Ahoj, tak tady to je. Ovladač jsem dnes aktualizoval. Díky
Logfile of random's system information tool 1.10 (written by random/random)
Run by Heimdall at 2015-11-28 19:50:39
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 1699 GB (89%) free of 1907 GB
Total RAM: 8191 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:50:47, on 28.11.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18098)
Boot mode: Normal
Running processes:
C:\Users\Heimdall\AppData\Local\Microsoft\BingSvc\BingSvc.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Heimdall\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\ProgramData\Battle.net\Agent\Agent.4584\Agent.exe
C:\Program Files (x86)\Battle.net\Battle.net.6382\Battle.net.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Heimdall.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://search.delta-homes.com/web/?type ... earchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://search.delta-homes.com/web/?type ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.globasearch.com/?serie=214&b ... muNWRD0bWB
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.globasearch.com/?serie=214&b ... muNWRD0bWB
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: QPMIEHelper - {50F4150A-48B2-417A-BE4C-C83F580FB904} - C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll (file missing)
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SecureWebBHO - {D3C24E2B-C820-4492-9B69-11BF7163F998} - C:\Program Files (x86)\Jelbruss Secure Web\gmie.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O4 - HKLM\..\Run: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
O4 - HKLM\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2053\jsdrv.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe
O4 - HKCU\..\Run: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
O4 - HKCU\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2053\jsdrv.exe
O4 - HKCU\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
O4 - HKCU\..\Run: [apphide] C:\Program Files (x86)\baidu\baidu.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Heimdall\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Heimdall\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [BingSvc] C:\Users\Heimdall\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} -
http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files (x86)\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Overwolf Updater Windows SCM (OverwolfUpdater) - Overwolf LTD - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
O23 - Service: Privoxy (PrivoxyService) (PrivoxyService) - The Privoxy team -
http://www.privoxy.org - C:\Program Files (x86)\Jelbruss Secure Web\privoxy.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WinZiper service (winzipersvc) - Taiwan Shui Mu Chih Ching Technology Limited - C:\Program Files (x86)\WinZipper\winzipersvc.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9799 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\WinZipper\winzipersvc.exe"
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
"C:\Program Files (x86)\Jelbruss Secure Web\privoxy.exe" --service
"C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-e9fce24f-b92c-47ad-97ec-909a4ca173a4 -SystemEventPortName:HostProcess-21a4a1d1-b9fc-48e6-9348-60100389abc4 -IoCancelEventPortName:HostProcess-736a29d7-9d7d-4396-8f8d-d785905d3bfe -NonStateChangingEventPortName:HostProcess-172f028b-a18a-4a1b-aeb8-28441b77f2a5 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9309be6f-93d3-47ad-82df-4f82e6502cde -DeviceGroupId:WpdFsGroup
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe"
"C:\Users\Heimdall\AppData\Local\Microsoft\BingSvc\BingSvc.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
szndesktop.exe default start
"C:\Windows\system32\GWX\GWX.exe"
"C:\Users\Heimdall\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "-10407311871123557242040908280-282505880236315024-1435389822-794462437-366662991
"C:\Program Files (x86)\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\ProgramData\Battle.net\Agent\Agent.4584\Agent.exe" --locale=enus
\??\C:\Windows\system32\conhost.exe "1695166750-445721246-784687248-164070684012305416398693523571381586296527899127
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Battle.net\Battle.net.6382\Battle.net.exe" "--gamepath=C:\Program Files\Diablo III" --game=diablo3_enus
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=4880 --on-initialized-event-handle=336 --parent-handle=340
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2944.0.1600796774\1176039065" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45 --gpu-vendor-id=0x1002 --gpu-device-id=0x6759 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=12.104.0.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/ChromotingQUIC/Disabled/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledAutoTuneReceiveWindow/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/*SdchPersistence/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2944.5.177191236\895180324" --font-cache-shared-handle=4380 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/ChromotingQUIC/Disabled/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledAutoTuneReceiveWindow/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Disabled/SafeBrowsingSocialEngineeringStrings/Enabled/*SdchPersistence/Enabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="2944.9.915429382\468225106" --font-cache-shared-handle=3684 /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\Heimdall\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-1-6.job - C:\Program Files (x86)\Sense\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-1-6.exe /rawdata=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
C:\Windows\tasks\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-1-7.job - C:\Program Files (x86)\Sense\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-1-7.exe /rawdata=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
C:\Windows\tasks\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-11.job - C:\Program Files (x86)\Sense\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-11.exe /rawdata=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
C:\Windows\tasks\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-5.job - C:\Program Files (x86)\Sense\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-5.exe /rawdata=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
C:\Windows\tasks\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-5_user.job - C:\Program Files (x86)\Sense\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-5.exe /rawdata=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
C:\Windows\tasks\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-6.job - C:\Program Files (x86)\Sense\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-6.exe /rawdata=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
C:\Windows\tasks\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-7.job - C:\Program Files (x86)\Sense\1e91d648-37d5-4daf-80c8-be04c3dd1e1b-7.exe /rawdata=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
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\PC SpeedUp Service Deactivator.job - C:\Program Files (x86)\Zrychleni Pocitace\PCSUSD.exe /dev0 /idle
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12 2134656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50F4150A-48B2-417A-BE4C-C83F580FB904}]
Ó¦Óñ¦Ň»Ľü°˛×°˛ĺĽţ - C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll [2014-05-30 140344]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-03 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12 1725056]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3C24E2B-C820-4492-9B69-11BF7163F998}]
SecureWebBHO Class - C:\Program Files (x86)\Jelbruss Secure Web\gmie.dll [2015-08-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-03 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PCSpeedUp"=C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe []
"YTDownloader"=C:\Program Files (x86)\YTDownloader\YTDownloader.exe /boot []
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2053\jsdrv.exe []
"Overwolf"=C:\Program Files (x86)\Overwolf\Overwolf.exe [2015-11-16 45296]
"apphide"=C:\Program Files (x86)\baidu\baidu.exe []
"cz.seznam.software.autoupdate"=C:\Users\Heimdall\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Heimdall\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-10-14 48145024]
"BingSvc"=C:\Users\Heimdall\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2015-11-12 144008]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"YTDownloader"=C:\Program Files (x86)\YTDownloader\YTDownloader.exe /boot []
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2053\jsdrv.exe []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2015-11-12 5565448]
"StartCCC"=C:\Program Files (x86)\ATI.ACE\Core-Static\CLIStart.exe [2013-03-28 642656]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\QQPCRTP]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-11-28 19:50:39 ----D---- C:\rsit
2015-11-28 19:50:39 ----D---- C:\Program Files\trend micro
2015-11-28 17:08:06 ----D---- C:\Program Files\Diablo III
2015-11-28 17:08:06 ----D---- C:\Data
2015-11-28 17:04:27 ----D---- C:\Program Files (x86)\Battle.net
2015-11-28 15:36:32 ----D---- C:\ProgramData\ATI
2015-11-28 15:26:56 ----D---- C:\Program Files (x86)\AMD AVT
2015-11-28 15:26:52 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-11-28 15:26:02 ----D---- C:\ProgramData\AMD
2015-11-28 15:24:35 ----D---- C:\Program Files (x86)\ATI.ACE
2015-11-28 15:24:27 ----D---- C:\Program Files\ATI
2015-11-28 15:23:24 ----D---- C:\AMD
2015-11-28 13:16:48 ----D---- C:\Program Files (x86)\Radeon-Crimson-15.11-With-DOTNet45-Win7-64Bit
2015-11-24 18:26:39 ----D---- C:\ProgramData\Blizzard Entertainment
2015-11-24 18:26:38 ----D---- C:\Users\Heimdall\AppData\Roaming\Battle.net
2015-11-24 18:23:52 ----D---- C:\ProgramData\Battle.net
2015-11-22 16:18:30 ----D---- C:\perflogs
2015-11-18 06:09:10 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2015-11-12 10:49:24 ----A---- C:\Windows\system32\win32k.sys
2015-11-11 11:11:02 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-11-11 11:11:02 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-11-11 11:11:02 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-11-11 11:11:02 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-11-11 11:11:02 ----A---- C:\Windows\system32\wuwebv.dll
2015-11-11 11:11:02 ----A---- C:\Windows\system32\wudriver.dll
2015-11-11 11:11:02 ----A---- C:\Windows\system32\wucltux.dll
2015-11-11 11:11:02 ----A---- C:\Windows\system32\wuaueng.dll
2015-11-11 11:11:02 ----A---- C:\Windows\system32\wuauclt.exe
2015-11-11 11:11:02 ----A---- C:\Windows\system32\wuapi.dll
2015-11-11 11:11:02 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-11-11 11:11:01 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-11-11 11:11:01 ----A---- C:\Windows\system32\wups2.dll
2015-11-11 11:11:01 ----A---- C:\Windows\system32\wups.dll
2015-11-11 11:11:01 ----A---- C:\Windows\system32\wuapp.exe
2015-11-11 11:11:01 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-11-11 11:10:47 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-11-11 11:10:47 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-11-11 11:10:47 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-11-11 11:10:46 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-11-11 11:10:46 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-11-11 11:10:46 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-11-11 11:10:46 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-11-11 11:10:46 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-11-11 11:10:46 ----A---- C:\Windows\system32\iernonce.dll
2015-11-11 11:10:46 ----A---- C:\Windows\system32\ie4uinit.exe
2015-11-11 11:10:45 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-11-11 11:10:45 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-11-11 11:10:45 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-11-11 11:10:45 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-11-11 11:10:45 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-11-11 11:10:45 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-11-11 11:10:44 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-11-11 11:10:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-11-11 11:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-11-11 11:10:44 ----A---- C:\Windows\system32\urlmon.dll
2015-11-11 11:10:44 ----A---- C:\Windows\system32\occache.dll
2015-11-11 11:10:44 ----A---- C:\Windows\system32\iedkcs32.dll
2015-11-11 11:10:43 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-11-11 11:10:43 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-11-11 11:10:43 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-11-11 11:10:43 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-11-11 11:10:43 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-11-11 11:10:43 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-11-11 11:10:43 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-11-11 11:10:43 ----A---- C:\Windows\system32\msfeeds.dll
2015-11-11 11:10:43 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-11-11 11:10:43 ----A---- C:\Windows\system32\dxtrans.dll
2015-11-11 11:10:42 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-11-11 11:10:42 ----A---- C:\Windows\system32\iesetup.dll
2015-11-11 11:10:42 ----A---- C:\Windows\system32\ieapfltr.dll
2015-11-11 11:10:41 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-11-11 11:10:41 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-11-11 11:10:41 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-11-11 11:10:41 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-11-11 11:10:41 ----A---- C:\Windows\system32\vbscript.dll
2015-11-11 11:10:41 ----A---- C:\Windows\system32\iertutil.dll
2015-11-11 11:10:40 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-11-11 11:10:40 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-11-11 11:10:40 ----A---- C:\Windows\system32\jsproxy.dll
2015-11-11 11:10:40 ----A---- C:\Windows\system32\ieui.dll
2015-11-11 11:10:40 ----A---- C:\Windows\system32\ieframe.dll
2015-11-11 11:10:40 ----A---- C:\Windows\system32\dxtmsft.dll
2015-11-11 11:10:39 ----A---- C:\Windows\system32\webcheck.dll
2015-11-11 11:10:39 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-11-11 11:10:39 ----A---- C:\Windows\system32\mshtmled.dll
2015-11-11 11:10:39 ----A---- C:\Windows\system32\jscript9diag.dll
2015-11-11 11:10:39 ----A---- C:\Windows\system32\jscript.dll
2015-11-11 11:10:39 ----A---- C:\Windows\system32\ieUnatt.exe
2015-11-11 11:10:38 ----A---- C:\Windows\system32\wininet.dll
2015-11-11 11:10:38 ----A---- C:\Windows\system32\msrating.dll
2015-11-11 11:10:38 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-11-11 11:10:38 ----A---- C:\Windows\system32\jscript9.dll
2015-11-11 11:10:37 ----A---- C:\Windows\system32\mshtml.dll
2015-11-11 11:09:54 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-11-11 11:09:53 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-11-11 11:09:53 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-11-11 11:09:53 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-11-11 11:09:53 ----A---- C:\Windows\system32\schannel.dll
2015-11-11 11:09:53 ----A---- C:\Windows\system32\ncrypt.dll
2015-11-11 11:09:53 ----A---- C:\Windows\system32\kerberos.dll
2015-11-11 11:09:53 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-11-11 11:09:53 ----A---- C:\Windows\system32\drivers\cng.sys
2015-11-11 11:09:52 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-11-11 11:09:52 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-11-11 11:09:52 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-11-11 11:09:52 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2015-11-11 11:09:52 ----A---- C:\Windows\system32\ntdll.dll
2015-11-11 11:09:52 ----A---- C:\Windows\system32\lsasrv.dll
2015-11-11 11:09:52 ----A---- C:\Windows\system32\kernel32.dll
2015-11-11 11:09:52 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-11-11 11:09:52 ----A---- C:\Windows\system32\bcryptprimitives.dll
2015-11-11 11:09:51 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-11-11 11:09:51 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-11-11 11:09:51 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-11-11 11:09:51 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\wow64.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\winsrv.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\wdigest.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\TSpkg.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\sspicli.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\srcore.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\smss.exe
2015-11-11 11:09:51 ----A---- C:\Windows\system32\rstrui.exe
2015-11-11 11:09:51 ----A---- C:\Windows\system32\rpcrt4.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\msv1_0.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\lsass.exe
2015-11-11 11:09:51 ----A---- C:\Windows\system32\KernelBase.dll
2015-11-11 11:09:51 ----A---- C:\Windows\system32\conhost.exe
2015-11-11 11:09:51 ----A---- C:\Windows\system32\auditpol.exe
2015-11-11 11:09:50 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-11-11 11:09:50 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-11-11 11:09:50 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-11-11 11:09:50 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-11-11 11:09:50 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-11-11 11:09:50 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-11-11 11:09:50 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-11-11 11:09:50 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-11-11 11:09:50 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-11-11 11:09:50 ----A---- C:\Windows\system32\wow64win.dll
2015-11-11 11:09:50 ----A---- C:\Windows\system32\wow64cpu.dll
2015-11-11 11:09:50 ----A---- C:\Windows\system32\sspisrv.dll
2015-11-11 11:09:50 ----A---- C:\Windows\system32\srclient.dll
2015-11-11 11:09:50 ----A---- C:\Windows\system32\secur32.dll
2015-11-11 11:09:50 ----A---- C:\Windows\system32\ntvdm64.dll
2015-11-11 11:09:50 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-11-11 11:09:50 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-11-11 11:09:50 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-11-11 11:09:50 ----A---- C:\Windows\system32\csrsrv.dll
2015-11-11 11:09:50 ----A---- C:\Windows\system32\cryptbase.dll
2015-11-11 11:09:50 ----A---- C:\Windows\system32\credssp.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-11 11:09:49 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-11-11 11:09:49 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-11-11 11:09:49 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-11-11 11:09:48 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-11-11 11:09:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-11-11 11:09:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-11-11 11:09:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-11-11 11:09:47 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-11-11 11:09:47 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-11-11 11:09:47 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-11-11 11:09:47 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-11-11 11:09:47 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-11 11:09:47 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-11-11 11:09:47 ----A---- C:\Windows\SYSWOW64\user.exe
2015-11-11 11:09:47 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-11-11 11:09:47 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-11-11 11:09:47 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-11-11 11:09:47 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-11-11 11:09:47 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-11-11 11:09:47 ----A---- C:\Windows\system32\msobjs.dll
2015-11-11 11:09:47 ----A---- C:\Windows\system32\msaudite.dll
2015-11-11 11:09:47 ----A---- C:\Windows\system32\apisetschema.dll
2015-11-11 11:09:47 ----A---- C:\Windows\system32\adtschema.dll
2015-11-11 11:09:43 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-11-11 11:09:42 ----A---- C:\Windows\system32\drivers\afd.sys
2015-11-11 11:09:41 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2015-11-11 11:09:41 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2015-11-11 11:09:41 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2015-11-11 11:09:41 ----A---- C:\Windows\system32\shimeng.dll
2015-11-11 11:09:41 ----A---- C:\Windows\system32\sdbinst.exe
2015-11-11 11:09:41 ----A---- C:\Windows\system32\apphelp.dll
2015-11-11 11:09:41 ----A---- C:\Windows\system32\aelupsvc.dll
2015-11-11 11:09:38 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-11-11 11:09:33 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-11-11 11:09:33 ----A---- C:\Windows\system32\InkEd.dll
2015-11-11 11:09:32 ----A---- C:\Windows\system32\jnwmon.dll
2015-10-29 21:49:10 ----AH---- C:\Windows\system32\hamachi.sys
======List of files/folders modified in the last 1 month======
2015-11-28 19:50:47 ----D---- C:\Windows\Prefetch
2015-11-28 19:50:39 ----RD---- C:\Program Files
2015-11-28 19:50:35 ----D---- C:\Windows\Temp
2015-11-28 19:41:41 ----D---- C:\Users\Heimdall\AppData\Roaming\Seznam.cz
2015-11-28 19:38:38 ----D---- C:\Users\Heimdall\AppData\Roaming\Skype
2015-11-28 19:38:37 ----D---- C:\Program Files (x86)\WinZipper
2015-11-28 18:25:01 ----D---- C:\Windows\system32\config
2015-11-28 17:04:27 ----RD---- C:\Program Files (x86)
2015-11-28 15:36:32 ----HD---- C:\ProgramData
2015-11-28 15:36:07 ----D---- C:\Windows
2015-11-28 15:33:52 ----D---- C:\Windows\system32\catroot
2015-11-28 15:26:58 ----SHD---- C:\Windows\Installer
2015-11-28 15:26:58 ----SHD---- C:\Config.Msi
2015-11-28 15:26:56 ----D---- C:\Windows\SysWOW64
2015-11-28 15:26:56 ----D---- C:\Windows\System32
2015-11-28 15:26:52 ----D---- C:\Program Files\Common Files
2015-11-28 15:26:52 ----D---- C:\Program Files (x86)\Common Files
2015-11-28 15:25:24 ----D---- C:\Windows\system32\drivers
2015-11-28 15:25:23 ----D---- C:\Windows\system32\DriverStore
2015-11-28 15:25:22 ----D---- C:\Windows\inf
2015-11-28 15:00:21 ----D---- C:\Program Files (x86)\Samsung
2015-11-28 15:00:19 ----D---- C:\ProgramData\Samsung
2015-11-28 14:58:49 ----SHD---- C:\System Volume Information
2015-11-28 14:57:17 ----D---- C:\Windows\Microsoft.NET
2015-11-28 14:56:21 ----D---- C:\Users\Heimdall\AppData\Roaming\Raptr
2015-11-28 14:56:00 ----D---- C:\Program Files (x86)\Raptr
2015-11-28 14:48:16 ----D---- C:\Windows\system32\catroot2
2015-11-27 22:17:04 ----D---- C:\Windows\system32\Tasks
2015-11-25 18:38:50 ----D---- C:\Windows\system32\NDF
2015-11-24 15:37:39 ----D---- C:\Program Files (x86)\Steam
2015-11-22 21:13:53 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-11-22 21:07:14 ----D---- C:\Users\Heimdall\AppData\Roaming\TS3Client
2015-11-22 16:26:38 ----D---- C:\Program Files (x86)\Overwolf
2015-11-21 21:45:51 ----D---- C:\Users\Heimdall\AppData\Roaming\.minecraft
2015-11-13 12:58:45 ----D---- C:\Windows\rescache
2015-11-12 19:44:57 ----D---- C:\Windows\winsxs
2015-11-11 17:59:21 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-11-11 17:35:39 ----D---- C:\Windows\SYSWOW64\en-US
2015-11-11 17:35:39 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-11-11 17:35:39 ----D---- C:\Windows\system32\cs-CZ
2015-11-11 17:35:39 ----D---- C:\Program Files\Internet Explorer
2015-11-11 17:35:38 ----D---- C:\Windows\system32\en-US
2015-11-11 17:35:38 ----D---- C:\Program Files (x86)\Internet Explorer
2015-11-11 17:35:36 ----D---- C:\Windows\AppPatch
2015-11-11 17:35:34 ----D---- C:\Windows\system32\migration
2015-11-11 11:33:21 ----D---- C:\Windows\system32\MRT
2015-11-11 11:30:16 ----RSD---- C:\Windows\assembly
2015-11-11 11:29:54 ----A---- C:\Windows\system32\MRT.exe
2015-11-11 11:24:52 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-11-11 11:22:57 ----D---- C:\Program Files\Windows Journal
2015-11-09 10:19:29 ----D---- C:\ProgramData\Skype
2015-11-03 15:25:25 ----D---- C:\ProgramData\GFACE
2015-10-29 16:34:01 ----D---- C:\Users\Heimdall\AppData\Roaming\avidemux
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 {2bb9b6e4-4e75-43c0-b90f-c83f45dfaa57}Gw64;{2bb9b6e4-4e75-43c0-b90f-c83f45dfaa57}Gw64; C:\Windows\system32\drivers\{2bb9b6e4-4e75-43c0-b90f-c83f45dfaa57}Gw64.sys [2015-06-29 48776]
R1 {56cb6fdf-a30f-4be8-9f85-06905a909651}Gw64;{56cb6fdf-a30f-4be8-9f85-06905a909651}Gw64; C:\Windows\system32\drivers\{56cb6fdf-a30f-4be8-9f85-06905a909651}Gw64.sys [2015-06-28 48776]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files (x86)\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-03-29 11658752]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-03-29 581120]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-02-14 96768]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2015-08-03 33856]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S1 QMUdisk;tencent QMUdisk; \??\C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16443.223\QMUdisk64.sys []
S2 SPDRIVER_1.42.1.2053;SPDRIVER_1.42.1.2053; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2053\jsdrv.sys []
S3 TS888x64;TS888x64; \??\C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16443.223\TS888x64.sys []
S3 TSSKX64;TSSKX64; C:\Windows\System32\drivers\tsskx64.sys [2015-08-23 38200]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-03-29 241152]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files (x86)\ATI.ACE\Fuel\Fuel.Service.exe [2013-03-28 361984]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2015-10-12 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2015-10-12 1773696]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2015-11-12 2546184]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2015-11-12 417552]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 PrivoxyService;Privoxy (PrivoxyService); C:\Program Files (x86)\Jelbruss Secure Web\privoxy.exe [2015-08-20 371200]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [2015-05-21 743688]
R2 winzipersvc;WinZiper service; C:\Program Files (x86)\WinZipper\winzipersvc.exe [2015-08-25 706736]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-08 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-14 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-11 269000]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-14 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-10-31 114688]
S3 OverwolfUpdater;Overwolf Updater Windows SCM; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2015-11-16 1008880]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-10 836176]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-06-18 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
-----------------EOF-----------------