07-29 08:33:55 ----A---- C:\Windows\system32\MFHEAACdec.dll
2015-07-29 08:33:55 ----A---- C:\Windows\system32\MFH264Dec.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\shdocvw.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfreadwrite.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfps.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfplat.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfmp4src.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mf.dll
2015-07-29 08:33:53 ----A---- C:\Windows\system32\stobject.dll
2015-07-29 08:33:50 ----A---- C:\Windows\system32\XpsRasterService.dll
2015-07-29 08:33:48 ----A---- C:\Windows\system32\dxgi.dll
2015-07-29 08:33:47 ----A---- C:\Windows\system32\xpsservices.dll
2015-07-29 08:33:47 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2015-07-29 08:33:47 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2015-07-29 08:33:47 ----A---- C:\Windows\system32\OpcServices.dll
2015-07-29 08:33:00 ----A---- C:\Windows\system32\dxdiagn.dll
2015-07-29 08:33:00 ----A---- C:\Windows\system32\dxdiag.exe
2015-07-29 08:33:00 ----A---- C:\Windows\system32\d3d11.dll
2015-07-29 08:32:59 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2015-07-29 08:32:59 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\EncDump.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\audiosrv.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\AudioEng.dll
2015-07-29 08:13:59 ----A---- C:\Windows\system32\nlasvc.dll
2015-07-29 08:13:59 ----A---- C:\Windows\system32\nlaapi.dll
2015-07-29 08:13:59 ----A---- C:\Windows\system32\ncsi.dll
2015-07-29 08:13:05 ----A---- C:\Windows\system32\shell32.dll
2015-07-27 20:31:21 ----A---- C:\Windows\ATKPF.ini
2015-07-27 19:38:59 ----A---- C:\Windows\system32\cewmdm.dll
2015-07-27 19:32:18 ----A---- C:\Windows\system32\services.exe
2015-07-27 19:19:11 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-27 19:19:11 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-27 19:19:11 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-27 19:19:10 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-27 19:19:09 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\schannel.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\lsasrv.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\kerberos.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-07-27 19:19:08 ----A---- C:\Windows\system32\advapi32.dll
2015-07-27 19:18:55 ----A---- C:\Windows\system32\kernel32.dll
2015-07-27 19:18:35 ----A---- C:\Windows\system32\drivers\fastfat.sys
2015-07-27 19:12:40 ----A---- C:\Windows\system32\scesrv.dll
2015-07-27 19:11:31 ----A---- C:\Windows\system32\Wdfres.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\WUDFSvc.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\WUDFPlatform.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\winusb.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2015-07-27 19:11:29 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2015-07-27 19:11:28 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2015-07-27 19:11:27 ----A---- C:\Windows\system32\WUDFx.dll
2015-07-27 19:11:27 ----A---- C:\Windows\system32\WUDFHost.exe
2015-07-27 19:11:27 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2015-07-27 19:10:33 ----A---- C:\Windows\system32\spwmp.dll
2015-07-27 19:10:30 ----A---- C:\Windows\system32\dxmasf.dll
2015-07-27 19:10:29 ----A---- C:\Windows\system32\wmploc.DLL
2015-07-27 19:10:28 ----A---- C:\Windows\system32\wmp.dll
2015-07-27 18:47:42 ----A---- C:\Windows\system32\profsvc.dll
2015-07-27 18:45:43 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2015-07-27 18:44:39 ----A---- C:\Windows\system32\UIAutomationCore.dll
2015-07-27 18:44:39 ----A---- C:\Windows\system32\oleaccrc.dll
2015-07-27 18:44:39 ----A---- C:\Windows\system32\oleacc.dll
2015-07-27 18:44:27 ----A---- C:\Windows\system32\netapi32.dll
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-07-27 18:44:22 ----A---- C:\Windows\system32\msxml6.dll
2015-07-27 18:43:56 ----A---- C:\Windows\system32\wmi.dll
2015-07-27 18:43:56 ----A---- C:\Windows\system32\imagehlp.dll
2015-07-27 18:43:56 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2015-07-27 18:43:53 ----A---- C:\Windows\system32\mstscax.dll
2015-07-27 18:43:48 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2015-07-27 18:43:48 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-07-27 18:43:06 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-07-27 18:42:41 ----A---- C:\Windows\system32\SysFxUI.dll
2015-07-27 18:42:41 ----A---- C:\Windows\system32\drivers\portcls.sys
2015-07-27 18:42:41 ----A---- C:\Windows\system32\drivers\drmk.sys
2015-07-27 18:42:40 ----A---- C:\Windows\system32\icaapi.dll
2015-07-27 18:42:40 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2015-07-27 18:42:36 ----A---- C:\Windows\system32\drivers\ntfs.sys
2015-07-27 18:42:34 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2015-07-27 18:42:33 ----A---- C:\Windows\system32\qedit.dll
2015-07-27 18:42:32 ----A---- C:\Windows\system32\drivers\afd.sys
2015-07-27 18:42:15 ----A---- C:\Windows\system32\certutil.exe
2015-07-27 18:42:14 ----A---- C:\Windows\system32\certenc.dll
2015-07-27 18:42:05 ----A---- C:\Windows\system32\localspl.dll
2015-07-27 18:41:59 ----A---- C:\Windows\system32\msshsq.dll
2015-07-27 18:41:58 ----A---- C:\Windows\system32\drivers\volsnap.sys
2015-07-27 18:41:57 ----A---- C:\Windows\system32\quartz.dll
2015-07-27 18:41:54 ----A---- C:\Windows\system32\shlwapi.dll
2015-07-27 18:41:53 ----A---- C:\Windows\system32\EncDec.dll
2015-07-27 18:41:52 ----A---- C:\Windows\system32\msvcrt.dll
2015-07-27 18:41:50 ----A---- C:\Windows\system32\rdpencom.dll
2015-07-27 18:41:42 ----A---- C:\Windows\system32\winsrv.dll
2015-07-27 18:41:41 ----A---- C:\Windows\system32\ncrypt.dll
2015-07-27 18:41:40 ----A---- C:\Windows\system32\win32spl.dll
2015-07-27 18:41:40 ----A---- C:\Windows\system32\printcom.dll
2015-07-27 18:41:37 ----A---- C:\Windows\system32\qdvd.dll
2015-07-27 18:41:30 ----A---- C:\Windows\system32\wshcon.dll
2015-07-27 18:41:30 ----A---- C:\Windows\system32\wscript.exe
2015-07-27 18:41:30 ----A---- C:\Windows\system32\scrrun.dll
2015-07-27 18:41:30 ----A---- C:\Windows\system32\cscript.exe
2015-07-27 18:41:28 ----A---- C:\Windows\system32\themeui.dll
2015-07-27 18:41:27 ----A---- C:\Windows\system32\xmllite.dll
2015-07-27 18:41:22 ----A---- C:\Windows\system32\cryptdlg.dll
2015-07-27 18:41:16 ----A---- C:\Windows\system32\drivers\hidparse.sys
2015-07-27 18:41:14 ----A---- C:\Windows\system32\drivers\partmgr.sys
2015-07-27 18:41:13 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2015-07-27 18:41:11 ----A---- C:\Windows\system32\secur32.dll
2015-07-27 18:41:11 ----A---- C:\Windows\system32\lsass.exe
2015-07-27 18:41:06 ----A---- C:\Windows\system32\cdd.dll
2015-07-27 18:41:05 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2015-07-27 18:40:53 ----A---- C:\Windows\system32\psisdecd.dll
2015-07-27 18:40:39 ----A---- C:\Windows\system32\crypt32.dll
2015-07-27 18:40:27 ----A---- C:\Windows\system32\dpnsvr.exe
2015-07-27 18:40:27 ----A---- C:\Windows\system32\dpnet.dll
2015-07-27 18:40:15 ----A---- C:\Windows\system32\synceng.dll
2015-07-27 18:40:13 ----A---- C:\Windows\system32\winmm.dll
2015-07-27 18:40:13 ----A---- C:\Windows\system32\mciseq.dll
2015-07-27 18:40:12 ----A---- C:\Windows\system32\WMVDECOD.DLL
2015-07-27 18:40:10 ----A---- C:\Windows\system32\winhttp.dll
2015-07-27 18:40:08 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2015-07-27 18:40:01 ----A---- C:\Windows\system32\usp10.dll
2015-07-27 18:39:58 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-07-27 18:39:58 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-07-27 18:39:20 ----A---- C:\Windows\system32\drivers\usb8023x.sys
2015-07-27 18:39:20 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-07-27 17:59:11 ----A---- C:\Windows\system32\wintrust.dll
2015-07-27 17:59:11 ----A---- C:\Windows\system32\cryptsvc.dll
2015-07-27 17:59:11 ----A---- C:\Windows\system32\cryptnet.dll
2015-07-27 17:57:16 ----A---- C:\Windows\system32\wer.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wups2.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wucltux.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wuaueng.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wuauclt.exe
2015-07-27 16:16:12 ----A---- C:\Windows\system32\wups.dll
2015-07-27 16:16:12 ----A---- C:\Windows\system32\wudriver.dll
2015-07-27 16:16:12 ----A---- C:\Windows\system32\wuapi.dll
2015-07-27 16:16:07 ----A---- C:\Windows\system32\wuwebv.dll
2015-07-27 16:16:07 ----A---- C:\Windows\system32\wuapp.exe
2015-07-26 14:19:15 ----D---- C:\Windows\system32\vi-VN
2015-07-26 14:19:15 ----D---- C:\Windows\system32\eu-ES
2015-07-26 14:19:15 ----D---- C:\Windows\system32\ca-ES
2015-07-26 12:37:41 ----D---- C:\Windows\system32\EventProviders
2015-07-26 12:37:38 ----D---- C:\a5a49092c7030ed075ff40e67867
2015-07-26 12:34:23 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2015-07-26 12:34:19 ----A---- C:\Windows\system32\SLsvc.exe
2015-07-26 12:34:19 ----A---- C:\Windows\system32\SLCExt.dll
2015-07-26 12:34:17 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2015-07-26 12:34:17 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2015-07-26 12:34:14 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2015-07-26 12:34:12 ----A---- C:\Windows\system32\mssrch.dll
2015-07-26 12:34:10 ----A---- C:\Windows\system32\drivers\spsys.sys
2015-07-26 12:34:09 ----A---- C:\Windows\system32\tquery.dll
2015-07-26 12:34:08 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2015-07-26 12:34:07 ----A---- C:\Windows\system32\scavenge.dll
2015-07-26 12:34:07 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2015-07-26 12:34:04 ----A---- C:\Windows\system32\WscEapPr.dll
2015-07-26 12:34:04 ----A---- C:\Windows\system32\wcnwiz2.dll
2015-07-26 12:34:04 ----A---- C:\Windows\system32\sysmain.dll
2015-07-26 12:34:04 ----A---- C:\Windows\system32\imapi2fs.dll
2015-07-26 12:34:01 ----A---- C:\Windows\system32\EhStorShell.dll
2015-07-26 12:34:01 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2015-07-26 12:34:00 ----A---- C:\Windows\system32\spreview.exe
2015-07-26 12:34:00 ----A---- C:\Windows\system32\spinstall.exe
2015-07-26 12:34:00 ----A---- C:\Windows\system32\drmv2clt.dll
2015-07-26 12:33:58 ----A---- C:\Windows\system32\spwizui.dll
2015-07-26 12:33:58 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2015-07-26 12:33:56 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-07-26 12:33:56 ----A---- C:\Windows\system32\p2psvc.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\mssvp.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\mssphtb.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\mssph.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2015-07-26 12:33:54 ----A---- C:\Windows\system32\sdohlp.dll
2015-07-26 12:33:54 ----A---- C:\Windows\system32\imapi2.dll
2015-07-26 12:33:53 ----A---- C:\Windows\system32\esent.dll
2015-07-26 12:33:53 ----A---- C:\Windows\system32\DevicePairing.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\wevtsvc.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\sperror.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\SLC.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\korwbrkr.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\drivers\rfcomm.sys
2015-07-26 12:33:48 ----A---- C:\Windows\system32\msjet40.dll
2015-07-26 12:33:48 ----A---- C:\Windows\system32\MPSSVC.dll
2015-07-26 12:33:47 ----A---- C:\Windows\system32\Query.dll
2015-07-26 12:33:46 ----A---- C:\Windows\system32\qmgr.dll
2015-07-26 12:33:46 ----A---- C:\Windows\system32\msexch40.dll
2015-07-26 12:33:46 ----A---- C:\Windows\system32\diagperf.dll
2015-07-26 12:33:45 ----A---- C:\Windows\system32\srchadmin.dll
2015-07-26 12:33:45 ----A---- C:\Windows\system32\P2PGraph.dll
2015-07-26 12:33:45 ----A---- C:\Windows\system32\IasMigReader.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\winload.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\uDWM.dll
2015-07-26 12:33:44 ----A---- C:\Windows\system32\mmc.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\mblctr.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\dfsr.exe
2015-07-26 12:33:43 ----A---- C:\Windows\system32\riched20.dll
2015-07-26 12:33:43 ----A---- C:\Windows\system32\RacEngn.dll
2015-07-26 12:33:43 ----A---- C:\Windows\system32\IasMigPlugin.dll
2015-07-26 12:33:43 ----A---- C:\Windows\system32\fdBth.dll
2015-07-26 12:33:42 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-07-26 12:33:42 ----A---- C:\Windows\system32\SearchFilterHost.exe
2015-07-26 12:33:42 ----A---- C:\Windows\system32\milcore.dll
2015-07-26 12:33:41 ----A---- C:\Windows\system32\spoolss.dll
2015-07-26 12:33:41 ----A---- C:\Windows\system32\EhStorAPI.dll
2015-07-26 12:33:41 ----A---- C:\Windows\system32\CertEnroll.dll
2015-07-26 12:33:40 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2015-07-26 12:33:40 ----A---- C:\Windows\system32\msjtes40.dll
2015-07-26 12:33:40 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2015-07-26 12:33:39 ----A---- C:\Windows\system32\msvcp60.dll
2015-07-26 12:33:39 ----A---- C:\Windows\system32\gpedit.dll
2015-07-26 12:33:39 ----A---- C:\Windows\system32\fsquirt.exe
2015-07-26 12:33:38 ----A---- C:\Windows\system32\WinSAT.exe
2015-07-26 12:33:38 ----A---- C:\Windows\system32\es.dll
2015-07-26 12:33:37 ----A---- C:\Windows\system32\PresentationSettings.exe
2015-07-26 12:33:37 ----A---- C:\Windows\system32\Magnify.exe
2015-07-26 12:33:37 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2015-07-26 12:33:36 ----A---- C:\Windows\system32\mstext40.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\WebClnt.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\vssapi.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\slwmi.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\msxbde40.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\msexcl40.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\comsvcs.dll
2015-07-26 12:33:33 ----A---- C:\Windows\system32\NetProjW.dll
2015-07-26 12:33:32 ----A---- C:\Windows\system32\propsys.dll
2015-07-26 12:33:32 ----A---- C:\Windows\system32\newdev.dll
2015-07-26 12:33:32 ----A---- C:\Windows\system32\msrepl40.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\setupapi.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\rpcss.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\iasrecst.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\gpsvc.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\eudcedit.exe
2015-07-26 12:33:31 ----A---- C:\Windows\explorer.exe
2015-07-26 12:33:30 ----A---- C:\Windows\system32\mspbde40.dll
2015-07-26 12:33:30 ----A---- C:\Windows\system32\d3d9.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\msrd3x40.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\msltus40.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\msdtctm.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\EhStorAuthn.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\davclnt.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\wevtapi.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\photowiz.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\nlhtml.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\browseui.dll
2015-07-26 12:33:27 ----A---- C:\Windows\system32\user32.dll
2015-07-26 12:33:26 ----A---- C:\Windows\system32\samsrv.dll
2015-07-26 12:33:26 ----A---- C:\Windows\system32\ci.dll
2015-07-26 12:33:25 ----A---- C:\Windows\system32\WcnNetsh.dll
2015-07-26 12:33:25 ----A---- C:\Windows\system32\SLCommDlg.dll
2015-07-26 12:33:24 ----A---- C:\Windows\system32\netshell.dll
2015-07-26 12:33:24 ----A---- C:\Windows\system32\drivers\rdbss.sys
2015-07-26 12:33:24 ----A---- C:\Windows\system32\compcln.exe
2015-07-26 12:33:24 ----A---- C:\Windows\system32\apds.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\xmlfilter.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\mswstr10.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\emdmgmt.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\drivers\netio.sys
2015-07-26 12:33:22 ----A---- C:\Windows\system32\VSSVC.exe
2015-07-26 12:33:22 ----A---- C:\Windows\system32\QAGENTRT.DLL
2015-07-26 12:33:21 ----A---- C:\Windows\system32\SLUI.exe
2015-07-26 12:33:21 ----A---- C:\Windows\system32\eapphost.dll
2015-07-26 12:33:20 ----A---- C:\Windows\system32\sqlsrv32.dll
2015-07-26 12:33:20 ----A---- C:\Windows\system32\msrd2x40.dll
2015-07-26 12:33:20 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2015-07-26 12:33:19 ----A---- C:\Windows\system32\winresume.exe
2015-07-26 12:33:19 ----A---- C:\Windows\system32\propdefs.dll
2015-07-26 12:33:18 ----A---- C:\Windows\system32\wevtutil.exe
2015-07-26 12:33:18 ----A---- C:\Windows\system32\dbgeng.dll
2015-07-26 12:33:17 ----A---- C:\Windows\system32\swprv.dll
2015-07-26 12:33:17 ----A---- C:\Windows\system32\mssitlb.dll
2015-07-26 12:33:16 ----A---- C:\Windows\system32\vds.exe
2015-07-26 12:33:16 ----A---- C:\Windows\system32\mmcndmgr.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\netlogon.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\msctfp.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\fdBthProxy.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\drvinst.exe
2015-07-26 12:33:15 ----A---- C:\Windows\system32\devmgr.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\Wldap32.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\wcnwiz.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\msscb.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\evr.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\BFE.DLL
2015-07-26 12:33:14 ----A---- C:\Windows\system32\adsldpc.dll
2015-07-26 12:33:13 ----A---- C:\Windows\system32\WMVSDECD.DLL
2015-07-26 12:33:12 ----A---- C:\Windows\system32\wercon.exe
2015-07-26 12:33:12 ----A---- C:\Windows\system32\wcncsvc.dll
2015-07-26 12:33:12 ----A---- C:\Windows\system32\mimefilt.dll
2015-07-26 12:33:12 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2015-07-26 12:33:12 ----A---- C:\Windows\system32\comdlg32.dll
2015-07-26 12:33:12 ----A---- C:\Windows\system32\certcli.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\mswdat10.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\msjter40.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\msdtcprx.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\ipsmsnap.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\WMNetMgr.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\w32time.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\umpnpmgr.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\rtffilt.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\reg.exe
2015-07-26 12:33:09 ----A---- C:\Windows\system32\rsaenh.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2015-07-26 12:33:09 ----A---- C:\Windows\system32\msshooks.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\msscntrs.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\IPSECSVC.DLL
2015-07-26 12:33:09 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-07-26 12:33:09 ----A---- C:\Windows\system32\bthserv.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\bcrypt.dll
2015-07-26 12:33:08 ----A---- C:\Windows\system32\msstrc.dll
2015-07-26 12:33:08 ----A---- C:\Windows\system32\MMDevAPI.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\mtxclu.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\inetpp.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\hidserv.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\fundisc.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\wdc.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\imapi.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\chsbrkr.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\drivers\pci.sys
2015-07-26 12:33:05 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2015-07-26 12:33:04 ----A---- C:\Windows\system32\rasmans.dll
2015-07-26 12:33:04 ----A---- C:\Windows\system32\pnidui.dll
2015-07-26 12:33:04 ----A---- C:\Windows\system32\iassdo.dll
2015-07-26 12:33:04 ----A---- C:\Windows\system32\drivers\termdd.sys
2015-07-26 12:33:04 ----A---- C:\Windows\system32\autofmt.exe
2015-07-26 12:33:03 ----A---- C:\Windows\system32\wersvc.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\slmgr.vbs
2015-07-26 12:33:03 ----A---- C:\Windows\system32\PSHED.DLL
2015-07-26 12:33:03 ----A---- C:\Windows\system32\pdh.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\Storport.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\ataport.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\acpi.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\dhcpcsvc.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\CertEnrollUI.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\azroles.dll
2015-07-26 12:33:01 ----A---- C:\Windows\system32\winlogon.exe
2015-07-26 12:33:01 ----A---- C:\Windows\system32\pidgenx.dll
2015-07-26 12:33:00 ----A---- C:\Windows\system32\SyncCenter.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\spp.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\SLUINotify.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\sethc.exe
2015-07-26 12:32:59 ----A---- C:\Windows\system32\msjetoledb40.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\kd1394.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\iassam.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\drivers\mup.sys
2015-07-26 12:32:59 ----A---- C:\Windows\system32\drivers\disk.sys
2015-07-26 12:32:59 ----A---- C:\Windows\system32\comuid.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\certmgr.dll
2015-07-26 12:32:58 ----A---- C:\Windows\system32\wisptis.exe
2015-07-26 12:32:58 ----A---- C:\Windows\system32\untfs.dll
2015-07-26 12:32:58 ----A---- C:\Windows\system32\scrobj.dll
2015-07-26 12:32:58 ----A---- C:\Windows\system32\dwm.exe
2015-07-26 12:32:58 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2015-07-26 12:32:58 ----A---- C:\Windows\system32\drivers\pciidex.sys
2015-07-26 12:32:58 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-07-26 12:32:58 ----A---- C:\Windows\system32\autochk.exe
2015-07-26 12:32:57 ----A---- C:\Windows\system32\printui.dll
2015-07-26 12:32:57 ----A---- C:\Windows\system32\iasnap.dll
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\pciide.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\msrpc.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\ecache.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\autoconv.exe
2015-07-26 12:32:56 ----A---- C:\Windows\system32\wow32.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\userenv.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\osk.exe
2015-07-26 12:32:56 ----A---- C:\Windows\system32\onex.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\kdcom.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\drivers\Dumpata.sys
2015-07-26 12:32:56 ----A---- C:\Windows\system32\basecsp.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\audiodg.exe
2015-07-26 12:32:55 ----A---- C:\Windows\system32\RelMon.dll
2015-07-26 12:32:55 ----A---- C:\Windows\system32\mswsock.dll
2015-07-26 12:32:55 ----A---- C:\Windows\system32\kdusb.dll
2015-07-26 12:32:55 ----A---- C:\Windows\system32\drivers\atapi.sys
2015-07-26 12:32:54 ----A---- C:\Windows\system32\WinSCard.dll
2015-07-26 12:32:54 ----A---- C:\Windows\system32\WerFaultSecure.exe
2015-07-26 12:32:54 ----A---- C:\Windows\system32\spcmsg.dll
2015-07-26 12:32:54 ----A---- C:\Windows\system32\msftedit.dll
2015-07-26 12:32:54 ----A---- C:\Windows\system32\drivers\netbt.sys
2015-07-26 12:32:53 ----A---- C:\Windows\system32\Utilman.exe
2015-07-26 12:32:53 ----A---- C:\Windows\system32\offfilt.dll
2015-07-26 12:32:53 ----A---- C:\Windows\system32\drivers\bthenum.sys
2015-07-26 12:32:52 ----A---- C:\Windows\system32\wsepno.dll
2015-07-26 12:32:52 ----A---- C:\Windows\system32\WerFault.exe
2015-07-26 12:32:52 ----A---- C:\Windows\system32\SndVol.exe
2015-07-26 12:32:52 ----A---- C:\Windows\system32\mscms.dll
2015-07-26 12:32:52 ----A---- C:\Windows\system32\mcmde.dll
2015-07-26 12:32:52 ----A---- C:\Windows\system32\diskraid.exe
2015-07-26 12:32:52 ----A---- C:\Windows\system32\apphelp.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\wiaservc.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\ulib.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\sysclass.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\prnntfy.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\odbccp32.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\msnetobj.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\iasdatastore.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\adsmsext.dll
2015-07-26 12:32:50 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2015-07-26 12:32:50 ----A---- C:\Windows\system32\dsound.dll
2015-07-26 12:32:50 ----A---- C:\Windows\system32\cryptui.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\wscntfy.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\rastapi.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\pnpsetup.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\fdProxy.dll
2015-07-26 12:32:47 ----A---- C:\Windows\system32\ipsecsnp.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\wscsvc.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\WMVENCOD.DLL
2015-07-26 12:32:46 ----A---- C:\Windows\system32\wlangpui.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\vdsdyn.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\rasapi32.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\logman.exe
2015-07-26 12:32:46 ----A---- C:\Windows\system32\iashlpr.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\gpapi.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\diskpart.exe
2015-07-26 12:32:46 ----A---- C:\Windows\system32\brcpl.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\zipfldr.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\wusa.exe
2015-07-26 12:32:45 ----A---- C:\Windows\system32\wshext.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\wpccpl.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\regsvc.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\ntprint.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\iasrad.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\findstr.exe
2015-07-26 12:32:44 ----A---- C:\Windows\system32\rasdlg.dll
2015-07-26 12:32:44 ----A---- C:\Windows\system32\netcenter.dll
2015-07-26 12:32:44 ----A---- C:\Windows\system32\iassvcs.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\wsnmp32.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\uxsms.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\themecpl.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\mssprxy.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\slcc.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\scansetting.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\powrprof.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\ntmarta.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\msutb.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\mstlsapi.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\iasads.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\drivers\ks.sys
2015-07-26 12:32:42 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2015-07-26 12:32:41 ----A---- C:\Windows\system32\powercpl.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\newdev.exe
2015-07-26 12:32:41 ----A---- C:\Windows\system32\networkmap.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\iasacct.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\authz.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\systemcpl.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\sud.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\pcaui.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2015-07-26 12:32:40 ----A---- C:\Windows\system32\dot3svc.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\connect.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\usercpl.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\samlib.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\mmci.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\drivers\sdbus.sys
2015-07-26 12:32:39 ----A---- C:\Windows\system32\autoplay.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\accessibilitycpl.dll
2015-07-26 12:32:38 ----A---- C:\Windows\system32\wlanpref.dll
2015-07-26 12:32:38 ----A---- C:\Windows\system32\rpchttp.dll
2015-07-26 12:32:38 ----A---- C:\Windows\system32\regapi.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\wpcao.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\vdsutil.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\tapisrv.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\scksp.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\oleprn.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\msinfo32.exe
2015-07-26 12:32:37 ----A---- C:\Windows\system32\mpr.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\imm32.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\feclient.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\drivers\exfat.sys
2015-07-26 12:32:37 ----A---- C:\Windows\system32\dot3msm.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\AudioSes.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\wscisvif.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\rekeywiz.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\pnpui.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\perfdisk.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\ncryptui.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\iaspolcy.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\hdwwiz.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\Faultrep.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\dpapimig.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\DeviceEject.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\certreq.exe
2015-07-26 12:32:35 ----A---- C:\Windows\system32\TSTheme.exe
2015-07-26 12:32:35 ----A---- C:\Windows\system32\tcpipcfg.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\spwinsat.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\scecli.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\rasplap.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\rasgcw.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\PnPUnattend.exe
2015-07-26 12:32:35 ----A---- C:\Windows\system32\fdWSD.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\cmmon32.exe
2015-07-26 12:32:34 ----A---- C:\Windows\system32\whealogr.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\tcpmon.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\srcore.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\SnippingTool.exe
2015-07-26 12:32:34 ----A---- C:\Windows\system32\SCardSvr.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2015-07-26 12:32:34 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2015-07-26 12:32:34 ----A---- C:\Windows\system32\conime.exe
2015-07-26 12:32:34 ----A---- C:\Windows\system32\cmdial32.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\wlanui.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\wiaaut.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\raschap.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\MSVidCtl.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\fontext.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\drivers\npfs.sys
2015-07-26 12:32:32 ----A---- C:\Windows\system32\WMVXENCD.DLL
2015-07-26 12:32:32 ----A---- C:\Windows\system32\shwebsvc.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\rasppp.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\PnPutil.exe
2015-07-26 12:32:32 ----A---- C:\Windows\system32\oobefldr.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\dsprop.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-07-26 12:32:32 ----A---- C:\Windows\system32\dimsroam.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\shsetup.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\rasmontr.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\mscandui.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\modemui.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\chtbrkr.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\drivers\pacer.sys
2015-07-26 12:32:30 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\wlgpclnt.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\rdpwsx.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\dataclen.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\credui.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\blackbox.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\WSDMon.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\wmpeffects.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\netplwiz.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-07-26 12:32:29 ----A---- C:\Windows\system32\drivers\ohci1394.sys
2015-07-26 12:32:29 ----A---- C:\Windows\system32\certprop.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\wscapi.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\wpcsvc.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\thawbrkr.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\networkexplorer.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\msscp.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\msimtf.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\logagent.exe
2015-07-26 12:32:28 ----A---- C:\Windows\system32\InkEd.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\ifmon.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\gpresult.exe
2015-07-26 12:32:28 ----A---- C:\Windows\system32\drivers\watchdog.sys
2015-07-26 12:32:28 ----A---- C:\Windows\system32\cipher.exe
2015-07-26 12:32:27 ----A---- C:\Windows\system32\softkbd.dll
2015-07-26 12:32:27 ----A---- C:\Windows\system32\sendmail.dll
2015-07-26 12:32:27 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2015-07-26 12:32:26 ----A---- C:\Windows\system32\msctfui.dll
2015-07-26 12:32:26 ----A---- C:\Windows\system32\drivers\smb.sys
2015-07-26 12:32:26 ----A---- C:\Windows\system32\drivers\hidusb.sys
2015-07-26 12:32:25 ----A---- C:\Windows\system32\puiapi.dll
2015-07-26 12:32:25 ----A---- C:\Windows\system32\olepro32.dll
2015-07-26 12:32:25 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-07-26 12:32:25 ----A---- C:\Windows\system32\drivers\udfs.sys
2015-07-26 12:32:25 ----A---- C:\Windows\system32\dmsynth.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\wshbth.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\version.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\SLLUA.exe
2015-07-26 12:32:24 ----A---- C:\Windows\system32\msisip.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\mprapi.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\input.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\fc.exe
2015-07-26 12:32:24 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\msjint40.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\l2nacp.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\ftp.exe
2015-07-26 12:32:23 ----A---- C:\Windows\system32\fdSSDP.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\eapp3hst.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2015-07-26 12:32:23 ----A---- C:\Windows\system32\dmusic.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\cscdll.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\cscapi.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\wsdchngr.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\Storprop.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\SMBHelperClass.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\rasdial.exe
2015-07-26 12:32:22 ----A---- C:\Windows\system32\rasdiag.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\ipconfig.exe
2015-07-26 12:32:22 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\fdWCN.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\eappcfg.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\drivers\rassstp.sys
2015-07-26 12:32:22 ----A---- C:\Windows\system32\dot3cfg.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\bthudtask.exe
2015-07-26 12:32:22 ----A---- C:\Windows\system32\bthci.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\slcinst.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\ocsetup.exe
2015-07-26 12:32:21 ----A---- C:\Windows\system32\nslookup.exe
2015-07-26 12:32:21 ----A---- C:\Windows\system32\networkitemfactory.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\hbaapi.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\fdeploy.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\eappgnui.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\drivers\hidclass.sys
2015-07-26 12:32:20 ----A---- C:\Windows\system32\PNPXAssoc.dll
2015-07-26 12:32:20 ----A---- C:\Windows\system32\mmcico.dll
2015-07-26 12:32:20 ----A---- C:\Windows\system32\gpupdate.exe
2015-07-26 12:32:20 ----A---- C:\Windows\system32\drivers\nwifi.sys
2015-07-26 12:32:20 ----A---- C:\Windows\system32\drivers\cdrom.sys
2015-07-26 12:32:20 ----A---- C:\Windows\system32\csrstub.exe
2015-07-26 12:32:20 ----A---- C:\Windows\system32\cbsra.exe
2015-07-26 12:32:19 ----A---- C:\Windows\system32\NcdProp.dll
2015-07-26 12:32:19 ----A---- C:\Windows\system32\iscsilog.dll
2015-07-26 12:32:19 ----A---- C:\Windows\system32\bitsigd.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\winrnr.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\vdmdbg.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\slwga.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\odbcconf.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\inetppui.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\drivers\dxg.sys
2015-07-26 12:32:18 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2015-07-26 12:32:17 ----A---- C:\Windows\system32\midimap.dll
2015-07-26 12:32:17 ----A---- C:\Windows\system32\drivers\stream.sys
2015-07-26 12:32:16 ----A---- C:\Windows\system32\drivers\rndismpx.sys
2015-07-26 12:32:16 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2015-07-26 12:32:16 ----A---- C:\Windows\system32\drivers\bridge.sys
2015-07-26 12:32:15 ----A---- C:\Windows\system32\drivers\raspppoe.sys
2015-07-26 12:32:14 ----A---- C:\Windows\system32\msimsg.dll
2015-07-26 12:32:14 ----A---- C:\Windows\system32\f3ahvoas.dll
2015-07-26 12:31:29 ----A---- C:\Windows\system32\SmiEngine.dll
2015-07-26 12:31:13 ----A---- C:\Windows\system32\wdscore.dll
2015-07-26 12:31:13 ----A---- C:\Windows\system32\PkgMgr.exe
2015-07-26 12:30:24 ----A---- C:\Windows\system32\drvstore.dll
2015-07-21 09:37:31 ----D---- C:\Users\PC\AppData\Roaming\vlc
2015-07-20 22:21:17 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2015-07-20 22:21:17 ----A---- C:\Windows\system32\PresentationHost.exe
2015-07-20 22:21:17 ----A---- C:\Windows\system32\netfxperf.dll
2015-07-20 22:21:17 ----A---- C:\Windows\system32\mscoree.dll
2015-07-20 21:57:40 ----A---- C:\Windows\system32\srvsvc.dll
2015-07-20 21:57:40 ----A---- C:\Windows\system32\netevent.dll
2015-07-19 17:36:11 ----D---- C:\Windows\system32\WindowsPowerShell
2015-07-19 16:58:52 ----D---- C:\Windows\system32\MRT
2015-07-19 15:28:24 ----A---- C:\Windows\system32\nshhttp.dll
2015-07-19 15:28:22 ----A---- C:\Windows\system32\httpapi.dll
2015-07-19 15:28:22 ----A---- C:\Windows\system32\drivers\http.sys
2015-07-19 15:25:11 ----A---- C:\Windows\system32\winrsmgr.dll
2015-07-19 15:25:03 ----A---- C:\Windows\system32\wsmprovhost.exe
2015-07-19 15:25:03 ----A---- C:\Windows\system32\wsmplpxy.dll
2015-07-19 15:25:03 ----A---- C:\Windows\system32\winrssrv.dll
2015-07-19 15:25:03 ----A---- C:\Windows\system32\winrshost.exe
2015-07-19 15:25:03 ----A---- C:\Windows\system32\winrs.exe
2015-07-19 15:25:02 ----A---- C:\Windows\system32\WsmRes.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wevtfwd.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wecutil.exe
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wecsvc.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wecapi.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\pwrshplugin.dll
2015-07-19 15:24:59 ----A---- C:\Windows\system32\winrm.vbs
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WsmWmiPl.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WsmSvc.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WsmAuto.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2015-07-19 15:24:58 ----A---- C:\Windows\system32\winrscmd.dll
2015-07-19 15:22:58 ----A---- C:\Windows\system32\wdigest.dll
2015-07-19 15:22:52 ----A---- C:\Windows\system32\gameux.dll
2015-07-19 15:22:51 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2015-07-19 15:22:51 ----A---- C:\Windows\system32\Apphlpdm.dll
2015-07-19 15:22:03 ----A---- C:\Windows\system32\odbc32.dll
2015-07-19 15:21:58 ----A---- C:\Windows\system32\iphlpsvc.dll
2015-07-19 15:21:58 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-07-19 15:21:53 ----A---- C:\Windows\system32\WMVCORE.DLL
2015-07-19 15:21:51 ----A---- C:\Windows\system32\rrinstaller.exe
2015-07-19 15:21:51 ----A---- C:\Windows\system32\mfpmp.exe
2015-07-19 15:21:51 ----A---- C:\Windows\system32\mferror.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlansvc.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlansec.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlanmsm.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlanhlp.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlanapi.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\L2SecHC.dll
2015-07-19 15:21:46 ----A---- C:\Windows\system32\asycfilt.dll
2015-07-19 15:21:45 ----A---- C:\Windows\system32\lpk.dll
2015-07-19 15:21:45 ----A---- C:\Windows\system32\fontsub.dll
2015-07-19 15:21:44 ----A---- C:\Windows\system32\dciman32.dll
2015-07-19 15:21:40 ----A---- C:\Windows\system32\drivers\bowser.sys
2015-07-19 15:21:28 ----A---- C:\Windows\system32\mfc40u.dll
2015-07-19 15:21:28 ----A---- C:\Windows\system32\mfc40.dll
2015-07-19 15:21:16 ----A---- C:\Windows\system32\shsvcs.dll
2015-07-19 15:21:07 ----A---- C:\Windows\system32\sdclt.exe
2015-07-19 15:21:05 ----A---- C:\Windows\system32\wkssvc.dll
2015-07-19 15:21:00 ----A---- C:\Windows\system32\rtutils.dll
2015-07-19 15:20:49 ----A---- C:\Windows\system32\inetcomm.dll
2015-07-19 15:20:47 ----A---- C:\Windows\system32\MP4SDECD.DLL
2015-07-19 15:20:10 ----A---- C:\Windows\system32\iccvid.dll
2015-07-19 15:20:03 ----A---- C:\Windows\system32\netiohlp.dll
2015-07-19 15:20:02 ----A---- C:\Windows\system32\TCPSVCS.EXE
2015-07-19 15:20:02 ----A---- C:\Windows\system32\NETSTAT.EXE
2015-07-19 15:20:02 ----A---- C:\Windows\system32\ARP.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\ROUTE.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\MRINFO.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\HOSTNAME.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\finger.exe
2015-07-19 15:18:11 ----A---- C:\Windows\system32\drivers\srv.sys
2015-07-19 15:18:09 ----A---- C:\Windows\system32\spoolsv.exe
2015-07-19 15:17:50 ----A---- C:\Windows\system32\drivers\srvnet.sys
2015-07-19 15:17:50 ----A---- C:\Windows\system32\drivers\srv2.sys
2015-07-19 15:17:42 ----A---- C:\Windows\system32\t2embed.dll
2015-07-19 15:17:38 ----A---- C:\Windows\system32\sbe.dll
2015-07-19 15:17:37 ----A---- C:\Windows\system32\sbeio.dll
2015-07-19 15:17:33 ----A---- C:\Windows\system32\mfc42.dll
2015-07-19 15:17:32 ----A---- C:\Windows\system32\mfc42u.dll
2015-07-19 15:17:00 ----A---- C:\Windows\system32\dnsrslvr.dll
2015-07-19 15:17:00 ----A---- C:\Windows\system32\dnscacheugc.exe
2015-07-19 15:17:00 ----A---- C:\Windows\system32\dnsapi.dll
2015-07-19 15:16:51 ----A---- C:\Windows\system32\wmpmde.dll
2015-07-19 15:16:49 ----A---- C:\Windows\system32\atl.dll
2015-07-19 15:16:43 ----A---- C:\Windows\system32\drivers\dfsc.sys
2015-07-19 15:06:48 ----D---- C:\Windows\system32\vbox
2015-07-19 14:57:04 ----A---- C:\Windows\system32\taskschd.dll
2015-07-19 14:57:04 ----A---- C:\Windows\system32\schedsvc.dll
2015-07-19 14:57:03 ----A---- C:\Windows\system32\wmicmiplugin.dll
2015-07-19 14:57:03 ----A---- C:\Windows\system32\taskeng.exe
2015-07-19 14:57:03 ----A---- C:\Windows\system32\taskcomp.dll
2015-07-19 14:57:00 ----A---- C:\Windows\system32\RMActivate_isv.exe
2015-07-19 14:57:00 ----A---- C:\Windows\system32\RMActivate.exe
2015-07-19 14:56:59 ----A---- C:\Windows\system32\secproc_isv.dll
2015-07-19 14:56:59 ----A---- C:\Windows\system32\secproc.dll
2015-07-19 14:56:59 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2015-07-19 14:56:59 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2015-07-19 14:56:59 ----A---- C:\Windows\system32\msdrm.dll
2015-07-19 14:56:58 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2015-07-19 14:56:58 ----A---- C:\Windows\system32\secproc_ssp.dll
2015-07-19 14:56:48 ----A---- C:\Windows\system32\wmpdxm.dll
2015-07-19 14:50:42 ----A---- C:\Windows\system32\msasn1.dll
2015-07-19 14:50:35 ----A---- C:\Windows\system32\tsgqec.dll
2015-07-19 14:50:35 ----A---- C:\Windows\system32\tscupgrd.exe
2015-07-19 14:50:35 ----A---- C:\Windows\system32\mstsc.exe
2015-07-19 14:50:35 ----A---- C:\Windows\system32\aaclient.dll
2015-07-19 14:49:51 ----N---- C:\Windows\system32\MpSigStub.exe
2015-07-19 14:32:42 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2015-07-19 14:32:39 ----A---- C:\Windows\system32\rastls.dll
2015-07-19 14:32:36 ----A---- C:\Windows\system32\WSDApi.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\tsbyuv.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\msyuv.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\msvidc32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\msrle32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\mciavi32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\iyuv_32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\avifil32.dll
2015-07-19 14:32:22 ----A---- C:\Windows\system32\msvfw32.dll
2015-07-19 14:32:09 ----A---- C:\Windows\system32\unregmp2.exe
2015-07-19 14:31:46 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2015-07-19 14:16:02 ----A---- C:\Windows\system32\cabview.dll
2015-07-19 13:53:57 ----D---- C:\ProgramData\AVAST Software
2015-07-19 13:18:39 ----D---- C:\Users\PC\AppData\Roaming\Adobe
2015-07-19 06:51:36 ----A---- C:\Pass.txt
2015-07-19 05:53:44 ----ASH---- C:\pagefile.sys
2015-07-18 21:15:16 ----D---- C:\Users\PC\AppData\Roaming\ATI
2015-07-18 21:15:08 ----D---- C:\Users\PC\AppData\Roaming\Symantec
2015-07-18 21:14:48 ----D---- C:\Users\PC\AppData\Roaming\Macromedia
2015-07-18 21:14:22 ----D---- C:\Users\PC\AppData\Roaming\Identities
2015-07-18 21:11:54 ----D---- C:\ProgramData\Adobe
2015-07-18 21:11:46 ----D---- C:\Program Files\Common Files\Adobe
2015-07-18 21:11:46 ----D---- C:\Program Files\Adobe
2015-07-18 21:07:42 ----SD---- C:\Users\PC\AppData\Roaming\Microsoft
2015-07-18 21:07:42 ----D---- C:\Users\PC\AppData\Roaming\Media Center Programs
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Templates
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Start Menu
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Favorites
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Documents
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Desktop
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Application Data
2015-07-18 21:01:05 ----SHD---- C:\Documents and Settings
2015-07-18 21:00:21 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 1 month======

2015-08-03 06:11:17 ----D---- C:\Windows\Prefetch
2015-08-03 06:11:04 ----RD---- C:\Program Files
2015-08-02 09:45:44 ----A---- C:\Windows\system32\acovcnt.exe
2015-08-02 09:07:07 ----D---- C:\Windows\system32\Tasks
2015-08-02 09:06:46 ----D---- C:\Windows\system32\drivers
2015-08-02 09:06:38 ----D---- C:\Windows\System32
2015-08-02 09:06:36 ----D---- C:\Windows
2015-08-02 07:56:40 ----A---- C:\Windows\system.ini
2015-08-02 07:56:26 ----D---- C:\Windows\system32\drivers\etc
2015-08-02 07:48:56 ----D---- C:\Windows\AppPatch
2015-08-02 07:48:51 ----D---- C:\Program Files\Common Files
2015-08-02 06:52:10 ----SD---- C:\ProgramData\Microsoft
2015-08-01 06:30:16 ----D---- C:\Windows\inf
2015-08-01 06:30:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-30 13:04:45 ----SHD---- C:\Windows\Installer
2015-07-30 12:25:16 ----D---- C:\Windows\Microsoft.NET
2015-07-29 19:55:24 ----D---- C:\Windows\rescache
2015-07-29 13:19:46 ----D---- C:\Windows\system32\catroot
2015-07-29 13:18:16 ----D---- C:\Windows\winsxs
2015-07-29 13:06:38 ----D---- C:\Windows\system32\en-US
2015-07-29 13:02:45 ----D---- C:\Windows\system32\catroot2
2015-07-29 12:39:31 ----D---- C:\Program Files\Internet Explorer
2015-07-29 11:20:07 ----RSD---- C:\Windows\assembly
2015-07-29 10:30:13 ----D---- C:\Windows\system32\cs-CZ
2015-07-29 10:30:10 ----D---- C:\Windows\system32\wbem
2015-07-29 10:30:09 ----D---- C:\Windows\system32\tr-TR
2015-07-29 10:30:09 ----D---- C:\Windows\system32\pt-PT
2015-07-29 10:30:09 ----D---- C:\Windows\system32\fr-FR
2015-07-29 10:30:09 ----D---- C:\Windows\system32\el-GR
2015-07-29 10:30:09 ----D---- C:\Windows\system32\de-DE
2015-07-29 10:30:08 ----D---- C:\Windows\system32\zh-TW
2015-07-29 10:30:08 ----D---- C:\Windows\system32\zh-HK
2015-07-29 10:30:08 ----D---- C:\Windows\system32\zh-CN
2015-07-29 10:30:08 ----D---- C:\Windows\system32\uk-UA
2015-07-29 10:30:08 ----D---- C:\Windows\system32\th-TH
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sv-SE
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sr-Latn-CS
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sl-SI
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sk-SK
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ru-RU
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ro-RO
2015-07-29 10:30:08 ----D---- C:\Windows\system32\pt-BR
2015-07-29 10:30:08 ----D---- C:\Windows\system32\pl-PL
2015-07-29 10:30:08 ----D---- C:\Windows\system32\nl-NL
2015-07-29 10:30:08 ----D---- C:\Windows\system32\nb-NO
2015-07-29 10:30:08 ----D---- C:\Windows\system32\lv-LV
2015-07-29 10:30:08 ----D---- C:\Windows\system32\lt-LT
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ko-KR
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ja-JP
2015-07-29 10:30:08 ----D---- C:\Windows\system32\it-IT
2015-07-29 10:30:08 ----D---- C:\Windows\system32\hu-HU
2015-07-29 10:30:08 ----D---- C:\Windows\system32\hr-HR
2015-07-29 10:30:08 ----D---- C:\Windows\system32\he-IL
2015-07-29 10:30:08 ----D---- C:\Windows\system32\fi-FI
2015-07-29 10:30:08 ----D---- C:\Windows\system32\et-EE
2015-07-29 10:30:08 ----D---- C:\Windows\system32\es-ES
2015-07-29 10:30:08 ----D---- C:\Windows\system32\da-DK
2015-07-29 10:30:08 ----D---- C:\Windows\system32\bg-BG
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ar-SA
2015-07-29 10:30:02 ----D---- C:\Windows\system32\XPSViewer
2015-07-29 10:30:02 ----D---- C:\Program Files\Windows Journal
2015-07-29 10:30:01 ----RSD---- C:\Windows\Fonts
2015-07-29 10:29:59 ----RD---- C:\Windows\Offline Web Pages
2015-07-29 10:29:59 ----D---- C:\Windows\system32\migration
2015-07-29 10:29:59 ----D---- C:\Windows\PolicyDefinitions
2015-07-29 10:29:58 ----SD---- C:\Windows\Downloaded Program Files
2015-07-29 10:29:57 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-07-29 10:29:34 ----D---- C:\Windows\system32\drivers\UMDF
2015-07-29 10:29:07 ----D---- C:\Windows\system32\RTCOM
2015-07-29 08:35:25 ----D---- C:\Windows\Logs
2015-07-29 08:12:17 ----D---- C:\Windows\ehome
2015-07-28 04:42:37 ----D---- C:\Program Files\Windows Mail
2015-07-28 04:42:33 ----D---- C:\Program Files\Windows Media Player
2015-07-28 04:42:33 ----D---- C:\Program Files\Common Files\System
2015-07-26 15:00:08 ----D---- C:\Program Files\Microsoft.NET
2015-07-26 14:26:50 ----D---- C:\Boot
2015-07-26 14:19:40 ----D---- C:\Program Files\Windows Sidebar
2015-07-26 14:19:40 ----D---- C:\Program Files\Windows Calendar
2015-07-26 14:19:40 ----D---- C:\Program Files\Movie Maker
2015-07-26 14:19:39 ----D---- C:\Program Files\Windows Photo Gallery
2015-07-26 14:19:39 ----D---- C:\Program Files\Windows Collaboration
2015-07-26 14:19:37 ----D---- C:\Windows\servicing
2015-07-26 14:19:37 ----D---- C:\Program Files\Windows Defender
2015-07-26 14:19:34 ----D---- C:\Windows\system32\oobe
2015-07-26 14:19:34 ----D---- C:\Windows\IME
2015-07-26 14:19:33 ----D---- C:\Windows\system32\setup
2015-07-26 14:19:33 ----D---- C:\Windows\system32\cs
2015-07-26 14:19:33 ----D---- C:\Windows\system32\AdvancedInstallers
2015-07-26 14:19:32 ----D---- C:\Windows\system32\SLUI
2015-07-26 14:19:31 ----D---- C:\Windows\system32\manifeststore
2015-07-26 14:19:30 ----D---- C:\Windows\system32\migwiz
2015-07-26 14:19:15 ----D---- C:\Windows\system32\Boot
2015-07-26 14:07:10 ----A---- C:\Windows\fonts\GlobalUserInterface.CompositeFont
2015-07-26 12:13:42 ----D---- C:\Windows\WindowsMobile
2015-07-24 22:05:11 ----D---- C:\Windows\system32\NDF
2015-07-20 22:29:52 ----D---- C:\Windows\system32\en
2015-07-20 22:29:52 ----D---- C:\Windows\en-US
2015-07-20 22:29:46 ----D---- C:\Windows\system32\drivers\en-US
2015-07-20 06:32:24 ----D---- C:\Windows\system32\WDI
2015-07-19 16:58:52 ----D---- C:\Windows\Debug
2015-07-19 16:20:31 ----D---- C:\Windows\Tasks
2015-07-19 13:59:07 ----D---- C:\Windows\SoftwareDistribution
2015-07-19 13:53:57 ----D---- C:\ProgramData
2015-07-19 13:14:29 ----D---- C:\Program Files\Common Files\Symantec Shared
2015-07-19 13:08:54 ----D---- C:\ProgramData\Symantec
2015-07-18 21:07:41 ----RD---- C:\Users

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ahcix86s;ahcix86s; C:\Windows\system32\DRIVERS\ahcix86s.sys [2008-05-27 173576]
R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2007-08-11 29752]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-08-02 49776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-08-02 208664]
R0 AtiPcie;ATI PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2008-04-28 14352]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2008-05-29 15416]
R0 ngvss;ngvss; C:\Windows\system32\drivers\ngvss.sys [2015-08-02 95112]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2015-08-02 55200]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-08-02 788784]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-08-02 433264]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-08-02 24016]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-08-02 76000]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2008-02-16 46592]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-08-02 220752]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-03-21 1203776]
R3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2015-08-02 161472]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-01-13 954368]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-04-30 3551232]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-06-17 30208]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-05-13 81960]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2008-05-13 100392]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2008-01-29 29736]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2008-05-13 17320]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-06-17 2153688]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-06-03 15928]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-21 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-15 7680]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-02 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-07 196400]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2015-08-02 57888]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-21 508416]
S3 catchme;catchme; \??\C:\Users\PC\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-05-02 122368]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2007-05-18 73728]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2008-03-18 13312]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-03 94208]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-04-29 671744]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-08-02 146600]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-05-27 522792]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 SafeRemove;AMD Safely Remove Disk Drive; C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe [2008-07-07 147456]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-08-02 3218624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-27 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2014-04-11 772296]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

Re: log - (použit ComboFix) - poraďte - nerozumim

#4 Příspěvek od Tady. »

Příště (teda doufám, že nebude žádné příště - tedy žádný problém) poučena budu vzorná tazatelka s detailním popisem mé neschopnosti. :twisted:

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: log - (použit ComboFix) - poraďte - nerozumim

#5 Příspěvek od Márty84 »

V klidu, zas to nemusite s tou sebekritikou tak prehanet :D Nejste zdaleka prvni ani posledni, kdo nejdriv konal a az pak zjistil, ze existuji lepsi moznosti :-D Dulezite je se poucit a nedelat stejne chyby. Stava se to zridka, ale CF muze zborit system ;-)


Mrknem mu na zoubek, nebo sroubek ;-) Nekde se muze neco skryvat, kdyz to odpalilo antivir.


:arrow: Stahnete crystal disk info http://sourceforge.jp/projects/crystald ... 5_0_0.zip/
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)


:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.


:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) http://forum.viry.cz/viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

Re: log - (použit ComboFix) - poraďte - nerozumim

#6 Příspěvek od Tady. »

Zdravím, už jsem to.. :-)

tak CrystalDiskInfo - stáhnuto, zapnuto a... píše jen: Disk nenalezen :?:

.............................................................................................................................................

AdwCleaner :

# AdwCleaner v4.208 - Log vytvořen 05/08/2015 v 06:55:12
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-08-01.1 [Server]
# Operační system : Windows Vista (TM) Home Premium Service Pack 2 (x86)
# Uživatelské jméno : PC - PC-PC
# Spuštěno z : C:\Users\PC\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění

***** [ Služby ] *****

***** [ Soubory / Složky ] *****

***** [ Naplánované úlohy ] *****

***** [ Zástupci ] *****

***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\DeviceVM

***** [ Prohlížeče ] *****

-\\ Internet Explorer v9.0.8112.16669

-\\ Google Chrome v

*************************
AdwCleaner[R0].txt - [786 bytů] - [05/08/2015 06:52:35]
AdwCleaner[S0].txt - [711 bytů] - [05/08/2015 06:55:12]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [768 bytů] ##########


.............................................................................................................................................

Malwarebytes Anti-Malware :

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 5.8.2015
Čas skenování: 9:32:22
Protokol: log.txt
Správce: Ano

Verze: 2.1.8.1057
Databáze malwaru: v2015.08.05.02
Databáze rootkitů: v2015.08.04.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto

OS: Windows Vista Service Pack 2
CPU: x86
Souborový systém: NTFS
Uživatel: PC

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 455857
Uplynulý čas: 2 hod, 3 min, 14 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 0
(Nenalezeny žádné škodlivé položky)

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: log - (použit ComboFix) - poraďte - nerozumim

#7 Příspěvek od Márty84 »

:arrow: MBAM odinstalujte


:!: Pokud nemate, zazalohujte si radeji dulezita data (fotky, dokumenty, atd.) :!:

:arrow: Vypnete trvale Windows Defender


:!: Stahnete novy ComboFix http://download.bleepingcomputer.com/sUBs/ComboFix.exe a ulozte ho na plochu.
:arrow: Otevrete si poznamkovy blok a zkopirujte do nej tento skript

Kód: Vybrat vše

KillAll::

Registry::
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

Reboot::
Vlevo nahore kliknete na napis Soubor
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev CFScript a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Pretahntete mysi tento vytvoreny textovy dokument nad ikonu ComboFix a pustte.
ComboFix by se mel spustit a vykonat prikazy.
Az skonci (muze dojit k restartu pc), mel by se objevit novy log, ten mi sem zase zkopirujte.

:!: Kdyby po restartu nenabehl windows, restartujte znovu, mackejte klavesu F8 a zvolte - Posledni znama funkcni konfigurace
:!: Kdyz windows nabehne, ale pri spousteni ruznych programu bude hlasena chyba, staci restartovat pc a bude to v poradku
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

Re: log - (použit ComboFix) - poraďte - nerozumim

#8 Příspěvek od Tady. »

ComboFix 15-08-03.01 - PC 05.08.2015 20:52:51.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2814.1929 [GMT 2:00]
Spuštěný z: c:\users\PC\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\PC\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-05 do 2015-08-05 )))))))))))))))))))))))))))))))
.
.
2015-08-05 19:03 . 2015-08-05 19:03 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-08-05 11:24 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{21F19F52-4F79-4EFD-8059-D6EFA3AF2BF6}\mpengine.dll
2015-08-05 10:13 . 2015-08-05 10:27 -------- d-----w- C:\snapshots
2015-08-05 05:14 . 2015-08-05 05:14 -------- d-----w- c:\programdata\Malwarebytes
2015-08-05 04:52 . 2015-08-05 04:55 -------- d-----w- C:\AdwCleaner
2015-08-03 04:11 . 2015-08-03 04:11 -------- d-----w- C:\rsit
2015-08-03 04:11 . 2015-08-03 04:11 -------- d-----w- c:\program files\trend micro
2015-08-02 07:06 . 2015-08-02 07:06 57888 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2015-08-02 07:06 . 2015-08-02 07:06 161472 ----a-w- c:\windows\system32\drivers\aswStmXP.sys
2015-08-02 07:06 . 2015-08-02 07:06 433264 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-08-02 07:06 . 2015-08-02 07:06 208664 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-08-02 07:06 . 2015-08-02 07:06 76000 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-08-02 07:06 . 2015-08-02 07:06 49776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-08-02 07:06 . 2015-08-02 07:06 55200 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2015-08-02 07:06 . 2015-08-02 07:06 24016 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-08-02 07:06 . 2015-08-02 07:06 788784 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-08-02 07:06 . 2015-08-02 07:06 95112 ----a-w- c:\windows\system32\drivers\ngvss.sys
2015-08-02 07:06 . 2015-08-02 07:06 313472 ----a-w- c:\windows\system32\aswBoot.exe
2015-08-02 07:06 . 2015-08-02 07:06 43112 ----a-w- c:\windows\avastSS.scr
2015-08-02 06:54 . 2015-08-02 06:54 -------- d-----w- c:\program files\AVAST Software
2015-07-29 11:06 . 2015-07-29 11:06 -------- d-----w- c:\windows\Migration
2015-07-29 10:57 . 2015-07-29 10:57 -------- d-----w- c:\program files\7-Zip
2015-07-29 10:39 . 2011-03-12 21:55 876032 ----a-w- c:\windows\system32\XpsPrint.dll
2015-07-29 10:39 . 2015-07-03 05:19 474624 ----a-w- c:\program files\Internet Explorer\ieinstal.exe
2015-07-29 10:39 . 2015-07-03 05:18 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-29 08:30 . 2015-07-29 08:30 -------- d-----w- c:\program files\Windows Portable Devices
2015-07-29 08:24 . 2015-01-29 01:35 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2015-07-29 08:22 . 2015-01-29 01:35 975360 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-07-29 08:21 . 2015-06-25 02:57 2066432 ----a-w- c:\windows\system32\win32k.sys
2015-07-29 08:18 . 2015-07-14 16:02 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-29 08:18 . 2015-07-14 14:23 296960 ----a-w- c:\windows\system32\atmfd.dll
2015-07-29 08:17 . 2015-07-03 16:04 1316864 ----a-w- c:\windows\system32\ole32.dll
2015-07-29 08:01 . 2014-06-26 22:17 99480 ----a-w- c:\windows\system32\infocardapi.dll
2015-07-29 08:01 . 2014-06-26 22:17 8856 ----a-w- c:\windows\system32\icardres.dll
2015-07-29 08:01 . 2014-06-26 22:17 619664 ----a-w- c:\windows\system32\icardagt.exe
2015-07-29 08:01 . 2014-06-06 04:28 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-07-29 08:00 . 2015-03-09 01:01 1249280 ----a-w- c:\windows\system32\msxml3.dll
2015-07-29 08:00 . 2014-08-27 00:55 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-07-29 07:59 . 2014-06-15 22:18 1131664 ----a-w- c:\windows\system32\dfshim.dll
2015-07-29 07:59 . 2014-06-13 18:22 81560 ----a-w- c:\windows\system32\mscories.dll
2015-07-29 07:59 . 2014-06-13 18:22 156824 ----a-w- c:\windows\system32\mscorier.dll
2015-07-29 07:51 . 2015-06-17 16:50 2264576 ----a-w- c:\windows\system32\msi.dll
2015-07-29 07:51 . 2015-06-17 15:09 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-07-29 07:51 . 2014-06-02 10:31 332800 ----a-w- c:\windows\system32\msihnd.dll
2015-07-29 07:51 . 2014-06-02 10:30 1993728 ----a-w- c:\windows\system32\authui.dll
2015-07-29 07:51 . 2014-06-02 10:30 33280 ----a-w- c:\windows\system32\appinfo.dll
2015-07-29 07:51 . 2014-06-02 08:56 82432 ----a-w- c:\windows\system32\consent.exe
2015-07-29 07:44 . 2014-10-10 01:00 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-29 07:44 . 2014-10-09 23:22 619520 ----a-w- c:\windows\system32\adtschema.dll
2015-07-29 07:44 . 2014-10-10 01:01 449536 ----a-w- c:\windows\system32\termsrv.dll
2015-07-29 07:42 . 2014-12-19 00:25 115200 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2015-07-29 07:41 . 2015-06-12 16:01 298496 ----a-w- c:\windows\system32\gdi32.dll
2015-07-29 07:40 . 2014-11-04 00:19 2048 ----a-w- c:\windows\system32\tzres.dll
2015-07-29 07:35 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2015-07-29 07:35 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2015-07-29 07:35 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2015-07-29 07:24 . 2015-04-24 15:54 532480 ----a-w- c:\windows\system32\comctl32.dll
2015-07-29 07:10 . 2015-03-05 02:32 244152 ----a-w- c:\windows\system32\clfs.sys
2015-07-29 07:10 . 2015-03-05 02:23 57344 ----a-w- c:\windows\system32\clfsw32.dll
2015-07-29 07:09 . 2015-03-14 02:21 1205168 ----a-w- c:\windows\system32\ntdll.dll
2015-07-29 07:09 . 2015-01-09 02:04 49152 ----a-w- c:\windows\system32\csrsrv.dll
2015-07-29 07:09 . 2015-01-09 00:18 64000 ----a-w- c:\windows\system32\smss.exe
2015-07-29 07:09 . 2015-03-13 01:51 3604920 ----a-w- c:\windows\system32\ntkrnlpa.exe
2015-07-29 07:09 . 2015-03-13 01:51 3552184 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-07-29 07:07 . 2014-10-24 01:04 67072 ----a-w- c:\windows\system32\packager.dll
2015-07-29 06:57 . 2015-04-19 21:24 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2015-07-29 06:57 . 2015-04-19 21:24 189952 ----a-w- c:\windows\system32\d3d10core.dll
2015-07-29 06:57 . 2015-04-19 21:24 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2015-07-29 06:57 . 2015-04-19 20:18 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2015-07-29 06:57 . 2015-04-19 20:13 682496 ----a-w- c:\windows\system32\d2d1.dll
2015-07-29 06:57 . 2015-04-19 21:24 1029120 ----a-w- c:\windows\system32\d3d10.dll
2015-07-29 06:57 . 2015-04-19 20:19 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2015-07-29 06:57 . 2015-04-19 20:12 1072640 ----a-w- c:\windows\system32\DWrite.dll
2015-07-29 06:57 . 2015-04-19 20:12 801792 ----a-w- c:\windows\system32\FntCache.dll
2015-07-29 06:56 . 2014-11-26 02:05 564224 ----a-w- c:\windows\system32\oleaut32.dll
2015-07-29 06:50 . 2015-06-12 14:27 305152 ----a-w- c:\program files\Internet Explorer\ieuser.exe
2015-07-29 06:48 . 2015-04-30 13:14 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 06:44 . 2012-02-01 13:58 47104 ----a-w- c:\program files\Windows Journal\PDIALOG.exe
2015-07-29 06:44 . 2015-04-08 01:11 939008 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2015-07-29 06:44 . 2015-04-07 23:35 1850880 ----a-w- c:\program files\Windows Journal\Journal.exe
2015-07-29 06:44 . 2012-02-01 15:10 1404928 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\InkObj.dll
2015-07-29 06:44 . 2015-04-08 01:11 1219584 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2015-07-29 06:44 . 2015-04-08 01:11 985088 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2015-07-29 06:44 . 2015-04-08 01:11 967168 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2015-07-29 06:38 . 2015-01-21 02:02 807936 ----a-w- c:\windows\system32\msctf.dll
2015-07-29 06:37 . 2014-08-12 02:25 729600 ----a-w- c:\windows\system32\IMJP10K.DLL
2015-07-29 06:33 . 2015-07-29 06:33 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2015-07-29 06:32 . 2015-07-29 06:32 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2015-07-29 06:32 . 2015-07-29 06:32 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2015-07-29 06:19 . 2014-10-03 01:18 274432 ----a-w- c:\windows\system32\AUDIOKSE.dll
2015-07-29 06:19 . 2014-10-03 01:17 170496 ----a-w- c:\windows\system32\EncDump.dll
2015-07-29 06:19 . 2014-10-03 01:17 396800 ----a-w- c:\windows\system32\AudioEng.dll
2015-07-29 06:19 . 2014-10-03 01:17 316928 ----a-w- c:\windows\system32\audiosrv.dll
2015-07-29 06:13 . 2014-12-06 03:14 48640 ----a-w- c:\windows\system32\nlaapi.dll
2015-07-29 06:13 . 2014-12-06 03:14 174080 ----a-w- c:\windows\system32\nlasvc.dll
2015-07-29 06:13 . 2014-12-06 03:14 93184 ----a-w- c:\windows\system32\ncsi.dll
2015-07-27 17:38 . 2015-05-31 08:11 225792 ----a-w- c:\windows\system32\cewmdm.dll
2015-07-27 17:32 . 2015-04-10 23:22 279552 ----a-w- c:\windows\system32\services.exe
2015-07-27 17:19 . 2015-06-27 14:21 217088 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-27 17:19 . 2015-06-27 14:21 81408 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-27 17:19 . 2015-01-09 00:17 107008 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-07-27 17:19 . 2015-06-27 16:02 218112 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-27 17:19 . 2015-06-27 16:03 783872 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-27 17:19 . 2015-06-27 16:02 501248 ----a-w- c:\windows\system32\kerberos.dll
2015-07-27 17:19 . 2015-06-27 16:01 801280 ----a-w- c:\windows\system32\advapi32.dll
2015-07-27 17:19 . 2015-06-12 13:13 440768 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-27 17:19 . 2015-04-30 16:03 279040 ----a-w- c:\windows\system32\schannel.dll
2015-07-27 17:19 . 2014-10-10 01:00 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-27 17:18 . 2014-09-04 23:27 143360 ----a-w- c:\windows\system32\drivers\fastfat.sys
2015-07-27 17:12 . 2014-12-08 01:59 306176 ----a-w- c:\windows\system32\scesrv.dll
2015-07-27 17:11 . 2012-07-26 02:46 9728 ----a-w- c:\windows\system32\Wdfres.dll
2015-07-27 17:11 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll
2015-07-27 17:11 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll
2015-07-27 17:11 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2015-07-27 17:11 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2015-07-27 17:11 . 2009-07-14 12:12 16896 ----a-w- c:\windows\system32\winusb.dll
2015-07-27 17:11 . 2012-07-26 03:39 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2015-07-27 17:11 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe
2015-07-27 17:11 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll
2015-07-27 17:11 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2015-07-27 17:10 . 2015-05-04 22:50 7680 ----a-w- c:\windows\system32\spwmp.dll
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\msdxm.ocx
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\dxmasf.dll
2015-07-27 17:10 . 2015-05-04 21:21 107520 ----a-w- c:\program files\Windows Media Player\wmpconfig.exe
2015-07-27 17:10 . 2015-05-04 21:21 168960 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-05 19:06 . 2008-09-10 05:59 45056 ----a-w- c:\windows\system32\acovcnt.exe
2015-07-29 06:34 . 2015-07-29 06:34 203776 ----a-w- c:\windows\system32\webcheck.dll
2015-07-29 06:33 . 2015-07-29 06:33 4096 ----a-w- c:\windows\system32\drivers\cs-CZ\dxgkrnl.sys.mui
2015-06-12 16:01 . 2015-07-29 06:50 54272 ----a-w- c:\windows\apppatch\iebrshim.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-08-02 07:06 695096 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2008-07-15 7651328]
"Windows Mobile-based device management"="c:\windows\WindowsMobile\wmdSync.exe" [2008-01-21 215552]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-08-02 6109776]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-5-27 752168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-09-10 05:55 47672 ----a-w- c:\windows\AsScrProlog.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-09-10 05:56 33136 ----a-w- c:\windows\ASScrPro.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-07-19 02:52 104936 ----a-w- c:\program files\CyberLink\Power2Go\CLMLSvc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
2008-01-12 05:40 98304 ----a-w- c:\program files\ATK Hotkey\HControlUser.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
2008-06-14 01:11 210216 ----a-w- c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2008-06-13 05:52 6183456 ----a-w- c:\windows\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
2007-11-20 10:15 1826816 ----a-w- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2008-01-21 19:17 61440 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
2007-12-07 02:12 1029416 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 17:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
2015-08-05 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.asus.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.0.0.138
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2015-08-05 21:07
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
c:\windows\TEMP\_avast_\unp209760181.tmp 828104 bytes executable
C:\ADSM_PData_0150
.
sken byl úspešně dokončen
skryté soubory: 2
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(3832)
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\ASUS\SmartLogon\sensorsrv.exe
c:\windows\system32\agrsmsvc.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\ASUS\ASUS CopyProtect\aspg.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\windows\System32\ACEngSvr.exe
c:\program files\AMD\Safely Remove Disk\SafeRemoveService.exe
c:\program files\ASUS\NB Probe\SPM\spmgr.exe
c:\windows\system32\SafeRemoveDialog.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\ATK Hotkey\WDC.exe
c:\windows\servicing\TrustedInstaller.exe
c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
c:\windows\system32\conime.exe
c:\windows\system32\wbem\unsecapp.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Celkový čas: 2015-08-05 21:13:16 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-08-05 19:13
ComboFix2.txt 2015-08-02 05:59
.
Před spuštěním: Volných bajtů: 89 898 233 856
Po spuštění: Volných bajtů: 90 003 197 952
.
- - End Of File - - 2873FD28265993CD09D469ACE4021606
64B1E91C5C6C2157642651010728F90F

Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

Re: log - (použit ComboFix) - poraďte - nerozumim

#9 Příspěvek od Tady. »

Tak a je to.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: log - (použit ComboFix) - poraďte - nerozumim

#10 Příspěvek od Márty84 »

:arrow: Dejte logy podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100 - vypnete na chvili antivir, je mozne, ze to bude blokovat jako skodnou, ale pouzivame to porad, jedna se o falesny poplach :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

Re: log - (použit ComboFix) - poraďte - nerozumim

#11 Příspěvek od Tady. »

FRST.zip
(19.24 KiB) Staženo 39 x
Prý mám víc než 10000 znaků - tak se to nevejde, tak jsem to ZIPla

Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

Re: log - (použit ComboFix) - poraďte - nerozumim

#12 Příspěvek od Tady. »

Addition.zip
(6.77 KiB) Staženo 34 x
A tady je ten Addition.txt

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: log - (použit ComboFix) - poraďte - nerozumim

#13 Příspěvek od Márty84 »

:arrow: Napiste mi velikost adresare plochy (C:\Users\PC\Plocha)



:arrow: Otevrete si poznamkovy blok a zkopirujte do nej tento skript

Kód: Vybrat vše

Start
CloseProcesses:
CreateRestorePoint:

ShellIconOverlayIdentifiers: [ADSMOverlayIcon] -> {A825576B-0042-4F0F-8FB0-93CE0F054E69} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll [2007-06-15] ()
ShellIconOverlayIdentifiers: [ADSMOverlayIcon1] -> {A8D448F4-0431-45AC-9F5E-E1B434AB2249} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll [2007-06-02] ()

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com

S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]

2015-08-05 07:14 - 2015-08-05 07:14 - 00000000 ____D C:\ProgramData\Malwarebytes

Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe

Hosts:
EmptyTemp:
Reboot:
End
Vlevo nahore kliknete na napis Soubor
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev fixlist a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Spustte FRST jako spravce, kliknete na napis Fix a program vykona prikazy.
Po restartu pc by se mel objevit novy log - s nazvem fixlog, ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

Re: log - (použit ComboFix) - poraďte - nerozumim

#14 Příspěvek od Tady. »

Fix result of Farbar Recovery Scan Tool (x86) Version:02-08-2015 01
Ran by PC (2015-08-06 15:50:28) Run:1
Running from C:\Users\PC\Desktop
Loaded Profiles: PC (Available Profiles: PC)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

ShellIconOverlayIdentifiers: [ADSMOverlayIcon] -> {A825576B-0042-4F0F-8FB0-93CE0F054E69} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll [2007-06-15] ()
ShellIconOverlayIdentifiers: [ADSMOverlayIcon1] -> {A8D448F4-0431-45AC-9F5E-E1B434AB2249} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll [2007-06-02] ()

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com

S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]

2015-08-05 07:14 - 2015-08-05 07:14 - 00000000 ____D C:\ProgramData\Malwarebytes

Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ADSMOverlayIcon" => key removed successfully.
"HKCR\CLSID\{A825576B-0042-4F0F-8FB0-93CE0F054E69}" => key removed successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ADSMOverlayIcon1" => key removed successfully.
"HKCR\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}" => key removed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
"HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page => value removed successfully.
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page => value removed successfully.
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
catchme => service removed successfully.
MBAMSwissArmy => service removed successfully.
C:\ProgramData\Malwarebytes => moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job => moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job => moved successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully.
Hosts restored successfully.
EmptyTemp: => 776.6 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 15:53:16 ====

Tady.
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 02 srp 2015 07:09

Re: log - (použit ComboFix) - poraďte - nerozumim

#15 Příspěvek od Tady. »

Jo a tu velikost :)
velikost : 58,4 MB (61 320 003 bajtů)

velikost na disku: 58,6 MB (61 505 536 bajtů)

Zamčeno