
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Kontrola logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Kontrola logu
Dobrý den prosím o kontrlo logu z důvodu nabouráni mého mailu na seznamu ze kterého mi začayl odesílat spamy.
Po několika změnách hesla mi by účet zablokován.Jinak žádné změny nepozoruji a nod 32 mi nic nenašel.
Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-04-10 13:25:11
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 113 GB (46%) free of 244 GB
Total RAM: 3536 MB (64% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5089480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Roman^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RT-Updater.lnk]
C:\ROSS-T~1\VCDS\VCDS.EXE [2016-02-16 2491088]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-10 13:25:11 ----D---- C:\rsit
2016-04-10 13:25:11 ----D---- C:\Program Files\trend micro
2016-04-10 13:21:12 ----D---- C:\ProgramData\ESET
2016-04-10 13:11:35 ----D---- C:\Program Files\ESET
2016-04-10 08:29:26 ----D---- C:\Users\Roman\AppData\Roaming\Enigma Software Group
2016-04-10 08:29:17 ----D---- C:\sh4ldr
2016-04-10 08:28:42 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2016-04-10 08:28:32 ----D---- C:\Program Files\Enigma Software Group
2016-04-10 08:26:08 ----A---- C:\Windows\ntbtlog.txt
2016-03-30 20:39:36 ----A---- C:\Windows\system32\wuaueng.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuwebv.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups2.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wudriver.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wucltux.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuauclt.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapp.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapi.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-03-30 20:39:27 ----A---- C:\Windows\system32\InkEd.dll
2016-03-30 20:39:26 ----A---- C:\Windows\system32\jnwmon.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\olepro32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\oleaut32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\asycfilt.dll
2016-03-30 20:39:18 ----A---- C:\Windows\system32\ntdll.dll
2016-03-30 20:39:17 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-03-30 20:39:16 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-03-30 20:39:15 ----A---- C:\Windows\system32\kerberos.dll
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\advapi32.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\smss.exe
2016-03-30 20:39:14 ----A---- C:\Windows\system32\rpcrt4.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\lsasrv.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-03-30 20:39:13 ----A---- C:\Windows\system32\wdigest.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\TSpkg.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\sspicli.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\srcore.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\schannel.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\ncrypt.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-03-30 20:39:12 ----A---- C:\Windows\system32\sspisrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\srclient.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\secur32.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\rstrui.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\lsass.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\csrsrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\cryptbase.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\credssp.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\apisetschema.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msobjs.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msaudite.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\auditpol.exe
2016-03-30 20:39:11 ----A---- C:\Windows\system32\adtschema.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\EncDec.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\CPFilters.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\KernelBase.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\kernel32.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\mtxoci.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\msorcl32.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\winsrv.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\conhost.exe
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-30 20:38:25 ----A---- C:\Windows\system32\ole32.dll
2016-03-30 20:38:11 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-03-30 20:38:10 ----A---- C:\Windows\system32\seclogon.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\rdpcorets.dll
2016-03-30 20:38:08 ----A---- C:\Windows\system32\rdpudd.dll
2016-03-30 20:37:53 ----A---- C:\Windows\system32\win32k.sys
2016-03-30 20:37:52 ----A---- C:\Windows\system32\mfds.dll
2016-03-30 20:37:52 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-03-30 20:37:41 ----A---- C:\Windows\system32\lpk.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\fontsub.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\dciman32.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmlib.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmfd.dll
2016-03-30 20:34:29 ----A---- C:\Windows\system32\wmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\spwmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\dxmasf.dll
2016-03-30 20:34:26 ----A---- C:\Windows\system32\wmploc.DLL
2016-03-29 18:39:40 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\iernonce.dll
2016-03-29 18:39:39 ----A---- C:\Windows\system32\ie4uinit.exe
2016-03-29 18:39:38 ----A---- C:\Windows\system32\vbscript.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\urlmon.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\occache.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\iedkcs32.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\jscript9diag.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\inseng.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieUnatt.exe
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieapfltr.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-03-29 18:39:36 ----A---- C:\Windows\system32\msfeeds.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\webcheck.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\msrating.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\jscript.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\iesetup.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-03-29 18:39:32 ----A---- C:\Windows\system32\wininet.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\ieui.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\dxtrans.dll
2016-03-29 18:39:28 ----A---- C:\Windows\system32\ieframe.dll
2016-03-29 18:39:25 ----A---- C:\Windows\system32\mshtmled.dll
2016-03-29 18:39:24 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-03-29 18:39:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-03-29 18:39:22 ----A---- C:\Windows\system32\jscript9.dll
2016-03-29 18:39:19 ----A---- C:\Windows\system32\mshtml.dll
2016-03-29 18:39:15 ----A---- C:\Windows\system32\iertutil.dll
2016-03-26 10:59:11 ----D---- C:\ProgramData\OPUS
======List of files/folders modified in the last 1 month======
2016-04-10 13:25:11 ----RD---- C:\Program Files
2016-04-10 13:24:19 ----D---- C:\Windows\system32\config
2016-04-10 13:24:07 ----D---- C:\Windows\Temp
2016-04-10 13:21:39 ----SHD---- C:\Windows\Installer
2016-04-10 13:21:27 ----D---- C:\Windows\system32\drivers
2016-04-10 13:21:26 ----D---- C:\Windows\system32\DriverStore
2016-04-10 13:21:26 ----D---- C:\Windows\inf
2016-04-10 13:21:12 ----HD---- C:\ProgramData
2016-04-10 13:17:48 ----D---- C:\Windows\System32
2016-04-10 13:17:48 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-10 13:12:13 ----D---- C:\Windows\system32\Tasks
2016-04-10 13:12:12 ----D---- C:\Program Files\Common Files\AV
2016-04-10 08:26:08 ----D---- C:\Windows
2016-04-07 15:32:23 ----D---- C:\Windows\rescache
2016-04-06 20:51:23 ----D---- C:\Windows\Microsoft.NET
2016-04-06 20:20:15 ----D---- C:\wow5.00.8R2CZECH
2016-04-06 15:40:38 ----D---- C:\wow4
2016-04-04 20:41:58 ----D---- C:\Windows\winsxs
2016-04-03 19:57:51 ----D---- C:\Windows\pss
2016-04-03 14:19:42 ----SD---- C:\Windows\system32\CompatTel
2016-04-03 14:19:41 ----D---- C:\Windows\system32\appraiser
2016-04-03 14:19:41 ----D---- C:\Windows\AppPatch
2016-04-03 14:18:54 ----RSD---- C:\Windows\assembly
2016-04-03 14:01:56 ----D---- C:\vcp
2016-04-03 14:00:38 ----D---- C:\cancomm_log
2016-04-03 13:54:19 ----A---- C:\Windows\ESIDATA.ini
2016-04-01 21:46:40 ----A---- C:\Windows\win.ini
2016-04-01 21:46:40 ----A---- C:\Windows\RbSystem.ini
2016-03-30 21:17:18 ----D---- C:\Windows\system32\en-US
2016-03-30 21:17:18 ----D---- C:\Windows\system32\cs-CZ
2016-03-30 21:17:18 ----D---- C:\Program Files\Windows Journal
2016-03-30 21:17:17 ----D---- C:\Program Files\Internet Explorer
2016-03-30 21:17:16 ----D---- C:\Program Files\Windows Media Player
2016-03-30 20:48:41 ----D---- C:\Windows\system32\MRT
2016-03-30 20:41:56 ----D---- C:\Windows\debug
2016-03-30 20:41:54 ----A---- C:\Windows\system32\MRT.exe
2016-03-30 20:37:44 ----D---- C:\Windows\system32\catroot2
2016-03-30 17:17:08 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-29 17:33:48 ----D---- C:\TRANSLAT
2016-03-29 17:20:59 ----D---- C:\Windows\system32\NDF
2016-03-26 10:55:53 ----D---- C:\Windows\Tasks
2016-03-26 10:55:52 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-25 10:05:37 ----A---- C:\Windows\wdict32.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 202704]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 144536]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 132152]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-04-05 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2016-04-10 16432]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-04-10 19984]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2015-07-24 101504]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2015-07-24 91648]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2009-05-26 122368]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2015-08-10 145152]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2015-07-08 1353720]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
R2 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2016-04-10 784256]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
-----------------EOF-----------------
Po několika změnách hesla mi by účet zablokován.Jinak žádné změny nepozoruji a nod 32 mi nic nenašel.
Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-04-10 13:25:11
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 113 GB (46%) free of 244 GB
Total RAM: 3536 MB (64% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5089480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Roman^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RT-Updater.lnk]
C:\ROSS-T~1\VCDS\VCDS.EXE [2016-02-16 2491088]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-10 13:25:11 ----D---- C:\rsit
2016-04-10 13:25:11 ----D---- C:\Program Files\trend micro
2016-04-10 13:21:12 ----D---- C:\ProgramData\ESET
2016-04-10 13:11:35 ----D---- C:\Program Files\ESET
2016-04-10 08:29:26 ----D---- C:\Users\Roman\AppData\Roaming\Enigma Software Group
2016-04-10 08:29:17 ----D---- C:\sh4ldr
2016-04-10 08:28:42 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2016-04-10 08:28:32 ----D---- C:\Program Files\Enigma Software Group
2016-04-10 08:26:08 ----A---- C:\Windows\ntbtlog.txt
2016-03-30 20:39:36 ----A---- C:\Windows\system32\wuaueng.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuwebv.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups2.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wudriver.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wucltux.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuauclt.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapp.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapi.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-03-30 20:39:27 ----A---- C:\Windows\system32\InkEd.dll
2016-03-30 20:39:26 ----A---- C:\Windows\system32\jnwmon.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\olepro32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\oleaut32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\asycfilt.dll
2016-03-30 20:39:18 ----A---- C:\Windows\system32\ntdll.dll
2016-03-30 20:39:17 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-03-30 20:39:16 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-03-30 20:39:15 ----A---- C:\Windows\system32\kerberos.dll
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\advapi32.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\smss.exe
2016-03-30 20:39:14 ----A---- C:\Windows\system32\rpcrt4.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\lsasrv.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-03-30 20:39:13 ----A---- C:\Windows\system32\wdigest.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\TSpkg.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\sspicli.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\srcore.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\schannel.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\ncrypt.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-03-30 20:39:12 ----A---- C:\Windows\system32\sspisrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\srclient.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\secur32.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\rstrui.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\lsass.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\csrsrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\cryptbase.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\credssp.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\apisetschema.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msobjs.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msaudite.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\auditpol.exe
2016-03-30 20:39:11 ----A---- C:\Windows\system32\adtschema.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\EncDec.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\CPFilters.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\KernelBase.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\kernel32.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\mtxoci.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\msorcl32.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\winsrv.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\conhost.exe
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-30 20:38:25 ----A---- C:\Windows\system32\ole32.dll
2016-03-30 20:38:11 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-03-30 20:38:10 ----A---- C:\Windows\system32\seclogon.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\rdpcorets.dll
2016-03-30 20:38:08 ----A---- C:\Windows\system32\rdpudd.dll
2016-03-30 20:37:53 ----A---- C:\Windows\system32\win32k.sys
2016-03-30 20:37:52 ----A---- C:\Windows\system32\mfds.dll
2016-03-30 20:37:52 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-03-30 20:37:41 ----A---- C:\Windows\system32\lpk.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\fontsub.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\dciman32.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmlib.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmfd.dll
2016-03-30 20:34:29 ----A---- C:\Windows\system32\wmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\spwmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\dxmasf.dll
2016-03-30 20:34:26 ----A---- C:\Windows\system32\wmploc.DLL
2016-03-29 18:39:40 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\iernonce.dll
2016-03-29 18:39:39 ----A---- C:\Windows\system32\ie4uinit.exe
2016-03-29 18:39:38 ----A---- C:\Windows\system32\vbscript.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\urlmon.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\occache.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\iedkcs32.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\jscript9diag.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\inseng.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieUnatt.exe
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieapfltr.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-03-29 18:39:36 ----A---- C:\Windows\system32\msfeeds.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\webcheck.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\msrating.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\jscript.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\iesetup.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-03-29 18:39:32 ----A---- C:\Windows\system32\wininet.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\ieui.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\dxtrans.dll
2016-03-29 18:39:28 ----A---- C:\Windows\system32\ieframe.dll
2016-03-29 18:39:25 ----A---- C:\Windows\system32\mshtmled.dll
2016-03-29 18:39:24 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-03-29 18:39:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-03-29 18:39:22 ----A---- C:\Windows\system32\jscript9.dll
2016-03-29 18:39:19 ----A---- C:\Windows\system32\mshtml.dll
2016-03-29 18:39:15 ----A---- C:\Windows\system32\iertutil.dll
2016-03-26 10:59:11 ----D---- C:\ProgramData\OPUS
======List of files/folders modified in the last 1 month======
2016-04-10 13:25:11 ----RD---- C:\Program Files
2016-04-10 13:24:19 ----D---- C:\Windows\system32\config
2016-04-10 13:24:07 ----D---- C:\Windows\Temp
2016-04-10 13:21:39 ----SHD---- C:\Windows\Installer
2016-04-10 13:21:27 ----D---- C:\Windows\system32\drivers
2016-04-10 13:21:26 ----D---- C:\Windows\system32\DriverStore
2016-04-10 13:21:26 ----D---- C:\Windows\inf
2016-04-10 13:21:12 ----HD---- C:\ProgramData
2016-04-10 13:17:48 ----D---- C:\Windows\System32
2016-04-10 13:17:48 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-10 13:12:13 ----D---- C:\Windows\system32\Tasks
2016-04-10 13:12:12 ----D---- C:\Program Files\Common Files\AV
2016-04-10 08:26:08 ----D---- C:\Windows
2016-04-07 15:32:23 ----D---- C:\Windows\rescache
2016-04-06 20:51:23 ----D---- C:\Windows\Microsoft.NET
2016-04-06 20:20:15 ----D---- C:\wow5.00.8R2CZECH
2016-04-06 15:40:38 ----D---- C:\wow4
2016-04-04 20:41:58 ----D---- C:\Windows\winsxs
2016-04-03 19:57:51 ----D---- C:\Windows\pss
2016-04-03 14:19:42 ----SD---- C:\Windows\system32\CompatTel
2016-04-03 14:19:41 ----D---- C:\Windows\system32\appraiser
2016-04-03 14:19:41 ----D---- C:\Windows\AppPatch
2016-04-03 14:18:54 ----RSD---- C:\Windows\assembly
2016-04-03 14:01:56 ----D---- C:\vcp
2016-04-03 14:00:38 ----D---- C:\cancomm_log
2016-04-03 13:54:19 ----A---- C:\Windows\ESIDATA.ini
2016-04-01 21:46:40 ----A---- C:\Windows\win.ini
2016-04-01 21:46:40 ----A---- C:\Windows\RbSystem.ini
2016-03-30 21:17:18 ----D---- C:\Windows\system32\en-US
2016-03-30 21:17:18 ----D---- C:\Windows\system32\cs-CZ
2016-03-30 21:17:18 ----D---- C:\Program Files\Windows Journal
2016-03-30 21:17:17 ----D---- C:\Program Files\Internet Explorer
2016-03-30 21:17:16 ----D---- C:\Program Files\Windows Media Player
2016-03-30 20:48:41 ----D---- C:\Windows\system32\MRT
2016-03-30 20:41:56 ----D---- C:\Windows\debug
2016-03-30 20:41:54 ----A---- C:\Windows\system32\MRT.exe
2016-03-30 20:37:44 ----D---- C:\Windows\system32\catroot2
2016-03-30 17:17:08 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-29 17:33:48 ----D---- C:\TRANSLAT
2016-03-29 17:20:59 ----D---- C:\Windows\system32\NDF
2016-03-26 10:55:53 ----D---- C:\Windows\Tasks
2016-03-26 10:55:52 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-25 10:05:37 ----A---- C:\Windows\wdict32.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 202704]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 144536]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 132152]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-04-05 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2016-04-10 16432]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-04-10 19984]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2015-07-24 101504]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2015-07-24 91648]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2009-05-26 122368]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2015-08-10 145152]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2015-07-08 1353720]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
R2 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2016-04-10 784256]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119320
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
# AdwCleaner v5.109 - Log soubor vytvořen 10/04/2016 o 18:09:27
# Aktualizováno 04/04/2016 by Xplode
# Databáze : 2016-04-04.2 [Místní]
# Operační systém : Windows 7 Professional Service Pack 1 (x86)
# Jméno uživatele : Roman - LATITUDE
# Spuštěno z : C:\Users\Roman\Desktop\adwcleaner_5.109.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLLs ] *****
***** [ Zástupci ] *****
***** [ Naplánované úkoly ] *****
***** [ Registr ] *****
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\onlinemapfinder.dl.tb.ask.com
[-] Klávesa smazáno : HKCU\Software\Softonic
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\ask.com
***** [ Webové prohlížeče ] *****
*************************
:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [1010 bytes] - [10/04/2016 18:09:27]
C:\AdwCleaner\AdwCleaner[S1].txt - [1236 bytes] - [10/04/2016 18:02:53]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1156 bytes] ##########
# Aktualizováno 04/04/2016 by Xplode
# Databáze : 2016-04-04.2 [Místní]
# Operační systém : Windows 7 Professional Service Pack 1 (x86)
# Jméno uživatele : Roman - LATITUDE
# Spuštěno z : C:\Users\Roman\Desktop\adwcleaner_5.109.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLLs ] *****
***** [ Zástupci ] *****
***** [ Naplánované úkoly ] *****
***** [ Registr ] *****
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\onlinemapfinder.dl.tb.ask.com
[-] Klávesa smazáno : HKCU\Software\Softonic
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\ask.com
***** [ Webové prohlížeče ] *****
*************************
:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [1010 bytes] - [10/04/2016 18:09:27]
C:\AdwCleaner\AdwCleaner[S1].txt - [1236 bytes] - [10/04/2016 18:02:53]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1156 bytes] ##########
- Rudy
- Site Admin
- Příspěvky: 119320
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-04-10 18:45:22
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 113 GB (46%) free of 244 GB
Total RAM: 3536 MB (75% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5089480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Roman^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RT-Updater.lnk]
C:\ROSS-T~1\VCDS\VCDS.EXE [2016-02-16 2491088]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-10 18:36:30 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2016-04-10 18:02:37 ----D---- C:\AdwCleaner
2016-04-10 13:25:11 ----D---- C:\rsit
2016-04-10 13:25:11 ----D---- C:\Program Files\trend micro
2016-04-10 13:21:12 ----D---- C:\ProgramData\ESET
2016-04-10 13:11:35 ----D---- C:\Program Files\ESET
2016-03-30 20:39:36 ----A---- C:\Windows\system32\wuaueng.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuwebv.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups2.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wudriver.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wucltux.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuauclt.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapp.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapi.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-03-30 20:39:27 ----A---- C:\Windows\system32\InkEd.dll
2016-03-30 20:39:26 ----A---- C:\Windows\system32\jnwmon.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\olepro32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\oleaut32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\asycfilt.dll
2016-03-30 20:39:18 ----A---- C:\Windows\system32\ntdll.dll
2016-03-30 20:39:17 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-03-30 20:39:16 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-03-30 20:39:15 ----A---- C:\Windows\system32\kerberos.dll
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\advapi32.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\smss.exe
2016-03-30 20:39:14 ----A---- C:\Windows\system32\rpcrt4.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\lsasrv.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-03-30 20:39:13 ----A---- C:\Windows\system32\wdigest.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\TSpkg.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\sspicli.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\srcore.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\schannel.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\ncrypt.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-03-30 20:39:12 ----A---- C:\Windows\system32\sspisrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\srclient.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\secur32.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\rstrui.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\lsass.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\csrsrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\cryptbase.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\credssp.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\apisetschema.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msobjs.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msaudite.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\auditpol.exe
2016-03-30 20:39:11 ----A---- C:\Windows\system32\adtschema.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\EncDec.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\CPFilters.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\KernelBase.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\kernel32.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\mtxoci.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\msorcl32.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\winsrv.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\conhost.exe
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-30 20:38:25 ----A---- C:\Windows\system32\ole32.dll
2016-03-30 20:38:11 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-03-30 20:38:10 ----A---- C:\Windows\system32\seclogon.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\rdpcorets.dll
2016-03-30 20:38:08 ----A---- C:\Windows\system32\rdpudd.dll
2016-03-30 20:37:53 ----A---- C:\Windows\system32\win32k.sys
2016-03-30 20:37:52 ----A---- C:\Windows\system32\mfds.dll
2016-03-30 20:37:52 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-03-30 20:37:41 ----A---- C:\Windows\system32\lpk.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\fontsub.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\dciman32.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmlib.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmfd.dll
2016-03-30 20:34:29 ----A---- C:\Windows\system32\wmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\spwmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\dxmasf.dll
2016-03-30 20:34:26 ----A---- C:\Windows\system32\wmploc.DLL
2016-03-29 18:39:40 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\iernonce.dll
2016-03-29 18:39:39 ----A---- C:\Windows\system32\ie4uinit.exe
2016-03-29 18:39:38 ----A---- C:\Windows\system32\vbscript.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\urlmon.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\occache.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\iedkcs32.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\jscript9diag.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\inseng.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieUnatt.exe
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieapfltr.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-03-29 18:39:36 ----A---- C:\Windows\system32\msfeeds.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\webcheck.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\msrating.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\jscript.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\iesetup.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-03-29 18:39:32 ----A---- C:\Windows\system32\wininet.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\ieui.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\dxtrans.dll
2016-03-29 18:39:28 ----A---- C:\Windows\system32\ieframe.dll
2016-03-29 18:39:25 ----A---- C:\Windows\system32\mshtmled.dll
2016-03-29 18:39:24 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-03-29 18:39:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-03-29 18:39:22 ----A---- C:\Windows\system32\jscript9.dll
2016-03-29 18:39:19 ----A---- C:\Windows\system32\mshtml.dll
2016-03-29 18:39:15 ----A---- C:\Windows\system32\iertutil.dll
2016-03-26 10:59:11 ----D---- C:\ProgramData\OPUS
======List of files/folders modified in the last 1 month======
2016-04-10 18:45:21 ----D---- C:\Windows\SoftwareDistribution
2016-04-10 18:44:35 ----D---- C:\Windows
2016-04-10 18:41:54 ----D---- C:\Windows\Temp
2016-04-10 18:39:42 ----D---- C:\Windows\system32\config
2016-04-10 18:37:13 ----D---- C:\Windows\system32\drivers
2016-04-10 18:36:22 ----RD---- C:\Program Files
2016-04-10 18:15:10 ----D---- C:\Windows\System32
2016-04-10 18:15:10 ----D---- C:\Windows\inf
2016-04-10 18:15:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-10 17:54:01 ----D---- C:\Windows\debug
2016-04-10 13:21:39 ----SHD---- C:\Windows\Installer
2016-04-10 13:21:26 ----D---- C:\Windows\system32\DriverStore
2016-04-10 13:21:12 ----HD---- C:\ProgramData
2016-04-10 13:12:13 ----D---- C:\Windows\system32\Tasks
2016-04-10 13:12:12 ----D---- C:\Program Files\Common Files\AV
2016-04-07 15:32:23 ----D---- C:\Windows\rescache
2016-04-06 20:51:23 ----D---- C:\Windows\Microsoft.NET
2016-04-06 20:20:15 ----D---- C:\wow5.00.8R2CZECH
2016-04-06 15:40:38 ----D---- C:\wow4
2016-04-04 20:41:58 ----D---- C:\Windows\winsxs
2016-04-03 19:57:51 ----D---- C:\Windows\pss
2016-04-03 14:19:42 ----SD---- C:\Windows\system32\CompatTel
2016-04-03 14:19:41 ----D---- C:\Windows\system32\appraiser
2016-04-03 14:19:41 ----D---- C:\Windows\AppPatch
2016-04-03 14:18:54 ----RSD---- C:\Windows\assembly
2016-04-03 14:01:56 ----D---- C:\vcp
2016-04-03 14:00:38 ----D---- C:\cancomm_log
2016-04-03 13:54:19 ----A---- C:\Windows\ESIDATA.ini
2016-04-01 21:46:40 ----A---- C:\Windows\win.ini
2016-04-01 21:46:40 ----A---- C:\Windows\RbSystem.ini
2016-03-30 21:17:18 ----D---- C:\Windows\system32\en-US
2016-03-30 21:17:18 ----D---- C:\Windows\system32\cs-CZ
2016-03-30 21:17:18 ----D---- C:\Program Files\Windows Journal
2016-03-30 21:17:17 ----D---- C:\Program Files\Internet Explorer
2016-03-30 21:17:16 ----D---- C:\Program Files\Windows Media Player
2016-03-30 20:48:41 ----D---- C:\Windows\system32\MRT
2016-03-30 20:41:54 ----A---- C:\Windows\system32\MRT.exe
2016-03-30 20:37:44 ----D---- C:\Windows\system32\catroot2
2016-03-30 17:17:08 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-29 17:33:48 ----D---- C:\TRANSLAT
2016-03-29 17:20:59 ----D---- C:\Windows\system32\NDF
2016-03-26 10:55:53 ----D---- C:\Windows\Tasks
2016-03-26 10:55:52 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-25 10:05:37 ----A---- C:\Windows\wdict32.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 202704]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 144536]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 132152]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-04-05 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-04-10 19984]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2015-07-24 101504]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2015-07-24 91648]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2009-05-26 122368]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2015-08-10 145152]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2015-07-08 1353720]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
R2 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
-----------------EOF-----------------
Run by Roman at 2016-04-10 18:45:22
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 113 GB (46%) free of 244 GB
Total RAM: 3536 MB (75% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5089480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Roman^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RT-Updater.lnk]
C:\ROSS-T~1\VCDS\VCDS.EXE [2016-02-16 2491088]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-10 18:36:30 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2016-04-10 18:02:37 ----D---- C:\AdwCleaner
2016-04-10 13:25:11 ----D---- C:\rsit
2016-04-10 13:25:11 ----D---- C:\Program Files\trend micro
2016-04-10 13:21:12 ----D---- C:\ProgramData\ESET
2016-04-10 13:11:35 ----D---- C:\Program Files\ESET
2016-03-30 20:39:36 ----A---- C:\Windows\system32\wuaueng.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuwebv.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups2.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wudriver.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wucltux.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuauclt.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapp.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapi.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-03-30 20:39:27 ----A---- C:\Windows\system32\InkEd.dll
2016-03-30 20:39:26 ----A---- C:\Windows\system32\jnwmon.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\olepro32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\oleaut32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\asycfilt.dll
2016-03-30 20:39:18 ----A---- C:\Windows\system32\ntdll.dll
2016-03-30 20:39:17 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-03-30 20:39:16 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-03-30 20:39:15 ----A---- C:\Windows\system32\kerberos.dll
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\advapi32.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\smss.exe
2016-03-30 20:39:14 ----A---- C:\Windows\system32\rpcrt4.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\lsasrv.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-03-30 20:39:13 ----A---- C:\Windows\system32\wdigest.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\TSpkg.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\sspicli.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\srcore.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\schannel.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\ncrypt.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-03-30 20:39:12 ----A---- C:\Windows\system32\sspisrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\srclient.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\secur32.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\rstrui.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\lsass.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\csrsrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\cryptbase.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\credssp.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\apisetschema.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msobjs.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msaudite.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\auditpol.exe
2016-03-30 20:39:11 ----A---- C:\Windows\system32\adtschema.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\EncDec.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\CPFilters.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\KernelBase.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\kernel32.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\mtxoci.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\msorcl32.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\winsrv.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\conhost.exe
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-30 20:38:25 ----A---- C:\Windows\system32\ole32.dll
2016-03-30 20:38:11 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-03-30 20:38:10 ----A---- C:\Windows\system32\seclogon.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\rdpcorets.dll
2016-03-30 20:38:08 ----A---- C:\Windows\system32\rdpudd.dll
2016-03-30 20:37:53 ----A---- C:\Windows\system32\win32k.sys
2016-03-30 20:37:52 ----A---- C:\Windows\system32\mfds.dll
2016-03-30 20:37:52 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-03-30 20:37:41 ----A---- C:\Windows\system32\lpk.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\fontsub.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\dciman32.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmlib.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmfd.dll
2016-03-30 20:34:29 ----A---- C:\Windows\system32\wmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\spwmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\dxmasf.dll
2016-03-30 20:34:26 ----A---- C:\Windows\system32\wmploc.DLL
2016-03-29 18:39:40 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\iernonce.dll
2016-03-29 18:39:39 ----A---- C:\Windows\system32\ie4uinit.exe
2016-03-29 18:39:38 ----A---- C:\Windows\system32\vbscript.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\urlmon.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\occache.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\iedkcs32.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\jscript9diag.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\inseng.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieUnatt.exe
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieapfltr.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-03-29 18:39:36 ----A---- C:\Windows\system32\msfeeds.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\webcheck.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\msrating.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\jscript.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\iesetup.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-03-29 18:39:32 ----A---- C:\Windows\system32\wininet.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\ieui.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\dxtrans.dll
2016-03-29 18:39:28 ----A---- C:\Windows\system32\ieframe.dll
2016-03-29 18:39:25 ----A---- C:\Windows\system32\mshtmled.dll
2016-03-29 18:39:24 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-03-29 18:39:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-03-29 18:39:22 ----A---- C:\Windows\system32\jscript9.dll
2016-03-29 18:39:19 ----A---- C:\Windows\system32\mshtml.dll
2016-03-29 18:39:15 ----A---- C:\Windows\system32\iertutil.dll
2016-03-26 10:59:11 ----D---- C:\ProgramData\OPUS
======List of files/folders modified in the last 1 month======
2016-04-10 18:45:21 ----D---- C:\Windows\SoftwareDistribution
2016-04-10 18:44:35 ----D---- C:\Windows
2016-04-10 18:41:54 ----D---- C:\Windows\Temp
2016-04-10 18:39:42 ----D---- C:\Windows\system32\config
2016-04-10 18:37:13 ----D---- C:\Windows\system32\drivers
2016-04-10 18:36:22 ----RD---- C:\Program Files
2016-04-10 18:15:10 ----D---- C:\Windows\System32
2016-04-10 18:15:10 ----D---- C:\Windows\inf
2016-04-10 18:15:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-10 17:54:01 ----D---- C:\Windows\debug
2016-04-10 13:21:39 ----SHD---- C:\Windows\Installer
2016-04-10 13:21:26 ----D---- C:\Windows\system32\DriverStore
2016-04-10 13:21:12 ----HD---- C:\ProgramData
2016-04-10 13:12:13 ----D---- C:\Windows\system32\Tasks
2016-04-10 13:12:12 ----D---- C:\Program Files\Common Files\AV
2016-04-07 15:32:23 ----D---- C:\Windows\rescache
2016-04-06 20:51:23 ----D---- C:\Windows\Microsoft.NET
2016-04-06 20:20:15 ----D---- C:\wow5.00.8R2CZECH
2016-04-06 15:40:38 ----D---- C:\wow4
2016-04-04 20:41:58 ----D---- C:\Windows\winsxs
2016-04-03 19:57:51 ----D---- C:\Windows\pss
2016-04-03 14:19:42 ----SD---- C:\Windows\system32\CompatTel
2016-04-03 14:19:41 ----D---- C:\Windows\system32\appraiser
2016-04-03 14:19:41 ----D---- C:\Windows\AppPatch
2016-04-03 14:18:54 ----RSD---- C:\Windows\assembly
2016-04-03 14:01:56 ----D---- C:\vcp
2016-04-03 14:00:38 ----D---- C:\cancomm_log
2016-04-03 13:54:19 ----A---- C:\Windows\ESIDATA.ini
2016-04-01 21:46:40 ----A---- C:\Windows\win.ini
2016-04-01 21:46:40 ----A---- C:\Windows\RbSystem.ini
2016-03-30 21:17:18 ----D---- C:\Windows\system32\en-US
2016-03-30 21:17:18 ----D---- C:\Windows\system32\cs-CZ
2016-03-30 21:17:18 ----D---- C:\Program Files\Windows Journal
2016-03-30 21:17:17 ----D---- C:\Program Files\Internet Explorer
2016-03-30 21:17:16 ----D---- C:\Program Files\Windows Media Player
2016-03-30 20:48:41 ----D---- C:\Windows\system32\MRT
2016-03-30 20:41:54 ----A---- C:\Windows\system32\MRT.exe
2016-03-30 20:37:44 ----D---- C:\Windows\system32\catroot2
2016-03-30 17:17:08 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-29 17:33:48 ----D---- C:\TRANSLAT
2016-03-29 17:20:59 ----D---- C:\Windows\system32\NDF
2016-03-26 10:55:53 ----D---- C:\Windows\Tasks
2016-03-26 10:55:52 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-25 10:05:37 ----A---- C:\Windows\wdict32.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 202704]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 144536]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 132152]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-04-05 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-04-10 19984]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2015-07-24 101504]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2015-07-24 91648]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2009-05-26 122368]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2015-08-10 145152]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2015-07-08 1353720]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
R2 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119320
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:reg
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-04-10 21:17:46
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 113 GB (46%) free of 244 GB
Total RAM: 3536 MB (72% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2014-09-30 5046472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Roman^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RT-Updater.lnk]
C:\ROSS-T~1\VCDS\VCDS.EXE [2016-02-16 2491088]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-10 21:10:13 ----D---- C:\_OTM
2016-04-10 20:53:51 ----D---- C:\ProgramData\ESET
2016-04-10 18:36:30 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2016-04-10 18:02:37 ----D---- C:\AdwCleaner
2016-04-10 13:25:11 ----D---- C:\rsit
2016-04-10 13:25:11 ----D---- C:\Program Files\trend micro
2016-04-10 13:11:35 ----D---- C:\Program Files\ESET
2016-03-30 20:39:36 ----A---- C:\Windows\system32\wuaueng.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuwebv.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups2.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wudriver.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wucltux.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuauclt.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapp.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapi.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-03-30 20:39:27 ----A---- C:\Windows\system32\InkEd.dll
2016-03-30 20:39:26 ----A---- C:\Windows\system32\jnwmon.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\olepro32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\oleaut32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\asycfilt.dll
2016-03-30 20:39:18 ----A---- C:\Windows\system32\ntdll.dll
2016-03-30 20:39:17 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-03-30 20:39:16 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-03-30 20:39:15 ----A---- C:\Windows\system32\kerberos.dll
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\advapi32.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\smss.exe
2016-03-30 20:39:14 ----A---- C:\Windows\system32\rpcrt4.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\lsasrv.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-03-30 20:39:13 ----A---- C:\Windows\system32\wdigest.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\TSpkg.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\sspicli.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\srcore.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\schannel.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\ncrypt.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-03-30 20:39:12 ----A---- C:\Windows\system32\sspisrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\srclient.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\secur32.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\rstrui.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\lsass.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\csrsrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\cryptbase.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\credssp.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\apisetschema.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msobjs.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msaudite.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\auditpol.exe
2016-03-30 20:39:11 ----A---- C:\Windows\system32\adtschema.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\EncDec.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\CPFilters.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\KernelBase.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\kernel32.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\mtxoci.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\msorcl32.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\winsrv.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\conhost.exe
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-30 20:38:25 ----A---- C:\Windows\system32\ole32.dll
2016-03-30 20:38:11 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-03-30 20:38:10 ----A---- C:\Windows\system32\seclogon.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\rdpcorets.dll
2016-03-30 20:38:08 ----A---- C:\Windows\system32\rdpudd.dll
2016-03-30 20:37:53 ----A---- C:\Windows\system32\win32k.sys
2016-03-30 20:37:52 ----A---- C:\Windows\system32\mfds.dll
2016-03-30 20:37:52 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-03-30 20:37:41 ----A---- C:\Windows\system32\lpk.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\fontsub.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\dciman32.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmlib.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmfd.dll
2016-03-30 20:34:29 ----A---- C:\Windows\system32\wmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\spwmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\dxmasf.dll
2016-03-30 20:34:26 ----A---- C:\Windows\system32\wmploc.DLL
2016-03-29 18:39:40 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\iernonce.dll
2016-03-29 18:39:39 ----A---- C:\Windows\system32\ie4uinit.exe
2016-03-29 18:39:38 ----A---- C:\Windows\system32\vbscript.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\urlmon.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\occache.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\iedkcs32.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\jscript9diag.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\inseng.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieUnatt.exe
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieapfltr.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-03-29 18:39:36 ----A---- C:\Windows\system32\msfeeds.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\webcheck.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\msrating.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\jscript.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\iesetup.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-03-29 18:39:32 ----A---- C:\Windows\system32\wininet.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\ieui.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\dxtrans.dll
2016-03-29 18:39:28 ----A---- C:\Windows\system32\ieframe.dll
2016-03-29 18:39:25 ----A---- C:\Windows\system32\mshtmled.dll
2016-03-29 18:39:24 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-03-29 18:39:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-03-29 18:39:22 ----A---- C:\Windows\system32\jscript9.dll
2016-03-29 18:39:19 ----A---- C:\Windows\system32\mshtml.dll
2016-03-29 18:39:15 ----A---- C:\Windows\system32\iertutil.dll
2016-03-26 10:59:11 ----D---- C:\ProgramData\OPUS
======List of files/folders modified in the last 1 month======
2016-04-10 21:17:44 ----D---- C:\Windows\Temp
2016-04-10 21:15:42 ----D---- C:\Windows\System32
2016-04-10 21:15:42 ----D---- C:\Windows\inf
2016-04-10 21:15:42 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-10 21:10:53 ----D---- C:\Windows\system32\config
2016-04-10 20:54:15 ----SHD---- C:\Windows\Installer
2016-04-10 20:54:13 ----D---- C:\Windows\system32\Tasks
2016-04-10 20:54:12 ----D---- C:\Program Files\Common Files\AV
2016-04-10 20:54:04 ----D---- C:\Windows\system32\drivers
2016-04-10 20:54:03 ----D---- C:\Windows\system32\DriverStore
2016-04-10 20:53:51 ----HD---- C:\ProgramData
2016-04-10 19:39:59 ----D---- C:\Windows
2016-04-10 18:45:21 ----D---- C:\Windows\SoftwareDistribution
2016-04-10 18:36:22 ----RD---- C:\Program Files
2016-04-10 17:54:01 ----D---- C:\Windows\debug
2016-04-07 15:32:23 ----D---- C:\Windows\rescache
2016-04-06 20:51:23 ----D---- C:\Windows\Microsoft.NET
2016-04-06 20:20:15 ----D---- C:\wow5.00.8R2CZECH
2016-04-06 15:40:38 ----D---- C:\wow4
2016-04-04 20:41:58 ----D---- C:\Windows\winsxs
2016-04-03 19:57:51 ----D---- C:\Windows\pss
2016-04-03 14:19:42 ----SD---- C:\Windows\system32\CompatTel
2016-04-03 14:19:41 ----D---- C:\Windows\system32\appraiser
2016-04-03 14:19:41 ----D---- C:\Windows\AppPatch
2016-04-03 14:18:54 ----RSD---- C:\Windows\assembly
2016-04-03 14:01:56 ----D---- C:\vcp
2016-04-03 14:00:38 ----D---- C:\cancomm_log
2016-04-03 13:54:19 ----A---- C:\Windows\ESIDATA.ini
2016-04-01 21:46:40 ----A---- C:\Windows\win.ini
2016-04-01 21:46:40 ----A---- C:\Windows\RbSystem.ini
2016-03-30 21:17:18 ----D---- C:\Windows\system32\en-US
2016-03-30 21:17:18 ----D---- C:\Windows\system32\cs-CZ
2016-03-30 21:17:18 ----D---- C:\Program Files\Windows Journal
2016-03-30 21:17:17 ----D---- C:\Program Files\Internet Explorer
2016-03-30 21:17:16 ----D---- C:\Program Files\Windows Media Player
2016-03-30 20:48:41 ----D---- C:\Windows\system32\MRT
2016-03-30 20:41:54 ----A---- C:\Windows\system32\MRT.exe
2016-03-30 20:37:44 ----D---- C:\Windows\system32\catroot2
2016-03-30 17:17:08 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-29 17:33:48 ----D---- C:\TRANSLAT
2016-03-29 17:20:59 ----D---- C:\Windows\system32\NDF
2016-03-26 10:55:53 ----D---- C:\Windows\Tasks
2016-03-26 10:55:52 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-25 10:05:37 ----A---- C:\Windows\wdict32.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2014-09-30 189344]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2014-09-30 135296]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2014-09-30 122376]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-04-05 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-04-10 19984]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2015-07-24 101504]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2015-07-24 91648]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2009-05-26 122368]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2015-08-10 145152]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2014-09-30 1343920]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
R2 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
-----------------EOF-----------------
Run by Roman at 2016-04-10 21:17:46
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 113 GB (46%) free of 244 GB
Total RAM: 3536 MB (72% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2014-09-30 5046472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Roman^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RT-Updater.lnk]
C:\ROSS-T~1\VCDS\VCDS.EXE [2016-02-16 2491088]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-10 21:10:13 ----D---- C:\_OTM
2016-04-10 20:53:51 ----D---- C:\ProgramData\ESET
2016-04-10 18:36:30 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2016-04-10 18:02:37 ----D---- C:\AdwCleaner
2016-04-10 13:25:11 ----D---- C:\rsit
2016-04-10 13:25:11 ----D---- C:\Program Files\trend micro
2016-04-10 13:11:35 ----D---- C:\Program Files\ESET
2016-03-30 20:39:36 ----A---- C:\Windows\system32\wuaueng.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuwebv.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups2.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wups.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wudriver.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wucltux.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuauclt.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapp.exe
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wuapi.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-03-30 20:39:35 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-03-30 20:39:27 ----A---- C:\Windows\system32\InkEd.dll
2016-03-30 20:39:26 ----A---- C:\Windows\system32\jnwmon.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\olepro32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\oleaut32.dll
2016-03-30 20:39:25 ----A---- C:\Windows\system32\asycfilt.dll
2016-03-30 20:39:18 ----A---- C:\Windows\system32\ntdll.dll
2016-03-30 20:39:17 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-03-30 20:39:16 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-03-30 20:39:15 ----A---- C:\Windows\system32\kerberos.dll
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-03-30 20:39:15 ----A---- C:\Windows\system32\advapi32.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\smss.exe
2016-03-30 20:39:14 ----A---- C:\Windows\system32\rpcrt4.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\lsasrv.dll
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-03-30 20:39:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-03-30 20:39:13 ----A---- C:\Windows\system32\wdigest.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\TSpkg.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\sspicli.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\srcore.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\schannel.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\ncrypt.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-03-30 20:39:13 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-03-30 20:39:12 ----A---- C:\Windows\system32\sspisrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\srclient.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\secur32.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\rstrui.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\lsass.exe
2016-03-30 20:39:12 ----A---- C:\Windows\system32\csrsrv.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\cryptbase.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\credssp.dll
2016-03-30 20:39:12 ----A---- C:\Windows\system32\apisetschema.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msobjs.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\msaudite.dll
2016-03-30 20:39:11 ----A---- C:\Windows\system32\auditpol.exe
2016-03-30 20:39:11 ----A---- C:\Windows\system32\adtschema.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\EncDec.dll
2016-03-30 20:38:56 ----A---- C:\Windows\system32\CPFilters.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\KernelBase.dll
2016-03-30 20:38:53 ----A---- C:\Windows\system32\kernel32.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\mtxoci.dll
2016-03-30 20:38:52 ----A---- C:\Windows\system32\msorcl32.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\winsrv.dll
2016-03-30 20:38:49 ----A---- C:\Windows\system32\conhost.exe
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-30 20:38:47 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-30 20:38:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-30 20:38:45 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-30 20:38:25 ----A---- C:\Windows\system32\ole32.dll
2016-03-30 20:38:11 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-03-30 20:38:10 ----A---- C:\Windows\system32\seclogon.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-03-30 20:38:09 ----A---- C:\Windows\system32\rdpcorets.dll
2016-03-30 20:38:08 ----A---- C:\Windows\system32\rdpudd.dll
2016-03-30 20:37:53 ----A---- C:\Windows\system32\win32k.sys
2016-03-30 20:37:52 ----A---- C:\Windows\system32\mfds.dll
2016-03-30 20:37:52 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-03-30 20:37:41 ----A---- C:\Windows\system32\lpk.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\fontsub.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\dciman32.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmlib.dll
2016-03-30 20:37:41 ----A---- C:\Windows\system32\atmfd.dll
2016-03-30 20:34:29 ----A---- C:\Windows\system32\wmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\spwmp.dll
2016-03-30 20:34:27 ----A---- C:\Windows\system32\dxmasf.dll
2016-03-30 20:34:26 ----A---- C:\Windows\system32\wmploc.DLL
2016-03-29 18:39:40 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-03-29 18:39:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-29 18:39:39 ----A---- C:\Windows\system32\iernonce.dll
2016-03-29 18:39:39 ----A---- C:\Windows\system32\ie4uinit.exe
2016-03-29 18:39:38 ----A---- C:\Windows\system32\vbscript.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\urlmon.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\occache.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\jsproxy.dll
2016-03-29 18:39:38 ----A---- C:\Windows\system32\iedkcs32.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\jscript9diag.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\inseng.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieUnatt.exe
2016-03-29 18:39:37 ----A---- C:\Windows\system32\ieapfltr.dll
2016-03-29 18:39:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-03-29 18:39:36 ----A---- C:\Windows\system32\msfeeds.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\webcheck.dll
2016-03-29 18:39:34 ----A---- C:\Windows\system32\msrating.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\jscript.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\iesetup.dll
2016-03-29 18:39:33 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-03-29 18:39:32 ----A---- C:\Windows\system32\wininet.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\ieui.dll
2016-03-29 18:39:30 ----A---- C:\Windows\system32\dxtrans.dll
2016-03-29 18:39:28 ----A---- C:\Windows\system32\ieframe.dll
2016-03-29 18:39:25 ----A---- C:\Windows\system32\mshtmled.dll
2016-03-29 18:39:24 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-03-29 18:39:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-03-29 18:39:22 ----A---- C:\Windows\system32\jscript9.dll
2016-03-29 18:39:19 ----A---- C:\Windows\system32\mshtml.dll
2016-03-29 18:39:15 ----A---- C:\Windows\system32\iertutil.dll
2016-03-26 10:59:11 ----D---- C:\ProgramData\OPUS
======List of files/folders modified in the last 1 month======
2016-04-10 21:17:44 ----D---- C:\Windows\Temp
2016-04-10 21:15:42 ----D---- C:\Windows\System32
2016-04-10 21:15:42 ----D---- C:\Windows\inf
2016-04-10 21:15:42 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-10 21:10:53 ----D---- C:\Windows\system32\config
2016-04-10 20:54:15 ----SHD---- C:\Windows\Installer
2016-04-10 20:54:13 ----D---- C:\Windows\system32\Tasks
2016-04-10 20:54:12 ----D---- C:\Program Files\Common Files\AV
2016-04-10 20:54:04 ----D---- C:\Windows\system32\drivers
2016-04-10 20:54:03 ----D---- C:\Windows\system32\DriverStore
2016-04-10 20:53:51 ----HD---- C:\ProgramData
2016-04-10 19:39:59 ----D---- C:\Windows
2016-04-10 18:45:21 ----D---- C:\Windows\SoftwareDistribution
2016-04-10 18:36:22 ----RD---- C:\Program Files
2016-04-10 17:54:01 ----D---- C:\Windows\debug
2016-04-07 15:32:23 ----D---- C:\Windows\rescache
2016-04-06 20:51:23 ----D---- C:\Windows\Microsoft.NET
2016-04-06 20:20:15 ----D---- C:\wow5.00.8R2CZECH
2016-04-06 15:40:38 ----D---- C:\wow4
2016-04-04 20:41:58 ----D---- C:\Windows\winsxs
2016-04-03 19:57:51 ----D---- C:\Windows\pss
2016-04-03 14:19:42 ----SD---- C:\Windows\system32\CompatTel
2016-04-03 14:19:41 ----D---- C:\Windows\system32\appraiser
2016-04-03 14:19:41 ----D---- C:\Windows\AppPatch
2016-04-03 14:18:54 ----RSD---- C:\Windows\assembly
2016-04-03 14:01:56 ----D---- C:\vcp
2016-04-03 14:00:38 ----D---- C:\cancomm_log
2016-04-03 13:54:19 ----A---- C:\Windows\ESIDATA.ini
2016-04-01 21:46:40 ----A---- C:\Windows\win.ini
2016-04-01 21:46:40 ----A---- C:\Windows\RbSystem.ini
2016-03-30 21:17:18 ----D---- C:\Windows\system32\en-US
2016-03-30 21:17:18 ----D---- C:\Windows\system32\cs-CZ
2016-03-30 21:17:18 ----D---- C:\Program Files\Windows Journal
2016-03-30 21:17:17 ----D---- C:\Program Files\Internet Explorer
2016-03-30 21:17:16 ----D---- C:\Program Files\Windows Media Player
2016-03-30 20:48:41 ----D---- C:\Windows\system32\MRT
2016-03-30 20:41:54 ----A---- C:\Windows\system32\MRT.exe
2016-03-30 20:37:44 ----D---- C:\Windows\system32\catroot2
2016-03-30 17:17:08 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-29 17:33:48 ----D---- C:\TRANSLAT
2016-03-29 17:20:59 ----D---- C:\Windows\system32\NDF
2016-03-26 10:55:53 ----D---- C:\Windows\Tasks
2016-03-26 10:55:52 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-25 10:05:37 ----A---- C:\Windows\wdict32.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2014-09-30 189344]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2014-09-30 135296]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2014-09-30 122376]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-04-05 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-04-10 19984]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2015-07-24 101504]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2015-07-24 91648]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2009-05-26 122368]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2015-08-10 145152]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2014-09-30 1343920]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
R2 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119320
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Log je již OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
Děkuji,kde byl problém?
- Rudy
- Site Admin
- Příspěvky: 119320
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Nepředpokládám, že by nalezený AdWare (Ask) byl příčinou vašeho problému. Spíše si myslím, že vám schránku někdo hacknul, nebo jste nějak proflákl heslo. OTM pak smazal jen zbytečnosti.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
Mohu poprosit ještě o jednu kontrolu jineho NB.
Děkuji.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-04-11 20:08:29
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 17 GB (14%) free of 122 GB
Total RAM: 3536 MB (69% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-16 3117384]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
ADnews.lnk - C:\Auto-diagnostika\ADnews.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-11 20:08:29 ----D---- C:\rsit
2016-04-11 20:08:29 ----D---- C:\Program Files\trend micro
2016-04-02 20:00:50 ----A---- C:\Windows\system32\msi.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\msimsg.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\msihnd.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\consent.exe
2016-04-02 20:00:49 ----A---- C:\Windows\system32\authui.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\appinfo.dll
2016-04-02 20:00:34 ----A---- C:\Windows\system32\rpcss.dll
2016-04-02 20:00:34 ----A---- C:\Windows\system32\drivers\disk.sys
2016-04-02 20:00:31 ----A---- C:\Windows\system32\nlsbres.dll
2016-04-02 20:00:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2016-04-02 20:00:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2016-04-02 20:00:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2016-04-02 20:00:24 ----A---- C:\Windows\system32\tbs.dll
2016-04-02 20:00:24 ----A---- C:\Windows\system32\fveapibase.dll
2016-04-02 20:00:24 ----A---- C:\Windows\system32\fveapi.dll
2016-04-02 19:31:00 ----A---- C:\Windows\system32\aepic.dll
2016-04-02 19:30:57 ----A---- C:\Windows\system32\tzres.dll
2016-04-02 19:30:48 ----A---- C:\Windows\system32\EncDec.dll
2016-04-02 19:30:48 ----A---- C:\Windows\system32\CPFilters.dll
2016-04-02 19:30:46 ----A---- C:\Windows\system32\KernelBase.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\mtxoci.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\msorcl32.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\kernel32.dll
2016-04-02 19:30:43 ----A---- C:\Windows\system32\winsrv.dll
2016-04-02 19:30:43 ----A---- C:\Windows\system32\conhost.exe
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-04-02 19:30:36 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-04-02 19:30:32 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-04-02 19:30:32 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-04-02 19:30:32 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-04-02 19:30:31 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-04-02 19:30:31 ----A---- C:\Windows\system32\iernonce.dll
2016-04-02 19:30:31 ----A---- C:\Windows\system32\ie4uinit.exe
2016-04-02 19:30:30 ----A---- C:\Windows\system32\vbscript.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\urlmon.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\occache.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\jsproxy.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\inseng.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\ieUnatt.exe
2016-04-02 19:30:30 ----A---- C:\Windows\system32\iedkcs32.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\msfeeds.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\jscript9diag.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\ieapfltr.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\dxtmsft.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\webcheck.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\msrating.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\iesetup.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\wininet.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\jscript.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-04-02 19:30:25 ----A---- C:\Windows\system32\dxtrans.dll
2016-04-02 19:30:24 ----A---- C:\Windows\system32\ieui.dll
2016-04-02 19:30:23 ----A---- C:\Windows\system32\ieframe.dll
2016-04-02 19:30:21 ----A---- C:\Windows\system32\mshtmled.dll
2016-04-02 19:30:20 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-04-02 19:30:20 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-04-02 19:30:19 ----A---- C:\Windows\system32\jscript9.dll
2016-04-02 19:30:17 ----A---- C:\Windows\system32\mshtml.dll
2016-04-02 19:30:14 ----A---- C:\Windows\system32\iertutil.dll
2016-04-02 19:30:10 ----A---- C:\Windows\system32\els.dll
2016-04-02 19:30:09 ----A---- C:\Windows\system32\DWrite.dll
2016-04-02 19:30:08 ----A---- C:\Windows\system32\user32.dll
2016-04-02 19:30:08 ----A---- C:\Windows\system32\FntCache.dll
2016-04-02 19:30:04 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\WMADMOD.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\msmpeg2adec.dll
2016-04-02 19:30:03 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2016-04-02 19:30:03 ----A---- C:\Windows\system32\mf.dll
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMVSDECD.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMVENCOD.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\wmpmde.dll
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMADMOE.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\COLORCNV.DLL
2016-04-02 19:30:01 ----A---- C:\Windows\system32\WMVXENCD.DLL
2016-04-02 19:30:01 ----A---- C:\Windows\system32\quartz.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\mcmde.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\evr.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\devenum.dll
2016-04-02 19:30:00 ----A---- C:\Windows\system32\WMVSENCD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\qdvd.dll
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MPG4DECD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MP43DECD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\mfplat.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2016-04-02 19:29:59 ----A---- C:\Windows\system32\VIDRESZR.DLL
2016-04-02 19:29:59 ----A---- C:\Windows\system32\SysFxUI.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\qasf.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\rrinstaller.exe
2016-04-02 19:29:58 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\MP4SDECD.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\MP3DMOD.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfvdsp.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfps.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfpmp.exe
2016-04-02 19:29:58 ----A---- C:\Windows\system32\ksuser.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-04-02 19:29:58 ----A---- C:\Windows\system32\drivers\drmk.sys
2016-04-02 19:29:57 ----A---- C:\Windows\system32\mferror.dll
2016-04-02 19:29:57 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2016-04-02 19:29:51 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-04-02 19:29:51 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-04-02 19:29:50 ----A---- C:\Windows\system32\ntdll.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\lsasrv.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\kerberos.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\advapi32.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\wdigest.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\sspicli.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\rpcrt4.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\msv1_0.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-04-02 19:29:49 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-04-02 19:29:49 ----A---- C:\Windows\system32\cryptbase.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\credssp.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\TSpkg.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\srcore.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\smss.exe
2016-04-02 19:29:48 ----A---- C:\Windows\system32\schannel.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\secur32.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\ncrypt.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\lsass.exe
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-04-02 19:29:47 ----A---- C:\Windows\system32\sspisrv.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\srclient.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\rstrui.exe
2016-04-02 19:29:47 ----A---- C:\Windows\system32\msobjs.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\msaudite.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\csrsrv.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\auditpol.exe
2016-04-02 19:29:47 ----A---- C:\Windows\system32\apisetschema.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\adtschema.dll
2016-04-02 19:29:33 ----A---- C:\Windows\system32\ole32.dll
2016-04-02 19:29:23 ----A---- C:\Windows\system32\wuaueng.dll
2016-04-02 19:29:23 ----A---- C:\Windows\system32\wuapi.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuwebv.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wups2.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wups.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wudriver.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wucltux.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuauclt.exe
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuapp.exe
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\ucrtbase.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-04-02 19:29:17 ----A---- C:\Windows\system32\win32k.sys
2016-04-02 19:29:12 ----A---- C:\Windows\system32\shell32.dll
2016-04-02 19:29:12 ----A---- C:\Windows\explorer.exe
2016-04-02 19:29:11 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-04-02 19:29:07 ----A---- C:\Windows\system32\comsvcs.dll
2016-04-02 19:29:06 ----A---- C:\Windows\system32\catsrvut.dll
2016-04-02 19:29:02 ----A---- C:\Windows\system32\jnwmon.dll
2016-04-02 19:29:02 ----A---- C:\Windows\system32\InkEd.dll
2016-04-02 19:29:01 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-04-02 19:29:01 ----A---- C:\Windows\system32\aeinv.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\rdpudd.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\rdpcorets.dll
2016-04-02 19:28:56 ----A---- C:\Windows\system32\usp10.dll
2016-04-02 19:28:55 ----A---- C:\Windows\system32\qedit.dll
2016-04-02 19:28:55 ----A---- C:\Windows\system32\mfds.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\olepro32.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\oleaut32.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\asycfilt.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\wshrm.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\seclogon.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\drivers\rmcast.sys
2016-04-02 19:28:48 ----A---- C:\Windows\system32\wmp.dll
2016-04-02 19:28:47 ----A---- C:\Windows\system32\wmploc.DLL
2016-04-02 19:28:47 ----A---- C:\Windows\system32\spwmp.dll
2016-04-02 19:28:47 ----A---- C:\Windows\system32\dxmasf.dll
2016-04-02 19:28:46 ----A---- C:\Windows\system32\gdi32.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\lpk.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\fontsub.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\dciman32.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\atmlib.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\atmfd.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\mapistub.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\mapi32.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\fixmapi.exe
2016-04-02 19:28:37 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-03-30 17:02:30 ----SHD---- C:\Users\Roman\AppData\Roaming\wyUpdate AU
2016-03-22 20:33:10 ----D---- C:\Program Files\Microsoft Synchronization Services
2016-03-22 20:32:50 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
======List of files/folders modified in the last 1 month======
2016-04-11 20:08:29 ----RD---- C:\Program Files
2016-04-11 20:08:27 ----D---- C:\Windows\Temp
2016-04-11 19:42:54 ----D---- C:\Windows\System32
2016-04-11 19:42:54 ----D---- C:\Windows\inf
2016-04-11 19:42:54 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-11 19:42:47 ----D---- C:\Windows\system32\config
2016-04-10 10:07:48 ----D---- C:\Windows\Microsoft.NET
2016-04-10 10:07:29 ----RSD---- C:\Windows\assembly
2016-04-10 09:31:00 ----D---- C:\Windows\winsxs
2016-04-02 20:16:08 ----SD---- C:\Windows\system32\CompatTel
2016-04-02 20:16:08 ----D---- C:\Windows\system32\appraiser
2016-04-02 20:16:08 ----D---- C:\Windows\AppPatch
2016-04-02 20:03:31 ----D---- C:\Windows\system32\cs-CZ
2016-04-02 20:03:30 ----RSD---- C:\Windows\Fonts
2016-04-02 20:03:30 ----D---- C:\Windows\system32\wbem
2016-04-02 20:03:30 ----D---- C:\Windows\system32\DriverStore
2016-04-02 20:03:30 ----D---- C:\Windows\system32\drivers\cs-CZ
2016-04-02 20:03:30 ----D---- C:\Windows\system32\drivers
2016-04-02 20:03:30 ----D---- C:\Windows\Logs
2016-04-02 19:51:22 ----D---- C:\Windows\ehome
2016-04-02 19:51:22 ----D---- C:\Windows\cs-CZ
2016-04-02 19:51:22 ----D---- C:\Windows
2016-04-02 19:51:22 ----D---- C:\Program Files\Windows Journal
2016-04-02 19:51:21 ----D---- C:\Windows\system32\en-US
2016-04-02 19:51:21 ----D---- C:\Program Files\Internet Explorer
2016-04-02 19:51:20 ----D---- C:\Program Files\Windows Media Player
2016-04-02 19:38:13 ----D---- C:\Windows\system32\catroot2
2016-04-02 19:37:27 ----D---- C:\Windows\system32\MRT
2016-04-02 19:33:21 ----A---- C:\Windows\system32\MRT.exe
2016-04-01 13:35:44 ----D---- C:\Program Files\wow
2016-03-30 18:24:48 ----D---- C:\ProgramData\Autocom
2016-03-30 18:23:45 ----D---- C:\Users\Roman\AppData\Roaming\Autocom
2016-03-30 18:02:53 ----D---- C:\Program Files\Autocom
2016-03-30 17:25:28 ----D---- C:\Windows\system32\Tasks
2016-03-30 17:25:25 ----D---- C:\Windows\Tasks
2016-03-30 17:25:23 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-30 17:08:03 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2016-03-30 17:01:20 ----D---- C:\Users\Roman\AppData\Roaming\Delphi
2016-03-30 16:58:44 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-22 20:33:12 ----SHD---- C:\Windows\Installer
2016-03-13 12:03:23 ----D---- C:\Windows\system32\catroot
2016-03-13 12:01:04 ----D---- C:\Program Files\DIFX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-11-16 169120]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-03-14 103112]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2010-03-15 127488]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-05-14 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2011-08-25 61576]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2010-08-24 73032]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 R5BaseSmc;USB Token Holder Service; C:\Windows\system32\DRIVERS\smccard.sys [2014-03-17 14592]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-11-16 913184]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
S3 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------
Děkuji.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-04-11 20:08:29
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 17 GB (14%) free of 122 GB
Total RAM: 3536 MB (69% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-16 3117384]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
ADnews.lnk - C:\Auto-diagnostika\ADnews.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-11 20:08:29 ----D---- C:\rsit
2016-04-11 20:08:29 ----D---- C:\Program Files\trend micro
2016-04-02 20:00:50 ----A---- C:\Windows\system32\msi.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\msimsg.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\msihnd.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\consent.exe
2016-04-02 20:00:49 ----A---- C:\Windows\system32\authui.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\appinfo.dll
2016-04-02 20:00:34 ----A---- C:\Windows\system32\rpcss.dll
2016-04-02 20:00:34 ----A---- C:\Windows\system32\drivers\disk.sys
2016-04-02 20:00:31 ----A---- C:\Windows\system32\nlsbres.dll
2016-04-02 20:00:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2016-04-02 20:00:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2016-04-02 20:00:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2016-04-02 20:00:24 ----A---- C:\Windows\system32\tbs.dll
2016-04-02 20:00:24 ----A---- C:\Windows\system32\fveapibase.dll
2016-04-02 20:00:24 ----A---- C:\Windows\system32\fveapi.dll
2016-04-02 19:31:00 ----A---- C:\Windows\system32\aepic.dll
2016-04-02 19:30:57 ----A---- C:\Windows\system32\tzres.dll
2016-04-02 19:30:48 ----A---- C:\Windows\system32\EncDec.dll
2016-04-02 19:30:48 ----A---- C:\Windows\system32\CPFilters.dll
2016-04-02 19:30:46 ----A---- C:\Windows\system32\KernelBase.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\mtxoci.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\msorcl32.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\kernel32.dll
2016-04-02 19:30:43 ----A---- C:\Windows\system32\winsrv.dll
2016-04-02 19:30:43 ----A---- C:\Windows\system32\conhost.exe
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-04-02 19:30:36 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-04-02 19:30:32 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-04-02 19:30:32 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-04-02 19:30:32 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-04-02 19:30:31 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-04-02 19:30:31 ----A---- C:\Windows\system32\iernonce.dll
2016-04-02 19:30:31 ----A---- C:\Windows\system32\ie4uinit.exe
2016-04-02 19:30:30 ----A---- C:\Windows\system32\vbscript.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\urlmon.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\occache.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\jsproxy.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\inseng.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\ieUnatt.exe
2016-04-02 19:30:30 ----A---- C:\Windows\system32\iedkcs32.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\msfeeds.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\jscript9diag.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\ieapfltr.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\dxtmsft.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\webcheck.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\msrating.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\iesetup.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\wininet.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\jscript.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-04-02 19:30:25 ----A---- C:\Windows\system32\dxtrans.dll
2016-04-02 19:30:24 ----A---- C:\Windows\system32\ieui.dll
2016-04-02 19:30:23 ----A---- C:\Windows\system32\ieframe.dll
2016-04-02 19:30:21 ----A---- C:\Windows\system32\mshtmled.dll
2016-04-02 19:30:20 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-04-02 19:30:20 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-04-02 19:30:19 ----A---- C:\Windows\system32\jscript9.dll
2016-04-02 19:30:17 ----A---- C:\Windows\system32\mshtml.dll
2016-04-02 19:30:14 ----A---- C:\Windows\system32\iertutil.dll
2016-04-02 19:30:10 ----A---- C:\Windows\system32\els.dll
2016-04-02 19:30:09 ----A---- C:\Windows\system32\DWrite.dll
2016-04-02 19:30:08 ----A---- C:\Windows\system32\user32.dll
2016-04-02 19:30:08 ----A---- C:\Windows\system32\FntCache.dll
2016-04-02 19:30:04 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\WMADMOD.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\msmpeg2adec.dll
2016-04-02 19:30:03 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2016-04-02 19:30:03 ----A---- C:\Windows\system32\mf.dll
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMVSDECD.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMVENCOD.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\wmpmde.dll
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMADMOE.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\COLORCNV.DLL
2016-04-02 19:30:01 ----A---- C:\Windows\system32\WMVXENCD.DLL
2016-04-02 19:30:01 ----A---- C:\Windows\system32\quartz.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\mcmde.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\evr.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\devenum.dll
2016-04-02 19:30:00 ----A---- C:\Windows\system32\WMVSENCD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\qdvd.dll
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MPG4DECD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MP43DECD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\mfplat.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2016-04-02 19:29:59 ----A---- C:\Windows\system32\VIDRESZR.DLL
2016-04-02 19:29:59 ----A---- C:\Windows\system32\SysFxUI.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\qasf.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\rrinstaller.exe
2016-04-02 19:29:58 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\MP4SDECD.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\MP3DMOD.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfvdsp.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfps.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfpmp.exe
2016-04-02 19:29:58 ----A---- C:\Windows\system32\ksuser.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-04-02 19:29:58 ----A---- C:\Windows\system32\drivers\drmk.sys
2016-04-02 19:29:57 ----A---- C:\Windows\system32\mferror.dll
2016-04-02 19:29:57 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2016-04-02 19:29:51 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-04-02 19:29:51 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-04-02 19:29:50 ----A---- C:\Windows\system32\ntdll.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\lsasrv.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\kerberos.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\advapi32.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\wdigest.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\sspicli.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\rpcrt4.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\msv1_0.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-04-02 19:29:49 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-04-02 19:29:49 ----A---- C:\Windows\system32\cryptbase.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\credssp.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\TSpkg.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\srcore.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\smss.exe
2016-04-02 19:29:48 ----A---- C:\Windows\system32\schannel.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\secur32.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\ncrypt.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\lsass.exe
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-04-02 19:29:47 ----A---- C:\Windows\system32\sspisrv.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\srclient.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\rstrui.exe
2016-04-02 19:29:47 ----A---- C:\Windows\system32\msobjs.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\msaudite.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\csrsrv.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\auditpol.exe
2016-04-02 19:29:47 ----A---- C:\Windows\system32\apisetschema.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\adtschema.dll
2016-04-02 19:29:33 ----A---- C:\Windows\system32\ole32.dll
2016-04-02 19:29:23 ----A---- C:\Windows\system32\wuaueng.dll
2016-04-02 19:29:23 ----A---- C:\Windows\system32\wuapi.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuwebv.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wups2.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wups.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wudriver.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wucltux.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuauclt.exe
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuapp.exe
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\ucrtbase.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-04-02 19:29:17 ----A---- C:\Windows\system32\win32k.sys
2016-04-02 19:29:12 ----A---- C:\Windows\system32\shell32.dll
2016-04-02 19:29:12 ----A---- C:\Windows\explorer.exe
2016-04-02 19:29:11 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-04-02 19:29:07 ----A---- C:\Windows\system32\comsvcs.dll
2016-04-02 19:29:06 ----A---- C:\Windows\system32\catsrvut.dll
2016-04-02 19:29:02 ----A---- C:\Windows\system32\jnwmon.dll
2016-04-02 19:29:02 ----A---- C:\Windows\system32\InkEd.dll
2016-04-02 19:29:01 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-04-02 19:29:01 ----A---- C:\Windows\system32\aeinv.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\rdpudd.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\rdpcorets.dll
2016-04-02 19:28:56 ----A---- C:\Windows\system32\usp10.dll
2016-04-02 19:28:55 ----A---- C:\Windows\system32\qedit.dll
2016-04-02 19:28:55 ----A---- C:\Windows\system32\mfds.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\olepro32.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\oleaut32.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\asycfilt.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\wshrm.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\seclogon.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\drivers\rmcast.sys
2016-04-02 19:28:48 ----A---- C:\Windows\system32\wmp.dll
2016-04-02 19:28:47 ----A---- C:\Windows\system32\wmploc.DLL
2016-04-02 19:28:47 ----A---- C:\Windows\system32\spwmp.dll
2016-04-02 19:28:47 ----A---- C:\Windows\system32\dxmasf.dll
2016-04-02 19:28:46 ----A---- C:\Windows\system32\gdi32.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\lpk.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\fontsub.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\dciman32.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\atmlib.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\atmfd.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\mapistub.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\mapi32.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\fixmapi.exe
2016-04-02 19:28:37 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-03-30 17:02:30 ----SHD---- C:\Users\Roman\AppData\Roaming\wyUpdate AU
2016-03-22 20:33:10 ----D---- C:\Program Files\Microsoft Synchronization Services
2016-03-22 20:32:50 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
======List of files/folders modified in the last 1 month======
2016-04-11 20:08:29 ----RD---- C:\Program Files
2016-04-11 20:08:27 ----D---- C:\Windows\Temp
2016-04-11 19:42:54 ----D---- C:\Windows\System32
2016-04-11 19:42:54 ----D---- C:\Windows\inf
2016-04-11 19:42:54 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-11 19:42:47 ----D---- C:\Windows\system32\config
2016-04-10 10:07:48 ----D---- C:\Windows\Microsoft.NET
2016-04-10 10:07:29 ----RSD---- C:\Windows\assembly
2016-04-10 09:31:00 ----D---- C:\Windows\winsxs
2016-04-02 20:16:08 ----SD---- C:\Windows\system32\CompatTel
2016-04-02 20:16:08 ----D---- C:\Windows\system32\appraiser
2016-04-02 20:16:08 ----D---- C:\Windows\AppPatch
2016-04-02 20:03:31 ----D---- C:\Windows\system32\cs-CZ
2016-04-02 20:03:30 ----RSD---- C:\Windows\Fonts
2016-04-02 20:03:30 ----D---- C:\Windows\system32\wbem
2016-04-02 20:03:30 ----D---- C:\Windows\system32\DriverStore
2016-04-02 20:03:30 ----D---- C:\Windows\system32\drivers\cs-CZ
2016-04-02 20:03:30 ----D---- C:\Windows\system32\drivers
2016-04-02 20:03:30 ----D---- C:\Windows\Logs
2016-04-02 19:51:22 ----D---- C:\Windows\ehome
2016-04-02 19:51:22 ----D---- C:\Windows\cs-CZ
2016-04-02 19:51:22 ----D---- C:\Windows
2016-04-02 19:51:22 ----D---- C:\Program Files\Windows Journal
2016-04-02 19:51:21 ----D---- C:\Windows\system32\en-US
2016-04-02 19:51:21 ----D---- C:\Program Files\Internet Explorer
2016-04-02 19:51:20 ----D---- C:\Program Files\Windows Media Player
2016-04-02 19:38:13 ----D---- C:\Windows\system32\catroot2
2016-04-02 19:37:27 ----D---- C:\Windows\system32\MRT
2016-04-02 19:33:21 ----A---- C:\Windows\system32\MRT.exe
2016-04-01 13:35:44 ----D---- C:\Program Files\wow
2016-03-30 18:24:48 ----D---- C:\ProgramData\Autocom
2016-03-30 18:23:45 ----D---- C:\Users\Roman\AppData\Roaming\Autocom
2016-03-30 18:02:53 ----D---- C:\Program Files\Autocom
2016-03-30 17:25:28 ----D---- C:\Windows\system32\Tasks
2016-03-30 17:25:25 ----D---- C:\Windows\Tasks
2016-03-30 17:25:23 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-30 17:08:03 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2016-03-30 17:01:20 ----D---- C:\Users\Roman\AppData\Roaming\Delphi
2016-03-30 16:58:44 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-22 20:33:12 ----SHD---- C:\Windows\Installer
2016-03-13 12:03:23 ----D---- C:\Windows\system32\catroot
2016-03-13 12:01:04 ----D---- C:\Program Files\DIFX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-11-16 169120]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-03-14 103112]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2010-03-15 127488]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-05-14 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2011-08-25 61576]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2010-08-24 73032]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 R5BaseSmc;USB Token Holder Service; C:\Windows\system32\DRIVERS\smccard.sys [2014-03-17 14592]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-11-16 913184]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
S3 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119320
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
# AdwCleaner v5.110 - Log soubor vytvořen 11/04/2016 o 21:02:36
# Aktualizováno 10/04/2016 by Xplode
# Databáze : 2016-04-10.2 [Místní]
# Operační systém : Windows 7 Professional Service Pack 1 (X86)
# Jméno uživatele : Roman - LATITUDE
# Spuštěno z : C:\Users\Roman\Desktop\adwcleaner_5.110.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLLs ] *****
***** [ Zástupci ] *****
***** [ Naplánované úkoly ] *****
***** [ Registr ] *****
[-] Klávesa smazáno : HKCU\Software\Softonic
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\veoh.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.veoh.com
***** [ Webové prohlížeče ] *****
*************************
:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [994 bytes] - [11/04/2016 21:02:36]
C:\AdwCleaner\AdwCleaner[S1].txt - [1115 bytes] - [11/04/2016 20:58:13]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1139 bytes] ##########
# Aktualizováno 10/04/2016 by Xplode
# Databáze : 2016-04-10.2 [Místní]
# Operační systém : Windows 7 Professional Service Pack 1 (X86)
# Jméno uživatele : Roman - LATITUDE
# Spuštěno z : C:\Users\Roman\Desktop\adwcleaner_5.110.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLLs ] *****
***** [ Zástupci ] *****
***** [ Naplánované úkoly ] *****
***** [ Registr ] *****
[-] Klávesa smazáno : HKCU\Software\Softonic
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\veoh.com
[-] Klávesa smazáno : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.veoh.com
***** [ Webové prohlížeče ] *****
*************************
:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [994 bytes] - [11/04/2016 21:02:36]
C:\AdwCleaner\AdwCleaner[S1].txt - [1115 bytes] - [11/04/2016 20:58:13]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1139 bytes] ##########
- Rudy
- Site Admin
- Příspěvky: 119320
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2016-04-12 15:36:36
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 17 GB (14%) free of 122 GB
Total RAM: 3536 MB (57% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-16 3117384]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
ADnews.lnk - C:\Auto-diagnostika\ADnews.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-11 20:57:54 ----D---- C:\AdwCleaner
2016-04-11 20:08:29 ----D---- C:\rsit
2016-04-11 20:08:29 ----D---- C:\Program Files\trend micro
2016-04-02 20:00:50 ----A---- C:\Windows\system32\msi.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\msimsg.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\msihnd.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\consent.exe
2016-04-02 20:00:49 ----A---- C:\Windows\system32\authui.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\appinfo.dll
2016-04-02 20:00:34 ----A---- C:\Windows\system32\rpcss.dll
2016-04-02 20:00:34 ----A---- C:\Windows\system32\drivers\disk.sys
2016-04-02 20:00:31 ----A---- C:\Windows\system32\nlsbres.dll
2016-04-02 20:00:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2016-04-02 20:00:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2016-04-02 20:00:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2016-04-02 20:00:24 ----A---- C:\Windows\system32\tbs.dll
2016-04-02 20:00:24 ----A---- C:\Windows\system32\fveapibase.dll
2016-04-02 20:00:24 ----A---- C:\Windows\system32\fveapi.dll
2016-04-02 19:31:00 ----A---- C:\Windows\system32\aepic.dll
2016-04-02 19:30:57 ----A---- C:\Windows\system32\tzres.dll
2016-04-02 19:30:48 ----A---- C:\Windows\system32\EncDec.dll
2016-04-02 19:30:48 ----A---- C:\Windows\system32\CPFilters.dll
2016-04-02 19:30:46 ----A---- C:\Windows\system32\KernelBase.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\mtxoci.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\msorcl32.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\kernel32.dll
2016-04-02 19:30:43 ----A---- C:\Windows\system32\winsrv.dll
2016-04-02 19:30:43 ----A---- C:\Windows\system32\conhost.exe
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-04-02 19:30:36 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-04-02 19:30:32 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-04-02 19:30:32 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-04-02 19:30:32 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-04-02 19:30:31 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-04-02 19:30:31 ----A---- C:\Windows\system32\iernonce.dll
2016-04-02 19:30:31 ----A---- C:\Windows\system32\ie4uinit.exe
2016-04-02 19:30:30 ----A---- C:\Windows\system32\vbscript.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\urlmon.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\occache.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\jsproxy.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\inseng.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\ieUnatt.exe
2016-04-02 19:30:30 ----A---- C:\Windows\system32\iedkcs32.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\msfeeds.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\jscript9diag.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\ieapfltr.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\dxtmsft.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\webcheck.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\msrating.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\iesetup.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\wininet.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\jscript.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-04-02 19:30:25 ----A---- C:\Windows\system32\dxtrans.dll
2016-04-02 19:30:24 ----A---- C:\Windows\system32\ieui.dll
2016-04-02 19:30:23 ----A---- C:\Windows\system32\ieframe.dll
2016-04-02 19:30:21 ----A---- C:\Windows\system32\mshtmled.dll
2016-04-02 19:30:20 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-04-02 19:30:20 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-04-02 19:30:19 ----A---- C:\Windows\system32\jscript9.dll
2016-04-02 19:30:17 ----A---- C:\Windows\system32\mshtml.dll
2016-04-02 19:30:14 ----A---- C:\Windows\system32\iertutil.dll
2016-04-02 19:30:10 ----A---- C:\Windows\system32\els.dll
2016-04-02 19:30:09 ----A---- C:\Windows\system32\DWrite.dll
2016-04-02 19:30:08 ----A---- C:\Windows\system32\user32.dll
2016-04-02 19:30:08 ----A---- C:\Windows\system32\FntCache.dll
2016-04-02 19:30:04 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\WMADMOD.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\msmpeg2adec.dll
2016-04-02 19:30:03 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2016-04-02 19:30:03 ----A---- C:\Windows\system32\mf.dll
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMVSDECD.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMVENCOD.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\wmpmde.dll
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMADMOE.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\COLORCNV.DLL
2016-04-02 19:30:01 ----A---- C:\Windows\system32\WMVXENCD.DLL
2016-04-02 19:30:01 ----A---- C:\Windows\system32\quartz.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\mcmde.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\evr.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\devenum.dll
2016-04-02 19:30:00 ----A---- C:\Windows\system32\WMVSENCD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\qdvd.dll
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MPG4DECD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MP43DECD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\mfplat.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2016-04-02 19:29:59 ----A---- C:\Windows\system32\VIDRESZR.DLL
2016-04-02 19:29:59 ----A---- C:\Windows\system32\SysFxUI.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\qasf.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\rrinstaller.exe
2016-04-02 19:29:58 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\MP4SDECD.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\MP3DMOD.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfvdsp.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfps.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfpmp.exe
2016-04-02 19:29:58 ----A---- C:\Windows\system32\ksuser.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-04-02 19:29:58 ----A---- C:\Windows\system32\drivers\drmk.sys
2016-04-02 19:29:57 ----A---- C:\Windows\system32\mferror.dll
2016-04-02 19:29:57 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2016-04-02 19:29:51 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-04-02 19:29:51 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-04-02 19:29:50 ----A---- C:\Windows\system32\ntdll.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\lsasrv.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\kerberos.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\advapi32.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\wdigest.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\sspicli.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\rpcrt4.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\msv1_0.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-04-02 19:29:49 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-04-02 19:29:49 ----A---- C:\Windows\system32\cryptbase.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\credssp.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\TSpkg.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\srcore.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\smss.exe
2016-04-02 19:29:48 ----A---- C:\Windows\system32\schannel.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\secur32.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\ncrypt.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\lsass.exe
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-04-02 19:29:47 ----A---- C:\Windows\system32\sspisrv.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\srclient.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\rstrui.exe
2016-04-02 19:29:47 ----A---- C:\Windows\system32\msobjs.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\msaudite.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\csrsrv.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\auditpol.exe
2016-04-02 19:29:47 ----A---- C:\Windows\system32\apisetschema.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\adtschema.dll
2016-04-02 19:29:33 ----A---- C:\Windows\system32\ole32.dll
2016-04-02 19:29:23 ----A---- C:\Windows\system32\wuaueng.dll
2016-04-02 19:29:23 ----A---- C:\Windows\system32\wuapi.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuwebv.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wups2.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wups.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wudriver.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wucltux.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuauclt.exe
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuapp.exe
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\ucrtbase.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-04-02 19:29:17 ----A---- C:\Windows\system32\win32k.sys
2016-04-02 19:29:12 ----A---- C:\Windows\system32\shell32.dll
2016-04-02 19:29:12 ----A---- C:\Windows\explorer.exe
2016-04-02 19:29:11 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-04-02 19:29:07 ----A---- C:\Windows\system32\comsvcs.dll
2016-04-02 19:29:06 ----A---- C:\Windows\system32\catsrvut.dll
2016-04-02 19:29:02 ----A---- C:\Windows\system32\jnwmon.dll
2016-04-02 19:29:02 ----A---- C:\Windows\system32\InkEd.dll
2016-04-02 19:29:01 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-04-02 19:29:01 ----A---- C:\Windows\system32\aeinv.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\rdpudd.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\rdpcorets.dll
2016-04-02 19:28:56 ----A---- C:\Windows\system32\usp10.dll
2016-04-02 19:28:55 ----A---- C:\Windows\system32\qedit.dll
2016-04-02 19:28:55 ----A---- C:\Windows\system32\mfds.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\olepro32.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\oleaut32.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\asycfilt.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\wshrm.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\seclogon.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\drivers\rmcast.sys
2016-04-02 19:28:48 ----A---- C:\Windows\system32\wmp.dll
2016-04-02 19:28:47 ----A---- C:\Windows\system32\wmploc.DLL
2016-04-02 19:28:47 ----A---- C:\Windows\system32\spwmp.dll
2016-04-02 19:28:47 ----A---- C:\Windows\system32\dxmasf.dll
2016-04-02 19:28:46 ----A---- C:\Windows\system32\gdi32.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\lpk.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\fontsub.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\dciman32.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\atmlib.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\atmfd.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\mapistub.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\mapi32.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\fixmapi.exe
2016-04-02 19:28:37 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-03-30 17:02:30 ----SHD---- C:\Users\Roman\AppData\Roaming\wyUpdate AU
2016-03-22 20:33:10 ----D---- C:\Program Files\Microsoft Synchronization Services
2016-03-22 20:32:50 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
======List of files/folders modified in the last 1 month======
2016-04-12 15:36:34 ----D---- C:\Windows\Temp
2016-04-12 15:33:57 ----D---- C:\Windows\System32
2016-04-12 15:33:57 ----D---- C:\Windows\inf
2016-04-12 15:33:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-12 15:30:42 ----D---- C:\Windows\system32\config
2016-04-11 20:08:29 ----RD---- C:\Program Files
2016-04-10 10:07:48 ----D---- C:\Windows\Microsoft.NET
2016-04-10 10:07:29 ----RSD---- C:\Windows\assembly
2016-04-10 09:31:00 ----D---- C:\Windows\winsxs
2016-04-02 20:16:08 ----SD---- C:\Windows\system32\CompatTel
2016-04-02 20:16:08 ----D---- C:\Windows\system32\appraiser
2016-04-02 20:16:08 ----D---- C:\Windows\AppPatch
2016-04-02 20:03:31 ----D---- C:\Windows\system32\cs-CZ
2016-04-02 20:03:30 ----RSD---- C:\Windows\Fonts
2016-04-02 20:03:30 ----D---- C:\Windows\system32\wbem
2016-04-02 20:03:30 ----D---- C:\Windows\system32\DriverStore
2016-04-02 20:03:30 ----D---- C:\Windows\system32\drivers\cs-CZ
2016-04-02 20:03:30 ----D---- C:\Windows\system32\drivers
2016-04-02 20:03:30 ----D---- C:\Windows\Logs
2016-04-02 19:51:22 ----D---- C:\Windows\ehome
2016-04-02 19:51:22 ----D---- C:\Windows\cs-CZ
2016-04-02 19:51:22 ----D---- C:\Windows
2016-04-02 19:51:22 ----D---- C:\Program Files\Windows Journal
2016-04-02 19:51:21 ----D---- C:\Windows\system32\en-US
2016-04-02 19:51:21 ----D---- C:\Program Files\Internet Explorer
2016-04-02 19:51:20 ----D---- C:\Program Files\Windows Media Player
2016-04-02 19:38:13 ----D---- C:\Windows\system32\catroot2
2016-04-02 19:37:27 ----D---- C:\Windows\system32\MRT
2016-04-02 19:33:21 ----A---- C:\Windows\system32\MRT.exe
2016-04-01 13:35:44 ----D---- C:\Program Files\wow
2016-03-30 18:24:48 ----D---- C:\ProgramData\Autocom
2016-03-30 18:23:45 ----D---- C:\Users\Roman\AppData\Roaming\Autocom
2016-03-30 18:02:53 ----D---- C:\Program Files\Autocom
2016-03-30 17:25:28 ----D---- C:\Windows\system32\Tasks
2016-03-30 17:25:25 ----D---- C:\Windows\Tasks
2016-03-30 17:25:23 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-30 17:08:03 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2016-03-30 17:01:20 ----D---- C:\Users\Roman\AppData\Roaming\Delphi
2016-03-30 16:58:44 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-22 20:33:12 ----SHD---- C:\Windows\Installer
2016-03-13 12:03:23 ----D---- C:\Windows\system32\catroot
2016-03-13 12:01:04 ----D---- C:\Program Files\DIFX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-11-16 169120]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-03-14 103112]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2010-03-15 127488]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-05-14 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2011-08-25 61576]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2010-08-24 73032]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 R5BaseSmc;USB Token Holder Service; C:\Windows\system32\DRIVERS\smccard.sys [2014-03-17 14592]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-11-16 913184]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
S3 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------
Run by Roman at 2016-04-12 15:36:36
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 17 GB (14%) free of 122 GB
Total RAM: 3536 MB (57% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-01 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-01 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24 4438104]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2014-09-28 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-16 3117384]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2010-03-10 495708]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-01-04 488816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-08 138808]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-08 172088]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-08 173624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-09-04 767312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-23 206240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
ADnews.lnk - C:\Auto-diagnostika\ADnews.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Dell System Manager.lnk - C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-08 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-11 20:57:54 ----D---- C:\AdwCleaner
2016-04-11 20:08:29 ----D---- C:\rsit
2016-04-11 20:08:29 ----D---- C:\Program Files\trend micro
2016-04-02 20:00:50 ----A---- C:\Windows\system32\msi.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\msimsg.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\msihnd.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\consent.exe
2016-04-02 20:00:49 ----A---- C:\Windows\system32\authui.dll
2016-04-02 20:00:49 ----A---- C:\Windows\system32\appinfo.dll
2016-04-02 20:00:34 ----A---- C:\Windows\system32\rpcss.dll
2016-04-02 20:00:34 ----A---- C:\Windows\system32\drivers\disk.sys
2016-04-02 20:00:31 ----A---- C:\Windows\system32\nlsbres.dll
2016-04-02 20:00:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2016-04-02 20:00:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2016-04-02 20:00:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2016-04-02 20:00:24 ----A---- C:\Windows\system32\tbs.dll
2016-04-02 20:00:24 ----A---- C:\Windows\system32\fveapibase.dll
2016-04-02 20:00:24 ----A---- C:\Windows\system32\fveapi.dll
2016-04-02 19:31:00 ----A---- C:\Windows\system32\aepic.dll
2016-04-02 19:30:57 ----A---- C:\Windows\system32\tzres.dll
2016-04-02 19:30:48 ----A---- C:\Windows\system32\EncDec.dll
2016-04-02 19:30:48 ----A---- C:\Windows\system32\CPFilters.dll
2016-04-02 19:30:46 ----A---- C:\Windows\system32\KernelBase.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\mtxoci.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\msorcl32.dll
2016-04-02 19:30:45 ----A---- C:\Windows\system32\kernel32.dll
2016-04-02 19:30:43 ----A---- C:\Windows\system32\winsrv.dll
2016-04-02 19:30:43 ----A---- C:\Windows\system32\conhost.exe
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-04-02 19:30:42 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-04-02 19:30:41 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-04-02 19:30:36 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-04-02 19:30:32 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-04-02 19:30:32 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-04-02 19:30:32 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-04-02 19:30:31 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-04-02 19:30:31 ----A---- C:\Windows\system32\iernonce.dll
2016-04-02 19:30:31 ----A---- C:\Windows\system32\ie4uinit.exe
2016-04-02 19:30:30 ----A---- C:\Windows\system32\vbscript.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\urlmon.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\occache.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\jsproxy.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\inseng.dll
2016-04-02 19:30:30 ----A---- C:\Windows\system32\ieUnatt.exe
2016-04-02 19:30:30 ----A---- C:\Windows\system32\iedkcs32.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\msfeeds.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\jscript9diag.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\ieapfltr.dll
2016-04-02 19:30:29 ----A---- C:\Windows\system32\dxtmsft.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\webcheck.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\msrating.dll
2016-04-02 19:30:27 ----A---- C:\Windows\system32\iesetup.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\wininet.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\jscript.dll
2016-04-02 19:30:26 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-04-02 19:30:25 ----A---- C:\Windows\system32\dxtrans.dll
2016-04-02 19:30:24 ----A---- C:\Windows\system32\ieui.dll
2016-04-02 19:30:23 ----A---- C:\Windows\system32\ieframe.dll
2016-04-02 19:30:21 ----A---- C:\Windows\system32\mshtmled.dll
2016-04-02 19:30:20 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-04-02 19:30:20 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-04-02 19:30:19 ----A---- C:\Windows\system32\jscript9.dll
2016-04-02 19:30:17 ----A---- C:\Windows\system32\mshtml.dll
2016-04-02 19:30:14 ----A---- C:\Windows\system32\iertutil.dll
2016-04-02 19:30:10 ----A---- C:\Windows\system32\els.dll
2016-04-02 19:30:09 ----A---- C:\Windows\system32\DWrite.dll
2016-04-02 19:30:08 ----A---- C:\Windows\system32\user32.dll
2016-04-02 19:30:08 ----A---- C:\Windows\system32\FntCache.dll
2016-04-02 19:30:04 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\WMADMOD.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-04-02 19:30:04 ----A---- C:\Windows\system32\msmpeg2adec.dll
2016-04-02 19:30:03 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2016-04-02 19:30:03 ----A---- C:\Windows\system32\mf.dll
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMVSDECD.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMVENCOD.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\wmpmde.dll
2016-04-02 19:30:02 ----A---- C:\Windows\system32\WMADMOE.DLL
2016-04-02 19:30:02 ----A---- C:\Windows\system32\COLORCNV.DLL
2016-04-02 19:30:01 ----A---- C:\Windows\system32\WMVXENCD.DLL
2016-04-02 19:30:01 ----A---- C:\Windows\system32\quartz.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\mcmde.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\evr.dll
2016-04-02 19:30:01 ----A---- C:\Windows\system32\devenum.dll
2016-04-02 19:30:00 ----A---- C:\Windows\system32\WMVSENCD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\qdvd.dll
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MPG4DECD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MP43DECD.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2016-04-02 19:30:00 ----A---- C:\Windows\system32\mfplat.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2016-04-02 19:29:59 ----A---- C:\Windows\system32\VIDRESZR.DLL
2016-04-02 19:29:59 ----A---- C:\Windows\system32\SysFxUI.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\qasf.dll
2016-04-02 19:29:59 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\rrinstaller.exe
2016-04-02 19:29:58 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\MP4SDECD.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\MP3DMOD.DLL
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfvdsp.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfps.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\mfpmp.exe
2016-04-02 19:29:58 ----A---- C:\Windows\system32\ksuser.dll
2016-04-02 19:29:58 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-04-02 19:29:58 ----A---- C:\Windows\system32\drivers\drmk.sys
2016-04-02 19:29:57 ----A---- C:\Windows\system32\mferror.dll
2016-04-02 19:29:57 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2016-04-02 19:29:51 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-04-02 19:29:51 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-04-02 19:29:50 ----A---- C:\Windows\system32\ntdll.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\lsasrv.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\kerberos.dll
2016-04-02 19:29:50 ----A---- C:\Windows\system32\advapi32.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\wdigest.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\sspicli.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\rpcrt4.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\msv1_0.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-04-02 19:29:49 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-04-02 19:29:49 ----A---- C:\Windows\system32\cryptbase.dll
2016-04-02 19:29:49 ----A---- C:\Windows\system32\credssp.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\TSpkg.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\srcore.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\smss.exe
2016-04-02 19:29:48 ----A---- C:\Windows\system32\schannel.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\secur32.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\ncrypt.dll
2016-04-02 19:29:48 ----A---- C:\Windows\system32\lsass.exe
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-04-02 19:29:48 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-04-02 19:29:47 ----A---- C:\Windows\system32\sspisrv.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\srclient.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\rstrui.exe
2016-04-02 19:29:47 ----A---- C:\Windows\system32\msobjs.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\msaudite.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\csrsrv.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\auditpol.exe
2016-04-02 19:29:47 ----A---- C:\Windows\system32\apisetschema.dll
2016-04-02 19:29:47 ----A---- C:\Windows\system32\adtschema.dll
2016-04-02 19:29:33 ----A---- C:\Windows\system32\ole32.dll
2016-04-02 19:29:23 ----A---- C:\Windows\system32\wuaueng.dll
2016-04-02 19:29:23 ----A---- C:\Windows\system32\wuapi.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuwebv.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wups2.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wups.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wudriver.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wucltux.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuauclt.exe
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wuapp.exe
2016-04-02 19:29:22 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-04-02 19:29:22 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\ucrtbase.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-04-02 19:29:19 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-04-02 19:29:18 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-04-02 19:29:17 ----A---- C:\Windows\system32\win32k.sys
2016-04-02 19:29:12 ----A---- C:\Windows\system32\shell32.dll
2016-04-02 19:29:12 ----A---- C:\Windows\explorer.exe
2016-04-02 19:29:11 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-04-02 19:29:07 ----A---- C:\Windows\system32\comsvcs.dll
2016-04-02 19:29:06 ----A---- C:\Windows\system32\catsrvut.dll
2016-04-02 19:29:02 ----A---- C:\Windows\system32\jnwmon.dll
2016-04-02 19:29:02 ----A---- C:\Windows\system32\InkEd.dll
2016-04-02 19:29:01 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-04-02 19:29:01 ----A---- C:\Windows\system32\aeinv.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\rdpudd.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-04-02 19:29:00 ----A---- C:\Windows\system32\rdpcorets.dll
2016-04-02 19:28:56 ----A---- C:\Windows\system32\usp10.dll
2016-04-02 19:28:55 ----A---- C:\Windows\system32\qedit.dll
2016-04-02 19:28:55 ----A---- C:\Windows\system32\mfds.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\olepro32.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\oleaut32.dll
2016-04-02 19:28:54 ----A---- C:\Windows\system32\asycfilt.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\wshrm.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\seclogon.dll
2016-04-02 19:28:53 ----A---- C:\Windows\system32\drivers\rmcast.sys
2016-04-02 19:28:48 ----A---- C:\Windows\system32\wmp.dll
2016-04-02 19:28:47 ----A---- C:\Windows\system32\wmploc.DLL
2016-04-02 19:28:47 ----A---- C:\Windows\system32\spwmp.dll
2016-04-02 19:28:47 ----A---- C:\Windows\system32\dxmasf.dll
2016-04-02 19:28:46 ----A---- C:\Windows\system32\gdi32.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\lpk.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\fontsub.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\dciman32.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\atmlib.dll
2016-04-02 19:28:45 ----A---- C:\Windows\system32\atmfd.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\mapistub.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\mapi32.dll
2016-04-02 19:28:44 ----A---- C:\Windows\system32\fixmapi.exe
2016-04-02 19:28:37 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-03-30 17:02:30 ----SHD---- C:\Users\Roman\AppData\Roaming\wyUpdate AU
2016-03-22 20:33:10 ----D---- C:\Program Files\Microsoft Synchronization Services
2016-03-22 20:32:50 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
======List of files/folders modified in the last 1 month======
2016-04-12 15:36:34 ----D---- C:\Windows\Temp
2016-04-12 15:33:57 ----D---- C:\Windows\System32
2016-04-12 15:33:57 ----D---- C:\Windows\inf
2016-04-12 15:33:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-04-12 15:30:42 ----D---- C:\Windows\system32\config
2016-04-11 20:08:29 ----RD---- C:\Program Files
2016-04-10 10:07:48 ----D---- C:\Windows\Microsoft.NET
2016-04-10 10:07:29 ----RSD---- C:\Windows\assembly
2016-04-10 09:31:00 ----D---- C:\Windows\winsxs
2016-04-02 20:16:08 ----SD---- C:\Windows\system32\CompatTel
2016-04-02 20:16:08 ----D---- C:\Windows\system32\appraiser
2016-04-02 20:16:08 ----D---- C:\Windows\AppPatch
2016-04-02 20:03:31 ----D---- C:\Windows\system32\cs-CZ
2016-04-02 20:03:30 ----RSD---- C:\Windows\Fonts
2016-04-02 20:03:30 ----D---- C:\Windows\system32\wbem
2016-04-02 20:03:30 ----D---- C:\Windows\system32\DriverStore
2016-04-02 20:03:30 ----D---- C:\Windows\system32\drivers\cs-CZ
2016-04-02 20:03:30 ----D---- C:\Windows\system32\drivers
2016-04-02 20:03:30 ----D---- C:\Windows\Logs
2016-04-02 19:51:22 ----D---- C:\Windows\ehome
2016-04-02 19:51:22 ----D---- C:\Windows\cs-CZ
2016-04-02 19:51:22 ----D---- C:\Windows
2016-04-02 19:51:22 ----D---- C:\Program Files\Windows Journal
2016-04-02 19:51:21 ----D---- C:\Windows\system32\en-US
2016-04-02 19:51:21 ----D---- C:\Program Files\Internet Explorer
2016-04-02 19:51:20 ----D---- C:\Program Files\Windows Media Player
2016-04-02 19:38:13 ----D---- C:\Windows\system32\catroot2
2016-04-02 19:37:27 ----D---- C:\Windows\system32\MRT
2016-04-02 19:33:21 ----A---- C:\Windows\system32\MRT.exe
2016-04-01 13:35:44 ----D---- C:\Program Files\wow
2016-03-30 18:24:48 ----D---- C:\ProgramData\Autocom
2016-03-30 18:23:45 ----D---- C:\Users\Roman\AppData\Roaming\Autocom
2016-03-30 18:02:53 ----D---- C:\Program Files\Autocom
2016-03-30 17:25:28 ----D---- C:\Windows\system32\Tasks
2016-03-30 17:25:25 ----D---- C:\Windows\Tasks
2016-03-30 17:25:23 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-03-30 17:08:03 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2016-03-30 17:01:20 ----D---- C:\Users\Roman\AppData\Roaming\Delphi
2016-03-30 16:58:44 ----D---- C:\Program Files\Delphi Diagnostics
2016-03-22 20:33:12 ----SHD---- C:\Windows\Installer
2016-03-13 12:03:23 ----D---- C:\Windows\system32\catroot
2016-03-13 12:01:04 ----D---- C:\Program Files\DIFX
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 435736]
R0 PBADRV;PBADRV; C:\Windows\system32\DRIVERS\PBADRV.sys [2008-06-04 26608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-11-16 169120]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 30616]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-03-14 103112]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-05 284792]
R3 cvusbdrv;Dell ControlVault; C:\Windows\System32\Drivers\cvusbdrv.sys [2009-11-03 33832]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-11-08 9037312]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2010-03-15 127488]
R3 NETwNs32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 32 Bit; C:\Windows\system32\DRIVERS\NETwNs32.sys [2010-07-14 6814720]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 84992]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2010-03-10 423424]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-07-24 29696]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
R3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 acpials;Filtr zařízení ALS Sensor; C:\Windows\system32\DRIVERS\acpials.sys [2009-07-14 7680]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-11-09 86056]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-11-09 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-11-09 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-11-09 18344]
S3 cxbu0wdm;OMNIKEY 6121; C:\Windows\system32\DRIVERS\cxbu0wdm.sys [2014-05-14 131064]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6232.sys [2011-03-23 223960]
S3 FTD2XX;OPCOMUSB.SYS OP-COM USB device driver; C:\Windows\System32\Drivers\OPCOMUSB.sys [2005-12-15 34639]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2011-08-25 61576]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2010-08-24 73032]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-14 4231168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 R5BaseSmc;USB Token Holder Service; C:\Windows\system32\DRIVERS\smccard.sys [2014-03-17 14592]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.SYS [2010-06-16 59464]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbser;ELM-USB CDC Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\aestsrv.exe [2009-03-03 81920]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-08-11 582944]
R2 Credential Vault Host Control Service;Credential Vault Host Control Service; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-24 812448]
R2 Credential Vault Host Storage;Credential Vault Host Storage; C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-24 27040]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dcpsysmgrsvc;Dell System Manager Service; C:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2011-07-28 390000]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-11-16 913184]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_d511891fb5bff1e2\STacSV.exe [2010-03-10 229458]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-02-08 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 RapiMgr;Připojení zařízení se systémem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-01 1343400]
S3 WcesComm;Připojení zařízení se systémem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------