Tady je Log.
Udělal jsem nový install systému a už se mi asi něco stihlo dostat.
Zkoušel sem Malwarebytes, a poprvy to pomohlo, ale po restartu se problem objevil znovu a Malwarebyte uz nepomaha.
Nemuzu proste pouzit háček ani čárku jako když klávesa nefunguje... Odzkoušené, že funguje klávesnici na mechanické urovni nic neni...
Díky za tipy a rady:)
Logfile of random's system information tool 1.10 (written by random/random)
Run by Guardian at 2015-12-29 22:39:34
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 67 GB (59%) free of 114 GB
Total RAM: 8173 MB (57% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:39:39, on 29.12.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\JetAudio\JetAudio.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Guardian.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [EEventManager] C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Disc Soft Bus Service - Disc Soft Ltd - C:\Program Files (x86)\DAEMON Tools Pro\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Aktivátor Správce výběru OS Acronis (Správce výběru OS) - Unknown owner - C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8199 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE 0x2f0
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
atieclxx
taskeng.exe {F99962BF-6A40-4819-BA07-6764B3AC8F76}
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
taskeng.exe {361F6F81-5DEB-4D75-BE7D-833C6EDC914B}
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
D:\PCMeterV4\PCMeterV0.4.exe
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe"
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9ba048b8-969a-4a43-950d-51887b520bd6 -SystemEventPortName:HostProcess-d25ed632-37c1-4389-aa3b-810de4f7ec95 -IoCancelEventPortName:HostProcess-92ec3b6e-e822-4bd9-a283-985b03b8de1f -NonStateChangingEventPortName:HostProcess-95150708-5e3d-4a96-b82e-1492901a9205 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:00d3a44b-3090-463e-95ce-0b42d76ce5b0
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\AMD\CNext\CNext\cnext.exe" atlogon
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
"C:\Program Files (x86)\Internet Download Manager\IDMan.exe" /onboot
"C:\Program Files (x86)\DAEMON Tools Pro\DiscSoftBusService.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
"C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5444.0.187131175\741490835" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,23,51 --gpu-vendor-id=0x1002 --gpu-device-id=0x683d --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.300.1025.1001 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterExe/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Control/ --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5444.1.1584643233\937855175" --font-cache-shared-handle=1888 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterExe/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Control/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5444.2.992374209\904891600" --font-cache-shared-handle=2108 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=*AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterExe/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Control/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5444.4.1496606439\1313052991" --font-cache-shared-handle=3320 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=*AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterExe/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Control/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5444.5.457427577\875160884" --font-cache-shared-handle=3916 /prefetch:673131151
"C:\Users\Guardian\AppData\Local\Temp\IEMonitor.exe"
"C:\Program Files (x86)\JetAudio\JetAudio.exe"
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\servicing\TrustedInstaller.exe
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=*AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterExe/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Control/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5444.9.340304569\1211813274" --font-cache-shared-handle=4768 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=*AffiliationBasedMatching/Enabled/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Enabled/AudioProcessing48kHzSupport/Default/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DomRel-Enable/enable/EnableGoogleCachedCopyTextExperiment/Button/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_1/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterExe/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/VoiceTrigger/Install/WebRTC-PeerConnectionDTLS1.2/Control/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5444.10.50436040\1622641661" --font-cache-shared-handle=5064 /prefetch:673131151
"E:\Download\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\Windows\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-08-28 484376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-12-29 885152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-08-28 422936]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-12-29 664184]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
"StartCN"=C:\Program Files\AMD\CNext\CNext\cnext.exe [2015-12-04 4867784]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"IDMan"=C:\Program Files (x86)\Internet Download Manager\IDMan.exe [2015-09-10 3907152]
"DAEMON Tools Pro Agent"=C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2014-11-10 3761424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CNAP2 Launcher]
C:\Windows\system32\spool\DRIVERS\x64\3\CNAP2LAK.EXE [2007-09-05 406944]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series]
C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFBE.EXE [2008-09-26 223232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IDMan]
C:\Program Files (x86)\Internet Download Manager\IDMan.exe [2015-09-10 3907152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2015-07-14 5579624]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-12-29 7021880]
"EEventManager"=C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe [2009-04-07 673616]
"Dropbox"=C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2015-12-22 24952376]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.XFR1"=xfcodec64.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-12-29 22:39:34 ----D---- C:\Program Files\trend micro
2015-12-29 22:39:33 ----D---- C:\rsit
2015-12-29 20:25:01 ----D---- C:\ProgramData\InstallShield
2015-12-29 20:14:31 ----A---- C:\Windows\system32\drivers\dtscsibus.sys
2015-12-29 20:14:27 ----D---- C:\Users\Guardian\AppData\Roaming\DAEMON Tools Pro
2015-12-29 20:14:24 ----D---- C:\Program Files (x86)\DAEMON Tools Pro
2015-12-29 20:13:27 ----D---- C:\ProgramData\DAEMON Tools Pro
2015-12-29 19:51:00 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2015-12-29 19:50:34 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-12-29 19:50:34 ----A---- C:\Windows\system32\drivers\mwac.sys
2015-12-29 19:50:34 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2015-12-29 19:50:34 ----A---- C:\Windows\system32\drivers\mbam.sys
2015-12-29 19:43:29 ----A---- C:\no toto.txt
2015-12-29 19:37:47 ----D---- C:\ProgramData\Malwarebytes
2015-12-29 15:56:00 ----A---- C:\Windows\system32\wups2.dll
2015-12-29 15:56:00 ----A---- C:\Windows\system32\wucltux.dll
2015-12-29 15:56:00 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-29 15:56:00 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-29 15:55:58 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-29 15:55:58 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-12-29 15:55:58 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-29 15:55:58 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-29 15:55:58 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-29 15:55:58 ----A---- C:\Windows\system32\wups.dll
2015-12-29 15:55:58 ----A---- C:\Windows\system32\wudriver.dll
2015-12-29 15:55:58 ----A---- C:\Windows\system32\wuapi.dll
2015-12-29 15:55:57 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-29 15:55:57 ----A---- C:\Windows\system32\wuapp.exe
2015-12-29 08:20:30 ----D---- C:\Windows\Panther
2015-12-29 08:20:27 ----RASH---- C:\BOOTSECT.BAK
2015-12-29 08:20:26 ----SHD---- C:\Boot
2015-12-29 02:19:04 ----D---- C:\Users\Guardian\AppData\Roaming\dlg
2015-12-29 02:18:07 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-12-29 02:17:00 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-29 02:16:31 ----D---- C:\Users\Guardian\AppData\Roaming\Opera Software
2015-12-29 02:16:05 ----D---- C:\Program Files (x86)\Opera
2015-12-29 02:11:11 ----D---- C:\ProgramData\Ubisoft
2015-12-29 02:10:36 ----D---- C:\Users\Guardian\AppData\Roaming\Tropico 5
2015-12-29 02:04:19 ----D---- C:\Users\Guardian\AppData\Roaming\Steam
2015-12-29 02:02:10 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-12-29 02:02:10 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2015-12-29 02:02:10 ----A---- C:\Windows\system32\XAudio2_7.dll
2015-12-29 02:02:10 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2015-12-29 02:02:09 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2015-12-29 02:02:09 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2015-12-29 02:02:09 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2015-12-29 02:02:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2015-12-29 02:02:09 ----A---- C:\Windows\system32\xactengine3_7.dll
2015-12-29 02:02:09 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-12-29 02:02:09 ----A---- C:\Windows\system32\d3dcsx_43.dll
2015-12-29 02:02:09 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2015-12-29 02:02:08 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-12-29 02:02:08 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2015-12-29 02:02:08 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-12-29 02:02:08 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-12-29 02:02:07 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2015-12-29 02:02:07 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2015-12-29 02:02:07 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2015-12-29 02:02:07 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-12-29 02:02:07 ----A---- C:\Windows\system32\XAudio2_6.dll
2015-12-29 02:02:07 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2015-12-29 02:02:07 ----A---- C:\Windows\system32\xactengine3_6.dll
2015-12-29 02:02:07 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2015-12-29 02:02:06 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2015-12-29 02:02:06 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2015-12-29 02:02:06 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2015-12-29 02:02:06 ----A---- C:\Windows\system32\XAudio2_5.dll
2015-12-29 02:02:06 ----A---- C:\Windows\system32\xactengine3_5.dll
2015-12-29 02:02:06 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2015-12-29 02:02:05 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2015-12-29 02:02:05 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2015-12-29 02:02:05 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2015-12-29 02:02:05 ----A---- C:\Windows\system32\d3dx11_42.dll
2015-12-29 02:02:05 ----A---- C:\Windows\system32\d3dx10_42.dll
2015-12-29 02:02:05 ----A---- C:\Windows\system32\d3dcsx_42.dll
2015-12-29 02:02:04 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2015-12-29 02:02:04 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2015-12-29 02:02:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2015-12-29 02:02:04 ----A---- C:\Windows\system32\D3DX9_42.dll
2015-12-29 02:02:04 ----A---- C:\Windows\system32\d3dx10_41.dll
2015-12-29 02:02:04 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2015-12-29 02:02:03 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2015-12-29 02:02:03 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2015-12-29 02:02:03 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2015-12-29 02:02:03 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2015-12-29 02:02:03 ----A---- C:\Windows\system32\XAudio2_4.dll
2015-12-29 02:02:03 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2015-12-29 02:02:03 ----A---- C:\Windows\system32\xactengine3_4.dll
2015-12-29 02:02:03 ----A---- C:\Windows\system32\D3DX9_41.dll
2015-12-29 02:02:02 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2015-12-29 02:02:02 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2015-12-29 02:02:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2015-12-29 02:02:02 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2015-12-29 02:02:02 ----A---- C:\Windows\system32\d3dx10_40.dll
2015-12-29 02:02:02 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2015-12-29 02:02:01 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2015-12-29 02:02:01 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2015-12-29 02:02:01 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2015-12-29 02:02:01 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2015-12-29 02:02:01 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2015-12-29 02:02:01 ----A---- C:\Windows\system32\XAudio2_3.dll
2015-12-29 02:02:01 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2015-12-29 02:02:01 ----A---- C:\Windows\system32\xactengine3_3.dll
2015-12-29 02:02:01 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2015-12-29 02:02:01 ----A---- C:\Windows\system32\D3DX9_40.dll
2015-12-29 02:02:00 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2015-12-29 02:02:00 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2015-12-29 02:02:00 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2015-12-29 02:02:00 ----A---- C:\Windows\system32\XAudio2_2.dll
2015-12-29 02:02:00 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2015-12-29 02:02:00 ----A---- C:\Windows\system32\xactengine3_2.dll
2015-12-29 02:01:59 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2015-12-29 02:01:59 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2015-12-29 02:01:59 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2015-12-29 02:01:59 ----A---- C:\Windows\system32\D3DX9_39.dll
2015-12-29 02:01:59 ----A---- C:\Windows\system32\d3dx10_39.dll
2015-12-29 02:01:59 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2015-12-29 02:01:58 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2015-12-29 02:01:58 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2015-12-29 02:01:58 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2015-12-29 02:01:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2015-12-29 02:01:58 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2015-12-29 02:01:58 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2015-12-29 02:01:58 ----A---- C:\Windows\system32\XAudio2_1.dll
2015-12-29 02:01:58 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2015-12-29 02:01:58 ----A---- C:\Windows\system32\xactengine3_1.dll
2015-12-29 02:01:58 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2015-12-29 02:01:58 ----A---- C:\Windows\system32\d3dx10_38.dll
2015-12-29 02:01:58 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2015-12-29 02:01:57 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2015-12-29 02:01:57 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2015-12-29 02:01:57 ----A---- C:\Windows\system32\XAudio2_0.dll
2015-12-29 02:01:57 ----A---- C:\Windows\system32\D3DX9_38.dll
2015-12-29 02:01:56 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2015-12-29 02:01:56 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2015-12-29 02:01:56 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2015-12-29 02:01:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2015-12-29 02:01:56 ----A---- C:\Windows\system32\xactengine3_0.dll
2015-12-29 02:01:56 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2015-12-29 02:01:56 ----A---- C:\Windows\system32\d3dx10_37.dll
2015-12-29 02:01:56 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2015-12-29 02:01:55 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2015-12-29 02:01:55 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2015-12-29 02:01:55 ----A---- C:\Windows\system32\xactengine2_10.dll
2015-12-29 02:01:55 ----A---- C:\Windows\system32\D3DX9_37.dll
2015-12-29 02:01:54 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2015-12-29 02:01:54 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2015-12-29 02:01:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2015-12-29 02:01:54 ----A---- C:\Windows\system32\d3dx9_36.dll
2015-12-29 02:01:54 ----A---- C:\Windows\system32\d3dx10_36.dll
2015-12-29 02:01:54 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2015-12-29 02:01:53 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2015-12-29 02:01:53 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2015-12-29 02:01:53 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2015-12-29 02:01:53 ----A---- C:\Windows\system32\xactengine2_9.dll
2015-12-29 02:01:53 ----A---- C:\Windows\system32\d3dx10_35.dll
2015-12-29 02:01:53 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2015-12-29 02:01:52 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2015-12-29 02:01:52 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2015-12-29 02:01:52 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2015-12-29 02:01:52 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2015-12-29 02:01:52 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2015-12-29 02:01:52 ----A---- C:\Windows\system32\xactengine2_8.dll
2015-12-29 02:01:52 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2015-12-29 02:01:52 ----A---- C:\Windows\system32\d3dx9_35.dll
2015-12-29 02:01:52 ----A---- C:\Windows\system32\d3dx10_34.dll
2015-12-29 02:01:52 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2015-12-29 02:01:51 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-12-29 02:01:51 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2015-12-29 02:01:51 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2015-12-29 02:01:51 ----A---- C:\Windows\system32\xinput1_3.dll
2015-12-29 02:01:51 ----A---- C:\Windows\system32\xactengine2_7.dll
2015-12-29 02:01:51 ----A---- C:\Windows\system32\d3dx9_34.dll
2015-12-29 02:01:50 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2015-12-29 02:01:50 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2015-12-29 02:01:50 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2015-12-29 02:01:50 ----A---- C:\Windows\system32\d3dx9_33.dll
2015-12-29 02:01:50 ----A---- C:\Windows\system32\d3dx10_33.dll
2015-12-29 02:01:50 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2015-12-29 02:01:49 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2015-12-29 02:01:49 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2015-12-29 02:01:49 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2015-12-29 02:01:49 ----A---- C:\Windows\system32\xactengine2_6.dll
2015-12-29 02:01:49 ----A---- C:\Windows\system32\xactengine2_5.dll
2015-12-29 02:01:49 ----A---- C:\Windows\system32\d3dx10.dll
2015-12-29 02:01:48 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2015-12-29 02:01:48 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2015-12-29 02:01:48 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2015-12-29 02:01:48 ----A---- C:\Windows\system32\xactengine2_4.dll
2015-12-29 02:01:48 ----A---- C:\Windows\system32\x3daudio1_1.dll
2015-12-29 02:01:48 ----A---- C:\Windows\system32\d3dx9_32.dll
2015-12-29 02:01:47 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2015-12-29 02:01:47 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2015-12-29 02:01:47 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2015-12-29 02:01:47 ----A---- C:\Windows\system32\xinput1_2.dll
2015-12-29 02:01:47 ----A---- C:\Windows\system32\xactengine2_3.dll
2015-12-29 02:01:47 ----A---- C:\Windows\system32\d3dx9_31.dll
2015-12-29 02:01:46 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2015-12-29 02:01:46 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2015-12-29 02:01:46 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2015-12-29 02:01:46 ----A---- C:\Windows\system32\xinput1_1.dll
2015-12-29 02:01:46 ----A---- C:\Windows\system32\xactengine2_2.dll
2015-12-29 02:01:46 ----A---- C:\Windows\system32\xactengine2_1.dll
2015-12-29 02:01:45 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2015-12-29 02:01:45 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2015-12-29 02:01:45 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2015-12-29 02:01:45 ----A---- C:\Windows\system32\xactengine2_0.dll
2015-12-29 02:01:45 ----A---- C:\Windows\system32\x3daudio1_0.dll
2015-12-29 02:01:45 ----A---- C:\Windows\system32\d3dx9_30.dll
2015-12-29 02:01:44 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2015-12-29 02:01:44 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2015-12-29 02:01:44 ----A---- C:\Windows\system32\d3dx9_29.dll
2015-12-29 02:01:44 ----A---- C:\Windows\system32\d3dx9_28.dll
2015-12-29 02:01:43 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2015-12-29 02:01:43 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2015-12-29 02:01:43 ----A---- C:\Windows\system32\d3dx9_27.dll
2015-12-29 02:01:43 ----A---- C:\Windows\system32\d3dx9_26.dll
2015-12-29 02:01:42 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2015-12-29 02:01:42 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2015-12-29 02:01:42 ----A---- C:\Windows\system32\d3dx9_25.dll
2015-12-29 02:01:42 ----A---- C:\Windows\system32\d3dx9_24.dll
2015-12-29 02:00:17 ----D---- C:\Windows\SYSWOW64\directx
2015-12-29 01:50:03 ----D---- C:\Program Files (x86)\Ubisoft
2015-12-29 01:45:35 ----D---- C:\Users\Guardian\AppData\Roaming\SPORE
2015-12-29 01:45:24 ----D---- C:\Users\Guardian\AppData\Roaming\Petroglyph
2015-12-29 01:44:59 ----D---- C:\Users\Guardian\AppData\Roaming\Red Alert 3
2015-12-29 01:44:50 ----D---- C:\Users\Guardian\AppData\Roaming\Command and Conquer 3 Tiberium Wars
2015-12-29 01:43:43 ----D---- C:\Users\Guardian\AppData\Roaming\My The Lord of the Rings, The Rise of the Witch-king Files
2015-12-29 01:41:05 ----D---- C:\Users\Guardian\AppData\Roaming\GameSave Manager 3
2015-12-29 01:36:13 ----D---- C:\Program Files (x86)\HD Tune
2015-12-29 01:32:14 ----D---- C:\Users\Guardian\AppData\Roaming\IDM
2015-12-29 01:32:14 ----D---- C:\Users\Guardian\AppData\Roaming\DMCache
2015-12-29 01:32:14 ----D---- C:\ProgramData\IDM
2015-12-29 01:32:11 ----D---- C:\Program Files (x86)\Internet Download Manager
2015-12-29 01:32:06 ----D---- C:\Program Files (x86)\Tonec Inc
2015-12-29 01:28:38 ----D---- C:\Users\Guardian\AppData\Roaming\BSplayer
2015-12-29 01:27:55 ----A---- C:\Windows\system32\drivers\snapman.sys
2015-12-29 01:27:52 ----D---- C:\Program Files (x86)\Acronis
2015-12-29 01:25:02 ----D---- C:\Program Files\WinRAR
2015-12-29 01:23:52 ----D---- C:\Users\Guardian\AppData\Roaming\Ulozto File Manager
2015-12-29 01:14:36 ----D---- C:\Program Files (x86)\IrfanView
2015-12-29 01:07:05 ----D---- C:\Users\Guardian\AppData\Roaming\Dropbox
2015-12-29 01:05:54 ----D---- C:\Program Files (x86)\Dropbox
2015-12-29 01:05:48 ----D---- C:\ProgramData\Dropbox
2015-12-29 01:03:35 ----D---- C:\Users\Guardian\AppData\Roaming\Epson
2015-12-29 01:02:25 ----A---- C:\Windows\system32\esxwiaud.dll
2015-12-29 01:02:25 ----A---- C:\Windows\system32\esxcdev.dll
2015-12-29 01:02:25 ----A---- C:\Windows\system32\esdevapp.exe
2015-12-29 01:01:49 ----A---- C:\Windows\system32\E_ILMFBE.DLL
2015-12-29 01:01:49 ----A---- C:\Windows\system32\E_IBCBFBE.DLL
2015-12-29 01:01:48 ----A---- C:\Windows\system32\E_GCINST.DLL
2015-12-29 01:01:31 ----D---- C:\ProgramData\EPSON
2015-12-29 01:00:04 ----D---- C:\Program Files (x86)\EPSON
2015-12-29 00:59:35 ----D---- C:\ProgramData\UDL
2015-12-29 00:59:30 ----D---- C:\Program Files (x86)\Epson Software
2015-12-29 00:59:27 ----D---- C:\Users\Guardian\AppData\Roaming\InstallShield
2015-12-29 00:52:08 ----D---- C:\Program Files (x86)\RKComputer
2015-12-29 00:52:08 ----A---- C:\Windows\SYSWOW64\msvcr80.dll
2015-12-29 00:52:08 ----A---- C:\Windows\SYSWOW64\msvcr71.dll
2015-12-29 00:52:08 ----A---- C:\Windows\SYSWOW64\msvcp80.dll
2015-12-29 00:52:08 ----A---- C:\Windows\SYSWOW64\msvcp71.dll
2015-12-29 00:52:08 ----A---- C:\Windows\SYSWOW64\icuuc30.dll
2015-12-29 00:52:08 ----A---- C:\Windows\SYSWOW64\icuin30.dll
2015-12-29 00:52:08 ----A---- C:\Windows\SYSWOW64\icudt30.dll
2015-12-29 00:52:08 ----A---- C:\Windows\SYSWOW64\fbembed.dll
2015-12-29 00:50:06 ----D---- C:\Program Files (x86)\MSECache
2015-12-29 00:48:24 ----A---- C:\Windows\ODBC.INI
2015-12-29 00:47:34 ----D---- C:\Program Files (x86)\Microsoft Works
2015-12-29 00:47:31 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2015-12-29 00:47:27 ----D---- C:\Windows\PCHEALTH
2015-12-29 00:47:27 ----D---- C:\Program Files (x86)\Microsoft Office
2015-12-29 00:46:30 ----RHD---- C:\MSOCache
2015-12-29 00:45:51 ----A---- C:\Windows\system32\CNAP2LMD.DLL
2015-12-29 00:45:51 ----A---- C:\Windows\system32\CNAP1NSD.DLL
2015-12-29 00:45:49 ----A---- C:\Windows\system32\CNAC8EMD.DLL
2015-12-29 00:45:26 ----D---- C:\Program Files\Canon
2015-12-29 00:41:54 ----A---- C:\Users\Guardian\AppData\Roaming\All CPU MeterV3_Settings.ini
2015-12-29 00:40:28 ----A---- C:\Users\Guardian\AppData\Roaming\GPU MeterV2_Settings.ini
2015-12-29 00:32:05 ----D---- C:\Program Files (x86)\AMD
2015-12-29 00:31:15 ----D---- C:\Users\Guardian\AppData\Roaming\ATI
2015-12-29 00:31:15 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-12-29 00:30:18 ----D---- C:\Users\Guardian\AppData\Roaming\COWON
2015-12-29 00:29:30 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-12-29 00:28:56 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-12-29 00:28:37 ----D---- C:\Program Files\AMD
2015-12-29 00:26:40 ----D---- C:\ProgramData\Blizzard Entertainment
2015-12-29 00:26:39 ----D---- C:\Users\Guardian\AppData\Roaming\Battle.net
2015-12-29 00:26:02 ----D---- C:\Program Files (x86)\Battle.net
2015-12-29 00:25:34 ----D---- C:\ProgramData\Battle.net
2015-12-29 00:23:56 ----D---- C:\ProgramData\LogMeIn
2015-12-29 00:23:48 ----D---- C:\Users\Guardian\AppData\Roaming\vlc
2015-12-29 00:23:24 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2015-12-29 00:21:13 ----D---- C:\AMD
2015-12-29 00:18:40 ----D---- C:\Program Files (x86)\JetAudio
2015-12-29 00:17:10 ----A---- C:\Windows\system32\aswBoot.exe
2015-12-29 00:16:31 ----D---- C:\Users\Guardian\AppData\Roaming\AVAST Software
2015-12-29 00:16:16 ----D---- C:\Program Files\Common Files\AV
2015-12-29 00:16:13 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2015-12-29 00:16:13 ----A---- C:\Windows\system32\drivers\aswStm.sys
2015-12-29 00:16:12 ----A---- C:\Windows\system32\drivers\aswSP.sys
2015-12-29 00:16:12 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2015-12-29 00:16:12 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2015-12-29 00:16:12 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2015-12-29 00:16:12 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2015-12-29 00:16:12 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2015-12-29 00:16:10 ----A---- C:\Windows\avastSS.scr
2015-12-29 00:15:28 ----D---- C:\Program Files\AVAST Software
2015-12-29 00:15:21 ----D---- C:\ProgramData\AVAST Software
2015-12-29 00:11:13 ----DC---- C:\Windows\system32\DRVSTORE
2015-12-29 00:11:13 ----A---- C:\Windows\system32\drivers\usbfilter.sys
2015-12-29 00:11:05 ----D---- C:\ProgramData\AMD
2015-12-29 00:11:01 ----D---- C:\Program Files (x86)\ATI Technologies
2015-12-29 00:10:53 ----D---- C:\ProgramData\Package Cache
2015-12-29 00:10:47 ----D---- C:\Program Files\ATI
2015-12-29 00:10:28 ----D---- C:\Program Files\ATI Technologies
2015-12-29 00:09:43 ----A---- C:\Windows\system32\drivers\amd_xata.sys
2015-12-29 00:09:43 ----A---- C:\Windows\system32\drivers\amd_sata.sys
2015-12-29 00:02:32 ----D---- C:\Program Files (x86)\Google
2015-12-28 23:59:18 ----D---- C:\Users\Guardian\AppData\Roaming\GHISLER
2015-12-28 23:59:18 ----D---- C:\totalcmd
2015-12-28 23:51:03 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-12-28 23:51:03 ----D---- C:\Program Files\Realtek
2015-12-28 23:50:58 ----A---- C:\Windows\system32\RtkHDM64.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\RTEEP64H.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\RTEEL64H.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\RTEEG64H.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\RTEED64H.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\RHDMEx64.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\RHCoInst64.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\RH3DHT64.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\RH3DAA64.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\R4EEP64H.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\R4EEL64H.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\R4EEG64H.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\R4EED64H.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\R4EEA64H.dll
2015-12-28 23:50:58 ----A---- C:\Windows\system32\drivers\RtHDMIVX.sys
2015-12-28 23:50:57 ----A---- C:\Windows\system32\WavesGUILib.dll
2015-12-28 23:50:57 ----A---- C:\Windows\system32\SRSWOW64.dll
2015-12-28 23:50:57 ----A---- C:\Windows\system32\SRSTSX64.dll
2015-12-28 23:50:57 ----A---- C:\Windows\system32\SRSTSH64.dll
2015-12-28 23:50:57 ----A---- C:\Windows\system32\SRSHP64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RtPgEx64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RtkCfg64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RtkAPO64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RtkApi64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RTEEP64A.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RTEEL64A.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RTEEG64A.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RTEED64A.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RTCOM64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RP3DHT64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RP3DAA64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\RCoInstII64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\MBWrp64.dll
2015-12-28 23:50:56 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2015-12-28 23:50:56 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2015-12-28 23:50:55 ----A---- C:\Windows\SYSWOW64\MBAPO32.dll
2015-12-28 23:50:55 ----A---- C:\Windows\system32\MBppld64.dll
2015-12-28 23:50:55 ----A---- C:\Windows\system32\MBPPCn64.dll
2015-12-28 23:50:55 ----A---- C:\Windows\system32\MBAPO64.dll
2015-12-28 23:50:55 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2015-12-28 23:50:55 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-12-28 23:50:55 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2015-12-28 23:50:54 ----A---- C:\Windows\system32\FMAPO64.dll
2015-12-28 23:50:54 ----A---- C:\Windows\system32\AERTAR64.dll
2015-12-28 23:50:54 ----A---- C:\Windows\system32\AERTAC64.dll
2015-12-28 23:50:53 ----HD---- C:\Program Files (x86)\Temp
2015-12-28 23:50:53 ----A---- C:\Windows\RtlExUpd.dll
2015-12-28 23:50:18 ----D---- C:\Program Files (x86)\Etron Technology
2015-12-28 23:50:18 ----A---- C:\Windows\system32\drivers\EtronXHCI.sys
2015-12-28 23:50:18 ----A---- C:\Windows\system32\drivers\EtronHub3.sys
2015-12-28 23:48:59 ----SHD---- C:\Windows\Installer
2015-12-28 23:46:57 ----A---- C:\Windows\system32\RTNUninst64.dll
2015-12-28 23:46:57 ----A---- C:\Windows\system32\RtNicProp64.dll
2015-12-28 23:46:57 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2015-12-28 23:46:54 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-12-28 23:46:54 ----D---- C:\Program Files (x86)\Realtek
2015-12-28 23:38:17 ----A---- C:\Windows\DIFxAPI.dll
2015-12-28 23:37:27 ----A---- C:\Windows\GSetup.ini
2015-12-28 23:37:26 ----A---- C:\Windows\gdrv.sys
2015-12-28 23:27:38 ----D---- C:\Users\Guardian\AppData\Roaming\Identities
2015-12-28 23:27:32 ----SD---- C:\Users\Guardian\AppData\Roaming\Microsoft
2015-12-28 23:27:32 ----D---- C:\Users\Guardian\AppData\Roaming\Media Center Programs
2015-12-28 23:27:00 ----D---- C:\Windows\SYSWOW64\Wat
2015-12-28 23:27:00 ----D---- C:\Windows\system32\Wat
2015-12-28 23:26:51 ----D---- C:\Windows\SoftwareDistribution
2015-12-28 23:26:49 ----SHD---- C:\Recovery
2015-12-28 23:22:35 ----D---- C:\Windows\Prefetch
2015-12-28 23:22:27 ----SHD---- C:\System Volume Information
2015-12-28 23:22:27 ----ASH---- C:\pagefile.sys
2015-12-28 23:22:27 ----ASH---- C:\hiberfil.sys
2015-12-04 18:45:46 ----A---- C:\Windows\system32\amdave64.dll
2015-12-04 18:45:44 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2015-12-04 18:45:38 ----A---- C:\Windows\system32\amdhcp64.dll
2015-12-04 18:45:36 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2015-12-04 18:45:34 ----A---- C:\Windows\system32\atimpc64.dll
2015-12-04 18:45:34 ----A---- C:\Windows\system32\amdpcom64.dll
2015-12-04 18:45:32 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2015-12-04 18:45:32 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2015-12-04 18:45:20 ----A---- C:\Windows\system32\atiuxp64.dll
2015-12-04 18:45:18 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2015-12-04 18:45:16 ----A---- C:\Windows\system32\atiu9p64.dll
2015-12-04 18:45:14 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2015-12-04 18:45:12 ----A---- C:\Windows\system32\aticfx64.dll
2015-12-04 18:45:08 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2015-12-04 18:45:00 ----A---- C:\Windows\system32\atidxx64.dll
2015-12-04 18:44:56 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2015-12-04 18:44:48 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2015-12-04 18:44:40 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2015-12-04 18:44:32 ----A---- C:\Windows\system32\atiumd6a.dll
2015-12-04 18:44:26 ----A---- C:\Windows\system32\atiumd64.dll
2015-12-04 18:41:48 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2015-12-04 18:38:22 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2015-12-04 18:33:06 ----A---- C:\Windows\system32\clinfo.exe
2015-12-04 18:33:02 ----A---- C:\Windows\system32\amdocl64.dll
2015-12-04 18:31:48 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2015-12-04 18:30:42 ----A---- C:\Windows\system32\OpenCL.dll
2015-12-04 18:30:40 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-12-04 18:29:14 ----A---- C:\Windows\system32\amdocl12cl64.dll
2015-12-04 18:29:08 ----A---- C:\Windows\SYSWOW64\amdocl12cl.dll
2015-12-04 18:08:28 ----A---- C:\Windows\system32\amdlvr64.dll
2015-12-04 18:08:14 ----A---- C:\Windows\SYSWOW64\amdlvr32.dll
2015-12-04 18:08:00 ----A---- C:\Windows\system32\mantle64.dll
2015-12-04 18:07:56 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2015-12-04 18:07:50 ----A---- C:\Windows\system32\amdmantle64.dll
2015-12-04 18:03:02 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2015-12-04 17:59:28 ----A---- C:\Windows\system32\atio6axx.dll
2015-12-04 17:59:10 ----A---- C:\Windows\system32\mantleaxl64.dll
2015-12-04 17:59:06 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2015-12-04 17:57:06 ----A---- C:\Windows\system32\coinst_15.30.dll
2015-12-04 17:53:42 ----A---- C:\Windows\system32\amdmmcl6.dll
2015-12-04 17:53:38 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2015-12-04 17:53:36 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2015-12-04 17:51:46 ----A---- C:\Windows\system32\atiapfxx.exe
2015-12-04 17:51:44 ----A---- C:\Windows\system32\aticalrt64.dll
2015-12-04 17:51:42 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2015-12-04 17:51:40 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2015-12-04 17:51:40 ----A---- C:\Windows\system32\aticalcl64.dll
2015-12-04 17:51:34 ----A---- C:\Windows\system32\aticaldd64.dll
2015-12-04 17:50:44 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2015-12-04 17:50:36 ----A---- C:\Windows\SYSWOW64\ativvsvl.dat
2015-12-04 17:50:36 ----A---- C:\Windows\SYSWOW64\ativvsva.dat
2015-12-04 17:50:36 ----A---- C:\Windows\system32\ativvsvl.dat
2015-12-04 17:50:36 ----A---- C:\Windows\system32\ativvsva.dat
2015-12-04 17:47:26 ----A---- C:\Windows\system32\atidemgy.dll
2015-12-04 17:47:24 ----A---- C:\Windows\system32\dgtrayicon.exe
2015-12-04 17:47:20 ----A---- C:\Windows\SYSWOW64\atieah32.exe
2015-12-04 17:47:20 ----A---- C:\Windows\system32\atieah64.exe
2015-12-04 17:47:18 ----A---- C:\Windows\SYSWOW64\amdgfxinfo32.dll
2015-12-04 17:47:18 ----A---- C:\Windows\system32\amdgfxinfo64.dll
2015-12-04 17:47:16 ----A---- C:\Windows\system32\atimuixx.dll
2015-12-04 17:47:14 ----A---- C:\Windows\system32\atieclxx.exe
2015-12-04 17:47:06 ----A---- C:\Windows\system32\atiesrxx.exe
2015-12-04 17:46:54 ----A---- C:\Windows\system32\atitmm64.dll
2015-12-04 17:43:32 ----A---- C:\Windows\system32\atisamu64.dll
2015-12-04 17:43:30 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2015-12-04 17:43:12 ----A---- C:\Windows\system32\atiadlxx.dll
2015-12-04 17:43:10 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2015-12-04 17:43:10 ----A---- C:\Windows\SYSWOW64\atiadlxx.dll
2015-12-04 17:43:06 ----A---- C:\Windows\system32\atig6pxx.dll
2015-12-04 17:43:04 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2015-12-04 17:43:04 ----A---- C:\Windows\system32\atiglpxx.dll
2015-12-04 17:43:04 ----A---- C:\Windows\system32\atig6txx.dll
2015-12-04 17:43:00 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2015-12-04 17:42:56 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2015-12-04 17:42:32 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2015-12-04 17:41:56 ----A---- C:\Windows\system32\hsa-thunk64.dll
2015-12-04 17:41:54 ----A---- C:\Windows\SYSWOW64\hsa-thunk.dll
======List of files/folders modified in the last 1 month======
2015-12-29 22:39:36 ----D---- C:\Windows\Temp
2015-12-29 22:39:34 ----RD---- C:\Program Files
2015-12-29 22:39:17 ----D---- C:\Windows\System32
2015-12-29 22:39:17 ----D---- C:\Windows\inf
2015-12-29 22:39:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-29 22:34:05 ----D---- C:\Windows\system32\config
2015-12-29 22:30:50 ----D---- C:\Windows\system32\drivers
2015-12-29 22:13:41 ----D---- C:\Windows\LiveKernelReports
2015-12-29 20:44:08 ----RD---- C:\Program Files (x86)
2015-12-29 20:44:07 ----HD---- C:\ProgramData
2015-12-29 20:44:07 ----D---- C:\Windows\SysWOW64
2015-12-29 20:44:07 ----D---- C:\Program Files (x86)\Common Files
2015-12-29 20:33:00 ----RSD---- C:\Windows\Fonts
2015-12-29 20:26:54 ----RSD---- C:\Windows\assembly
2015-12-29 20:26:54 ----D---- C:\Windows
2015-12-29 19:44:36 ----D---- C:\Windows\winsxs
2015-12-29 19:44:28 ----D---- C:\Windows\SYSWOW64\en-US
2015-12-29 19:44:28 ----D---- C:\Windows\system32\en-US
2015-12-29 19:44:20 ----D---- C:\Windows\AppPatch
2015-12-29 19:43:56 ----D---- C:\Windows\system32\wdi
2015-12-29 16:33:40 ----D---- C:\Windows\Microsoft.NET
2015-12-29 15:56:03 ----D---- C:\Windows\system32\catroot2
2015-12-29 15:56:03 ----D---- C:\Windows\system32\catroot
2015-12-29 08:20:17 ----D---- C:\Windows\Setup
2015-12-29 02:18:24 ----D---- C:\Windows\Tasks
2015-12-29 02:18:24 ----D---- C:\Windows\system32\Tasks
2015-12-29 02:17:17 ----SD---- C:\ProgramData\Microsoft
2015-12-29 02:01:42 ----D---- C:\Windows\Logs
2015-12-29 01:02:28 ----D---- C:\Windows\system32\DriverStore
2015-12-29 01:02:23 ----D---- C:\Windows\twain_32
2015-12-29 01:00:14 ----D---- C:\Windows\Downloaded Program Files
2015-12-29 00:49:24 ----A---- C:\Windows\win.ini
2015-12-29 00:47:47 ----D---- C:\Windows\ShellNew
2015-12-29 00:47:47 ----D---- C:\Windows\IME
2015-12-29 00:47:28 ----D---- C:\Windows\Help
2015-12-29 00:46:33 ----D---- C:\Windows\system
2015-12-29 00:39:25 ----D---- C:\Windows\system32\wbem
2015-12-29 00:31:15 ----D---- C:\Program Files\Common Files
2015-12-28 23:54:27 ----D---- C:\Windows\system32\CodeIntegrity
2015-12-28 23:49:11 ----D---- C:\Program Files\Common Files\Microsoft Shared
2015-12-28 23:27:37 ----SHD---- C:\$Recycle.Bin
2015-12-28 23:27:32 ----RD---- C:\Users
2015-12-28 23:27:01 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-28 23:27:01 ----A---- C:\Windows\SYSWOW64\slwga.dll
2015-12-28 23:27:01 ----A---- C:\Windows\system32\user32.dll
2015-12-28 23:27:01 ----A---- C:\Windows\system32\systemcpl.dll
2015-12-28 23:27:01 ----A---- C:\Windows\system32\slwga.dll
2015-12-28 23:26:54 ----D---- C:\Windows\system32\restore
2015-12-28 23:26:51 ----D---- C:\Windows\rescache
2015-12-28 23:26:49 ----D---- C:\Windows\debug
2015-12-28 23:25:01 ----D---- C:\Windows\system32\oobe
2015-12-28 23:24:09 ----D---- C:\Windows\system32\sysprep
2015-12-28 23:22:59 ----D---- C:\Windows\system32\drivers\UMDF
2015-12-28 23:22:34 ----D---- C:\Windows\CSC
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2013-06-27 82240]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2013-06-27 42304]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-12-29 65224]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-12-29 273784]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2015-12-29 272480]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-12-29 93528]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-12-29 1055560]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-12-29 451040]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-11-20 57512]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-12-29 28656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-12-29 97648]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-12-29 155304]
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2015-06-12 197616]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2015-12-04 23961088]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2015-12-04 671232]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2015-09-18 96256]
R3 dtscsibus;DAEMON Tools Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtscsibus.sys [2015-12-29 29864]
R3 EtronHub3;Etron USB 3.0 Extensible Hub Driver; C:\Windows\System32\Drivers\EtronHub3.sys [2012-08-07 65152]
R3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver; C:\Windows\System32\Drivers\EtronXHCI.sys [2012-08-07 88832]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2015-07-14 33856]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-06-19 4065296]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-06-18 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-12-29 113880]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-06-18 63704]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-09-29 646248]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
R3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
R3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Users\Guardian\AppData\Local\Temp\tmp6D73.tmp []
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-12-28 20544]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-21 20992]
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2012-06-05 237968]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 XFDriver64;XFDriver64; \??\C:\Program Files (x86)\Xfire2\XFDriver64.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2015-12-04 246272]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-08-30 344064]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-12-29 226440]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2015-07-14 2540904]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2015-07-14 417552]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-06-18 1133880]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-06-18 1871160]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 Správce výběru OS;Aktivátor Správce výběru OS Acronis; C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe [2010-10-28 2156952]
R3 Disc Soft Bus Service;Disc Soft Bus Service; C:\Program Files (x86)\DAEMON Tools Pro\DiscSoftBusService.exe [2014-11-10 2216208]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 dbupdate;Dropbox Update Service (dbupdate); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-12-29 143144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-29 144200]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 dbupdatem;Dropbox Update Service (dbupdatem); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-12-29 143144]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-29 144200]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-12-28 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Nefunguje háček ani čárka klávesa - nejspíš Keylogger
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nefunguje háček ani čárka klávesa - nejspíš Keylogger
Zdravím!
Jak je na tom váš oper. systém s legalitou?
Jak je na tom váš oper. systém s legalitou?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Nefunguje háček ani čárka klávesa - nejspíš Keylogger
No tak podomacku
Normalne z Iso na USB presunuty a nainstalovany.
Jakou by toto mohlo hrát roli?
Tento sytém užívám i na jiném PC a tam vše funguje bez problému.
Jakou by toto mohlo hrát roli?
Re: Nefunguje háček ani čárka klávesa - nejspíš Keylogger
Dobrý den,
do tohoto tématu bych neměl přispívat.
Za to se Rudymu velmi omlouvám.
A teď k věci. Nebylo by podle vás lepší si nejdříve přečíst před registraci a žádáním pravidla fora?
Ušetříte tím spoustu lidem práci, i čas.
Forum je zaměřeno k pomoci/odvirování počítačů s officiální licencí Windows.
Tudíž ne žádná stáhlá, cracklá nebo něco podobného.
Ušetříte tím spoustu lidem práci, i čas.
Děkuji.
do tohoto tématu bych neměl přispívat.
Za to se Rudymu velmi omlouvám.
A teď k věci. Nebylo by podle vás lepší si nejdříve přečíst před registraci a žádáním pravidla fora?
Ušetříte tím spoustu lidem práci, i čas.
Forum je zaměřeno k pomoci/odvirování počítačů s officiální licencí Windows.
Tudíž ne žádná stáhlá, cracklá nebo něco podobného.
Ušetříte tím spoustu lidem práci, i čas.
Děkuji.
Čeština je freeware, nikoli open-source. Takže ji zdarma používej, ale neupravuj. 
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nefunguje háček ani čárka klávesa - nejspíš Keylogger
Je to přesně tak, jak říká ploma1. Pravidla najdete zde: http://forum.viry.cz/viewtopic.php?f=12&t=115512 a jsou dostupná pro každého (bez registrace). Cracklé win jsou upravované, tedy se mohou při čištění chovat jinak, než ta originální a nemáme zájem tu pak řešit, nějaké pády systému.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?