
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
podivne chovani notebooku
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
dinospages
- Vzorný návštěvník

- Příspěvky: 240
- Registrován: 20 črc 2006 11:33
podivne chovani notebooku
ahoj radci, potrebuji pomoc s notebookem kamaradky:
najizdeni win docela trva, ale prace v nem pak je v celku normalni, hlavni problem nelze se pripojit na zadnou wifi, nenachazi to site a kdyz se pripojim pres kabel tak to napise povoleno ale internet nefunguje, dale se stale po restartu objevuje nejaky cinsky program vzdy se objevi i ve progamech a funkcich kdyz jej odeberu po restartu je tam znovu (jsou to dve polozky v programech)
zde zasilam log z RSITu:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-08-22 08:54:10
WIN_7 Service Pack 1
System drive C: has 62 GB (32%) free of 192 GB
Total RAM: 2037 MB (57% free)
HijackThis download failed
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142
prefs.js - "browser.startup.homepage" - "https://www.google.cz/"
prefs.js - "keyword.URL" - "http://search.centrum.cz/?charset=UTF-8 ... toolbar-ff, ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaiduExpert-npplugin]
"Description"=Baidu Web Component
"Path"=C:\Users\Martin\AppData\Roaming\Baidu\BDWebAdapter\3.0.242.0\npBDExNP.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin]
"Description"=Baidusd detect NPAPI plugin
"Path"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\explugin\npBaiduSDDetectPlug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
nppdf32.dll
C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\extensions\
toolbar@centrumholdings.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{15DEE173-1BE9-4424-81E0-58A87076E9B1}]
WebMonBHO - C:\Program Files\Baidu\BaiduSd\3.0.0.4605\websafe\WebMonBHO.dll [2014-11-06 375176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-05-26 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-05-26 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-10-13 186904]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2009-11-19 307768]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe [2009-10-28 487992]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-03 1594664]
"Screen Rotation"=C:\PROGRA~1\Lenovo\LENOVO~1\SCREEN~1.EXE [2009-10-27 326144]
"TMCMonitor"=c:\Program Files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe [2009-11-09 53248]
"TpShocks"=C:\Windows\system32\TpShocks.exe [2009-09-02 186208]
"EnergyUtility"=C:\Program Files\Lenovo\Energy Management\utility.exe [2009-10-23 4114288]
"Energy Management"=C:\Program Files\Lenovo\Energy Management\Energy Management.exe [2009-10-23 5064560]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-04-19 141848]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-04-19 173592]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-04-19 150552]
"baidusdTray"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe [2015-05-03 3257240]
"BaiduAnTray"=C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe [2015-07-08 3042312]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"apphide"=C:\Program Files\baidu\baidu.exe [2015-04-06 65536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
C:\Program Files\USB Camera\VM331_STI.EXE [2009-09-15 536576]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-04-19 218112]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"msacm.divxa32"=msaud32_divx.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-08-22 08:54:10 ----D---- C:\rsit
2015-08-22 08:54:10 ----D---- C:\Program Files\trend micro
2015-08-21 17:16:16 ----A---- C:\Program Files\4zUninstall VideoDownloadConverter.dll
2015-08-21 17:16:16 ----A---- C:\Program Files\4zres.dll
2015-07-28 09:09:07 ----A---- C:\windows\system32\generaltel.dll
2015-07-28 09:09:06 ----A---- C:\windows\system32\acmigration.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\devinv.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\appraiser.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\invagent.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\aeinv.dll
2015-07-28 09:09:00 ----A---- C:\windows\system32\aepdu.dll
2015-07-28 09:08:59 ----A---- C:\windows\system32\CompatTelRunner.exe
======List of files/folders modified in the last 1 month======
2015-08-22 08:54:10 ----RD---- C:\Program Files
2015-08-22 08:53:52 ----D---- C:\windows\Temp
2015-08-22 08:35:15 ----D---- C:\windows\system32\NDF
2015-08-22 08:31:38 ----D---- C:\windows\System32
2015-08-22 08:31:38 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-08-22 08:24:19 ----A---- C:\AtmApInit.txt
2015-08-21 17:18:33 ----SHD---- C:\windows\Installer
2015-08-21 17:18:33 ----SHD---- C:\Config.Msi
2015-08-21 17:18:33 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-21 17:18:09 ----SHD---- C:\System Volume Information
2015-08-21 17:17:02 ----HD---- C:\ProgramData
2015-08-21 17:15:21 ----D---- C:\Users\Martin\AppData\Roaming\Seznam.cz
2015-08-21 17:10:53 ----D---- C:\windows\Microsoft.NET
2015-08-18 17:33:02 ----D---- C:\windows\system32\config
2015-08-18 17:31:54 ----D---- C:\windows\system32\drivers
2015-08-17 22:27:36 ----A---- C:\windows\system32\FlashPlayerApp.exe
2015-08-16 08:07:28 ----A---- C:\windows\WINCMD.INI
2015-08-02 16:37:21 ----D---- C:\Users\Martin\AppData\Roaming\Baidu
2015-08-02 10:55:06 ----D---- C:\windows\winsxs
2015-07-28 15:59:24 ----SD---- C:\windows\system32\CompatTel
2015-07-27 09:31:08 ----SD---- C:\windows\system32\GWX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-10-13 331288]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 Shockprf;Shockprf; C:\windows\System32\DRIVERS\Apsx86.sys [2009-10-21 118800]
R0 TPDIGIMN;TPDIGIMN; C:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
R1 bd0001;bd0001; C:\windows\system32\DRIVERS\bd0001.sys [2015-04-03 86344]
R1 bd0002;bd0002; C:\windows\system32\DRIVERS\bd0002.sys [2015-05-03 168392]
R1 bd0003;bd0003; C:\windows\system32\DRIVERS\bd0003.sys [2014-11-06 57160]
R1 BDDefense;BDDefense; C:\windows\system32\drivers\BDDefense.sys [2015-08-16 135816]
R1 BDEnhanceBoost;BDEnhanceBoost; C:\windows\system32\DRIVERS\BDEnhanceBoost.sys [2015-04-03 48328]
R1 BDFileDefend;BDFileDefend; C:\windows\system32\DRIVERS\BDFileDefend.sys [2014-11-06 26824]
R1 BDMWrench;BDMWrench; C:\windows\system32\DRIVERS\BDMWrench.sys [2015-04-03 239432]
R1 BdSandBox;BdSandBox; C:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
R1 dvdfabio;dvdfabio; \??\C:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 BDArKit;BDArKit; C:\windows\system32\DRIVERS\BDArKit.sys [2015-04-03 145224]
R2 BDMNetMon;BDMNetMon; C:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\windows\system32\DRIVERS\RMCAST.sys [2010-11-20 117760]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
R3 AVerBDA6x;AVerBDA6x service; C:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl6.sys [2009-11-05 2494968]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-08-28 86056]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2009-08-28 108072]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-08-28 18472]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT32.sys [2009-08-19 492032]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2009-12-03 230832]
R3 vdrive;vdrive; C:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
R3 vm331avs;Digital Camera 1; C:\windows\System32\Drivers\vm331avs.sys [2009-11-09 179072]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
S3 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
S3 huawei_wwanecm;huawei_wwanecm; C:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-01-07 182304]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 128104]
S3 WinUsb;WinUsb; C:\windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-09-22 595232]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-10-13 354840]
R2 MbnExt;Mobile Broadband Extension Service; C:\windows\system32\svchost.exe [2009-07-14 20992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 TPHDEXLGSVC;IdeaPad HDD APS Logging Service; C:\windows\System32\TPHDEXLG.exe [2009-10-21 39952]
S2 BaiduHips;BaiduHips; C:\Program Files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe [2015-04-03 64008]
S2 BDKVRTP;BDKVRTP Service; C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe [2014-11-06 793096]
S2 BDMRTP;BDMRTP Service; C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe [2015-04-03 1047048]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
S2 IGRS;IGRS; C:\Program Files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-25 87904]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2011-11-15 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-17 269000]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
S3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-07-08 148136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
najizdeni win docela trva, ale prace v nem pak je v celku normalni, hlavni problem nelze se pripojit na zadnou wifi, nenachazi to site a kdyz se pripojim pres kabel tak to napise povoleno ale internet nefunguje, dale se stale po restartu objevuje nejaky cinsky program vzdy se objevi i ve progamech a funkcich kdyz jej odeberu po restartu je tam znovu (jsou to dve polozky v programech)
zde zasilam log z RSITu:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-08-22 08:54:10
WIN_7 Service Pack 1
System drive C: has 62 GB (32%) free of 192 GB
Total RAM: 2037 MB (57% free)
HijackThis download failed
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142
prefs.js - "browser.startup.homepage" - "https://www.google.cz/"
prefs.js - "keyword.URL" - "http://search.centrum.cz/?charset=UTF-8 ... toolbar-ff, ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaiduExpert-npplugin]
"Description"=Baidu Web Component
"Path"=C:\Users\Martin\AppData\Roaming\Baidu\BDWebAdapter\3.0.242.0\npBDExNP.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin]
"Description"=Baidusd detect NPAPI plugin
"Path"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\explugin\npBaiduSDDetectPlug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
nppdf32.dll
C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\extensions\
toolbar@centrumholdings.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{15DEE173-1BE9-4424-81E0-58A87076E9B1}]
WebMonBHO - C:\Program Files\Baidu\BaiduSd\3.0.0.4605\websafe\WebMonBHO.dll [2014-11-06 375176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-05-26 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-05-26 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-10-13 186904]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2009-11-19 307768]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe [2009-10-28 487992]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-03 1594664]
"Screen Rotation"=C:\PROGRA~1\Lenovo\LENOVO~1\SCREEN~1.EXE [2009-10-27 326144]
"TMCMonitor"=c:\Program Files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe [2009-11-09 53248]
"TpShocks"=C:\Windows\system32\TpShocks.exe [2009-09-02 186208]
"EnergyUtility"=C:\Program Files\Lenovo\Energy Management\utility.exe [2009-10-23 4114288]
"Energy Management"=C:\Program Files\Lenovo\Energy Management\Energy Management.exe [2009-10-23 5064560]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-04-19 141848]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-04-19 173592]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-04-19 150552]
"baidusdTray"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe [2015-05-03 3257240]
"BaiduAnTray"=C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe [2015-07-08 3042312]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"apphide"=C:\Program Files\baidu\baidu.exe [2015-04-06 65536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
C:\Program Files\USB Camera\VM331_STI.EXE [2009-09-15 536576]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-04-19 218112]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"msacm.divxa32"=msaud32_divx.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-08-22 08:54:10 ----D---- C:\rsit
2015-08-22 08:54:10 ----D---- C:\Program Files\trend micro
2015-08-21 17:16:16 ----A---- C:\Program Files\4zUninstall VideoDownloadConverter.dll
2015-08-21 17:16:16 ----A---- C:\Program Files\4zres.dll
2015-07-28 09:09:07 ----A---- C:\windows\system32\generaltel.dll
2015-07-28 09:09:06 ----A---- C:\windows\system32\acmigration.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\devinv.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\appraiser.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\invagent.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\aeinv.dll
2015-07-28 09:09:00 ----A---- C:\windows\system32\aepdu.dll
2015-07-28 09:08:59 ----A---- C:\windows\system32\CompatTelRunner.exe
======List of files/folders modified in the last 1 month======
2015-08-22 08:54:10 ----RD---- C:\Program Files
2015-08-22 08:53:52 ----D---- C:\windows\Temp
2015-08-22 08:35:15 ----D---- C:\windows\system32\NDF
2015-08-22 08:31:38 ----D---- C:\windows\System32
2015-08-22 08:31:38 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-08-22 08:24:19 ----A---- C:\AtmApInit.txt
2015-08-21 17:18:33 ----SHD---- C:\windows\Installer
2015-08-21 17:18:33 ----SHD---- C:\Config.Msi
2015-08-21 17:18:33 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-21 17:18:09 ----SHD---- C:\System Volume Information
2015-08-21 17:17:02 ----HD---- C:\ProgramData
2015-08-21 17:15:21 ----D---- C:\Users\Martin\AppData\Roaming\Seznam.cz
2015-08-21 17:10:53 ----D---- C:\windows\Microsoft.NET
2015-08-18 17:33:02 ----D---- C:\windows\system32\config
2015-08-18 17:31:54 ----D---- C:\windows\system32\drivers
2015-08-17 22:27:36 ----A---- C:\windows\system32\FlashPlayerApp.exe
2015-08-16 08:07:28 ----A---- C:\windows\WINCMD.INI
2015-08-02 16:37:21 ----D---- C:\Users\Martin\AppData\Roaming\Baidu
2015-08-02 10:55:06 ----D---- C:\windows\winsxs
2015-07-28 15:59:24 ----SD---- C:\windows\system32\CompatTel
2015-07-27 09:31:08 ----SD---- C:\windows\system32\GWX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-10-13 331288]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 Shockprf;Shockprf; C:\windows\System32\DRIVERS\Apsx86.sys [2009-10-21 118800]
R0 TPDIGIMN;TPDIGIMN; C:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
R1 bd0001;bd0001; C:\windows\system32\DRIVERS\bd0001.sys [2015-04-03 86344]
R1 bd0002;bd0002; C:\windows\system32\DRIVERS\bd0002.sys [2015-05-03 168392]
R1 bd0003;bd0003; C:\windows\system32\DRIVERS\bd0003.sys [2014-11-06 57160]
R1 BDDefense;BDDefense; C:\windows\system32\drivers\BDDefense.sys [2015-08-16 135816]
R1 BDEnhanceBoost;BDEnhanceBoost; C:\windows\system32\DRIVERS\BDEnhanceBoost.sys [2015-04-03 48328]
R1 BDFileDefend;BDFileDefend; C:\windows\system32\DRIVERS\BDFileDefend.sys [2014-11-06 26824]
R1 BDMWrench;BDMWrench; C:\windows\system32\DRIVERS\BDMWrench.sys [2015-04-03 239432]
R1 BdSandBox;BdSandBox; C:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
R1 dvdfabio;dvdfabio; \??\C:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 BDArKit;BDArKit; C:\windows\system32\DRIVERS\BDArKit.sys [2015-04-03 145224]
R2 BDMNetMon;BDMNetMon; C:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\windows\system32\DRIVERS\RMCAST.sys [2010-11-20 117760]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
R3 AVerBDA6x;AVerBDA6x service; C:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl6.sys [2009-11-05 2494968]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-08-28 86056]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2009-08-28 108072]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-08-28 18472]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT32.sys [2009-08-19 492032]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2009-12-03 230832]
R3 vdrive;vdrive; C:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
R3 vm331avs;Digital Camera 1; C:\windows\System32\Drivers\vm331avs.sys [2009-11-09 179072]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
S3 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
S3 huawei_wwanecm;huawei_wwanecm; C:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-01-07 182304]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 128104]
S3 WinUsb;WinUsb; C:\windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-09-22 595232]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-10-13 354840]
R2 MbnExt;Mobile Broadband Extension Service; C:\windows\system32\svchost.exe [2009-07-14 20992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 TPHDEXLGSVC;IdeaPad HDD APS Logging Service; C:\windows\System32\TPHDEXLG.exe [2009-10-21 39952]
S2 BaiduHips;BaiduHips; C:\Program Files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe [2015-04-03 64008]
S2 BDKVRTP;BDKVRTP Service; C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe [2014-11-06 793096]
S2 BDMRTP;BDMRTP Service; C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe [2015-04-03 1047048]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
S2 IGRS;IGRS; C:\Program Files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-25 87904]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2011-11-15 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-17 269000]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
S3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-07-08 148136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: podivne chovani notebooku
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
dinospages
- Vzorný návštěvník

- Příspěvky: 240
- Registrován: 20 črc 2006 11:33
Re: podivne chovani notebooku
# AdwCleaner v5.003 - Logfile created 23/08/2015 at 13:27:46
# Updated 20/08/2015 by Xplode
# Database : 2015-08-20.1 [Local]
# Operating system : Windows 7 Home Premium Service Pack 1 (x86)
# Username : Martin - LENOVO
# Running from : C:\Users\Martin\Desktop\adwcleaner_5.003.exe
# Option : Cleaning
***** [ Services ] *****
[!] Service Not Deleted : BaiduHips
[!] Service Not Deleted : bd0001
[!] Service Not Deleted : bd0002
[-] Service Deleted : bd0003
[-] Service Deleted : BDArKit
[!] Service Not Deleted : BDKVRTP
[!] Service Not Deleted : BDMRTP
[-] Service Deleted : BDMWrench
[-] Service Deleted : BDFileDefend
[-] Service Deleted : BDDefense
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files\ICQ6Toolbar
[-] Folder Deleted : C:\ProgramData\ICQ\ICQToolbar
[-] Folder Deleted : C:\ProgramData\w3i
[-] Folder Deleted : C:\ProgramData\tencent
[-] Folder Deleted : C:\Users\Martin\AppData\Local\iac
[-] Folder Deleted : C:\Users\Martin\AppData\Local\PackageAware
[-] Folder Deleted : C:\Users\Martin\AppData\LocalLow\searchresultstb
[-] Folder Deleted : C:\Users\Martin\AppData\Roaming\OpenCandy
[-] Folder Deleted : C:\Users\Martin\AppData\Roaming\tencent
[-] Folder Deleted : C:\Users\Martin\Documents\Updater
***** [ Files ] *****
[-] File Deleted : C:\Program Files\4zres.dll
[-] File Deleted : C:\Program Files\4zUninstall VideoDownloadConverter.dll
[-] File Deleted : C:\windows\system32\drivers\BDDefense.sys
[-] File Deleted : C:\windows\system32\drivers\bd0001.sys
[-] File Deleted : C:\windows\system32\drivers\bd0002.sys
[-] File Deleted : C:\windows\system32\drivers\bd0003.sys
[-] File Deleted : C:\windows\system32\drivers\BDArKit.SYS
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : amiupdaterExd
[-] Task Deleted : amiupdaterExi
***** [ Registry ] *****
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDDownloadProxy.Downloader
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDDownloadProxy.Downloader.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\BDShellExt.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\BDSWShellExt.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Key Deleted : HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\BDShellExt
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDShellExt.BDShellExtMenu
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDShellExt.BDShellExtMenu.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDSWShellExt.BDSWShellExtMenu
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDSWShellExt.BDSWShellExtMenu.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\BDShellExt
[-] Key Deleted : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\ABDSWShellExt
[-] Key Deleted : HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\BDShellExt
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\METNSD
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{A8B81847-1462-4756-9D4A-F506BC5361CD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{FBE0E29B-01DB-4876-B147-46F5AABA6823}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{94366E2C-9923-431C-B0D6-747447DD0F2B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{36E6A19A-6C8C-4250-B42A-24B8D3514ABA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{15DEE173-1BE9-4424-81E0-58A87076E9B1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00890530-6A9F-4BE2-B1BB-73F01E2BB986}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{85E0B1AA-04FA-11D1-B7DA-00A0C90348D6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9FC9D48D-C233-4FAB-99C1-46CE5A3AD105}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{91B5E4DE-4C97-41CD-9F94-84BFAABB7371}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0C5C9741-79A4-4A5F-A9B3-9E686CFF879B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11292110-6F8D-4D56-863C-44902A1E7880}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6B3732AA-F6D4-4F16-9E22-49EDC52C9514}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9FC9D48D-C233-4FAB-99C1-46CE5A3AD105}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0C5C9741-79A4-4A5F-A9B3-9E686CFF879B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{45D1EEF3-7713-48FA-B7A5-B77229C7D330}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{70891BDB-3BE3-45A9-96B6-184ABA962091}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{15DEE173-1BE9-4424-81E0-58A87076E9B1}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{94366E2C-9923-431C-B0D6-747447DD0F2B}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{36E6A19A-6C8C-4250-B42A-24B8D3514ABA}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21FA44EF-376D-4D53-9B0F-8A89D3229068}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{94366E2C-9923-431C-B0D6-747447DD0F2B}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{21FA44EF-376D-4D53-9B0F-8A89D3229068}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{38122A36-83B2-46B8-B39A-EC72A4614A07}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94366E2C-9923-431C-B0D6-747447DD0F2B}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{21FA44EF-376D-4D53-9B0F-8A89D3229068}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{21FA44EF-376D-4D53-9B0F-8A89D3229068}]
[-] Key Deleted : HKCU\Software\APN DTX
[-] Key Deleted : HKCU\Software\W3I
[-] Key Deleted : HKLM\SOFTWARE\Driver-Soft
[-] Key Deleted : HKLM\SOFTWARE\Freeze.com
[-] Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
[-] Key Deleted : HKLM\SOFTWARE\Speedchecker Limited
[-] Key Deleted : HKLM\SOFTWARE\ZoomWebLists
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\????
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\????
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{97F81AF1-0E47-DC99-FF1F-C8B3B9A1E18E}
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[!] Data Not Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
[-] Data Restored : HKU\S-1-5-21-707676393-2979009027-1931410616-1003\Software\Microsoft\Internet Explorer\Main [Start Page]
[!] Data Not Restored : HKU\S-1-5-21-707676393-2979009027-1931410616-1003\Software\Microsoft\Internet Explorer\Main [ICQ Search]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}
***** [ Web browsers ] *****
*************************
:: Proxy settings cleared
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [7995 bytes] ##########
# Updated 20/08/2015 by Xplode
# Database : 2015-08-20.1 [Local]
# Operating system : Windows 7 Home Premium Service Pack 1 (x86)
# Username : Martin - LENOVO
# Running from : C:\Users\Martin\Desktop\adwcleaner_5.003.exe
# Option : Cleaning
***** [ Services ] *****
[!] Service Not Deleted : BaiduHips
[!] Service Not Deleted : bd0001
[!] Service Not Deleted : bd0002
[-] Service Deleted : bd0003
[-] Service Deleted : BDArKit
[!] Service Not Deleted : BDKVRTP
[!] Service Not Deleted : BDMRTP
[-] Service Deleted : BDMWrench
[-] Service Deleted : BDFileDefend
[-] Service Deleted : BDDefense
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files\ICQ6Toolbar
[-] Folder Deleted : C:\ProgramData\ICQ\ICQToolbar
[-] Folder Deleted : C:\ProgramData\w3i
[-] Folder Deleted : C:\ProgramData\tencent
[-] Folder Deleted : C:\Users\Martin\AppData\Local\iac
[-] Folder Deleted : C:\Users\Martin\AppData\Local\PackageAware
[-] Folder Deleted : C:\Users\Martin\AppData\LocalLow\searchresultstb
[-] Folder Deleted : C:\Users\Martin\AppData\Roaming\OpenCandy
[-] Folder Deleted : C:\Users\Martin\AppData\Roaming\tencent
[-] Folder Deleted : C:\Users\Martin\Documents\Updater
***** [ Files ] *****
[-] File Deleted : C:\Program Files\4zres.dll
[-] File Deleted : C:\Program Files\4zUninstall VideoDownloadConverter.dll
[-] File Deleted : C:\windows\system32\drivers\BDDefense.sys
[-] File Deleted : C:\windows\system32\drivers\bd0001.sys
[-] File Deleted : C:\windows\system32\drivers\bd0002.sys
[-] File Deleted : C:\windows\system32\drivers\bd0003.sys
[-] File Deleted : C:\windows\system32\drivers\BDArKit.SYS
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : amiupdaterExd
[-] Task Deleted : amiupdaterExi
***** [ Registry ] *****
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDDownloadProxy.Downloader
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDDownloadProxy.Downloader.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\BDShellExt.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\BDSWShellExt.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Key Deleted : HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\BDShellExt
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDShellExt.BDShellExtMenu
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDShellExt.BDShellExtMenu.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDSWShellExt.BDSWShellExtMenu
[-] Key Deleted : HKLM\SOFTWARE\Classes\BDSWShellExt.BDSWShellExtMenu.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\BDShellExt
[-] Key Deleted : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\ABDSWShellExt
[-] Key Deleted : HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\BDShellExt
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\METNSD
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{A8B81847-1462-4756-9D4A-F506BC5361CD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{FBE0E29B-01DB-4876-B147-46F5AABA6823}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{94366E2C-9923-431C-B0D6-747447DD0F2B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{36E6A19A-6C8C-4250-B42A-24B8D3514ABA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{15DEE173-1BE9-4424-81E0-58A87076E9B1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00890530-6A9F-4BE2-B1BB-73F01E2BB986}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{85E0B1AA-04FA-11D1-B7DA-00A0C90348D6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9FC9D48D-C233-4FAB-99C1-46CE5A3AD105}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{91B5E4DE-4C97-41CD-9F94-84BFAABB7371}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0C5C9741-79A4-4A5F-A9B3-9E686CFF879B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11292110-6F8D-4D56-863C-44902A1E7880}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6B3732AA-F6D4-4F16-9E22-49EDC52C9514}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9FC9D48D-C233-4FAB-99C1-46CE5A3AD105}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0C5C9741-79A4-4A5F-A9B3-9E686CFF879B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{45D1EEF3-7713-48FA-B7A5-B77229C7D330}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{70891BDB-3BE3-45A9-96B6-184ABA962091}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{15DEE173-1BE9-4424-81E0-58A87076E9B1}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{94366E2C-9923-431C-B0D6-747447DD0F2B}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{36E6A19A-6C8C-4250-B42A-24B8D3514ABA}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21FA44EF-376D-4D53-9B0F-8A89D3229068}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{94366E2C-9923-431C-B0D6-747447DD0F2B}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{21FA44EF-376D-4D53-9B0F-8A89D3229068}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{38122A36-83B2-46B8-B39A-EC72A4614A07}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94366E2C-9923-431C-B0D6-747447DD0F2B}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{21FA44EF-376D-4D53-9B0F-8A89D3229068}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{21FA44EF-376D-4D53-9B0F-8A89D3229068}]
[-] Key Deleted : HKCU\Software\APN DTX
[-] Key Deleted : HKCU\Software\W3I
[-] Key Deleted : HKLM\SOFTWARE\Driver-Soft
[-] Key Deleted : HKLM\SOFTWARE\Freeze.com
[-] Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
[-] Key Deleted : HKLM\SOFTWARE\Speedchecker Limited
[-] Key Deleted : HKLM\SOFTWARE\ZoomWebLists
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\????
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\????
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{97F81AF1-0E47-DC99-FF1F-C8B3B9A1E18E}
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[!] Data Not Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
[-] Data Restored : HKU\S-1-5-21-707676393-2979009027-1931410616-1003\Software\Microsoft\Internet Explorer\Main [Start Page]
[!] Data Not Restored : HKU\S-1-5-21-707676393-2979009027-1931410616-1003\Software\Microsoft\Internet Explorer\Main [ICQ Search]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}
***** [ Web browsers ] *****
*************************
:: Proxy settings cleared
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [7995 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: podivne chovani notebooku
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
dinospages
- Vzorný návštěvník

- Příspěvky: 240
- Registrován: 20 črc 2006 11:33
Re: podivne chovani notebooku
Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-08-24 07:44:41
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 62 GB (32%) free of 192 GB
Total RAM: 2037 MB (57% free)
HijackThis download failed
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142
prefs.js - "browser.startup.homepage" - "https://www.google.cz/"
prefs.js - "keyword.URL" - "http://search.centrum.cz/?charset=UTF-8 ... toolbar-ff, ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaiduExpert-npplugin]
"Description"=Baidu Web Component
"Path"=C:\Users\Martin\AppData\Roaming\Baidu\BDWebAdapter\3.0.242.0\npBDExNP.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin]
"Description"=Baidusd detect NPAPI plugin
"Path"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\explugin\npBaiduSDDetectPlug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
nppdf32.dll
C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\extensions\
toolbar@centrumholdings.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-05-26 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-05-26 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-10-13 186904]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2009-11-19 307768]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe [2009-10-28 487992]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-03 1594664]
"Screen Rotation"=C:\PROGRA~1\Lenovo\LENOVO~1\SCREEN~1.EXE [2009-10-27 326144]
"TMCMonitor"=c:\Program Files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe [2009-11-09 53248]
"TpShocks"=C:\Windows\system32\TpShocks.exe [2009-09-02 186208]
"EnergyUtility"=C:\Program Files\Lenovo\Energy Management\utility.exe [2009-10-23 4114288]
"Energy Management"=C:\Program Files\Lenovo\Energy Management\Energy Management.exe [2009-10-23 5064560]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-04-19 141848]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-04-19 173592]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-04-19 150552]
"baidusdTray"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe [2015-05-03 3257240]
"BaiduAnTray"=C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe [2015-07-08 3042312]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"apphide"=C:\Program Files\baidu\baidu.exe [2015-04-06 65536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
C:\Program Files\USB Camera\VM331_STI.EXE [2009-09-15 536576]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-04-19 218112]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"msacm.divxa32"=msaud32_divx.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-08-23 13:19:08 ----D---- C:\AdwCleaner
2015-08-22 08:54:10 ----D---- C:\rsit
2015-08-22 08:54:10 ----D---- C:\Program Files\trend micro
2015-07-28 09:09:07 ----A---- C:\windows\system32\generaltel.dll
2015-07-28 09:09:06 ----A---- C:\windows\system32\acmigration.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\devinv.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\appraiser.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\invagent.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\aeinv.dll
2015-07-28 09:09:00 ----A---- C:\windows\system32\aepdu.dll
2015-07-28 09:08:59 ----A---- C:\windows\system32\CompatTelRunner.exe
======List of files/folders modified in the last 1 month======
2015-08-24 07:44:11 ----D---- C:\windows\Temp
2015-08-23 13:36:11 ----D---- C:\windows\System32
2015-08-23 13:36:11 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-08-23 13:35:52 ----D---- C:\windows\system32\NDF
2015-08-23 13:31:53 ----A---- C:\windows\WINCMD.INI
2015-08-23 13:30:02 ----D---- C:\windows\system32\drivers
2015-08-23 13:29:38 ----A---- C:\AtmApInit.txt
2015-08-23 13:27:48 ----RD---- C:\Program Files
2015-08-23 13:27:48 ----HD---- C:\ProgramData
2015-08-23 13:27:48 ----D---- C:\ProgramData\ICQ
2015-08-21 17:18:33 ----SHD---- C:\windows\Installer
2015-08-21 17:18:33 ----SHD---- C:\Config.Msi
2015-08-21 17:18:33 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-21 17:18:09 ----SHD---- C:\System Volume Information
2015-08-21 17:15:21 ----D---- C:\Users\Martin\AppData\Roaming\Seznam.cz
2015-08-21 17:14:22 ----D---- C:\Program Files\Downloaded Installations
2015-08-21 17:10:53 ----D---- C:\windows\Microsoft.NET
2015-08-18 17:33:02 ----D---- C:\windows\system32\config
2015-08-17 22:27:36 ----A---- C:\windows\system32\FlashPlayerApp.exe
2015-08-02 16:37:21 ----D---- C:\Users\Martin\AppData\Roaming\Baidu
2015-08-02 10:55:06 ----D---- C:\windows\winsxs
2015-07-28 15:59:24 ----SD---- C:\windows\system32\CompatTel
2015-07-27 09:31:08 ----SD---- C:\windows\system32\GWX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-10-13 331288]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 Shockprf;Shockprf; C:\windows\System32\DRIVERS\Apsx86.sys [2009-10-21 118800]
R0 TPDIGIMN;TPDIGIMN; C:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
R1 bd0001;bd0001; C:\windows\system32\DRIVERS\bd0001.sys [2015-04-03 86344]
R1 bd0002;bd0002; C:\windows\system32\DRIVERS\bd0002.sys [2015-05-03 168392]
R1 bd0003;bd0003; C:\windows\system32\DRIVERS\bd0003.sys [2014-11-06 57160]
R1 BDEnhanceBoost;BDEnhanceBoost; C:\windows\system32\DRIVERS\BDEnhanceBoost.sys [2015-04-03 48328]
R1 BDMWrench;BDMWrench; C:\windows\system32\DRIVERS\BDMWrench.sys [2015-04-03 239432]
R1 BdSandBox;BdSandBox; C:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
R1 dvdfabio;dvdfabio; \??\C:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 BDArKit;BDArKit; C:\windows\system32\DRIVERS\BDArKit.sys [2015-04-03 145224]
R2 BDDefense;BDDefense; \??\C:\windows\system32\drivers\BDDefense.sys [2015-08-16 135816]
R2 BDMNetMon;BDMNetMon; C:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\windows\system32\DRIVERS\RMCAST.sys [2010-11-20 117760]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
R3 AVerBDA6x;AVerBDA6x service; C:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl6.sys [2009-11-05 2494968]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-08-28 86056]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2009-08-28 108072]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-08-28 18472]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT32.sys [2009-08-19 492032]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2009-12-03 230832]
R3 vdrive;vdrive; C:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
R3 vm331avs;Digital Camera 1; C:\windows\System32\Drivers\vm331avs.sys [2009-11-09 179072]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
S3 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
S3 huawei_wwanecm;huawei_wwanecm; C:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-01-07 182304]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 128104]
S3 WinUsb;WinUsb; C:\windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BaiduHips;BaiduHips; C:\Program Files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe [2015-04-03 64008]
R2 BDKVRTP;BDKVRTP Service; C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe [2014-11-06 793096]
R2 BDMRTP;BDMRTP Service; C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe [2015-04-03 1047048]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-09-22 595232]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-10-13 354840]
R2 IGRS;IGRS; C:\Program Files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
R2 MbnExt;Mobile Broadband Extension Service; C:\windows\system32\svchost.exe [2009-07-14 20992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 TPHDEXLGSVC;IdeaPad HDD APS Logging Service; C:\windows\System32\TPHDEXLG.exe [2009-10-21 39952]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-25 87904]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2011-11-15 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-17 269000]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
S3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-07-08 148136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Run by Martin at 2015-08-24 07:44:41
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 62 GB (32%) free of 192 GB
Total RAM: 2037 MB (57% free)
HijackThis download failed
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142
prefs.js - "browser.startup.homepage" - "https://www.google.cz/"
prefs.js - "keyword.URL" - "http://search.centrum.cz/?charset=UTF-8 ... toolbar-ff, ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaiduExpert-npplugin]
"Description"=Baidu Web Component
"Path"=C:\Users\Martin\AppData\Roaming\Baidu\BDWebAdapter\3.0.242.0\npBDExNP.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin]
"Description"=Baidusd detect NPAPI plugin
"Path"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\explugin\npBaiduSDDetectPlug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
nppdf32.dll
C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\extensions\
toolbar@centrumholdings.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-05-26 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-05-26 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-10-13 186904]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2009-11-19 307768]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe [2009-10-28 487992]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-03 1594664]
"Screen Rotation"=C:\PROGRA~1\Lenovo\LENOVO~1\SCREEN~1.EXE [2009-10-27 326144]
"TMCMonitor"=c:\Program Files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe [2009-11-09 53248]
"TpShocks"=C:\Windows\system32\TpShocks.exe [2009-09-02 186208]
"EnergyUtility"=C:\Program Files\Lenovo\Energy Management\utility.exe [2009-10-23 4114288]
"Energy Management"=C:\Program Files\Lenovo\Energy Management\Energy Management.exe [2009-10-23 5064560]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-04-19 141848]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-04-19 173592]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-04-19 150552]
"baidusdTray"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe [2015-05-03 3257240]
"BaiduAnTray"=C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe [2015-07-08 3042312]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"apphide"=C:\Program Files\baidu\baidu.exe [2015-04-06 65536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
C:\Program Files\USB Camera\VM331_STI.EXE [2009-09-15 536576]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-04-19 218112]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"msacm.divxa32"=msaud32_divx.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-08-23 13:19:08 ----D---- C:\AdwCleaner
2015-08-22 08:54:10 ----D---- C:\rsit
2015-08-22 08:54:10 ----D---- C:\Program Files\trend micro
2015-07-28 09:09:07 ----A---- C:\windows\system32\generaltel.dll
2015-07-28 09:09:06 ----A---- C:\windows\system32\acmigration.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\devinv.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\appraiser.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\invagent.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\aeinv.dll
2015-07-28 09:09:00 ----A---- C:\windows\system32\aepdu.dll
2015-07-28 09:08:59 ----A---- C:\windows\system32\CompatTelRunner.exe
======List of files/folders modified in the last 1 month======
2015-08-24 07:44:11 ----D---- C:\windows\Temp
2015-08-23 13:36:11 ----D---- C:\windows\System32
2015-08-23 13:36:11 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-08-23 13:35:52 ----D---- C:\windows\system32\NDF
2015-08-23 13:31:53 ----A---- C:\windows\WINCMD.INI
2015-08-23 13:30:02 ----D---- C:\windows\system32\drivers
2015-08-23 13:29:38 ----A---- C:\AtmApInit.txt
2015-08-23 13:27:48 ----RD---- C:\Program Files
2015-08-23 13:27:48 ----HD---- C:\ProgramData
2015-08-23 13:27:48 ----D---- C:\ProgramData\ICQ
2015-08-21 17:18:33 ----SHD---- C:\windows\Installer
2015-08-21 17:18:33 ----SHD---- C:\Config.Msi
2015-08-21 17:18:33 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-21 17:18:09 ----SHD---- C:\System Volume Information
2015-08-21 17:15:21 ----D---- C:\Users\Martin\AppData\Roaming\Seznam.cz
2015-08-21 17:14:22 ----D---- C:\Program Files\Downloaded Installations
2015-08-21 17:10:53 ----D---- C:\windows\Microsoft.NET
2015-08-18 17:33:02 ----D---- C:\windows\system32\config
2015-08-17 22:27:36 ----A---- C:\windows\system32\FlashPlayerApp.exe
2015-08-02 16:37:21 ----D---- C:\Users\Martin\AppData\Roaming\Baidu
2015-08-02 10:55:06 ----D---- C:\windows\winsxs
2015-07-28 15:59:24 ----SD---- C:\windows\system32\CompatTel
2015-07-27 09:31:08 ----SD---- C:\windows\system32\GWX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-10-13 331288]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 Shockprf;Shockprf; C:\windows\System32\DRIVERS\Apsx86.sys [2009-10-21 118800]
R0 TPDIGIMN;TPDIGIMN; C:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
R1 bd0001;bd0001; C:\windows\system32\DRIVERS\bd0001.sys [2015-04-03 86344]
R1 bd0002;bd0002; C:\windows\system32\DRIVERS\bd0002.sys [2015-05-03 168392]
R1 bd0003;bd0003; C:\windows\system32\DRIVERS\bd0003.sys [2014-11-06 57160]
R1 BDEnhanceBoost;BDEnhanceBoost; C:\windows\system32\DRIVERS\BDEnhanceBoost.sys [2015-04-03 48328]
R1 BDMWrench;BDMWrench; C:\windows\system32\DRIVERS\BDMWrench.sys [2015-04-03 239432]
R1 BdSandBox;BdSandBox; C:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
R1 dvdfabio;dvdfabio; \??\C:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 BDArKit;BDArKit; C:\windows\system32\DRIVERS\BDArKit.sys [2015-04-03 145224]
R2 BDDefense;BDDefense; \??\C:\windows\system32\drivers\BDDefense.sys [2015-08-16 135816]
R2 BDMNetMon;BDMNetMon; C:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\windows\system32\DRIVERS\RMCAST.sys [2010-11-20 117760]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
R3 AVerBDA6x;AVerBDA6x service; C:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl6.sys [2009-11-05 2494968]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-08-28 86056]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2009-08-28 108072]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-08-28 18472]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT32.sys [2009-08-19 492032]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2009-12-03 230832]
R3 vdrive;vdrive; C:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
R3 vm331avs;Digital Camera 1; C:\windows\System32\Drivers\vm331avs.sys [2009-11-09 179072]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
S3 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
S3 huawei_wwanecm;huawei_wwanecm; C:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-01-07 182304]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 128104]
S3 WinUsb;WinUsb; C:\windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BaiduHips;BaiduHips; C:\Program Files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe [2015-04-03 64008]
R2 BDKVRTP;BDKVRTP Service; C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe [2014-11-06 793096]
R2 BDMRTP;BDMRTP Service; C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe [2015-04-03 1047048]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-09-22 595232]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-10-13 354840]
R2 IGRS;IGRS; C:\Program Files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
R2 MbnExt;Mobile Broadband Extension Service; C:\windows\system32\svchost.exe [2009-07-14 20992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 TPHDEXLGSVC;IdeaPad HDD APS Logging Service; C:\windows\System32\TPHDEXLG.exe [2009-10-21 39952]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-25 87904]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2011-11-15 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-17 269000]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
S3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-07-08 148136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: podivne chovani notebooku
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:files
C:\Program Files\baidu
:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin]
"Description"=-
"Path"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"baidusdTray"=-
"BaiduAnTray"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"apphide"=-
:services
bd0001
bd0002
bd0003
BDArKit
BDDefense
BDMNetMon
BaiduHips
BDKVRTP
BDMRTP
SeaPort
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
dinospages
- Vzorný návštěvník

- Příspěvky: 240
- Registrován: 20 črc 2006 11:33
Re: podivne chovani notebooku
ty cinske utility tam porad jsou prikladam radeji i otm log, poprve pc zobrazil pouze cernou obrazovku a mohl jsem pouze CTR ALT DEL nesly ukoncit ty procesy tykajici se cinskych utilit. po dalsim restartu najel windows cinske utility take ale slo udelat RSIT log
RSIT
Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-08-24 22:49:08
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 63 GB (33%) free of 192 GB
Total RAM: 2037 MB (61% free)
HijackThis download failed
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142
prefs.js - "browser.startup.homepage" - "https://www.google.cz/"
prefs.js - "keyword.URL" - "http://search.centrum.cz/?charset=UTF-8 ... toolbar-ff, ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaiduExpert-npplugin]
"Description"=Baidu Web Component
"Path"=C:\Users\Martin\AppData\Roaming\Baidu\BDWebAdapter\3.0.242.0\npBDExNP.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
nppdf32.dll
C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\extensions\
toolbar@centrumholdings.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-05-26 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-05-26 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-10-13 186904]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2009-11-19 307768]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe [2009-10-28 487992]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-03 1594664]
"Screen Rotation"=C:\PROGRA~1\Lenovo\LENOVO~1\SCREEN~1.EXE [2009-10-27 326144]
"TMCMonitor"=c:\Program Files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe [2009-11-09 53248]
"TpShocks"=C:\Windows\system32\TpShocks.exe [2009-09-02 186208]
"EnergyUtility"=C:\Program Files\Lenovo\Energy Management\utility.exe [2009-10-23 4114288]
"Energy Management"=C:\Program Files\Lenovo\Energy Management\Energy Management.exe [2009-10-23 5064560]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-04-19 141848]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-04-19 173592]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-04-19 150552]
"baidusdTray"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe [2015-05-03 3257240]
"BaiduAnTray"=C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe [2015-07-08 3042312]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"OTM"=C:\Users\Martin\Desktop\OTM.exe [2015-08-24 522240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
C:\Program Files\USB Camera\VM331_STI.EXE [2009-09-15 536576]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-04-19 218112]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"msacm.divxa32"=msaud32_divx.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-08-24 21:43:23 ----D---- C:\_OTM
2015-08-23 13:19:08 ----D---- C:\AdwCleaner
2015-08-22 08:54:10 ----D---- C:\rsit
2015-08-22 08:54:10 ----D---- C:\Program Files\trend micro
2015-07-28 09:09:07 ----A---- C:\windows\system32\generaltel.dll
2015-07-28 09:09:06 ----A---- C:\windows\system32\acmigration.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\devinv.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\appraiser.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\invagent.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\aeinv.dll
2015-07-28 09:09:00 ----A---- C:\windows\system32\aepdu.dll
2015-07-28 09:08:59 ----A---- C:\windows\system32\CompatTelRunner.exe
======List of files/folders modified in the last 1 month======
2015-08-24 22:49:05 ----D---- C:\windows\Temp
2015-08-24 22:38:11 ----A---- C:\AtmApInit.txt
2015-08-24 22:37:42 ----D---- C:\windows\System32
2015-08-24 22:37:42 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-08-24 22:23:33 ----D---- C:\windows\system32\config
2015-08-24 22:17:57 ----D---- C:\windows\system32\drivers
2015-08-23 13:48:06 ----D---- C:\windows\system32\NDF
2015-08-23 13:31:53 ----A---- C:\windows\WINCMD.INI
2015-08-23 13:27:48 ----RD---- C:\Program Files
2015-08-23 13:27:48 ----HD---- C:\ProgramData
2015-08-23 13:27:48 ----D---- C:\ProgramData\ICQ
2015-08-21 17:18:33 ----SHD---- C:\windows\Installer
2015-08-21 17:18:33 ----SHD---- C:\Config.Msi
2015-08-21 17:18:33 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-21 17:18:09 ----SHD---- C:\System Volume Information
2015-08-21 17:15:21 ----D---- C:\Users\Martin\AppData\Roaming\Seznam.cz
2015-08-21 17:14:22 ----D---- C:\Program Files\Downloaded Installations
2015-08-21 17:10:53 ----D---- C:\windows\Microsoft.NET
2015-08-17 22:27:36 ----A---- C:\windows\system32\FlashPlayerApp.exe
2015-08-02 16:37:21 ----D---- C:\Users\Martin\AppData\Roaming\Baidu
2015-08-02 10:55:06 ----D---- C:\windows\winsxs
2015-07-28 15:59:24 ----SD---- C:\windows\system32\CompatTel
2015-07-27 09:31:08 ----SD---- C:\windows\system32\GWX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-10-13 331288]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 Shockprf;Shockprf; C:\windows\System32\DRIVERS\Apsx86.sys [2009-10-21 118800]
R0 TPDIGIMN;TPDIGIMN; C:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
R1 bd0001;bd0001; C:\windows\system32\DRIVERS\bd0001.sys [2015-04-03 86344]
R1 bd0002;bd0002; C:\windows\system32\DRIVERS\bd0002.sys [2015-05-03 168392]
R1 bd0003;bd0003; C:\windows\system32\DRIVERS\bd0003.sys [2014-11-06 57160]
R1 BDEnhanceBoost;BDEnhanceBoost; C:\windows\system32\DRIVERS\BDEnhanceBoost.sys [2015-04-03 48328]
R1 BDMWrench;BDMWrench; C:\windows\system32\DRIVERS\BDMWrench.sys [2015-04-03 239432]
R1 BdSandBox;BdSandBox; C:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
R1 dvdfabio;dvdfabio; \??\C:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 BDArKit;BDArKit; C:\windows\system32\DRIVERS\BDArKit.sys [2015-04-03 145224]
R2 BDDefense;BDDefense; \??\C:\windows\system32\drivers\BDDefense.sys [2015-08-16 135816]
R2 BDMNetMon;BDMNetMon; C:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\windows\system32\DRIVERS\RMCAST.sys [2010-11-20 117760]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
R3 AVerBDA6x;AVerBDA6x service; C:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl6.sys [2009-11-05 2494968]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-08-28 86056]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2009-08-28 108072]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-08-28 18472]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT32.sys [2009-08-19 492032]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2009-12-03 230832]
R3 vdrive;vdrive; C:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
R3 vm331avs;Digital Camera 1; C:\windows\System32\Drivers\vm331avs.sys [2009-11-09 179072]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
S3 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
S3 huawei_wwanecm;huawei_wwanecm; C:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-01-07 182304]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 128104]
S3 WinUsb;WinUsb; C:\windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BaiduHips;BaiduHips; C:\Program Files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe [2015-04-03 64008]
R2 BDKVRTP;BDKVRTP Service; C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe [2014-11-06 793096]
R2 BDMRTP;BDMRTP Service; C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe [2015-04-03 1047048]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-09-22 595232]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-10-13 354840]
R2 MbnExt;Mobile Broadband Extension Service; C:\windows\system32\svchost.exe [2009-07-14 20992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
R2 TPHDEXLGSVC;IdeaPad HDD APS Logging Service; C:\windows\System32\TPHDEXLG.exe [2009-10-21 39952]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 IGRS;IGRS; C:\Program Files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-25 87904]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2011-11-15 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-17 269000]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
S3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-07-08 148136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
OTM:
All processes killed
========== FILES ==========
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu scheduled to be moved on reboot.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin\\Description deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin\\Path deleted successfully.
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\baidusdTray scheduled to be deleted on reboot.
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\BaiduAnTray scheduled to be deleted on reboot.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\apphide deleted successfully.
========== SERVICES/DRIVERS ==========
Error: Unable to stop service bd0001!
Unable to delete service\driver key bd0001.
Error: Unable to stop service bd0002!
Unable to delete service\driver key bd0002.
Error: Unable to stop service bd0003!
Unable to delete service\driver key bd0003.
Error: Unable to stop service BDArKit!
Unable to delete service\driver key BDArKit.
Error: Unable to stop service BDDefense!
Unable to delete service\driver key BDDefense.
Error: Unable to stop service BDMNetMon!
Unable to delete service\driver key BDMNetMon.
Error: Unable to stop service BaiduHips!
Unable to delete service\driver key BaiduHips.
Error: Unable to stop service BDKVRTP!
Unable to delete service\driver key BDKVRTP.
Error: Unable to stop service BDMRTP!
Unable to delete service\driver key BDMRTP.
Service SeaPort stopped successfully!
Service SeaPort deleted successfully!
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Martin
->Temp folder emptied: 218662956 bytes
->Temporary Internet Files folder emptied: 13358312 bytes
->Java cache emptied: 3770018 bytes
->FireFox cache emptied: 8286803 bytes
->Flash cache emptied: 1611 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 40464451 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 1805 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 29227701 bytes
RecycleBin emptied: 249814832 bytes
Total Files Cleaned = 537,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Martin
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
OTM by OldTimer - Version 3.1.21.0 log created on 08242015_214323
Files moved on Reboot...
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu scheduled to be moved on reboot.
File move failed. C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\00000001_events.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\00000001_objbt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\00000001_objdt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\00000001_objid.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\segments.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\00000001_events.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\00000001_objbt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\00000001_objdt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\00000001_objid.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\segments.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\00000001_events.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\00000001_objbt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\00000001_objdt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\00000001_objid.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\segments.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\g_objbt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\g_objdt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\g_objid.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\report.rpt scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\avengine.dll.445f1d6aae5eb3328090b453cdfa9207 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\avengine.dll.9ee8bd3c2dfe2b51237b1662e1c9ede4 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kavbase.kdl.3e8bf89d9e50c2c3398e6f012f95dd66 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kavbase.kdl.ec30a0e81f3e302a0b46ce9429e61be5 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kavsys.kdl.0391f5ac52e93cd9dab69ba85c27957c scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kavsys.kdl.30034ad9af01dd951d1ba9fb68103889 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kjim.kdl.e30a2afa3b21fc3c867bdf51ac89005f scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\klavemu.kdl.b6b6dd223ad2aad28374217a028b59b0 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\qscan.kdl.382128a906559b230d403c88de25602a scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\qscan.kdl.ae11492a2ebef2dd4e97ebfa8fc91c9b scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\catcache.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\DataFormats-en.xml scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\klifpp.xms scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\persistent_storage.kvdb scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\persistent_storage.kvdb-shm scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\persistent_storage.kvdb-wal scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\settings_storage.kvdb scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\settings_storage.kvdb-shm scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\settings_storage.kvdb-wal scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\statcfg.xml scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\sw2.xms scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\updcfg.xml scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\verdicts.ini scheduled to be moved on reboot.
File move failed. C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.
Registry entries deleted on Reboot...
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\baidusdTray scheduled to be deleted on reboot.
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\BaiduAnTray scheduled to be deleted on reboot.
RSIT
Logfile of random's system information tool 1.10 (written by random/random)
Run by Martin at 2015-08-24 22:49:08
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 63 GB (33%) free of 192 GB
Total RAM: 2037 MB (61% free)
HijackThis download failed
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142
prefs.js - "browser.startup.homepage" - "https://www.google.cz/"
prefs.js - "keyword.URL" - "http://search.centrum.cz/?charset=UTF-8 ... toolbar-ff, ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaiduExpert-npplugin]
"Description"=Baidu Web Component
"Path"=C:\Users\Martin\AppData\Roaming\Baidu\BDWebAdapter\3.0.242.0\npBDExNP.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
nppdf32.dll
C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\extensions\
toolbar@centrumholdings.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-05-26 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-05-26 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-10-13 186904]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2009-11-19 307768]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe [2009-10-28 487992]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-03 1594664]
"Screen Rotation"=C:\PROGRA~1\Lenovo\LENOVO~1\SCREEN~1.EXE [2009-10-27 326144]
"TMCMonitor"=c:\Program Files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe [2009-11-09 53248]
"TpShocks"=C:\Windows\system32\TpShocks.exe [2009-09-02 186208]
"EnergyUtility"=C:\Program Files\Lenovo\Energy Management\utility.exe [2009-10-23 4114288]
"Energy Management"=C:\Program Files\Lenovo\Energy Management\Energy Management.exe [2009-10-23 5064560]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-04-19 141848]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-04-19 173592]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-04-19 150552]
"baidusdTray"=C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe [2015-05-03 3257240]
"BaiduAnTray"=C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe [2015-07-08 3042312]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"OTM"=C:\Users\Martin\Desktop\OTM.exe [2015-08-24 522240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
C:\Program Files\USB Camera\VM331_STI.EXE [2009-09-15 536576]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-04-19 218112]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"msacm.divxa32"=msaud32_divx.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-08-24 21:43:23 ----D---- C:\_OTM
2015-08-23 13:19:08 ----D---- C:\AdwCleaner
2015-08-22 08:54:10 ----D---- C:\rsit
2015-08-22 08:54:10 ----D---- C:\Program Files\trend micro
2015-07-28 09:09:07 ----A---- C:\windows\system32\generaltel.dll
2015-07-28 09:09:06 ----A---- C:\windows\system32\acmigration.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\devinv.dll
2015-07-28 09:09:05 ----A---- C:\windows\system32\appraiser.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\invagent.dll
2015-07-28 09:09:04 ----A---- C:\windows\system32\aeinv.dll
2015-07-28 09:09:00 ----A---- C:\windows\system32\aepdu.dll
2015-07-28 09:08:59 ----A---- C:\windows\system32\CompatTelRunner.exe
======List of files/folders modified in the last 1 month======
2015-08-24 22:49:05 ----D---- C:\windows\Temp
2015-08-24 22:38:11 ----A---- C:\AtmApInit.txt
2015-08-24 22:37:42 ----D---- C:\windows\System32
2015-08-24 22:37:42 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-08-24 22:23:33 ----D---- C:\windows\system32\config
2015-08-24 22:17:57 ----D---- C:\windows\system32\drivers
2015-08-23 13:48:06 ----D---- C:\windows\system32\NDF
2015-08-23 13:31:53 ----A---- C:\windows\WINCMD.INI
2015-08-23 13:27:48 ----RD---- C:\Program Files
2015-08-23 13:27:48 ----HD---- C:\ProgramData
2015-08-23 13:27:48 ----D---- C:\ProgramData\ICQ
2015-08-21 17:18:33 ----SHD---- C:\windows\Installer
2015-08-21 17:18:33 ----SHD---- C:\Config.Msi
2015-08-21 17:18:33 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-21 17:18:09 ----SHD---- C:\System Volume Information
2015-08-21 17:15:21 ----D---- C:\Users\Martin\AppData\Roaming\Seznam.cz
2015-08-21 17:14:22 ----D---- C:\Program Files\Downloaded Installations
2015-08-21 17:10:53 ----D---- C:\windows\Microsoft.NET
2015-08-17 22:27:36 ----A---- C:\windows\system32\FlashPlayerApp.exe
2015-08-02 16:37:21 ----D---- C:\Users\Martin\AppData\Roaming\Baidu
2015-08-02 10:55:06 ----D---- C:\windows\winsxs
2015-07-28 15:59:24 ----SD---- C:\windows\system32\CompatTel
2015-07-27 09:31:08 ----SD---- C:\windows\system32\GWX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-10-13 331288]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 Shockprf;Shockprf; C:\windows\System32\DRIVERS\Apsx86.sys [2009-10-21 118800]
R0 TPDIGIMN;TPDIGIMN; C:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
R1 bd0001;bd0001; C:\windows\system32\DRIVERS\bd0001.sys [2015-04-03 86344]
R1 bd0002;bd0002; C:\windows\system32\DRIVERS\bd0002.sys [2015-05-03 168392]
R1 bd0003;bd0003; C:\windows\system32\DRIVERS\bd0003.sys [2014-11-06 57160]
R1 BDEnhanceBoost;BDEnhanceBoost; C:\windows\system32\DRIVERS\BDEnhanceBoost.sys [2015-04-03 48328]
R1 BDMWrench;BDMWrench; C:\windows\system32\DRIVERS\BDMWrench.sys [2015-04-03 239432]
R1 BdSandBox;BdSandBox; C:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
R1 dvdfabio;dvdfabio; \??\C:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 BDArKit;BDArKit; C:\windows\system32\DRIVERS\BDArKit.sys [2015-04-03 145224]
R2 BDDefense;BDDefense; \??\C:\windows\system32\drivers\BDDefense.sys [2015-08-16 135816]
R2 BDMNetMon;BDMNetMon; C:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\windows\system32\DRIVERS\RMCAST.sys [2010-11-20 117760]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
R3 AVerBDA6x;AVerBDA6x service; C:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl6.sys [2009-11-05 2494968]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-08-28 86056]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2009-08-28 108072]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-08-28 18472]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT32.sys [2009-08-19 492032]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2009-12-03 230832]
R3 vdrive;vdrive; C:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
R3 vm331avs;Digital Camera 1; C:\windows\System32\Drivers\vm331avs.sys [2009-11-09 179072]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
S3 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
S3 huawei_wwanecm;huawei_wwanecm; C:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-01-07 182304]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 128104]
S3 WinUsb;WinUsb; C:\windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BaiduHips;BaiduHips; C:\Program Files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe [2015-04-03 64008]
R2 BDKVRTP;BDKVRTP Service; C:\Program Files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe [2014-11-06 793096]
R2 BDMRTP;BDMRTP Service; C:\Program Files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe [2015-04-03 1047048]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-09-22 595232]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-10-13 354840]
R2 MbnExt;Mobile Broadband Extension Service; C:\windows\system32\svchost.exe [2009-07-14 20992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
R2 TPHDEXLGSVC;IdeaPad HDD APS Logging Service; C:\windows\System32\TPHDEXLG.exe [2009-10-21 39952]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 IGRS;IGRS; C:\Program Files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-25 87904]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2011-11-15 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-17 269000]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
S3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-07-08 148136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
OTM:
All processes killed
========== FILES ==========
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu scheduled to be moved on reboot.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin\\Description deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@baidu.com/BaidusdDetectNPPlugin\\Path deleted successfully.
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\baidusdTray scheduled to be deleted on reboot.
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\BaiduAnTray scheduled to be deleted on reboot.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\apphide deleted successfully.
========== SERVICES/DRIVERS ==========
Error: Unable to stop service bd0001!
Unable to delete service\driver key bd0001.
Error: Unable to stop service bd0002!
Unable to delete service\driver key bd0002.
Error: Unable to stop service bd0003!
Unable to delete service\driver key bd0003.
Error: Unable to stop service BDArKit!
Unable to delete service\driver key BDArKit.
Error: Unable to stop service BDDefense!
Unable to delete service\driver key BDDefense.
Error: Unable to stop service BDMNetMon!
Unable to delete service\driver key BDMNetMon.
Error: Unable to stop service BaiduHips!
Unable to delete service\driver key BaiduHips.
Error: Unable to stop service BDKVRTP!
Unable to delete service\driver key BDKVRTP.
Error: Unable to stop service BDMRTP!
Unable to delete service\driver key BDMRTP.
Service SeaPort stopped successfully!
Service SeaPort deleted successfully!
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Martin
->Temp folder emptied: 218662956 bytes
->Temporary Internet Files folder emptied: 13358312 bytes
->Java cache emptied: 3770018 bytes
->FireFox cache emptied: 8286803 bytes
->Flash cache emptied: 1611 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 40464451 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 1805 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 29227701 bytes
RecycleBin emptied: 249814832 bytes
Total Files Cleaned = 537,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Martin
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
OTM by OldTimer - Version 3.1.21.0 log created on 08242015_214323
Files moved on Reboot...
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\repairplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\coolyplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkvrtpplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins\bdkv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc\common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\loc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\explugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV\Database scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605\BAV scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd\3.0.0.4605 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduSd scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\websafe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Tips scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\SWIcon scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins\Default scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\Skins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\RTPPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtrayplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmtaskbarplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmswmanagerplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmsusplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSOManagerPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMSafePlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMPatcherPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmmainframeplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bdmkvscanplugin scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\BDMCoolyPlugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins\bderrordetectplugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\plugins scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\PluginManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\licenses scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\patch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers\x64 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\hipsengine scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSysFixer scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSWManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\FTSOManager scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\drivers scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166\bdmantivirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn\4.0.0.5166 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu\BaiduAn scheduled to be moved on reboot.
Folder move failed. C:\Program Files\baidu scheduled to be moved on reboot.
File move failed. C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\00000001_events.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\00000001_objbt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\00000001_objdt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\00000001_objid.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\0C\segments.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\00000001_events.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\00000001_objbt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\00000001_objdt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\00000001_objid.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\05\segments.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\00000001_events.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\00000001_objbt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\00000001_objdt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\00000001_objid.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\00\segments.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\g_objbt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\g_objdt.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\g_objid.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Report\report.rpt scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\avengine.dll.445f1d6aae5eb3328090b453cdfa9207 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\avengine.dll.9ee8bd3c2dfe2b51237b1662e1c9ede4 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kavbase.kdl.3e8bf89d9e50c2c3398e6f012f95dd66 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kavbase.kdl.ec30a0e81f3e302a0b46ce9429e61be5 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kavsys.kdl.0391f5ac52e93cd9dab69ba85c27957c scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kavsys.kdl.30034ad9af01dd951d1ba9fb68103889 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\kjim.kdl.e30a2afa3b21fc3c867bdf51ac89005f scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\klavemu.kdl.b6b6dd223ad2aad28374217a028b59b0 scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\qscan.kdl.382128a906559b230d403c88de25602a scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\Cache\qscan.kdl.ae11492a2ebef2dd4e97ebfa8fc91c9b scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\catcache.dat scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\DataFormats-en.xml scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\klifpp.xms scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\persistent_storage.kvdb scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\persistent_storage.kvdb-shm scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\persistent_storage.kvdb-wal scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\settings_storage.kvdb scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\settings_storage.kvdb-shm scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\settings_storage.kvdb-wal scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\statcfg.xml scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\sw2.xms scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\updcfg.xml scheduled to be moved on reboot.
File move failed. C:\windows\temp\sdk8\verdicts.ini scheduled to be moved on reboot.
File move failed. C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.
Registry entries deleted on Reboot...
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\baidusdTray scheduled to be deleted on reboot.
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\BaiduAnTray scheduled to be deleted on reboot.
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: podivne chovani notebooku
Tak to nevyházel. Dejte log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se
jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine
aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,
pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k
nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
dinospages
- Vzorný návštěvník

- Příspěvky: 240
- Registrován: 20 črc 2006 11:33
Re: podivne chovani notebooku
combofix jede uz asi hodinu a pul, je u faze 48 kde se zrejme zastavil nebo jeste pracuje, to nevim. Ale je u ni zhruba pul hodky
-
dinospages
- Vzorný návštěvník

- Příspěvky: 240
- Registrován: 20 črc 2006 11:33
Re: podivne chovani notebooku
tak combofix kompletni
, nize je log. Jen dodam ze ty cinani tu porad jsou ale nespousteji se zrejme v takovem rozsahu. dale jen dodam ze v procesech je 14x svchost je to normalni?
Co to vlastne ten proces svchost je ?
ComboFix 15-08-24.01 - Martin 25.08.2015 10:19:02.1.2 - x86
Spuštěný z: c:\users\Martin\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\s.bat
c:\windows\system32\TPAPSLOG.LOG
c:\windows\system32\TPHDLOG0.LOG
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_BD0001
-------\Legacy_BD0002
-------\Service_bd0001
-------\Service_bd0002
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-25 do 2015-08-25 )))))))))))))))))))))))))))))))
.
.
2015-08-25 10:00 . 2015-08-25 10:04 -------- d-----w- c:\users\Martin\AppData\Local\temp
2015-08-25 10:00 . 2015-08-25 10:00 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-08-24 19:43 . 2015-08-24 19:43 -------- d-----w- C:\_OTM
2015-08-23 11:19 . 2015-08-23 11:27 -------- d-----w- C:\AdwCleaner
2015-08-22 06:54 . 2015-08-24 21:18 -------- d-----w- C:\rsit
2015-08-22 06:54 . 2015-08-22 06:54 -------- d-----w- c:\program files\trend micro
2015-08-17 20:35 . 2015-08-17 20:35 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\offreg.3800.dll
2015-08-16 06:26 . 2015-08-16 06:26 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\offreg.3324.dll
2015-07-31 17:21 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\mpengine.dll
2015-07-28 07:09 . 2015-07-25 17:47 587264 ----a-w- c:\windows\system32\generaltel.dll
2015-07-28 07:09 . 2015-07-25 17:46 58880 ----a-w- c:\windows\system32\acmigration.dll
2015-07-28 07:09 . 2015-07-25 17:46 342016 ----a-w- c:\windows\system32\devinv.dll
2015-07-28 07:09 . 2015-07-25 17:46 924160 ----a-w- c:\windows\system32\appraiser.dll
2015-07-28 07:09 . 2015-07-25 17:47 628736 ----a-w- c:\windows\system32\invagent.dll
2015-07-28 07:09 . 2015-07-25 17:40 932864 ----a-w- c:\windows\system32\aeinv.dll
2015-07-28 07:09 . 2015-07-25 17:46 202752 ----a-w- c:\windows\system32\aepdu.dll
2015-07-28 07:08 . 2015-07-25 17:51 15808 ----a-w- c:\windows\system32\CompatTelRunner.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-17 20:27 . 2012-10-23 13:24 778440 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-08-17 20:27 . 2012-10-23 13:24 142536 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-08-16 06:14 . 2015-05-03 16:48 135816 ----a-w- c:\windows\system32\drivers\BDDefense.sys
2015-07-15 02:55 . 2015-07-21 14:13 26624 ----a-w- c:\windows\system32\lpk.dll
2015-07-15 02:55 . 2015-07-21 14:13 70656 ----a-w- c:\windows\system32\fontsub.dll
2015-07-15 02:55 . 2015-07-21 14:13 10240 ----a-w- c:\windows\system32\dciman32.dll
2015-07-15 02:55 . 2015-07-21 14:13 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-15 01:52 . 2015-07-21 14:13 299008 ----a-w- c:\windows\system32\atmfd.dll
2015-07-09 17:43 . 2015-07-15 19:08 93184 ----a-w- c:\windows\system32\wudriver.dll
2015-07-09 17:43 . 2015-07-15 19:08 35840 ----a-w- c:\windows\system32\wups2.dll
2015-07-09 17:43 . 2015-07-15 19:08 30208 ----a-w- c:\windows\system32\wups.dll
2015-07-09 17:43 . 2015-07-15 19:08 173056 ----a-w- c:\windows\system32\wuwebv.dll
2015-07-09 17:43 . 2015-07-15 19:08 2943488 ----a-w- c:\windows\system32\wucltux.dll
2015-07-09 17:43 . 2015-07-15 19:08 566784 ----a-w- c:\windows\system32\wuapi.dll
2015-07-09 17:43 . 2015-07-15 19:08 2057216 ----a-w- c:\windows\system32\wuaueng.dll
2015-07-09 17:43 . 2015-07-15 19:08 73728 ----a-w- c:\windows\system32\WinSetupUI.dll
2015-07-09 17:42 . 2015-07-15 19:08 11776 ----a-w- c:\windows\system32\wu.upgrade.ps.dll
2015-07-09 17:42 . 2015-07-15 19:08 135168 ----a-w- c:\windows\system32\wuauclt.exe
2015-07-09 17:42 . 2015-07-15 19:08 34816 ----a-w- c:\windows\system32\wuapp.exe
2015-07-04 17:48 . 2015-07-15 19:09 1414656 ----a-w- c:\windows\system32\ole32.dll
2015-07-02 21:08 . 2015-07-15 19:06 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-01 20:46 . 2015-07-15 19:11 67520 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-01 20:46 . 2015-07-15 19:11 137664 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2015-07-01 20:30 . 2015-07-15 19:11 172032 ----a-w- c:\windows\system32\wdigest.dll
2015-07-01 20:30 . 2015-07-15 19:11 65536 ----a-w- c:\windows\system32\TSpkg.dll
2015-07-01 20:30 . 2015-07-15 19:11 100352 ----a-w- c:\windows\system32\sspicli.dll
2015-07-01 20:30 . 2015-07-15 19:11 15872 ----a-w- c:\windows\system32\sspisrv.dll
2015-07-01 20:30 . 2015-07-15 19:11 248832 ----a-w- c:\windows\system32\schannel.dll
2015-07-01 20:30 . 2015-07-15 19:11 22016 ----a-w- c:\windows\system32\secur32.dll
2015-07-01 20:30 . 2015-07-15 19:11 655360 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-01 20:30 . 2015-07-15 19:11 221184 ----a-w- c:\windows\system32\ncrypt.dll
2015-07-01 20:30 . 2015-07-15 19:11 259584 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-01 20:30 . 2015-07-15 19:11 1061376 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-01 20:30 . 2015-07-15 19:11 552960 ----a-w- c:\windows\system32\kerberos.dll
2015-07-01 20:30 . 2015-07-15 19:11 36864 ----a-w- c:\windows\system32\cryptbase.dll
2015-07-01 20:30 . 2015-07-15 19:11 17408 ----a-w- c:\windows\system32\credssp.dll
2015-07-01 20:29 . 2015-07-15 19:11 22528 ----a-w- c:\windows\system32\lsass.exe
2015-07-01 20:29 . 2015-07-15 19:11 50176 ----a-w- c:\windows\system32\auditpol.exe
2015-07-01 20:27 . 2015-07-15 19:11 60416 ----a-w- c:\windows\system32\msobjs.dll
2015-07-01 20:26 . 2015-07-15 19:11 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-01 20:24 . 2015-07-15 19:11 686080 ----a-w- c:\windows\system32\adtschema.dll
2015-07-01 19:18 . 2015-07-15 19:11 225792 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-01 19:18 . 2015-07-15 19:11 98304 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-01 19:18 . 2015-07-15 19:11 124416 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-06-27 01:58 . 2015-07-15 19:05 620032 ----a-w- c:\windows\system32\jscript9diag.dll
2015-06-27 01:39 . 2015-07-15 19:05 4520448 ----a-w- c:\windows\system32\jscript9.dll
2015-06-25 08:46 . 2015-07-15 19:11 2383872 ----a-w- c:\windows\system32\win32k.sys
2015-06-23 11:27 . 2010-08-05 17:34 246952 ------w- c:\windows\system32\MpSigStub.exe
2015-06-19 18:40 . 2015-07-15 19:07 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2015-06-19 18:25 . 2015-07-15 19:06 504320 ----a-w- c:\windows\system32\vbscript.dll
2015-06-19 18:25 . 2015-07-15 19:07 62464 ----a-w- c:\windows\system32\iesetup.dll
2015-06-19 18:24 . 2015-07-15 19:07 47616 ----a-w- c:\windows\system32\ieetwproxystub.dll
2015-06-19 18:24 . 2015-07-15 19:06 341504 ----a-w- c:\windows\system32\html.iec
2015-06-19 18:23 . 2015-07-15 19:06 64000 ----a-w- c:\windows\system32\MshtmlDac.dll
2015-06-19 18:13 . 2015-07-15 19:07 102912 ----a-w- c:\windows\system32\ieetwcollector.exe
2015-06-19 18:13 . 2015-07-15 19:07 115712 ----a-w- c:\windows\system32\ieUnatt.exe
2015-06-19 18:06 . 2015-07-15 19:07 667648 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2015-06-19 17:57 . 2015-07-15 19:07 60416 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 17:40 . 2015-07-15 19:07 2052608 ----a-w- c:\windows\system32\inetcpl.cpl
2015-06-19 17:39 . 2015-07-15 19:06 1155072 ----a-w- c:\windows\system32\mshtmlmedia.dll
2015-06-19 17:15 . 2015-07-15 19:07 1951232 ----a-w- c:\windows\system32\wininet.dll
2015-06-17 17:39 . 2015-07-15 19:09 305664 ----a-w- c:\windows\system32\gdi32.dll
2015-06-15 21:47 . 2015-07-15 19:10 101824 ----a-w- c:\windows\system32\consent.exe
2015-06-15 21:43 . 2015-07-15 19:10 2364416 ----a-w- c:\windows\system32\msi.dll
2015-06-15 21:43 . 2015-07-15 19:10 337408 ----a-w- c:\windows\system32\msihnd.dll
2015-06-15 21:43 . 2015-07-15 19:10 1805824 ----a-w- c:\windows\system32\authui.dll
2015-06-15 21:43 . 2015-07-15 19:10 47104 ----a-w- c:\windows\system32\appinfo.dll
2015-06-15 21:42 . 2015-07-15 19:10 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-06-15 21:37 . 2015-07-15 19:10 25088 ----a-w- c:\windows\system32\msimsg.dll
2015-06-01 23:47 . 2015-07-15 19:07 210432 ----a-w- c:\windows\system32\cewmdm.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-10-13 186904]
"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2009-11-19 307768]
"cAudioFilterAgent"="c:\program files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe" [2009-10-28 487992]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-12-03 1594664]
"TMCMonitor"="c:\program files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe" [2009-11-09 53248]
"TpShocks"="c:\windows\system32\TpShocks.exe" [2009-09-02 186208]
"EnergyUtility"="c:\program files\Lenovo\Energy Management\utility.exe" [2009-10-23 4114288]
"Energy Management"="c:\program files\Lenovo\Energy Management\Energy Management.exe" [2009-10-23 5064560]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-04-19 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-04-19 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-04-19 150552]
"baidusdTray"="c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe" [2015-05-03 3257240]
"BaiduAnTray"="c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe" [2015-07-08 3042312]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"WLStart"="c:\program files\Windows Live\Installer\wlstart.exe" [2009-07-26 779600]
.
c:\users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\Lenovo\Bluetooth Software\BTTray.exe [2009-9-22 795936]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
2009-09-15 10:29 536576 ----a-w- c:\program files\USB Camera\VM331_STI.EXE
.
R3 adusbser;AnyDATA USB Device for Legacy Serial Communication;c:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
R3 Bridge0;Bridge0;c:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
R3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
R3 huawei_wwanecm;huawei_wwanecm;c:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
R3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc;c:\program files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
R3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc;c:\program files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 PS_MDP;ReadyComm Presentation Space Helper Service;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2010-01-07 182304]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
R3 wsvd;wsvd;c:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
S0 TPDIGIMN;TPDIGIMN;c:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
S1 bd0001;bd0001;c:\windows\system32\DRIVERS\bd0001.sys [2015-04-03 86344]
S1 bd0002;bd0002;c:\windows\system32\DRIVERS\bd0002.sys [2015-05-03 168392]
S1 bd0003;bd0003;c:\windows\system32\DRIVERS\bd0003.sys [2014-11-06 57160]
S1 BDEnhanceBoost;BDEnhanceBoost;c:\windows\system32\DRIVERS\BDEnhanceBoost.sys [2015-04-03 48328]
S1 BDMWrench;BDMWrench;c:\windows\system32\DRIVERS\BDMWrench.sys [2015-04-03 239432]
S1 BdSandBox;BdSandBox;c:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
S1 dvdfabio;dvdfabio;c:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
S2 BaiduHips;BaiduHips;c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe [2015-04-03 64008]
S2 BDArKit;BDArKit;c:\windows\system32\DRIVERS\BDArKit.sys [2015-04-03 145224]
S2 BDDefense;BDDefense;c:\windows\system32\drivers\BDDefense.sys [2015-08-16 135816]
S2 BDKVRTP;BDKVRTP Service;c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe [2014-11-06 793096]
S2 BDMNetMon;BDMNetMon;c:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
S2 BDMRTP;BDMRTP Service;c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe [2015-04-03 1047048]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe [2009-07-14 20992]
S2 IGRS;IGRS;c:\program files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 MbnExt;Mobile Broadband Extension Service;c:\windows\system32\svchost.exe [2009-07-14 20992]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
S3 AVerBDA6x;AVerBDA6x service;c:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
S3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
S3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
S3 vdrive;vdrive;c:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
S3 vm331avs;Digital Camera 1;c:\windows\system32\Drivers\vm331avs.sys [2009-11-09 179072]
S3 wdmirror;wdmirror;c:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - BD0001
*NewlyCreated* - BD0002
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc Mcx2Svc
IgrsSvcs REG_MULTI_SZ ReadyComm.DirectRouter PS_MDP
MbnExt REG_MULTI_SZ MbnExt
utcsvc REG_MULTI_SZ DiagTrack
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-25 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-23 20:27]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie.htm
Trusted Zone: baidu.com
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
FF - ProfilePath - c:\users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\
FF - prefs.js: browser.search.selectedEngine - Centrum.cz
FF - prefs.js: browser.startup.homepage - hxxps://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.centrum.cz/?charset=UTF-8&channel_id=ch-toolbar-ff,ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
SafeBoot-mcmscsvc
SafeBoot-MCODS
AddRemove-GIMP-2_is1 - c:\program files\GIMP 2\uninst\unins000.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\system32\\Macromed\\Flash\\FlashUtil32_18_0_0_232_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\windows\\system32\\Macromed\\Flash\\FlashUtil32_18_0_0_232_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\SYSTEM32\WISPTIS.EXE
c:\windows\SYSTEM32\WISPTIS.EXE
c:\program files\Common Files\microsoft shared\ink\TabTip.exe
c:\windows\system32\runonce.exe
c:\windows\system32\WLANExt.exe
c:\windows\system32\conhost.exe
c:\windows\system32\conhost.exe
c:\windows\system32\taskhost.exe
c:\program files\Lenovo\Bluetooth Software\btwdins.exe
c:\users\Martin\Desktop\OTM.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\System32\TPHDEXLG.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\windows\system32\sppsvc.exe
c:\windows\servicing\TrustedInstaller.exe
c:\program files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Celkový čas: 2015-08-25 12:12:44 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-08-25 10:12
.
Před spuštěním: Volných bajtů: 66 259 746 816
Po spuštění: Volných bajtů: 65 128 300 544
.
- - End Of File - - 52BC6552BA7F37ED476196530303C71D
5C616939100B85E558DA92B899A0FC36
Co to vlastne ten proces svchost je ?
ComboFix 15-08-24.01 - Martin 25.08.2015 10:19:02.1.2 - x86
Spuštěný z: c:\users\Martin\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\s.bat
c:\windows\system32\TPAPSLOG.LOG
c:\windows\system32\TPHDLOG0.LOG
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_BD0001
-------\Legacy_BD0002
-------\Service_bd0001
-------\Service_bd0002
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-25 do 2015-08-25 )))))))))))))))))))))))))))))))
.
.
2015-08-25 10:00 . 2015-08-25 10:04 -------- d-----w- c:\users\Martin\AppData\Local\temp
2015-08-25 10:00 . 2015-08-25 10:00 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-08-24 19:43 . 2015-08-24 19:43 -------- d-----w- C:\_OTM
2015-08-23 11:19 . 2015-08-23 11:27 -------- d-----w- C:\AdwCleaner
2015-08-22 06:54 . 2015-08-24 21:18 -------- d-----w- C:\rsit
2015-08-22 06:54 . 2015-08-22 06:54 -------- d-----w- c:\program files\trend micro
2015-08-17 20:35 . 2015-08-17 20:35 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\offreg.3800.dll
2015-08-16 06:26 . 2015-08-16 06:26 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\offreg.3324.dll
2015-07-31 17:21 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\mpengine.dll
2015-07-28 07:09 . 2015-07-25 17:47 587264 ----a-w- c:\windows\system32\generaltel.dll
2015-07-28 07:09 . 2015-07-25 17:46 58880 ----a-w- c:\windows\system32\acmigration.dll
2015-07-28 07:09 . 2015-07-25 17:46 342016 ----a-w- c:\windows\system32\devinv.dll
2015-07-28 07:09 . 2015-07-25 17:46 924160 ----a-w- c:\windows\system32\appraiser.dll
2015-07-28 07:09 . 2015-07-25 17:47 628736 ----a-w- c:\windows\system32\invagent.dll
2015-07-28 07:09 . 2015-07-25 17:40 932864 ----a-w- c:\windows\system32\aeinv.dll
2015-07-28 07:09 . 2015-07-25 17:46 202752 ----a-w- c:\windows\system32\aepdu.dll
2015-07-28 07:08 . 2015-07-25 17:51 15808 ----a-w- c:\windows\system32\CompatTelRunner.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-17 20:27 . 2012-10-23 13:24 778440 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-08-17 20:27 . 2012-10-23 13:24 142536 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-08-16 06:14 . 2015-05-03 16:48 135816 ----a-w- c:\windows\system32\drivers\BDDefense.sys
2015-07-15 02:55 . 2015-07-21 14:13 26624 ----a-w- c:\windows\system32\lpk.dll
2015-07-15 02:55 . 2015-07-21 14:13 70656 ----a-w- c:\windows\system32\fontsub.dll
2015-07-15 02:55 . 2015-07-21 14:13 10240 ----a-w- c:\windows\system32\dciman32.dll
2015-07-15 02:55 . 2015-07-21 14:13 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-15 01:52 . 2015-07-21 14:13 299008 ----a-w- c:\windows\system32\atmfd.dll
2015-07-09 17:43 . 2015-07-15 19:08 93184 ----a-w- c:\windows\system32\wudriver.dll
2015-07-09 17:43 . 2015-07-15 19:08 35840 ----a-w- c:\windows\system32\wups2.dll
2015-07-09 17:43 . 2015-07-15 19:08 30208 ----a-w- c:\windows\system32\wups.dll
2015-07-09 17:43 . 2015-07-15 19:08 173056 ----a-w- c:\windows\system32\wuwebv.dll
2015-07-09 17:43 . 2015-07-15 19:08 2943488 ----a-w- c:\windows\system32\wucltux.dll
2015-07-09 17:43 . 2015-07-15 19:08 566784 ----a-w- c:\windows\system32\wuapi.dll
2015-07-09 17:43 . 2015-07-15 19:08 2057216 ----a-w- c:\windows\system32\wuaueng.dll
2015-07-09 17:43 . 2015-07-15 19:08 73728 ----a-w- c:\windows\system32\WinSetupUI.dll
2015-07-09 17:42 . 2015-07-15 19:08 11776 ----a-w- c:\windows\system32\wu.upgrade.ps.dll
2015-07-09 17:42 . 2015-07-15 19:08 135168 ----a-w- c:\windows\system32\wuauclt.exe
2015-07-09 17:42 . 2015-07-15 19:08 34816 ----a-w- c:\windows\system32\wuapp.exe
2015-07-04 17:48 . 2015-07-15 19:09 1414656 ----a-w- c:\windows\system32\ole32.dll
2015-07-02 21:08 . 2015-07-15 19:06 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-01 20:46 . 2015-07-15 19:11 67520 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-01 20:46 . 2015-07-15 19:11 137664 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2015-07-01 20:30 . 2015-07-15 19:11 172032 ----a-w- c:\windows\system32\wdigest.dll
2015-07-01 20:30 . 2015-07-15 19:11 65536 ----a-w- c:\windows\system32\TSpkg.dll
2015-07-01 20:30 . 2015-07-15 19:11 100352 ----a-w- c:\windows\system32\sspicli.dll
2015-07-01 20:30 . 2015-07-15 19:11 15872 ----a-w- c:\windows\system32\sspisrv.dll
2015-07-01 20:30 . 2015-07-15 19:11 248832 ----a-w- c:\windows\system32\schannel.dll
2015-07-01 20:30 . 2015-07-15 19:11 22016 ----a-w- c:\windows\system32\secur32.dll
2015-07-01 20:30 . 2015-07-15 19:11 655360 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-01 20:30 . 2015-07-15 19:11 221184 ----a-w- c:\windows\system32\ncrypt.dll
2015-07-01 20:30 . 2015-07-15 19:11 259584 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-01 20:30 . 2015-07-15 19:11 1061376 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-01 20:30 . 2015-07-15 19:11 552960 ----a-w- c:\windows\system32\kerberos.dll
2015-07-01 20:30 . 2015-07-15 19:11 36864 ----a-w- c:\windows\system32\cryptbase.dll
2015-07-01 20:30 . 2015-07-15 19:11 17408 ----a-w- c:\windows\system32\credssp.dll
2015-07-01 20:29 . 2015-07-15 19:11 22528 ----a-w- c:\windows\system32\lsass.exe
2015-07-01 20:29 . 2015-07-15 19:11 50176 ----a-w- c:\windows\system32\auditpol.exe
2015-07-01 20:27 . 2015-07-15 19:11 60416 ----a-w- c:\windows\system32\msobjs.dll
2015-07-01 20:26 . 2015-07-15 19:11 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-01 20:24 . 2015-07-15 19:11 686080 ----a-w- c:\windows\system32\adtschema.dll
2015-07-01 19:18 . 2015-07-15 19:11 225792 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-01 19:18 . 2015-07-15 19:11 98304 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-01 19:18 . 2015-07-15 19:11 124416 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-06-27 01:58 . 2015-07-15 19:05 620032 ----a-w- c:\windows\system32\jscript9diag.dll
2015-06-27 01:39 . 2015-07-15 19:05 4520448 ----a-w- c:\windows\system32\jscript9.dll
2015-06-25 08:46 . 2015-07-15 19:11 2383872 ----a-w- c:\windows\system32\win32k.sys
2015-06-23 11:27 . 2010-08-05 17:34 246952 ------w- c:\windows\system32\MpSigStub.exe
2015-06-19 18:40 . 2015-07-15 19:07 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2015-06-19 18:25 . 2015-07-15 19:06 504320 ----a-w- c:\windows\system32\vbscript.dll
2015-06-19 18:25 . 2015-07-15 19:07 62464 ----a-w- c:\windows\system32\iesetup.dll
2015-06-19 18:24 . 2015-07-15 19:07 47616 ----a-w- c:\windows\system32\ieetwproxystub.dll
2015-06-19 18:24 . 2015-07-15 19:06 341504 ----a-w- c:\windows\system32\html.iec
2015-06-19 18:23 . 2015-07-15 19:06 64000 ----a-w- c:\windows\system32\MshtmlDac.dll
2015-06-19 18:13 . 2015-07-15 19:07 102912 ----a-w- c:\windows\system32\ieetwcollector.exe
2015-06-19 18:13 . 2015-07-15 19:07 115712 ----a-w- c:\windows\system32\ieUnatt.exe
2015-06-19 18:06 . 2015-07-15 19:07 667648 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2015-06-19 17:57 . 2015-07-15 19:07 60416 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 17:40 . 2015-07-15 19:07 2052608 ----a-w- c:\windows\system32\inetcpl.cpl
2015-06-19 17:39 . 2015-07-15 19:06 1155072 ----a-w- c:\windows\system32\mshtmlmedia.dll
2015-06-19 17:15 . 2015-07-15 19:07 1951232 ----a-w- c:\windows\system32\wininet.dll
2015-06-17 17:39 . 2015-07-15 19:09 305664 ----a-w- c:\windows\system32\gdi32.dll
2015-06-15 21:47 . 2015-07-15 19:10 101824 ----a-w- c:\windows\system32\consent.exe
2015-06-15 21:43 . 2015-07-15 19:10 2364416 ----a-w- c:\windows\system32\msi.dll
2015-06-15 21:43 . 2015-07-15 19:10 337408 ----a-w- c:\windows\system32\msihnd.dll
2015-06-15 21:43 . 2015-07-15 19:10 1805824 ----a-w- c:\windows\system32\authui.dll
2015-06-15 21:43 . 2015-07-15 19:10 47104 ----a-w- c:\windows\system32\appinfo.dll
2015-06-15 21:42 . 2015-07-15 19:10 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-06-15 21:37 . 2015-07-15 19:10 25088 ----a-w- c:\windows\system32\msimsg.dll
2015-06-01 23:47 . 2015-07-15 19:07 210432 ----a-w- c:\windows\system32\cewmdm.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-10-13 186904]
"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2009-11-19 307768]
"cAudioFilterAgent"="c:\program files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe" [2009-10-28 487992]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-12-03 1594664]
"TMCMonitor"="c:\program files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe" [2009-11-09 53248]
"TpShocks"="c:\windows\system32\TpShocks.exe" [2009-09-02 186208]
"EnergyUtility"="c:\program files\Lenovo\Energy Management\utility.exe" [2009-10-23 4114288]
"Energy Management"="c:\program files\Lenovo\Energy Management\Energy Management.exe" [2009-10-23 5064560]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-04-19 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-04-19 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-04-19 150552]
"baidusdTray"="c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe" [2015-05-03 3257240]
"BaiduAnTray"="c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe" [2015-07-08 3042312]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"WLStart"="c:\program files\Windows Live\Installer\wlstart.exe" [2009-07-26 779600]
.
c:\users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\Lenovo\Bluetooth Software\BTTray.exe [2009-9-22 795936]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
2009-09-15 10:29 536576 ----a-w- c:\program files\USB Camera\VM331_STI.EXE
.
R3 adusbser;AnyDATA USB Device for Legacy Serial Communication;c:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
R3 Bridge0;Bridge0;c:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
R3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
R3 huawei_wwanecm;huawei_wwanecm;c:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
R3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc;c:\program files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
R3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc;c:\program files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 PS_MDP;ReadyComm Presentation Space Helper Service;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2010-01-07 182304]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
R3 wsvd;wsvd;c:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
S0 TPDIGIMN;TPDIGIMN;c:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
S1 bd0001;bd0001;c:\windows\system32\DRIVERS\bd0001.sys [2015-04-03 86344]
S1 bd0002;bd0002;c:\windows\system32\DRIVERS\bd0002.sys [2015-05-03 168392]
S1 bd0003;bd0003;c:\windows\system32\DRIVERS\bd0003.sys [2014-11-06 57160]
S1 BDEnhanceBoost;BDEnhanceBoost;c:\windows\system32\DRIVERS\BDEnhanceBoost.sys [2015-04-03 48328]
S1 BDMWrench;BDMWrench;c:\windows\system32\DRIVERS\BDMWrench.sys [2015-04-03 239432]
S1 BdSandBox;BdSandBox;c:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
S1 dvdfabio;dvdfabio;c:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
S2 BaiduHips;BaiduHips;c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe [2015-04-03 64008]
S2 BDArKit;BDArKit;c:\windows\system32\DRIVERS\BDArKit.sys [2015-04-03 145224]
S2 BDDefense;BDDefense;c:\windows\system32\drivers\BDDefense.sys [2015-08-16 135816]
S2 BDKVRTP;BDKVRTP Service;c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe [2014-11-06 793096]
S2 BDMNetMon;BDMNetMon;c:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
S2 BDMRTP;BDMRTP Service;c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe [2015-04-03 1047048]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe [2009-07-14 20992]
S2 IGRS;IGRS;c:\program files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 MbnExt;Mobile Broadband Extension Service;c:\windows\system32\svchost.exe [2009-07-14 20992]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
S3 AVerBDA6x;AVerBDA6x service;c:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
S3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
S3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
S3 vdrive;vdrive;c:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
S3 vm331avs;Digital Camera 1;c:\windows\system32\Drivers\vm331avs.sys [2009-11-09 179072]
S3 wdmirror;wdmirror;c:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - BD0001
*NewlyCreated* - BD0002
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc Mcx2Svc
IgrsSvcs REG_MULTI_SZ ReadyComm.DirectRouter PS_MDP
MbnExt REG_MULTI_SZ MbnExt
utcsvc REG_MULTI_SZ DiagTrack
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-25 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-23 20:27]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie.htm
Trusted Zone: baidu.com
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
FF - ProfilePath - c:\users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\
FF - prefs.js: browser.search.selectedEngine - Centrum.cz
FF - prefs.js: browser.startup.homepage - hxxps://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.centrum.cz/?charset=UTF-8&channel_id=ch-toolbar-ff,ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
SafeBoot-mcmscsvc
SafeBoot-MCODS
AddRemove-GIMP-2_is1 - c:\program files\GIMP 2\uninst\unins000.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\system32\\Macromed\\Flash\\FlashUtil32_18_0_0_232_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\windows\\system32\\Macromed\\Flash\\FlashUtil32_18_0_0_232_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\SYSTEM32\WISPTIS.EXE
c:\windows\SYSTEM32\WISPTIS.EXE
c:\program files\Common Files\microsoft shared\ink\TabTip.exe
c:\windows\system32\runonce.exe
c:\windows\system32\WLANExt.exe
c:\windows\system32\conhost.exe
c:\windows\system32\conhost.exe
c:\windows\system32\taskhost.exe
c:\program files\Lenovo\Bluetooth Software\btwdins.exe
c:\users\Martin\Desktop\OTM.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\System32\TPHDEXLG.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\windows\system32\sppsvc.exe
c:\windows\servicing\TrustedInstaller.exe
c:\program files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Celkový čas: 2015-08-25 12:12:44 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-08-25 10:12
.
Před spuštěním: Volných bajtů: 66 259 746 816
Po spuštění: Volných bajtů: 65 128 300 544
.
- - End Of File - - 52BC6552BA7F37ED476196530303C71D
5C616939100B85E558DA92B899A0FC36
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: podivne chovani notebooku
Svchost je proces, který řídí síť. služby a může být vícekrát spuštěn. Sám o sobě je regulérní, nicméně se za ním může skrývat nějaký šmejdík. Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:

Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.KillAll::
Folder::
c:\program files\Baidu\BaiduSd
c:\program files\Baidu\BaiduAn
c:\program files\Common Files\Baidu
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"baidusdTray"=-
"BaiduAnTray"=-
Driver::
bd0001
bd0002
bd0003
BDEnhanceBoost
BDMWrench
BaiduHips
BDArKit
BDDefense
BDKVRTP
BDMRTP
RegLock::
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
Reboot::

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
dinospages
- Vzorný návštěvník

- Příspěvky: 240
- Registrován: 20 črc 2006 11:33
Re: podivne chovani notebooku
tak v procesech po restartu nic neni ani v liste u hodin, wifi funguje akorat v programech a funkcich jsou jeste dve aplikace mam je zkusit odinstalovat?
ComboFix 15-08-24.01 - Martin 25.08.2015 16:41:00.2.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2037.1031 [GMT 2:00]
Spuštěný z: c:\users\Martin\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Martin\Desktop\CFScript.txt
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Baidu\BaiduAn
c:\program files\Baidu\BaiduAn\4.0.0.5166\804.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\ad.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\ad.dll.O1
c:\program files\Baidu\BaiduAn\4.0.0.5166\app.ico
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAn.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnBugRpt.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe.O1
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnUpdate.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduSdPatcher.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDAFileHelper.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDALeakfixer.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASoftMgr.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASWAcc.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASWDeskGuide.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASWHelper.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASWUpdateTip.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDCooly.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDDriverFixer.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\bderrordetect.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDExDownloader.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDKVRecomm.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDLogicUtils.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMCommon.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMDbSqlite.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMDownload.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMFrameWork.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMHeartBeat.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMMainFrame.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMNet.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMPatchAgent.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMPatchAgent.dll.O1
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMReport.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMScriptVM.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSkin.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWBasicFunc.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWDeepClean.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWNestCore.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWNetComm.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWParseDetect.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMUpdate.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMWindowsLib.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDNetMisc.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDPreL.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDSWShellExt.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDSWShellExt64.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\cjson.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\dl.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\dnw.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\DriverManager.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\EnhanceBoost.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\FZLTHYS-GB18030(20120913).ttf
c:\program files\Baidu\BaiduAn\4.0.0.5166\GameNoDisturb.ini
c:\program files\Baidu\BaiduAn\4.0.0.5166\GCCallbackBind.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\GCCommunicate.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\GCScriptBind.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsClient.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\ad.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHips.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsBugRpt.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsBusiness.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsCore.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsIU.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsUpdate.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduPrevUIn.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\bd0001.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\bd0002.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDConfig.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDDriverFixer.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDLogicUtils.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMAVCached.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMAVEng.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMBase.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMDownload.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMFrameWork.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMLog.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMMsg.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMNet.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMPatchAgent.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMReport.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMStringUtils.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMTinyXml.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMUpdate.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDPerflog.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\blacksign.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\cache_config.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\DriverManager.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\hips_customer.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\hips_product.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\hips_self_enc.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\InstallCfg.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\NetService.ini
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\patch.7z
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\policy.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\systemfile.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\TrustAndIso.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\wverify.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\chkm.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\libcurl.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\libeay32.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\LuaInvoker.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\NetService.ini
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\GlobalPluginInfo.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\HotPlugin.bnr
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\HotPlugins.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\LocalPluginInfo.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\NotInstalledPlugin.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\policy_baiduan.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\PreU.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\PullUpConfig.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\repair_tools.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDKV.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMSetting.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTips.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMUpdate.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\CommonRes.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\KVCommonRes.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\KVMain.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\Mainpage.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\Patcher.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SafePlugin.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SmartTips.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\Softmgr.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SOManager.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SOTurbo.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SusPlugin.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SWManager.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SysAccelerator.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SysFixer.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\Unknownfile.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\SysRepLib.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\uninst.exe
c:\program files\Baidu\BaiduSd
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_app_cat.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_assembler.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_facade.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_file_categorizer.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_integrity_control.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_meta.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_process_monitor.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\acassembler.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ad.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\advdis.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\am_facade.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\am_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\am_meta.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\app_core_legacy.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\app_core_legacy.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\app_core_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\app_core_meta.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\AppCat.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\appinfo.kli
c:\program files\Baidu\BaiduSd\3.0.0.4605\arj.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\arjpack.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\attestation_task.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\avs.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAIDU2014.key
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSd.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdBugRpt.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdPatcher.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdRepair.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe.O1
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdUpdate.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdUProxy64.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\base64.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\base64p.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavArchive.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavCommon.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavEngine.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavFrame.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavOLE.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavScanH.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavScanM.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavScanV.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavUnpack.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavUpdate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavUpdate.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0000.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0001.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0002.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0003.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0004.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0005.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0006.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0007.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0008.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0009.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sv0000.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BdBro.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDCooly.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDDriverFixer.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVDeskBand.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVDeskBand64.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVDownloadProtect.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVDownloadProtect_x64.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVMainFrame.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVRecomm.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVWsc.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDLogicUtils.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDKitUtils.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMAVCached.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMAVEng.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMPerfMon.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMRepBase.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMRepMgr.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDUDiskGuard.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\bduf.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\blacksign.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\cache_config.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\ccesign.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\CompatibilityChecker.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kav_verify.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\KavUpdate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\app_core_legacy.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\appinfo.kli
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\BAIDU2014.key
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\kl.pbv
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\msvcp100.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\msvcr100.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\oper.pbv
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\service.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\service.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\storage.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\storage.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\transport.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\transport.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_adaptor.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_adaptor.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_adaptor.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_sync.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_sync.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\UpdSdk.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\monitor_config.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\scan_mgr_config.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\systemfile.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\TrustAndIso.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\virus_type.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\wverify.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMAVE.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMCommon.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMDbSqlite.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMDownload.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMEvents.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMFrameWork.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMNet.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMNetPlus.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMPatchAgent.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMPatchAgent.dll.O1
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMPatchAgent.dll.O2
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMPatchAgent.dll.O3
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMReport.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMReportPlus.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMScriptVM.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMSDWrench.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMUpdate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMWindowsLib.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDPerflog.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BdSandCtl.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BdSbxDll.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDShellExt.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDShellExt64.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\btdisk.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\btimages.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\buffer.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\CAB.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_anti_malware_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_config.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_prague_adapter.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_response_provider.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\CKAHComm.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ckahrule.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\CKAHUM.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\Cleanup.reg
c:\program files\Baidu\BaiduSd\3.0.0.4605\Cleanup64.reg
c:\program files\Baidu\BaiduSd\3.0.0.4605\clldr.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\config.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\content_filtering.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\crpthlpr.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\CryptoStaticProvider.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\DataFormats-en.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\deflate.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\DesktopToast.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\deterministic_anti_phishing_service.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\dl.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\dmap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\dns_client.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\dnw.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\DriverManager.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\bd0003.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\BDArKit.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\BDFileDefend.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\BDMWrench.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\BdSandBox.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\dtreg.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\eka_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ekasyswatch.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\excludemanager.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\Explode.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\EXTLprtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\filemap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\filesystem_services.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\format_recognizer.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\FsDrvPlg.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\fssync.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\FTPprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\GameNoDisturb.ini
c:\program files\Baidu\BaiduSd\3.0.0.4605\GCCallbackBind.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\GCCommunicate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\GCScriptBind.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\HashMD5.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\HashSha1.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsClient.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\ad.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHips.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsBugRpt.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsBusiness.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsCore.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsIU.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsUpdate.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduPrevUIn.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\bd0001.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\bd0002.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDConfig.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDDriverFixer.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDLogicUtils.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMAVCached.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMAVEng.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMBase.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMDownload.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMFrameWork.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMLog.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMMsg.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMNet.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMPatchAgent.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMReport.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMStringUtils.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMTinyXml.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMUpdate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDPerflog.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\blacksign.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\cache_config.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\DriverManager.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\hips_customer.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\hips_product.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\hips_self_enc.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\InstallCfg.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\NetService.ini
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\patch.7z
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\policy.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\systemfile.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\TrustAndIso.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\wverify.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\httpanlz.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\httpscan.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\chkm.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ICQprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\icudt40.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\icuin40.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\icuio40.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\icuuc40.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\iexplore.exe.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\ichecker.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\IMAPprtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\imc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\Inflate.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\inifile.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\instrumental.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\instrumental_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\integrity_control.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\IpcLib.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\IRCprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\JBRprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_cpconvert.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_engine.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_filtration.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_gsg.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_loader.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_product.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_uds.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kave8.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kavesd.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kavess.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kavessi.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\key_value_storage.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kl.pbv
c:\program files\Baidu\BaiduSd\3.0.0.4605\KL_libeay32.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\KL_ssleay32.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\klifpp.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\klifpp.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\klifpp_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kpcengine.2.2.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn_client.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn_statistics.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksnhelper.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\KVFixerConfigMgr.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\lha.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\Mail.reg
c:\program files\Baidu\BaiduSd\3.0.0.4605\Mail64.reg
c:\program files\Baidu\BaiduSd\3.0.0.4605\mailer.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\MailMsg.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\mc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\mdb.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\MDMAP.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\MemModSc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\memscan.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\minizip.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\MMPprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\MSNprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\msoe.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\msvcp100.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\msvcr100.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\NetService.ini
c:\program files\Baidu\BaiduSd\3.0.0.4605\network_services.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\nfio.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\NNTPprtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\NTFSstrm.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\oas.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\ods.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\oper.pbv
c:\program files\Baidu\BaiduSd\3.0.0.4605\P2Pprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\packed_io.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\params.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\passdmap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\persistent_queue.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\persistent_storage.kvdb
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins.cfg
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\Cooly_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\KVMainframe_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\KVRtp_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\KVTray_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\Repair_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins_config.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\policy_baidusd.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\POP3prtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\PreU.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\prloader.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\processmonitor.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\procmon.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\propmap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\prremote.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\prseqio.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\PrUtil.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\PullUpConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\qb.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\quantum.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\queue.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\rar.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\regmap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\repair_tools.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\report.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\ReportDB.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\sax_xml_parser.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\service.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\service.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\settings_storage.kvdb
c:\program files\Baidu\BaiduSd\3.0.0.4605\schedule.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\skin_engine.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\SMTPprtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\StdComp.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\storage.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\storage.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\stored.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\superio.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\swpragueplugin.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\system_services.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\thpimpl.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\threats_disinfection.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ThreatsManager.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\timer.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\tips.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\tm.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\ToastImage.png
c:\program files\Baidu\BaiduSd\3.0.0.4605\ToastLogo.ico
c:\program files\Baidu\BaiduSd\3.0.0.4605\traffic_processing.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\traffic_processing_product_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\TrafMon2.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\transport.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\transport.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\transport_provider.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\tuopan.png
c:\program files\Baidu\BaiduSd\3.0.0.4605\uds4urls.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\unarj.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\UniArc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\uninst.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\unlzx.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\unreduce.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\UNSHRINK.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\UnStored.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_adaptor.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_adaptor.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_adaptor.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_subscription.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_subscription.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_sync.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_sync.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\updlog.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\url_processing.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\volenum.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\vulnerability_status_provider.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\WDiskIO.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\webnetstat.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\WinLibHlpr.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\winreg.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\wmihlpr.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\xorio.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\YHOprtc.dll
c:\program files\Common Files\Baidu
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\ad.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\ad.dll.bk
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsBugRpt.exe
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsBusiness.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsCore.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsCore.dll.O1
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsIU.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsUpdate.exe
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduPrevUIn.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\bd0001.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\bd0002.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDConfig.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDDriverFixer.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDLogicUtils.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\bdmantivirus\BDKitUtils.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMAVCached.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMAVEng.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMBase.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMDownload.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMFrameWork.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMLog.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMMsg.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMNet.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMPatchAgent.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMReport.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMStringUtils.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMTinyXml.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMUpdate.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDPerflog.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\blacksign.dat
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\cache_config.dat
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\DriverManager.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\drivers\bd0001.sys
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\drivers\bd0002.sys
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\drivers\BDArKit.sys
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\drivers\BDDefense.sys
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\hips_customer.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\hips_product.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\hips_self_enc.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\InstallCfg.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\NetService.ini
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch.7z
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_hips.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_HipsClient_2.1.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_HipsClient_2.1.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_HipsClient_2.3.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_HipsClient_2.3.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_PreU_2.1.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_PreU_2.3.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduSd_hips.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduSd_HipsClient_1.8.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduSd_HipsClient_1.8.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduSd_PreU_1.8.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\placeholder_tmp
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\Policy.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\smr.dat
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\systemfile.dat
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\TrustAndIso.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\wverify.dat
c:\program files\Common Files\Baidu\BDDownload\109\7z.dll
c:\program files\Common Files\Baidu\BDDownload\109\bdcomproxy.dll
c:\program files\Common Files\Baidu\BDDownload\109\bddownloader.exe
c:\program files\Common Files\Baidu\BDDownload\109\dl.dll
c:\program files\Common Files\Baidu\BDDownload\109\Global.db
c:\windows\system32\TPAPSLOG.LOG
c:\windows\system32\TPHDLOG0.LOG
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_BD0001
-------\Legacy_BD0002
-------\Legacy_BD0003
-------\Legacy_BDARKIT
-------\Legacy_BDDEFENSE
-------\Legacy_BDENHANCEBOOST
-------\Legacy_BDMWRENCH
-------\Service_BaiduHips
-------\Service_bd0001
-------\Service_bd0002
-------\Service_bd0003
-------\Service_BDArKit
-------\Service_BDDefense
-------\Service_BDEnhanceBoost
-------\Service_BDKVRTP
-------\Service_BDMRTP
-------\Service_BDMWrench
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-25 do 2015-08-25 )))))))))))))))))))))))))))))))
.
.
2015-08-25 15:50 . 2015-08-25 15:55 -------- d-----w- c:\users\Martin\AppData\Local\temp
2015-08-24 19:43 . 2015-08-24 19:43 -------- d-----w- C:\_OTM
2015-08-23 11:19 . 2015-08-23 11:27 -------- d-----w- C:\AdwCleaner
2015-08-22 06:54 . 2015-08-24 21:18 -------- d-----w- C:\rsit
2015-08-22 06:54 . 2015-08-22 06:54 -------- d-----w- c:\program files\trend micro
2015-08-17 20:35 . 2015-08-17 20:35 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\offreg.3800.dll
2015-08-16 06:26 . 2015-08-16 06:26 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\offreg.3324.dll
2015-07-31 17:21 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\mpengine.dll
2015-07-28 07:09 . 2015-07-25 17:47 587264 ----a-w- c:\windows\system32\generaltel.dll
2015-07-28 07:09 . 2015-07-25 17:46 58880 ----a-w- c:\windows\system32\acmigration.dll
2015-07-28 07:09 . 2015-07-25 17:46 342016 ----a-w- c:\windows\system32\devinv.dll
2015-07-28 07:09 . 2015-07-25 17:46 924160 ----a-w- c:\windows\system32\appraiser.dll
2015-07-28 07:09 . 2015-07-25 17:47 628736 ----a-w- c:\windows\system32\invagent.dll
2015-07-28 07:09 . 2015-07-25 17:40 932864 ----a-w- c:\windows\system32\aeinv.dll
2015-07-28 07:09 . 2015-07-25 17:46 202752 ----a-w- c:\windows\system32\aepdu.dll
2015-07-28 07:08 . 2015-07-25 17:51 15808 ----a-w- c:\windows\system32\CompatTelRunner.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-17 20:27 . 2012-10-23 13:24 778440 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-08-17 20:27 . 2012-10-23 13:24 142536 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-08-16 06:14 . 2015-05-03 16:48 135816 ----a-w- c:\windows\system32\drivers\BDDefense.sys
2015-07-15 02:55 . 2015-07-21 14:13 26624 ----a-w- c:\windows\system32\lpk.dll
2015-07-15 02:55 . 2015-07-21 14:13 70656 ----a-w- c:\windows\system32\fontsub.dll
2015-07-15 02:55 . 2015-07-21 14:13 10240 ----a-w- c:\windows\system32\dciman32.dll
2015-07-15 02:55 . 2015-07-21 14:13 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-15 01:52 . 2015-07-21 14:13 299008 ----a-w- c:\windows\system32\atmfd.dll
2015-07-09 17:43 . 2015-07-15 19:08 93184 ----a-w- c:\windows\system32\wudriver.dll
2015-07-09 17:43 . 2015-07-15 19:08 35840 ----a-w- c:\windows\system32\wups2.dll
2015-07-09 17:43 . 2015-07-15 19:08 30208 ----a-w- c:\windows\system32\wups.dll
2015-07-09 17:43 . 2015-07-15 19:08 173056 ----a-w- c:\windows\system32\wuwebv.dll
2015-07-09 17:43 . 2015-07-15 19:08 2943488 ----a-w- c:\windows\system32\wucltux.dll
2015-07-09 17:43 . 2015-07-15 19:08 566784 ----a-w- c:\windows\system32\wuapi.dll
2015-07-09 17:43 . 2015-07-15 19:08 2057216 ----a-w- c:\windows\system32\wuaueng.dll
2015-07-09 17:43 . 2015-07-15 19:08 73728 ----a-w- c:\windows\system32\WinSetupUI.dll
2015-07-09 17:42 . 2015-07-15 19:08 11776 ----a-w- c:\windows\system32\wu.upgrade.ps.dll
2015-07-09 17:42 . 2015-07-15 19:08 135168 ----a-w- c:\windows\system32\wuauclt.exe
2015-07-09 17:42 . 2015-07-15 19:08 34816 ----a-w- c:\windows\system32\wuapp.exe
2015-07-04 17:48 . 2015-07-15 19:09 1414656 ----a-w- c:\windows\system32\ole32.dll
2015-07-02 21:08 . 2015-07-15 19:06 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-01 20:46 . 2015-07-15 19:11 67520 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-01 20:46 . 2015-07-15 19:11 137664 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2015-07-01 20:30 . 2015-07-15 19:11 172032 ----a-w- c:\windows\system32\wdigest.dll
2015-07-01 20:30 . 2015-07-15 19:11 65536 ----a-w- c:\windows\system32\TSpkg.dll
2015-07-01 20:30 . 2015-07-15 19:11 100352 ----a-w- c:\windows\system32\sspicli.dll
2015-07-01 20:30 . 2015-07-15 19:11 15872 ----a-w- c:\windows\system32\sspisrv.dll
2015-07-01 20:30 . 2015-07-15 19:11 248832 ----a-w- c:\windows\system32\schannel.dll
2015-07-01 20:30 . 2015-07-15 19:11 22016 ----a-w- c:\windows\system32\secur32.dll
2015-07-01 20:30 . 2015-07-15 19:11 655360 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-01 20:30 . 2015-07-15 19:11 221184 ----a-w- c:\windows\system32\ncrypt.dll
2015-07-01 20:30 . 2015-07-15 19:11 259584 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-01 20:30 . 2015-07-15 19:11 1061376 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-01 20:30 . 2015-07-15 19:11 552960 ----a-w- c:\windows\system32\kerberos.dll
2015-07-01 20:30 . 2015-07-15 19:11 36864 ----a-w- c:\windows\system32\cryptbase.dll
2015-07-01 20:30 . 2015-07-15 19:11 17408 ----a-w- c:\windows\system32\credssp.dll
2015-07-01 20:29 . 2015-07-15 19:11 22528 ----a-w- c:\windows\system32\lsass.exe
2015-07-01 20:29 . 2015-07-15 19:11 50176 ----a-w- c:\windows\system32\auditpol.exe
2015-07-01 20:27 . 2015-07-15 19:11 60416 ----a-w- c:\windows\system32\msobjs.dll
2015-07-01 20:26 . 2015-07-15 19:11 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-01 20:24 . 2015-07-15 19:11 686080 ----a-w- c:\windows\system32\adtschema.dll
2015-07-01 19:18 . 2015-07-15 19:11 225792 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-01 19:18 . 2015-07-15 19:11 98304 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-01 19:18 . 2015-07-15 19:11 124416 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-06-27 01:58 . 2015-07-15 19:05 620032 ----a-w- c:\windows\system32\jscript9diag.dll
2015-06-27 01:39 . 2015-07-15 19:05 4520448 ----a-w- c:\windows\system32\jscript9.dll
2015-06-25 08:46 . 2015-07-15 19:11 2383872 ----a-w- c:\windows\system32\win32k.sys
2015-06-23 11:27 . 2010-08-05 17:34 246952 ------w- c:\windows\system32\MpSigStub.exe
2015-06-19 18:40 . 2015-07-15 19:07 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2015-06-19 18:25 . 2015-07-15 19:06 504320 ----a-w- c:\windows\system32\vbscript.dll
2015-06-19 18:25 . 2015-07-15 19:07 62464 ----a-w- c:\windows\system32\iesetup.dll
2015-06-19 18:24 . 2015-07-15 19:07 47616 ----a-w- c:\windows\system32\ieetwproxystub.dll
2015-06-19 18:24 . 2015-07-15 19:06 341504 ----a-w- c:\windows\system32\html.iec
2015-06-19 18:23 . 2015-07-15 19:06 64000 ----a-w- c:\windows\system32\MshtmlDac.dll
2015-06-19 18:13 . 2015-07-15 19:07 102912 ----a-w- c:\windows\system32\ieetwcollector.exe
2015-06-19 18:13 . 2015-07-15 19:07 115712 ----a-w- c:\windows\system32\ieUnatt.exe
2015-06-19 18:06 . 2015-07-15 19:07 667648 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2015-06-19 17:57 . 2015-07-15 19:07 60416 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 17:40 . 2015-07-15 19:07 2052608 ----a-w- c:\windows\system32\inetcpl.cpl
2015-06-19 17:39 . 2015-07-15 19:06 1155072 ----a-w- c:\windows\system32\mshtmlmedia.dll
2015-06-19 17:15 . 2015-07-15 19:07 1951232 ----a-w- c:\windows\system32\wininet.dll
2015-06-17 17:39 . 2015-07-15 19:09 305664 ----a-w- c:\windows\system32\gdi32.dll
2015-06-15 21:47 . 2015-07-15 19:10 101824 ----a-w- c:\windows\system32\consent.exe
2015-06-15 21:43 . 2015-07-15 19:10 2364416 ----a-w- c:\windows\system32\msi.dll
2015-06-15 21:43 . 2015-07-15 19:10 337408 ----a-w- c:\windows\system32\msihnd.dll
2015-06-15 21:43 . 2015-07-15 19:10 1805824 ----a-w- c:\windows\system32\authui.dll
2015-06-15 21:43 . 2015-07-15 19:10 47104 ----a-w- c:\windows\system32\appinfo.dll
2015-06-15 21:42 . 2015-07-15 19:10 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-06-15 21:37 . 2015-07-15 19:10 25088 ----a-w- c:\windows\system32\msimsg.dll
2015-06-01 23:47 . 2015-07-15 19:07 210432 ----a-w- c:\windows\system32\cewmdm.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-10-13 186904]
"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2009-11-19 307768]
"cAudioFilterAgent"="c:\program files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe" [2009-10-28 487992]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-12-03 1594664]
"TMCMonitor"="c:\program files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe" [2009-11-09 53248]
"TpShocks"="c:\windows\system32\TpShocks.exe" [2009-09-02 186208]
"EnergyUtility"="c:\program files\Lenovo\Energy Management\utility.exe" [2009-10-23 4114288]
"Energy Management"="c:\program files\Lenovo\Energy Management\Energy Management.exe" [2009-10-23 5064560]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-04-19 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-04-19 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-04-19 150552]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"WLStart"="c:\program files\Windows Live\Installer\wlstart.exe" [2009-07-26 779600]
.
c:\users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\Lenovo\Bluetooth Software\BTTray.exe [2009-9-22 795936]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
2009-09-15 10:29 536576 ----a-w- c:\program files\USB Camera\VM331_STI.EXE
.
R3 adusbser;AnyDATA USB Device for Legacy Serial Communication;c:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
R3 Bridge0;Bridge0;c:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
R3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
R3 huawei_wwanecm;huawei_wwanecm;c:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
R3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc;c:\program files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
R3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc;c:\program files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 PS_MDP;ReadyComm Presentation Space Helper Service;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2010-01-07 182304]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
R3 wsvd;wsvd;c:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
S0 TPDIGIMN;TPDIGIMN;c:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
S1 BdSandBox;BdSandBox;c:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
S1 dvdfabio;dvdfabio;c:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
S2 BDMNetMon;BDMNetMon;c:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe [2009-07-14 20992]
S2 IGRS;IGRS;c:\program files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 MbnExt;Mobile Broadband Extension Service;c:\windows\system32\svchost.exe [2009-07-14 20992]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
S3 AVerBDA6x;AVerBDA6x service;c:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
S3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
S3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
S3 vdrive;vdrive;c:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
S3 vm331avs;Digital Camera 1;c:\windows\system32\Drivers\vm331avs.sys [2009-11-09 179072]
S3 wdmirror;wdmirror;c:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc Mcx2Svc
IgrsSvcs REG_MULTI_SZ ReadyComm.DirectRouter PS_MDP
MbnExt REG_MULTI_SZ MbnExt
utcsvc REG_MULTI_SZ DiagTrack
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-25 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-23 20:27]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie.htm
Trusted Zone: baidu.com
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
FF - ProfilePath - c:\users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\
FF - prefs.js: browser.search.selectedEngine - Centrum.cz
FF - prefs.js: browser.startup.homepage - hxxps://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.centrum.cz/?charset=UTF-8&channel_id=ch-toolbar-ff,ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-???? - c:\program files\Baidu\BaiduAn\4.0.0.5166\uninst.exe
AddRemove-???? - c:\program files\Baidu\BaiduSd\3.0.0.4605\uninst.exe
.
.
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(7416)
c:\program files\Lenovo\Bluetooth Software\btmmhook.dll
c:\program files\Lenovo\Bluetooth Software\btncopy.dll
c:\program files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\SYSTEM32\WISPTIS.EXE
c:\windows\system32\WLANExt.exe
c:\windows\system32\conhost.exe
c:\program files\Lenovo\Bluetooth Software\btwdins.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\System32\TPHDEXLG.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\windows\system32\taskhost.exe
c:\windows\SYSTEM32\WISPTIS.EXE
c:\program files\Common Files\microsoft shared\ink\TabTip.exe
c:\windows\system32\conhost.exe
c:\windows\system32\GWX\GWX.exe
c:\program files\Lenovo\Lenovo Screen Rotation\ScreenRotation.exe
c:\program files\Synaptics\SynTP\SynTPHelper.exe
c:\windows\system32\igfxsrvc.exe
c:\program files\Lenovo\Bluetooth Software\BtStackServer.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
.
**************************************************************************
.
Celkový čas: 2015-08-25 18:04:36 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-08-25 16:04
ComboFix2.txt 2015-08-25 10:12
.
Před spuštěním: Volných bajtů: 64 992 206 848
Po spuštění: Volných bajtů: 64 774 864 896
.
- - End Of File - - 5B6B434807DED5E1E9480081BFA48912
5C616939100B85E558DA92B899A0FC36
ComboFix 15-08-24.01 - Martin 25.08.2015 16:41:00.2.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2037.1031 [GMT 2:00]
Spuštěný z: c:\users\Martin\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Martin\Desktop\CFScript.txt
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Baidu\BaiduAn
c:\program files\Baidu\BaiduAn\4.0.0.5166\804.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\ad.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\ad.dll.O1
c:\program files\Baidu\BaiduAn\4.0.0.5166\app.ico
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAn.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnBugRpt.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnSvc.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnTray.exe.O1
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduAnUpdate.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BaiduSdPatcher.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDAFileHelper.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDALeakfixer.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASoftMgr.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASWAcc.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASWDeskGuide.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASWHelper.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDASWUpdateTip.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDCooly.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDDriverFixer.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\bderrordetect.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDExDownloader.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDKVRecomm.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDLogicUtils.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMCommon.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMDbSqlite.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMDownload.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMFrameWork.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMHeartBeat.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMMainFrame.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMNet.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMPatchAgent.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMPatchAgent.dll.O1
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMReport.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMScriptVM.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSkin.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWBasicFunc.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWDeepClean.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWNestCore.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWNetComm.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMSWParseDetect.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMUpdate.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDMWindowsLib.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDNetMisc.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDPreL.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDSWShellExt.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\BDSWShellExt64.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\cjson.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\dl.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\dnw.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\DriverManager.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\EnhanceBoost.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\FZLTHYS-GB18030(20120913).ttf
c:\program files\Baidu\BaiduAn\4.0.0.5166\GameNoDisturb.ini
c:\program files\Baidu\BaiduAn\4.0.0.5166\GCCallbackBind.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\GCCommunicate.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\GCScriptBind.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsClient.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\ad.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHips.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsBugRpt.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsBusiness.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsCore.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsIU.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduHipsUpdate.exe
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BaiduPrevUIn.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\bd0001.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\bd0002.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDConfig.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDDriverFixer.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDLogicUtils.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMAVCached.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMAVEng.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMBase.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMDownload.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMFrameWork.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMLog.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMMsg.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMNet.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMPatchAgent.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMReport.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMStringUtils.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMTinyXml.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDMUpdate.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\BDPerflog.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\blacksign.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\cache_config.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\DriverManager.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\hips_customer.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\hips_product.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\hips_self_enc.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\InstallCfg.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\NetService.ini
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\patch.7z
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\policy.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\systemfile.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\TrustAndIso.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\hipsengine\wverify.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\chkm.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\libcurl.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\libeay32.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\LuaInvoker.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\NetService.ini
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\GlobalPluginInfo.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\HotPlugin.bnr
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\HotPlugins.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\LocalPluginInfo.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\plugins\NotInstalledPlugin.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\policy_baiduan.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\PreU.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\PullUpConfig.xml
c:\program files\Baidu\BaiduAn\4.0.0.5166\repair_tools.dll
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDKV.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMSetting.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTips.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMTray.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\BDMUpdate.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\CommonRes.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\KVCommonRes.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\KVMain.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\Mainpage.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\Patcher.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SafePlugin.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SmartTips.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\Softmgr.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SOManager.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SOTurbo.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SusPlugin.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SWManager.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SysAccelerator.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\SysFixer.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\Skins\Default\Unknownfile.rdb
c:\program files\Baidu\BaiduAn\4.0.0.5166\SysRepLib.dat
c:\program files\Baidu\BaiduAn\4.0.0.5166\uninst.exe
c:\program files\Baidu\BaiduSd
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_app_cat.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_assembler.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_facade.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_file_categorizer.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_integrity_control.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_meta.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ac_process_monitor.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\acassembler.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ad.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\advdis.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\am_facade.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\am_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\am_meta.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\app_core_legacy.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\app_core_legacy.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\app_core_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\app_core_meta.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\AppCat.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\appinfo.kli
c:\program files\Baidu\BaiduSd\3.0.0.4605\arj.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\arjpack.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\attestation_task.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\avs.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAIDU2014.key
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSd.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdBugRpt.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdPatcher.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdRepair.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdSvc.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdTray.exe.O1
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdUpdate.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BaiduSdUProxy64.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\base64.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\base64p.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavArchive.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavCommon.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavEngine.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavFrame.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavOLE.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavScanH.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavScanM.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavScanV.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavUnpack.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavUpdate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\BavUpdate.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0000.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0001.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0002.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0003.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0004.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0005.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0006.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0007.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0008.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sm0009.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BAV\Database\sv0000.vdf
c:\program files\Baidu\BaiduSd\3.0.0.4605\BdBro.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDCooly.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDDriverFixer.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVDeskBand.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVDeskBand64.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVDownloadProtect.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVDownloadProtect_x64.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVMainFrame.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVRecomm.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDKVWsc.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDLogicUtils.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDKitUtils.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMAVCached.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMAVEng.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMPerfMon.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMRepBase.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDMRepMgr.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\BDUDiskGuard.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\bduf.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\blacksign.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\cache_config.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\ccesign.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\CompatibilityChecker.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kav_verify.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\KavUpdate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\app_core_legacy.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\appinfo.kli
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\BAIDU2014.key
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\kl.pbv
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\msvcp100.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\msvcr100.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\oper.pbv
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\service.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\service.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\storage.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\storage.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\transport.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\transport.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_adaptor.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_adaptor.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_adaptor.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_sync.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\update_sync.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\kavupdate\UpdSdk.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\monitor_config.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\scan_mgr_config.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\systemfile.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\TrustAndIso.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\virus_type.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\bdmantivirus\wverify.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMAVE.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMCommon.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMDbSqlite.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMDownload.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMEvents.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMFrameWork.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMNet.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMNetPlus.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMPatchAgent.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMPatchAgent.dll.O1
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMPatchAgent.dll.O2
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMPatchAgent.dll.O3
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMReport.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMReportPlus.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMScriptVM.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMSDWrench.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMUpdate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDMWindowsLib.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDPerflog.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BdSandCtl.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BdSbxDll.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDShellExt.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\BDShellExt64.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\btdisk.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\btimages.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\buffer.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\CAB.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_anti_malware_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_config.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_prague_adapter.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\cf_response_provider.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\CKAHComm.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ckahrule.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\CKAHUM.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\Cleanup.reg
c:\program files\Baidu\BaiduSd\3.0.0.4605\Cleanup64.reg
c:\program files\Baidu\BaiduSd\3.0.0.4605\clldr.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\config.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\content_filtering.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\crpthlpr.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\CryptoStaticProvider.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\DataFormats-en.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\deflate.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\DesktopToast.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\deterministic_anti_phishing_service.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\dl.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\dmap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\dns_client.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\dnw.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\DriverManager.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\bd0003.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\BDArKit.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\BDFileDefend.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\BDMWrench.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\drivers\BdSandBox.sys
c:\program files\Baidu\BaiduSd\3.0.0.4605\dtreg.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\eka_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ekasyswatch.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\excludemanager.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\Explode.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\EXTLprtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\filemap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\filesystem_services.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\format_recognizer.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\FsDrvPlg.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\fssync.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\FTPprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\GameNoDisturb.ini
c:\program files\Baidu\BaiduSd\3.0.0.4605\GCCallbackBind.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\GCCommunicate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\GCScriptBind.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\HashMD5.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\HashSha1.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsClient.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\ad.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHips.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsBugRpt.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsBusiness.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsCore.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsIU.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduHipsUpdate.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BaiduPrevUIn.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\bd0001.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\bd0002.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDConfig.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDDriverFixer.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDLogicUtils.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMAVCached.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMAVEng.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMBase.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMDownload.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMFrameWork.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMLog.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMMsg.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMNet.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMPatchAgent.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMReport.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMStringUtils.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMTinyXml.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDMUpdate.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\BDPerflog.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\blacksign.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\cache_config.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\DriverManager.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\hips_customer.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\hips_product.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\hips_self_enc.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\InstallCfg.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\NetService.ini
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\patch.7z
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\policy.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\systemfile.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\TrustAndIso.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\hipsengine\wverify.dat
c:\program files\Baidu\BaiduSd\3.0.0.4605\httpanlz.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\httpscan.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\chkm.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ICQprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\icudt40.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\icuin40.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\icuio40.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\icuuc40.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\iexplore.exe.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\ichecker.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\IMAPprtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\imc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\Inflate.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\inifile.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\instrumental.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\instrumental_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\integrity_control.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\IpcLib.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\IRCprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\JBRprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_cpconvert.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_engine.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_filtration.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_gsg.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_loader.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_product.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kas_uds.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kave8.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kavesd.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kavess.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kavessi.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\key_value_storage.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kl.pbv
c:\program files\Baidu\BaiduSd\3.0.0.4605\KL_libeay32.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\KL_ssleay32.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\klifpp.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\klifpp.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\klifpp_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\kpcengine.2.2.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn_client.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn_meta.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksn_statistics.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ksnhelper.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\KVFixerConfigMgr.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\lha.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\Mail.reg
c:\program files\Baidu\BaiduSd\3.0.0.4605\Mail64.reg
c:\program files\Baidu\BaiduSd\3.0.0.4605\mailer.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\MailMsg.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\mc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\mdb.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\MDMAP.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\MemModSc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\memscan.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\minizip.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\MMPprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\MSNprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\msoe.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\msvcp100.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\msvcr100.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\NetService.ini
c:\program files\Baidu\BaiduSd\3.0.0.4605\network_services.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\nfio.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\NNTPprtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\NTFSstrm.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\oas.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\ods.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\oper.pbv
c:\program files\Baidu\BaiduSd\3.0.0.4605\P2Pprtc.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\packed_io.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\params.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\passdmap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\persistent_queue.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\persistent_storage.kvdb
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins.cfg
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\Cooly_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\KVMainframe_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\KVRtp_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\KVTray_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins\Repair_PluginConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\plugins_config.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\policy_baidusd.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\POP3prtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\PreU.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\prloader.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\processmonitor.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\procmon.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\propmap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\prremote.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\prseqio.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\PrUtil.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\PullUpConfig.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\qb.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\quantum.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\queue.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\rar.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\regmap.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\repair_tools.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\report.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\ReportDB.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\sax_xml_parser.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\service.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\service.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\settings_storage.kvdb
c:\program files\Baidu\BaiduSd\3.0.0.4605\schedule.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\skin_engine.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\SMTPprtc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\StdComp.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\storage.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\storage.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\stored.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\superio.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\swpragueplugin.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\system_services.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\thpimpl.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\threats_disinfection.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\ThreatsManager.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\timer.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\tips.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\tm.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\ToastImage.png
c:\program files\Baidu\BaiduSd\3.0.0.4605\ToastLogo.ico
c:\program files\Baidu\BaiduSd\3.0.0.4605\traffic_processing.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\traffic_processing_product_facade.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\TrafMon2.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\transport.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\transport.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\transport_provider.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\tuopan.png
c:\program files\Baidu\BaiduSd\3.0.0.4605\uds4urls.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\unarj.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\UniArc.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\uninst.exe
c:\program files\Baidu\BaiduSd\3.0.0.4605\unlzx.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\unreduce.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\UNSHRINK.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\UnStored.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_adaptor.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_adaptor.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_adaptor.xml
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_subscription.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_subscription.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_sync.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\update_sync.esm
c:\program files\Baidu\BaiduSd\3.0.0.4605\updlog.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\url_processing.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\volenum.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\vulnerability_status_provider.dll
c:\program files\Baidu\BaiduSd\3.0.0.4605\WDiskIO.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\webnetstat.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\WinLibHlpr.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\winreg.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\wmihlpr.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\xorio.ppl
c:\program files\Baidu\BaiduSd\3.0.0.4605\YHOprtc.dll
c:\program files\Common Files\Baidu
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\ad.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\ad.dll.bk
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsBugRpt.exe
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsBusiness.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsCore.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsCore.dll.O1
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsIU.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHipsUpdate.exe
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduPrevUIn.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\bd0001.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\bd0002.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDConfig.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDDriverFixer.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDLogicUtils.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\bdmantivirus\BDKitUtils.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMAVCached.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMAVEng.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMBase.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMDownload.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMFrameWork.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMLog.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMMsg.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMNet.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMPatchAgent.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMReport.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMStringUtils.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMTinyXml.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDMUpdate.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\BDPerflog.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\blacksign.dat
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\cache_config.dat
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\DriverManager.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\drivers\bd0001.sys
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\drivers\bd0002.sys
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\drivers\BDArKit.sys
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\drivers\BDDefense.sys
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\hips_customer.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\hips_product.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\hips_self_enc.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\InstallCfg.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\NetService.ini
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch.7z
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_hips.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_HipsClient_2.1.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_HipsClient_2.1.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_HipsClient_2.3.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_HipsClient_2.3.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_PreU_2.1.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduAn_PreU_2.3.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduSd_hips.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduSd_HipsClient_1.8.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduSd_HipsClient_1.8.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\BaiduSd_PreU_1.8.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\patch\placeholder_tmp
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\Policy.xml
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\smr.dat
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\systemfile.dat
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\TrustAndIso.dll
c:\program files\Common Files\Baidu\BaiduHips\1.2.0.751\wverify.dat
c:\program files\Common Files\Baidu\BDDownload\109\7z.dll
c:\program files\Common Files\Baidu\BDDownload\109\bdcomproxy.dll
c:\program files\Common Files\Baidu\BDDownload\109\bddownloader.exe
c:\program files\Common Files\Baidu\BDDownload\109\dl.dll
c:\program files\Common Files\Baidu\BDDownload\109\Global.db
c:\windows\system32\TPAPSLOG.LOG
c:\windows\system32\TPHDLOG0.LOG
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_BD0001
-------\Legacy_BD0002
-------\Legacy_BD0003
-------\Legacy_BDARKIT
-------\Legacy_BDDEFENSE
-------\Legacy_BDENHANCEBOOST
-------\Legacy_BDMWRENCH
-------\Service_BaiduHips
-------\Service_bd0001
-------\Service_bd0002
-------\Service_bd0003
-------\Service_BDArKit
-------\Service_BDDefense
-------\Service_BDEnhanceBoost
-------\Service_BDKVRTP
-------\Service_BDMRTP
-------\Service_BDMWrench
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-25 do 2015-08-25 )))))))))))))))))))))))))))))))
.
.
2015-08-25 15:50 . 2015-08-25 15:55 -------- d-----w- c:\users\Martin\AppData\Local\temp
2015-08-24 19:43 . 2015-08-24 19:43 -------- d-----w- C:\_OTM
2015-08-23 11:19 . 2015-08-23 11:27 -------- d-----w- C:\AdwCleaner
2015-08-22 06:54 . 2015-08-24 21:18 -------- d-----w- C:\rsit
2015-08-22 06:54 . 2015-08-22 06:54 -------- d-----w- c:\program files\trend micro
2015-08-17 20:35 . 2015-08-17 20:35 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\offreg.3800.dll
2015-08-16 06:26 . 2015-08-16 06:26 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\offreg.3324.dll
2015-07-31 17:21 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C276155-C066-41B7-B671-A3C9FE9B206F}\mpengine.dll
2015-07-28 07:09 . 2015-07-25 17:47 587264 ----a-w- c:\windows\system32\generaltel.dll
2015-07-28 07:09 . 2015-07-25 17:46 58880 ----a-w- c:\windows\system32\acmigration.dll
2015-07-28 07:09 . 2015-07-25 17:46 342016 ----a-w- c:\windows\system32\devinv.dll
2015-07-28 07:09 . 2015-07-25 17:46 924160 ----a-w- c:\windows\system32\appraiser.dll
2015-07-28 07:09 . 2015-07-25 17:47 628736 ----a-w- c:\windows\system32\invagent.dll
2015-07-28 07:09 . 2015-07-25 17:40 932864 ----a-w- c:\windows\system32\aeinv.dll
2015-07-28 07:09 . 2015-07-25 17:46 202752 ----a-w- c:\windows\system32\aepdu.dll
2015-07-28 07:08 . 2015-07-25 17:51 15808 ----a-w- c:\windows\system32\CompatTelRunner.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-17 20:27 . 2012-10-23 13:24 778440 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-08-17 20:27 . 2012-10-23 13:24 142536 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-08-16 06:14 . 2015-05-03 16:48 135816 ----a-w- c:\windows\system32\drivers\BDDefense.sys
2015-07-15 02:55 . 2015-07-21 14:13 26624 ----a-w- c:\windows\system32\lpk.dll
2015-07-15 02:55 . 2015-07-21 14:13 70656 ----a-w- c:\windows\system32\fontsub.dll
2015-07-15 02:55 . 2015-07-21 14:13 10240 ----a-w- c:\windows\system32\dciman32.dll
2015-07-15 02:55 . 2015-07-21 14:13 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-15 01:52 . 2015-07-21 14:13 299008 ----a-w- c:\windows\system32\atmfd.dll
2015-07-09 17:43 . 2015-07-15 19:08 93184 ----a-w- c:\windows\system32\wudriver.dll
2015-07-09 17:43 . 2015-07-15 19:08 35840 ----a-w- c:\windows\system32\wups2.dll
2015-07-09 17:43 . 2015-07-15 19:08 30208 ----a-w- c:\windows\system32\wups.dll
2015-07-09 17:43 . 2015-07-15 19:08 173056 ----a-w- c:\windows\system32\wuwebv.dll
2015-07-09 17:43 . 2015-07-15 19:08 2943488 ----a-w- c:\windows\system32\wucltux.dll
2015-07-09 17:43 . 2015-07-15 19:08 566784 ----a-w- c:\windows\system32\wuapi.dll
2015-07-09 17:43 . 2015-07-15 19:08 2057216 ----a-w- c:\windows\system32\wuaueng.dll
2015-07-09 17:43 . 2015-07-15 19:08 73728 ----a-w- c:\windows\system32\WinSetupUI.dll
2015-07-09 17:42 . 2015-07-15 19:08 11776 ----a-w- c:\windows\system32\wu.upgrade.ps.dll
2015-07-09 17:42 . 2015-07-15 19:08 135168 ----a-w- c:\windows\system32\wuauclt.exe
2015-07-09 17:42 . 2015-07-15 19:08 34816 ----a-w- c:\windows\system32\wuapp.exe
2015-07-04 17:48 . 2015-07-15 19:09 1414656 ----a-w- c:\windows\system32\ole32.dll
2015-07-02 21:08 . 2015-07-15 19:06 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-01 20:46 . 2015-07-15 19:11 67520 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-01 20:46 . 2015-07-15 19:11 137664 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2015-07-01 20:30 . 2015-07-15 19:11 172032 ----a-w- c:\windows\system32\wdigest.dll
2015-07-01 20:30 . 2015-07-15 19:11 65536 ----a-w- c:\windows\system32\TSpkg.dll
2015-07-01 20:30 . 2015-07-15 19:11 100352 ----a-w- c:\windows\system32\sspicli.dll
2015-07-01 20:30 . 2015-07-15 19:11 15872 ----a-w- c:\windows\system32\sspisrv.dll
2015-07-01 20:30 . 2015-07-15 19:11 248832 ----a-w- c:\windows\system32\schannel.dll
2015-07-01 20:30 . 2015-07-15 19:11 22016 ----a-w- c:\windows\system32\secur32.dll
2015-07-01 20:30 . 2015-07-15 19:11 655360 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-01 20:30 . 2015-07-15 19:11 221184 ----a-w- c:\windows\system32\ncrypt.dll
2015-07-01 20:30 . 2015-07-15 19:11 259584 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-01 20:30 . 2015-07-15 19:11 1061376 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-01 20:30 . 2015-07-15 19:11 552960 ----a-w- c:\windows\system32\kerberos.dll
2015-07-01 20:30 . 2015-07-15 19:11 36864 ----a-w- c:\windows\system32\cryptbase.dll
2015-07-01 20:30 . 2015-07-15 19:11 17408 ----a-w- c:\windows\system32\credssp.dll
2015-07-01 20:29 . 2015-07-15 19:11 22528 ----a-w- c:\windows\system32\lsass.exe
2015-07-01 20:29 . 2015-07-15 19:11 50176 ----a-w- c:\windows\system32\auditpol.exe
2015-07-01 20:27 . 2015-07-15 19:11 60416 ----a-w- c:\windows\system32\msobjs.dll
2015-07-01 20:26 . 2015-07-15 19:11 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-01 20:24 . 2015-07-15 19:11 686080 ----a-w- c:\windows\system32\adtschema.dll
2015-07-01 19:18 . 2015-07-15 19:11 225792 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-01 19:18 . 2015-07-15 19:11 98304 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-01 19:18 . 2015-07-15 19:11 124416 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-06-27 01:58 . 2015-07-15 19:05 620032 ----a-w- c:\windows\system32\jscript9diag.dll
2015-06-27 01:39 . 2015-07-15 19:05 4520448 ----a-w- c:\windows\system32\jscript9.dll
2015-06-25 08:46 . 2015-07-15 19:11 2383872 ----a-w- c:\windows\system32\win32k.sys
2015-06-23 11:27 . 2010-08-05 17:34 246952 ------w- c:\windows\system32\MpSigStub.exe
2015-06-19 18:40 . 2015-07-15 19:07 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2015-06-19 18:25 . 2015-07-15 19:06 504320 ----a-w- c:\windows\system32\vbscript.dll
2015-06-19 18:25 . 2015-07-15 19:07 62464 ----a-w- c:\windows\system32\iesetup.dll
2015-06-19 18:24 . 2015-07-15 19:07 47616 ----a-w- c:\windows\system32\ieetwproxystub.dll
2015-06-19 18:24 . 2015-07-15 19:06 341504 ----a-w- c:\windows\system32\html.iec
2015-06-19 18:23 . 2015-07-15 19:06 64000 ----a-w- c:\windows\system32\MshtmlDac.dll
2015-06-19 18:13 . 2015-07-15 19:07 102912 ----a-w- c:\windows\system32\ieetwcollector.exe
2015-06-19 18:13 . 2015-07-15 19:07 115712 ----a-w- c:\windows\system32\ieUnatt.exe
2015-06-19 18:06 . 2015-07-15 19:07 667648 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2015-06-19 17:57 . 2015-07-15 19:07 60416 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2015-06-19 17:40 . 2015-07-15 19:07 2052608 ----a-w- c:\windows\system32\inetcpl.cpl
2015-06-19 17:39 . 2015-07-15 19:06 1155072 ----a-w- c:\windows\system32\mshtmlmedia.dll
2015-06-19 17:15 . 2015-07-15 19:07 1951232 ----a-w- c:\windows\system32\wininet.dll
2015-06-17 17:39 . 2015-07-15 19:09 305664 ----a-w- c:\windows\system32\gdi32.dll
2015-06-15 21:47 . 2015-07-15 19:10 101824 ----a-w- c:\windows\system32\consent.exe
2015-06-15 21:43 . 2015-07-15 19:10 2364416 ----a-w- c:\windows\system32\msi.dll
2015-06-15 21:43 . 2015-07-15 19:10 337408 ----a-w- c:\windows\system32\msihnd.dll
2015-06-15 21:43 . 2015-07-15 19:10 1805824 ----a-w- c:\windows\system32\authui.dll
2015-06-15 21:43 . 2015-07-15 19:10 47104 ----a-w- c:\windows\system32\appinfo.dll
2015-06-15 21:42 . 2015-07-15 19:10 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-06-15 21:37 . 2015-07-15 19:10 25088 ----a-w- c:\windows\system32\msimsg.dll
2015-06-01 23:47 . 2015-07-15 19:07 210432 ----a-w- c:\windows\system32\cewmdm.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-10-13 186904]
"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2009-11-19 307768]
"cAudioFilterAgent"="c:\program files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe" [2009-10-28 487992]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-12-03 1594664]
"TMCMonitor"="c:\program files\Lenovo\Lenovo NaturalTouch\TMCMonitor.exe" [2009-11-09 53248]
"TpShocks"="c:\windows\system32\TpShocks.exe" [2009-09-02 186208]
"EnergyUtility"="c:\program files\Lenovo\Energy Management\utility.exe" [2009-10-23 4114288]
"Energy Management"="c:\program files\Lenovo\Energy Management\Energy Management.exe" [2009-10-23 5064560]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-04-19 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-04-19 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-04-19 150552]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"WLStart"="c:\program files\Windows Live\Installer\wlstart.exe" [2009-07-26 779600]
.
c:\users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\Lenovo\Bluetooth Software\BTTray.exe [2009-9-22 795936]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog]
2009-09-15 10:29 536576 ----a-w- c:\program files\USB Camera\VM331_STI.EXE
.
R3 adusbser;AnyDATA USB Device for Legacy Serial Communication;c:\windows\system32\DRIVERS\adusbser.sys [2010-08-05 97920]
R3 Bridge0;Bridge0;c:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
R3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
R3 huawei_wwanecm;huawei_wwanecm;c:\windows\system32\DRIVERS\ew_juwwanecm.sys [2012-04-23 202752]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-06-19 102912]
R3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc;c:\program files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
R3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc;c:\program files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 PS_MDP;ReadyComm Presentation Space Helper Service;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2010-01-07 182304]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-06-22 1343400]
R3 wsvd;wsvd;c:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
S0 TPDIGIMN;TPDIGIMN;c:\windows\System32\DRIVERS\ApsHM86.sys [2009-10-21 20496]
S1 BdSandBox;BdSandBox;c:\windows\system32\DRIVERS\BdSandBox.sys [2014-11-06 139784]
S1 dvdfabio;dvdfabio;c:\windows\system32\drivers\dvdfabio.sys [2011-07-06 12672]
S2 BDMNetMon;BDMNetMon;c:\windows\system32\DRIVERS\BDMNetMon.sys [2015-04-03 182088]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe [2009-07-14 20992]
S2 IGRS;IGRS;c:\program files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 MbnExt;Mobile Broadband Extension Service;c:\windows\system32\svchost.exe [2009-07-14 20992]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
S3 AVerBDA6x;AVerBDA6x service;c:\windows\system32\DRIVERS\AVerBDA716x.sys [2009-07-07 1151232]
S3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
S3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2009-10-16 274984]
S3 vdrive;vdrive;c:\windows\system32\DRIVERS\vdrive.sys [2011-07-06 36736]
S3 vm331avs;Digital Camera 1;c:\windows\system32\Drivers\vm331avs.sys [2009-11-09 179072]
S3 wdmirror;wdmirror;c:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11792]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc Mcx2Svc
IgrsSvcs REG_MULTI_SZ ReadyComm.DirectRouter PS_MDP
MbnExt REG_MULTI_SZ MbnExt
utcsvc REG_MULTI_SZ DiagTrack
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-25 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-23 20:27]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie.htm
Trusted Zone: baidu.com
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
FF - ProfilePath - c:\users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\crekwbfm.default-1430932504142\
FF - prefs.js: browser.search.selectedEngine - Centrum.cz
FF - prefs.js: browser.startup.homepage - hxxps://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.centrum.cz/?charset=UTF-8&channel_id=ch-toolbar-ff,ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-???? - c:\program files\Baidu\BaiduAn\4.0.0.5166\uninst.exe
AddRemove-???? - c:\program files\Baidu\BaiduSd\3.0.0.4605\uninst.exe
.
.
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(7416)
c:\program files\Lenovo\Bluetooth Software\btmmhook.dll
c:\program files\Lenovo\Bluetooth Software\btncopy.dll
c:\program files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\SYSTEM32\WISPTIS.EXE
c:\windows\system32\WLANExt.exe
c:\windows\system32\conhost.exe
c:\program files\Lenovo\Bluetooth Software\btwdins.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\System32\TPHDEXLG.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\windows\system32\taskhost.exe
c:\windows\SYSTEM32\WISPTIS.EXE
c:\program files\Common Files\microsoft shared\ink\TabTip.exe
c:\windows\system32\conhost.exe
c:\windows\system32\GWX\GWX.exe
c:\program files\Lenovo\Lenovo Screen Rotation\ScreenRotation.exe
c:\program files\Synaptics\SynTP\SynTPHelper.exe
c:\windows\system32\igfxsrvc.exe
c:\program files\Lenovo\Bluetooth Software\BtStackServer.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
.
**************************************************************************
.
Celkový čas: 2015-08-25 18:04:36 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-08-25 16:04
ComboFix2.txt 2015-08-25 10:12
.
Před spuštěním: Volných bajtů: 64 992 206 848
Po spuštění: Volných bajtů: 64 774 864 896
.
- - End Of File - - 5B6B434807DED5E1E9480081BFA48912
5C616939100B85E558DA92B899A0FC36
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: podivne chovani notebooku
Smazáno. Tenhle úporný šmejd se dost držel, měl by být ale pryč (maximálně mohly zůsta nějaké zbytky). O tu odinstalaci se můžete pokusit. CF přejmenujte na uninstall a spusťte. CF se odinstaluje.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Přispějete na provoz fóra?