
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Modrá smrt
Moderátor: Moderátoři
Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Re: Modrá smrt
casto sa podobne BSOD spajaju prave s torrentami
doporucujem skusobne odinstalovat a sledovat PC
doporucujem skusobne odinstalovat a sledovat PC
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Modrá smrt
Při posledních pádech (4.9.) byly stále zavedeny jak ovladače Avastu, tak ovladače McAfee.
Chybu pravděpodobně způsobil ovladač filtru firewallu od McAfee, mohlo ale dojít ke zmíněnému konfliktu s ovladači Avastu.
Chybu pravděpodobně způsobil ovladač filtru firewallu od McAfee, mohlo ale dojít ke zmíněnému konfliktu s ovladači Avastu.
Zmíněná odinstalace McAfee se tedy nekonala nebo neproběhla korektně.Kajusinka01 píše:Tak situace se znova opakuje. Odinstalováno McAfee a furt žádný zlepšení.
Pokud jste s naší pomocí spokojeni, můžete nás podpořit. Informace zde
-
- Návštěvník
- Příspěvky: 29
- Registrován: 08 pro 2007 14:28
Re: Modrá smrt
McAfee jsem právě odinstalovala po tom pádu 4.9.
No a mám dojem že ty pády opravdu způsobují torrenty. Od posledního pádu jsem je nepustila a žádná další smrt se nekonala.
A dá se to s těma torrentama vyřešit jinak, než že je nebudu stahovat?
No a mám dojem že ty pády opravdu způsobují torrenty. Od posledního pádu jsem je nepustila a žádná další smrt se nekonala.
A dá se to s těma torrentama vyřešit jinak, než že je nebudu stahovat?
- cernohous13
- VIP in memoriam
- Příspěvky: 8721
- Registrován: 09 pro 2006 06:19
- Bydliště: Jablonec nad Nisou
- Kontaktovat uživatele:
Re: Modrá smrt
Ahoj, hoď sem aktuální RSIT ať se dají odstranit ty pozůstatky driverů McAfee 
věci stahované torentem dost často obsahují různý "bonus" a McAfee se s Avastem mohou přetahovat o ochranu -> konflikt

věci stahované torentem dost často obsahují různý "bonus" a McAfee se s Avastem mohou přetahovat o ochranu -> konflikt
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím
-------------------------------------------------------------------------------------------------
> Podpora fóra <
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím

-------------------------------------------------------------------------------------------------
> Podpora fóra <
Re: Modrá smrt
A nemyslíš, že tu chybu spíš způsoboval ten McAfee? Pokud to zase spadne, potřebuji nový minidump.McAfee jsem právě odinstalovala po tom pádu 4.9.
No a mám dojem že ty pády opravdu způsobují torrenty. Od posledního pádu jsem je nepustila a žádná další smrt se nekonala.
Pokud jste s naší pomocí spokojeni, můžete nás podpořit. Informace zde
-
- Návštěvník
- Příspěvky: 29
- Registrován: 08 pro 2007 14:28
Re: Modrá smrt
No 4.9. byl pád odinstalovala jsem McAfee, pak jsem pustila torrenty a pád. Druhej den zase torrenty a znova smrt. No pak už jsem je nepouštěla a byl klid. Jen nemám dostahovanou Stargate=(MiliNess píše:A nemyslíš, že tu chybu spíš způsoboval ten McAfee? Pokud to zase spadne, potřebuji nový minidump.McAfee jsem právě odinstalovala po tom pádu 4.9.
No a mám dojem že ty pády opravdu způsobují torrenty. Od posledního pádu jsem je nepustila a žádná další smrt se nekonala.

Re: Modrá smrt
Tak mi upni minidumpy z těch posledních pádů. (bez McAfee)
Torrent client BSOD způsobit nemůže, pouze může narazit na slabinu v některém ovladači, který pak systém shodí.
Torrent client BSOD způsobit nemůže, pouze může narazit na slabinu v některém ovladači, který pak systém shodí.
Pokud jste s naší pomocí spokojeni, můžete nás podpořit. Informace zde
Re: Modrá smrt
ak sa potvrdi suvis, tak mozes skusit najnovsiu verziu bittorrent-u a potom nejaku hodne starsiu - je to problem tohto SWKajusinka01 píše:No a mám dojem že ty pády opravdu způsobují torrenty. Od posledního pádu jsem je nepustila a žádná další smrt se nekonala.
A dá se to s těma torrentama vyřešit jinak, než že je nebudu stahovat?

FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
-
- Návštěvník
- Příspěvky: 29
- Registrován: 08 pro 2007 14:28
Re: Modrá smrt
aha tak koukám že jsem popletla datumy..McAfee jsem mazala a jak jste říkal 4.9. tam pořád byl, takže někde bude problém. Jak se toho McAfee zbavit, když si ani nejsem vědoma toho, že bych ho instalovala
- cernohous13
- VIP in memoriam
- Příspěvky: 8721
- Registrován: 09 pro 2006 06:19
- Bydliště: Jablonec nad Nisou
- Kontaktovat uživatele:
Re: Modrá smrt
cernohous13 píše:Ahoj, hoď sem aktuální RSIT ať se dají odstranit ty pozůstatky driverů McAfee![]()
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím
-------------------------------------------------------------------------------------------------
> Podpora fóra <
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím

-------------------------------------------------------------------------------------------------
> Podpora fóra <
-
- Návštěvník
- Příspěvky: 29
- Registrován: 08 pro 2007 14:28
Re: Modrá smrt
Logfile of random's system information tool 1.09 (written by random/random)cernohous13 píše:cernohous13 píše:Ahoj, hoď sem aktuální RSIT ať se dají odstranit ty pozůstatky driverů McAfee![]()
Run by Kaja at 2013-09-09 20:23:20
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 169 GB (36%) free of 463 GB
Total RAM: 3819 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:30:00, on 9.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16660)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe
C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe
C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Ask.com\Updater\Updater.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\The KMPlayer\KMPlayer.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Kaja.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\InstallShield\UpdateService\agent.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20130601114259.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Kaja\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: KMPlayer Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [QIP Internet Guardian] C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe /p
O4 - HKCU\..\Run: [LinkMagic for magicolor 1680MF] C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe -startup
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\system32\StikyNot.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @C:\Windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\Windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: QipGuard - QIP.ru - C:\Program Files (x86)\QipGuard\QipGuard.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15444 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\system32\WLANExt.exe 23889344
\??\C:\Windows\system32\conhost.exe "1746075288-589331931-717077479-1994837866-1077985283-771864563-927918149-956642711
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\system32\CxAudMsg64.exe
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files (x86)\Acer\Registration\GREGsvc.exe"
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE
"C:\Program Files (x86)\QipGuard\QipGuard.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
"C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files\Elantech\ETDCtrl.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe" /p
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe" -startup
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\The KMPlayer\KMPlayer.exe" "C:\Users\Kaja\Desktop\Filmy\Chirurgové\Serie 6\Chirurgove 06x13.avi"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5280.0.1051889850\89554793" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --gpu-vendor-id=0x1002 --gpu-device-id=0x9807 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.861.0.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.2.980809578\2038523631" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.3.2083697100\1441339313" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.4.531629207\1752571259" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.5.2051546650\596327849" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.6.624647430\1622189496" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="5280.10.332833994\1869489198" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.24.40464491\76974059" /prefetch:673131151
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Windows\system32\StikyNot.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/OutdatedInstallCheck/12WeeksOutdatedInstall/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.469.2103811731\1697150247" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/OutdatedInstallCheck/12WeeksOutdatedInstall/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.560.1284669631\1022315470" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/OutdatedInstallCheck/12WeeksOutdatedInstall/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.611.209626222\1937682553" /prefetch:673131151
taskeng.exe {63EA690B-A26D-49D2-BA03-8676CC87E251}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/OutdatedInstallCheck/12WeeksOutdatedInstall/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.643.648372546\661900026" /prefetch:673131151
"C:\Users\Kaja\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/OutdatedInstallCheck/12WeeksOutdatedInstall/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.651.1855466006\854873951" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/OutdatedInstallCheck/12WeeksOutdatedInstall/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.654.1710809268\2108959509" /prefetch:673131151
"C:\Windows\system32\calc.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-932782904-3094219239-3405187705-100027_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-932782904-3094219239-3405187705-100027 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/OutdatedInstallCheck/12WeeksOutdatedInstall/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.657.1145377562\382319485" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/OutdatedInstallCheck/12WeeksOutdatedInstall/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5280.658.771520670\1024292718" /prefetch:673131151
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\agent.exe" -Embedding
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130601114258.dll [2012-05-25 94720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-16 62376]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2012-08-16 4171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20130601114259.dll [2012-05-25 79776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]
QIPBHO Class - C:\Users\Kaja\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2011-10-12 142288]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07 1152264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
KMPlayer Toolbar - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-04-30 1527432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07 1152264]
{D4027C7F-154A-4066-A1AD-4243D8127440} - KMPlayer Toolbar - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-04-30 1527432]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2010-11-12 2588968]
"Power Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"QIP Internet Guardian"=C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe [2011-10-12 191440]
"LinkMagic for magicolor 1680MF"=C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe [2008-08-26 5005312]
"ISUSPM"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-03-20 213936]
"RESTART_STICKY_NOTES"=C:\Windows\system32\StikyNot.exe [2009-07-14 427520]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SuiteTray"=C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2011-04-02 340848]
"EgisTecPMMUpdate"=C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [2011-03-29 408432]
"EgisUpdate"=C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [2011-03-29 202608]
"Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2010-06-02 1155928]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2011-07-01 1103440]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-05-24 336384]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
""= []
"ApnUpdater"=C:\Program Files (x86)\Ask.com\Updater\Updater.exe [2013-04-30 1721480]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2012-08-16 4171424]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-09-09 20:23:22 ----D---- C:\Program Files\trend micro
2013-09-09 20:23:20 ----D---- C:\rsit
2013-08-29 14:22:51 ----D---- C:\Users\Kaja\AppData\Roaming\CyberLink
2013-08-29 14:22:51 ----D---- C:\ProgramData\CyberLink
2013-08-27 21:58:03 ----D---- C:\Program Files (x86)\Cisco
2013-08-27 21:37:23 ----A---- C:\Windows\system32\bcmwlrc.dll
2013-08-27 21:37:19 ----D---- C:\Program Files\Broadcom
2013-08-27 21:24:46 ----D---- C:\Windows\system32\nn-NO
2013-08-27 21:24:46 ----D---- C:\Program Files (x86)\Atheros
2013-08-27 21:24:46 ----A---- C:\Windows\system32\athihvui.dll
2013-08-27 21:24:46 ----A---- C:\Windows\system32\athihvs.dll
2013-08-27 21:22:49 ----D---- C:\ProgramData\Atheros
2013-08-27 20:23:00 ----D---- C:\Program Files (x86)\DLLSuite
2013-08-27 19:38:03 ----D---- C:\Users\Kaja\AppData\Roaming\ParetoLogic
2013-08-27 19:38:03 ----D---- C:\Users\Kaja\AppData\Roaming\DriverCure
2013-08-27 19:37:24 ----D---- C:\ProgramData\ParetoLogic
2013-08-27 16:21:59 ----D---- C:\Program Files (x86)\SpeedFan
2013-08-21 14:59:13 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-08-21 14:59:10 ----A---- C:\Windows\system32\ieui.dll
2013-08-21 14:59:03 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-08-21 14:59:02 ----A---- C:\Windows\system32\iesetup.dll
2013-08-21 14:59:02 ----A---- C:\Windows\system32\iernonce.dll
2013-08-21 14:59:01 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-08-21 14:59:01 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-08-21 14:59:00 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-08-21 14:59:00 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-21 14:59:00 ----A---- C:\Windows\system32\ie4uinit.exe
2013-08-21 14:58:59 ----A---- C:\Windows\system32\iesysprep.dll
2013-08-21 14:58:58 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-08-21 14:58:54 ----A---- C:\Windows\system32\iertutil.dll
2013-08-21 14:58:46 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-08-21 14:58:45 ----A---- C:\Windows\system32\msfeeds.dll
2013-08-21 14:58:42 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-08-21 14:58:42 ----A---- C:\Windows\system32\jscript.dll
2013-08-21 14:58:39 ----A---- C:\Windows\system32\jscript9.dll
2013-08-21 14:58:33 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-08-21 14:58:30 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-08-21 14:58:28 ----A---- C:\Windows\system32\urlmon.dll
2013-08-21 14:58:22 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-08-21 14:58:22 ----A---- C:\Windows\system32\jsproxy.dll
2013-08-21 14:58:19 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-08-21 14:58:16 ----A---- C:\Windows\system32\wininet.dll
2013-08-21 14:58:10 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-08-21 14:58:02 ----A---- C:\Windows\system32\ieframe.dll
2013-08-21 14:57:57 ----A---- C:\Windows\system32\mshtml.dll
2013-08-21 14:57:43 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-08-20 20:02:01 ----D---- C:\Program Files (x86)\Drakensang Online
2013-08-20 14:39:13 ----A---- C:\Windows\system32\crypt32.dll
2013-08-20 14:39:11 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-08-20 14:39:10 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-08-20 14:39:10 ----A---- C:\Windows\system32\wintrust.dll
2013-08-20 14:39:09 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-08-20 14:39:08 ----A---- C:\Windows\system32\cryptsvc.dll
2013-08-20 14:39:07 ----A---- C:\Windows\system32\cryptnet.dll
2013-08-20 14:39:06 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-08-20 14:38:08 ----A---- C:\Windows\system32\rpcrt4.dll
2013-08-20 14:38:07 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-08-20 14:38:01 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-08-20 14:37:46 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-08-20 14:37:46 ----A---- C:\Windows\system32\tzres.dll
2013-08-20 14:37:26 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-08-20 14:37:24 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-08-20 14:37:20 ----A---- C:\Windows\system32\drivers\tcpip.sys
======List of files/folders modified in the last 1 month======
2013-09-09 20:24:12 ----D---- C:\Windows\Temp
2013-09-09 20:23:22 ----RD---- C:\Program Files
2013-09-09 18:13:20 ----D---- C:\Windows\system32\config
2013-09-07 21:20:43 ----D---- C:\Windows\Prefetch
2013-09-06 12:20:46 ----D---- C:\Users\Kaja\AppData\Roaming\vlc
2013-09-06 09:48:02 ----SHD---- C:\System Volume Information
2013-09-05 10:17:36 ----D---- C:\Program Files (x86)\The KMPlayer
2013-09-04 23:01:58 ----D---- C:\Windows\Minidump
2013-09-04 22:58:33 ----D---- C:\Windows
2013-09-04 22:56:55 ----D---- C:\Users\Kaja\AppData\Roaming\BitTorrent
2013-09-04 10:26:37 ----D---- C:\ProgramData\McAfee
2013-09-04 10:26:34 ----D---- C:\Program Files (x86)\McAfee
2013-09-03 10:40:24 ----D---- C:\Program Files\mcafee
2013-08-30 20:40:45 ----SHD---- C:\Windows\Installer
2013-08-30 20:40:03 ----D---- C:\Program Files (x86)\Calibre2
2013-08-29 14:22:51 ----HD---- C:\ProgramData
2013-08-29 12:07:05 ----D---- C:\ProgramData\Microsoft Help
2013-08-29 12:04:28 ----D---- C:\Windows\winsxs
2013-08-28 05:48:37 ----D---- C:\Windows\system32\LogFiles
2013-08-27 23:58:35 ----D---- C:\Windows\rescache
2013-08-27 21:58:03 ----RD---- C:\Program Files (x86)
2013-08-27 21:57:51 ----D---- C:\Windows\system32\en-US
2013-08-27 21:57:51 ----D---- C:\Windows\system32\cs-CZ
2013-08-27 21:57:51 ----D---- C:\Windows\System32
2013-08-27 21:57:19 ----D---- C:\Windows\system32\zh-HK
2013-08-27 21:57:18 ----D---- C:\Windows\system32\zh-TW
2013-08-27 21:57:18 ----D---- C:\Windows\system32\zh-CN
2013-08-27 21:57:18 ----D---- C:\Windows\system32\tr-TR
2013-08-27 21:57:18 ----D---- C:\Windows\system32\th-TH
2013-08-27 21:57:17 ----D---- C:\Windows\system32\sv-SE
2013-08-27 21:57:17 ----D---- C:\Windows\system32\sl-SI
2013-08-27 21:57:17 ----D---- C:\Windows\system32\sk-SK
2013-08-27 21:57:16 ----D---- C:\Windows\system32\ru-RU
2013-08-27 21:57:16 ----D---- C:\Windows\system32\ro-RO
2013-08-27 21:57:16 ----D---- C:\Windows\system32\pt-PT
2013-08-27 21:57:16 ----D---- C:\Windows\system32\pt-BR
2013-08-27 21:57:15 ----D---- C:\Windows\system32\pl-PL
2013-08-27 21:57:15 ----D---- C:\Windows\system32\nl-NL
2013-08-27 21:57:14 ----D---- C:\Windows\system32\nb-NO
2013-08-27 21:57:14 ----D---- C:\Windows\system32\lv-LV
2013-08-27 21:57:14 ----D---- C:\Windows\system32\lt-LT
2013-08-27 21:57:14 ----D---- C:\Windows\system32\ko-KR
2013-08-27 21:57:14 ----D---- C:\Windows\system32\ja-JP
2013-08-27 21:57:13 ----D---- C:\Windows\system32\it-IT
2013-08-27 21:57:13 ----D---- C:\Windows\system32\hu-HU
2013-08-27 21:57:13 ----D---- C:\Windows\system32\hr-HR
2013-08-27 21:57:13 ----D---- C:\Windows\system32\he-IL
2013-08-27 21:57:12 ----D---- C:\Windows\system32\fr-FR
2013-08-27 21:57:12 ----D---- C:\Windows\system32\fi-FI
2013-08-27 21:57:12 ----D---- C:\Windows\system32\et-EE
2013-08-27 21:57:12 ----D---- C:\Windows\system32\es-ES
2013-08-27 21:57:11 ----D---- C:\Windows\system32\el-GR
2013-08-27 21:57:11 ----D---- C:\Windows\system32\de-DE
2013-08-27 21:57:10 ----D---- C:\Windows\system32\da-DK
2013-08-27 21:57:10 ----D---- C:\Windows\system32\bg-BG
2013-08-27 21:57:09 ----D---- C:\Windows\system32\ar-SA
2013-08-27 21:25:14 ----D---- C:\Windows\system32\catroot
2013-08-27 21:25:11 ----D---- C:\Windows\system32\DriverStore
2013-08-27 21:25:09 ----D---- C:\Windows\inf
2013-08-27 21:24:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-08-27 20:24:58 ----D---- C:\Windows\system32\Tasks
2013-08-27 20:24:57 ----D---- C:\Program Files (x86)\Common Files
2013-08-27 20:24:56 ----D---- C:\Windows\Tasks
2013-08-27 20:16:22 ----D---- C:\Windows\SysWOW64
2013-08-27 16:42:18 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-08-25 21:46:03 ----D---- C:\Windows\system32\drivers
2013-08-25 21:45:55 ----D---- C:\Windows\system32\drivers\UMDF
2013-08-23 03:17:07 ----D---- C:\Windows\Microsoft.NET
2013-08-23 03:17:02 ----RSD---- C:\Windows\assembly
2013-08-21 19:21:28 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-08-21 19:21:27 ----D---- C:\Program Files (x86)\Internet Explorer
2013-08-21 19:21:26 ----D---- C:\Program Files\Internet Explorer
2013-08-21 15:00:15 ----D---- C:\Windows\system32\catroot2
2013-08-14 12:15:38 ----SD---- C:\Users\Kaja\AppData\Roaming\Microsoft
2013-08-14 12:04:16 ----RSD---- C:\Windows\Fonts
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-06-28 189936]
R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2012-02-22 647208]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2012-02-22 289664]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-06-28 1030952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-06-28 378944]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 mfenlfk;McAfee NDIS Light Filter; C:\Windows\system32\DRIVERS\mfenlfk.sys [2012-02-22 75936]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2011-07-25 22648]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2011-07-25 20520]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2011-07-25 62776]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-05-24 9359872]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-05-24 309760]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-03-30 114704]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2011-03-01 4720704]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2011-01-10 349736]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2011-01-24 107560]
R3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2010-09-14 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-02-15 39464]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-09-14 21416]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2011-03-25 1583744]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-06-01 283200]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-11-12 138024]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-01-25 77424]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\Windows\system32\drivers\mfeapfk.sys [2012-02-22 160792]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2012-02-22 229528]
R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2012-02-22 487296]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-28 44672]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 cfwids;McAfee Inc. cfwids; C:\Windows\system32\drivers\cfwids.sys [2012-02-22 65264]
S3 mferkdet;McAfee Inc. mferkdet; C:\Windows\system32\drivers\mferkdet.sys [2012-02-22 100912]
S3 PCDSRVC{91725DDC-9F3A1619-06020200}_0;PCDSRVC{91725DDC-9F3A1619-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\users\kaja\appdata\local\temp\567rhl9vhwq9\pcdrdiag\bin\pcdsrvc_x64.pkms []
S3 PCDSRVC{91725DDC-C25FB371-06020200}_0;PCDSRVC{91725DDC-C25FB371-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\users\kaja\appdata\local\temp\ik15fz47ncaa\pcdrdiag\bin\pcdsrvc_x64.pkms []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-12-01 250984]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-05-24 204288]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-05-12 249648]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2011-03-09 956192]
R2 CxAudMsg;@C:\Windows\system32\CxAudMsg64.exe,-100; C:\Windows\system32\CxAudMsg64.exe [2010-12-17 198784]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]
R2 GREGService;GREGService; C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2011-05-26 29696]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
R2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2011-01-28 249936]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2011-01-28 249936]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2012-05-25 199304]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2012-05-25 210616]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2012-05-25 162224]
R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2010-06-02 2804568]
R2 QipGuard;QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [2011-10-12 191440]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-01 116648]
S2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2011-01-28 249936]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-06-07 191752]
S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-04-02 173424]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-01 116648]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2011-03-09 224704]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-06-02 1255736]
S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2011-01-28 249936]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
-----------------EOF-----------------
- cernohous13
- VIP in memoriam
- Příspěvky: 8721
- Registrován: 09 pro 2006 06:19
- Bydliště: Jablonec nad Nisou
- Kontaktovat uživatele:
Re: Modrá smrt
Tak zkusíme vymést zbytky McAfee
Kdyby byly problémy, tak proveď v Nouzovém režimu

Script OTMStáhni OTM z jednoho odkazu a rozbal nejlépe na plochu.
http://oldtimer.geekstogo.com/OTM.exe
http://www.itxassociates.com/OT-Tools/OTM.exe
Spusť program „OTM.exe“ (pro Vistu a Win7 – pravým a „Run As Administrator“).
Do okna pod žlutou čáru vlož celý text zeleným písmem ze „Scriptu“
Klikni na červené „MoveIt!“
Při nabídce restartu „YES“
a log potom najdeš v C:\_OTM\MovedFiles\ - dej mi ho sem na kontrolu
Kód: Vybrat vše
Kdyby byly problémy, tak proveď v Nouzovém režimu
:Commands
[emptytemp]
[emptyflash]
[emptyjava]
[clearallrestorepoints]
:Files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp /s
C:\Program Files\Common Files\McAfee
C:\ProgramData\McAfee
C:\Program Files (x86)\McAfee
C:\Program Files\mcafee
C:\Windows\system32\drivers\mfehidk.sys
C:\Windows\system32\drivers\mfewfpk.sys
C:\Windows\system32\DRIVERS\mfenlfk.sys
C:\Windows\system32\drivers\mfeapfk.sys
C:\Windows\system32\drivers\mfeavfk.sys
C:\Windows\system32\drivers\mfefirek.sys
C:\Windows\system32\drivers\cfwids.sys
C:\Windows\system32\drivers\mferkdet.sys
:Reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ApnUpdater"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
:Services
mfehidk
mfewfpk
mfenlfk
mfeapfk
mfeavfk
mfefirek
cfwids
mferkdet
McNASvc
McProxy
McShield
mfefire
mfevtp
mcmscsvc
McAWFwk
McOobeSv
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím
-------------------------------------------------------------------------------------------------
> Podpora fóra <
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím

-------------------------------------------------------------------------------------------------
> Podpora fóra <
-
- Návštěvník
- Příspěvky: 29
- Registrován: 08 pro 2007 14:28
Re: Modrá smrt
All processes killed
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Kaja
->Temp folder emptied: 330211361 bytes
->Temporary Internet Files folder emptied: 36017490 bytes
->Google Chrome cache emptied: 397716505 bytes
->Flash cache emptied: 1084 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 238359314 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 38546 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 43065203 bytes
RecycleBin emptied: 357510364 bytes
Total Files Cleaned = 1 338,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Kaja
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
[EMPTYJAVA]
User: All Users
User: Default
User: Default User
User: Kaja
User: Public
Total Java Files Cleaned = 0,00 mb
Restore point Set: OTM Restore Point
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3311.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP7376.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8D51.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9ED8.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPD91.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP1B86.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP286E.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2968.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2E0F.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP31E0.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP5FF.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP68DF.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP6B8E.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP719D.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP84AE.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPA471.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPC183.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE863.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPFB19.tmp folder moved successfully.
Folder move failed. C:\Program Files\Common Files\mcafee\vscore\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\vscore\tools scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\vscore scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\systemcore scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\nmc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\msc\mcutil\11,0,320,0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\msc\mcutil scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\msc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\mna scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\mcsvchost scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\mcproxy scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\hackerwatch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\core scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\WinCore scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc\Updates scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc\RegWiz\RegApp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc\RegWiz scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc\logs scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\MNM scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\MNA scheduled to be moved on reboot.
C:\ProgramData\McAfee\MCLOGS\VSCore\rundll32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\VSCore\mcupdmgr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\VSCore folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Pearl\mcagent folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Pearl folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\PartnerCustom\mcfpdtct folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\PartnerCustom folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MQS\Explorer folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MQS\CompMgmtLauncher folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MQS folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Mpsmispap\mcupdmgr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Mpsmispap folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MpsEventHandler\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MpsEventHandler folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Mps\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Mps folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\regsvr32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\mpfalert folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\mcuihost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\McSmtFwk folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MispReg\mispreg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MispReg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\rundll32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\regsvr32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\OOBESVC\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\OOBESVC folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mispreg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcupdmgr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcupdate folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcuihost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcsync folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcsvrcnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\McSmtFwk folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcinsspt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcinfo folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mchost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcawfwk folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcappcfg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcagent folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McUninst\mcuihost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McUninst folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McUICnt\McUICnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McUICnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McSync\mcsync folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McSync folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcsvrcnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McSvcHost\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McSvcHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcsmttsk\McUpdate folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcsmttsk folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McProxy\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McProxy folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcoemmgr\McOEMMGr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcoemmgr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McMSCIns\rundll32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McMSCIns\mcupdate folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McMSCIns\install folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McMSCIns folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McInst folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcinsspt\mcinsspt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcinsspt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcinfo folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcdspwrp\McUICnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcdspwrp folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcappcfg\mcappcfg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcappcfg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MasterInstaller\install folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MasterInstaller folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\HWAPI\regsvr32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\HWAPI folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\HomeNet\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\HomeNet folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\DetectMPSdll\mcinst folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\DetectMPSdll folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\regsvr32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\McUpdate folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\mcinsspt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\mcalert folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\mcagent folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common\mcuihost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common\mcuicnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common\mcagent folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common\install folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Anti-Spam\Mskxagnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Anti-Spam\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Anti-Spam\mcinst folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Anti-Spam folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\ActWiz\mcuicnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\ActWiz folder moved successfully.
Folder move failed. C:\ProgramData\McAfee\MCLOGS scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\hackerwatch\data scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\hackerwatch scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\dspwrp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee scheduled to be moved on reboot.
Folder move failed. C:\Program Files (x86)\McAfee\msc scheduled to be moved on reboot.
Folder move failed. C:\Program Files (x86)\McAfee scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msm scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\OOBE scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\vso\oobe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\vso scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\nmc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msk scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\zh-TW scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\zh-CN scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\tr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\sv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\sr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\sk scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\ru scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\pt-BR scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\pt scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\pl scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\no scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\nl scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\ko scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\jp scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\it scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\hu scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\hr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\he scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\fr-CA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\fr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\fi scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\es-MX scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\es scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\en-US scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\en-GB scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\en-CA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\en-AU scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\el scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\de scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\da scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\cs scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\ar-AE scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\zh-TW\662-22 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\zh-TW scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\zh-CN\662-20 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\zh-CN scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\tr\662-17 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\tr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sv\662-27 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sr\662-78 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sk\662-31 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sk scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ru\662-28 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ru scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pt-BR\662-26 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pt-BR scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pt\662-14 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pt scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pl\662-18 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pl scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\no\662-24 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\no scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\nl\662-12 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\nl scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ko\662-16 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ko scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\jp\662-9 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\jp scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\it\662-11 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\it scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\hu\662-30 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\hu scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\hr\662-76 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\hr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\he\662-77 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\he scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fr-CA\662-5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fr-CA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fr\662-6 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fi\662-25 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fi scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\es-MX\662-8 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\es-MX scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\es\662-10 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\es scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-US\662-1 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-US scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-GB\662-3 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-GB scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-CA\662-2 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-CA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-AU\662-4 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-AU scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\el\662-29 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\el scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\de\662-7 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\de scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\da\662-23 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\da scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\cs\662-15 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\cs scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ar-AE\662-75 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ar-AE scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\mqs scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\mps scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\mpf scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\mat scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\0e1a472c-221c-4736-a9e0-c6cc1f2b4ae9 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcsubmgr\11,0,678,0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcsubmgr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcregobj\11,0,669,0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcregobj\11,0,488,0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcregobj scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\help scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\Custom_Uninstall scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\4105 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\3084 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\3081 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2074 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2070 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2058 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2057 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2052 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\14337 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1055 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1053 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1051 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1050 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1049 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1046 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1045 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1044 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1043 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1042 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1041 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1040 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1038 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1037 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1036 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1035 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1034 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1033 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1032 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1031 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1030 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1029 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1028 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee scheduled to be moved on reboot.
File/Folder C:\Windows\system32\drivers\mfehidk.sys not found.
File/Folder C:\Windows\system32\drivers\mfewfpk.sys not found.
File/Folder C:\Windows\system32\DRIVERS\mfenlfk.sys not found.
File/Folder C:\Windows\system32\drivers\mfeapfk.sys not found.
File/Folder C:\Windows\system32\drivers\mfeavfk.sys not found.
File/Folder C:\Windows\system32\drivers\mfefirek.sys not found.
File/Folder C:\Windows\system32\drivers\cfwids.sys not found.
File/Folder C:\Windows\system32\drivers\mferkdet.sys not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp\ deleted successfully.
========== SERVICES/DRIVERS ==========
Error: No service named mfehidk was found to stop!
Unable to delete service\driver key mfehidk.
Error: No service named mfewfpk was found to stop!
Unable to delete service\driver key mfewfpk.
Service mfenlfk stopped successfully!
Service mfenlfk deleted successfully!
Error: No service named mfeapfk was found to stop!
Unable to delete service\driver key mfeapfk.
Error: No service named mfeavfk was found to stop!
Unable to delete service\driver key mfeavfk.
Error: No service named mfefirek was found to stop!
Unable to delete service\driver key mfefirek.
Error: No service named cfwids was found to stop!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cfwids deleted successfully.
Error: No service named mferkdet was found to stop!
Unable to delete service\driver key mferkdet.
Service McNASvc stopped successfully!
Service McNASvc deleted successfully!
Service McProxy stopped successfully!
Service McProxy deleted successfully!
Error: No service named McShield was found to stop!
Unable to delete service\driver key McShield.
Error: No service named mfefire was found to stop!
Unable to delete service\driver key mfefire.
Error: No service named mfevtp was found to stop!
Unable to delete service\driver key mfevtp.
Service mcmscsvc stopped successfully!
Service mcmscsvc deleted successfully!
Service McAWFwk stopped successfully!
Service McAWFwk deleted successfully!
Service McOobeSv stopped successfully!
Service McOobeSv deleted successfully!
OTM by OldTimer - Version 3.1.21.0 log created on 09102013_153100
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Kaja
->Temp folder emptied: 330211361 bytes
->Temporary Internet Files folder emptied: 36017490 bytes
->Google Chrome cache emptied: 397716505 bytes
->Flash cache emptied: 1084 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 238359314 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 38546 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 43065203 bytes
RecycleBin emptied: 357510364 bytes
Total Files Cleaned = 1 338,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Kaja
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
[EMPTYJAVA]
User: All Users
User: Default
User: Default User
User: Kaja
User: Public
Total Java Files Cleaned = 0,00 mb
Restore point Set: OTM Restore Point
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3311.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP7376.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8D51.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9ED8.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPD91.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP1B86.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP286E.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2968.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2E0F.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP31E0.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP5FF.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP68DF.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP6B8E.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP719D.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP84AE.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPA471.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPC183.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE863.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPFB19.tmp folder moved successfully.
Folder move failed. C:\Program Files\Common Files\mcafee\vscore\x86 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\vscore\tools scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\vscore scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\systemcore scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\nmc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\msc\mcutil\11,0,320,0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\msc\mcutil scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\msc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\mna scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\mcsvchost scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\mcproxy scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\hackerwatch scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee\core scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\mcafee scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\WinCore scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc\Updates scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc\RegWiz\RegApp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc\RegWiz scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc\logs scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\msc scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\MNM scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\MNA scheduled to be moved on reboot.
C:\ProgramData\McAfee\MCLOGS\VSCore\rundll32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\VSCore\mcupdmgr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\VSCore folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Pearl\mcagent folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Pearl folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\PartnerCustom\mcfpdtct folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\PartnerCustom folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MQS\Explorer folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MQS\CompMgmtLauncher folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MQS folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Mpsmispap\mcupdmgr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Mpsmispap folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MpsEventHandler\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MpsEventHandler folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Mps\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Mps folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\regsvr32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\mpfalert folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\mcuihost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF\McSmtFwk folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MPF folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MispReg\mispreg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MispReg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\rundll32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\regsvr32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\OOBESVC\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\OOBESVC folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mispreg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcupdmgr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcupdate folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcuihost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcsync folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcsvrcnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\McSmtFwk folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcinsspt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcinfo folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mchost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcawfwk folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcappcfg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP\mcagent folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MISP folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McUninst\mcuihost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McUninst folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McUICnt\McUICnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McUICnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McSync\mcsync folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McSync folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcsvrcnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McSvcHost\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McSvcHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcsmttsk\McUpdate folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcsmttsk folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McProxy\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McProxy folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcoemmgr\McOEMMGr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcoemmgr folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McMSCIns\rundll32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McMSCIns\mcupdate folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McMSCIns\install folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McMSCIns folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\McInst folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcinsspt\mcinsspt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcinsspt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcinfo folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcdspwrp\McUICnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcdspwrp folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcappcfg\mcappcfg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\mcappcfg folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MasterInstaller\install folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\MasterInstaller folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\HWAPI\regsvr32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\HWAPI folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\HomeNet\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\HomeNet folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\DetectMPSdll\mcinst folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\DetectMPSdll folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\regsvr32 folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\McUpdate folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\mcinsspt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\mcalert folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech\mcagent folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\CoreTech folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common\mcuihost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common\mcuicnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common\mcagent folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common\install folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Common folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Anti-Spam\Mskxagnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Anti-Spam\McSvHost folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Anti-Spam\mcinst folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\Anti-Spam folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\ActWiz\mcuicnt folder moved successfully.
C:\ProgramData\McAfee\MCLOGS\ActWiz folder moved successfully.
Folder move failed. C:\ProgramData\McAfee\MCLOGS scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\hackerwatch\data scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\hackerwatch scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee\dspwrp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\McAfee scheduled to be moved on reboot.
Folder move failed. C:\Program Files (x86)\McAfee\msc scheduled to be moved on reboot.
Folder move failed. C:\Program Files (x86)\McAfee scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msm scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\OOBE scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\vso\oobe scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\vso scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\nmc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msk scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\zh-TW scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\zh-CN scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\tr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\sv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\sr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\sk scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\ru scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\pt-BR scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\pt scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\pl scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\no scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\nl scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\ko scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\jp scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\it scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\hu scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\hr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\he scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\fr-CA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\fr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\fi scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\es-MX scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\es scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\en-US scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\en-GB scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\en-CA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\en-AU scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\el scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\de scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\da scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\cs scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC\ar-AE scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\MSC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\zh-TW\662-22 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\zh-TW scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\zh-CN\662-20 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\zh-CN scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\tr\662-17 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\tr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sv\662-27 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sv scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sr\662-78 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sk\662-31 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\sk scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ru\662-28 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ru scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pt-BR\662-26 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pt-BR scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pt\662-14 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pt scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pl\662-18 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\pl scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\no\662-24 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\no scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\nl\662-12 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\nl scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ko\662-16 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ko scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\jp\662-9 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\jp scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\it\662-11 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\it scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\hu\662-30 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\hu scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\hr\662-76 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\hr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\he\662-77 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\he scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fr-CA\662-5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fr-CA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fr\662-6 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fi\662-25 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\fi scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\es-MX\662-8 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\es-MX scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\es\662-10 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\es scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-US\662-1 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-US scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-GB\662-3 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-GB scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-CA\662-2 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-CA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-AU\662-4 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\en-AU scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\el\662-29 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\el scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\de\662-7 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\de scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\da\662-23 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\da scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\cs\662-15 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\cs scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ar-AE\662-75 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad\ar-AE scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\msad scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\mqs scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\mps scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\mpf scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\mat scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo\0e1a472c-221c-4736-a9e0-c6cc1f2b4ae9 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\oeminfo scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcsubmgr\11,0,678,0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcsubmgr scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcregobj\11,0,669,0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcregobj\11,0,488,0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\mcregobj scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\help scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\Custom_Uninstall scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\4105 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\3084 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\3081 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2074 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2070 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2058 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2057 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\2052 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\14337 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1055 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1053 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1051 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1050 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1049 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1046 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1045 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1044 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1043 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1042 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1041 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1040 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1038 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1037 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1036 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1035 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1034 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1033 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1032 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1031 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1030 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1029 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc\1028 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee\msc scheduled to be moved on reboot.
Folder move failed. C:\Program Files\mcafee scheduled to be moved on reboot.
File/Folder C:\Windows\system32\drivers\mfehidk.sys not found.
File/Folder C:\Windows\system32\drivers\mfewfpk.sys not found.
File/Folder C:\Windows\system32\DRIVERS\mfenlfk.sys not found.
File/Folder C:\Windows\system32\drivers\mfeapfk.sys not found.
File/Folder C:\Windows\system32\drivers\mfeavfk.sys not found.
File/Folder C:\Windows\system32\drivers\mfefirek.sys not found.
File/Folder C:\Windows\system32\drivers\cfwids.sys not found.
File/Folder C:\Windows\system32\drivers\mferkdet.sys not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp\ deleted successfully.
========== SERVICES/DRIVERS ==========
Error: No service named mfehidk was found to stop!
Unable to delete service\driver key mfehidk.
Error: No service named mfewfpk was found to stop!
Unable to delete service\driver key mfewfpk.
Service mfenlfk stopped successfully!
Service mfenlfk deleted successfully!
Error: No service named mfeapfk was found to stop!
Unable to delete service\driver key mfeapfk.
Error: No service named mfeavfk was found to stop!
Unable to delete service\driver key mfeavfk.
Error: No service named mfefirek was found to stop!
Unable to delete service\driver key mfefirek.
Error: No service named cfwids was found to stop!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cfwids deleted successfully.
Error: No service named mferkdet was found to stop!
Unable to delete service\driver key mferkdet.
Service McNASvc stopped successfully!
Service McNASvc deleted successfully!
Service McProxy stopped successfully!
Service McProxy deleted successfully!
Error: No service named McShield was found to stop!
Unable to delete service\driver key McShield.
Error: No service named mfefire was found to stop!
Unable to delete service\driver key mfefire.
Error: No service named mfevtp was found to stop!
Unable to delete service\driver key mfevtp.
Service mcmscsvc stopped successfully!
Service mcmscsvc deleted successfully!
Service McAWFwk stopped successfully!
Service McAWFwk deleted successfully!
Service McOobeSv stopped successfully!
Service McOobeSv deleted successfully!
OTM by OldTimer - Version 3.1.21.0 log created on 09102013_153100
- cernohous13
- VIP in memoriam
- Příspěvky: 8721
- Registrován: 09 pro 2006 06:19
- Bydliště: Jablonec nad Nisou
- Kontaktovat uživatele:
Re: Modrá smrt
Dáš mi aktuální RSIT 

Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím
-------------------------------------------------------------------------------------------------
> Podpora fóra <
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím

-------------------------------------------------------------------------------------------------
> Podpora fóra <
-
- Návštěvník
- Příspěvky: 29
- Registrován: 08 pro 2007 14:28
Re: Modrá smrt
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kaja at 2013-09-10 17:25:54
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 169 GB (36%) free of 463 GB
Total RAM: 3819 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:26:03, on 10.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16660)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe
C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe
C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Kaja.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Kaja\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: KMPlayer Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [QIP Internet Guardian] C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe /p
O4 - HKCU\..\Run: [LinkMagic for magicolor 1680MF] C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe -startup
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @C:\Windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\Windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: QipGuard - QIP.ru - C:\Program Files (x86)\QipGuard\QipGuard.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14380 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 27880528
\??\C:\Windows\system32\conhost.exe "-263771031-1445745350-1717042084-10559414459442900221878413990-18056626321475074719
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\system32\CxAudMsg64.exe
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files (x86)\Acer\Registration\GREGsvc.exe"
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE
taskeng.exe {40AF9A77-B06B-4E50-97AE-61E778E47C1E}
"C:\Program Files (x86)\QipGuard\QipGuard.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe" /p
"C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe" -startup
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
"C:\Windows\System32\StikyNot.exe"
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6140.0.1941096265\2072910596" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --gpu-vendor-id=0x1002 --gpu-device-id=0x9807 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.861.0.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.1.1603442756\873596211" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.2.1335046466\1928666265" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.3.1541087559\647551687" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.4.1173085881\1330665194" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.5.1074300482\1738663534" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.6.460652858\884104495" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.8.1862182171\997744551" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.10.1623881050\829044928" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.11.16317496\164571910" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="6140.12.1402323984\224531619" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.21.1293059602\561123706" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.48.1465440656\1953243041" /prefetch:673131151
"C:\Users\Kaja\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130601114258.dll [2012-05-25 94720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-16 62376]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2012-08-16 4171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]
QIPBHO Class - C:\Users\Kaja\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2011-10-12 142288]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07 1152264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
KMPlayer Toolbar - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-04-30 1527432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07 1152264]
{D4027C7F-154A-4066-A1AD-4243D8127440} - KMPlayer Toolbar - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-04-30 1527432]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2010-11-12 2588968]
"Power Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"QIP Internet Guardian"=C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe [2011-10-12 191440]
"LinkMagic for magicolor 1680MF"=C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe [2008-08-26 5005312]
"ISUSPM"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-03-20 213936]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2009-07-14 427520]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SuiteTray"=C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2011-04-02 340848]
"EgisTecPMMUpdate"=C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [2011-03-29 408432]
"EgisUpdate"=C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [2011-03-29 202608]
"Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2010-06-02 1155928]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2011-07-01 1103440]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-05-24 336384]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
""= []
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2012-08-16 4171424]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-09-10 15:31:00 ----D---- C:\_OTM
2013-09-09 20:23:22 ----D---- C:\Program Files\trend micro
2013-09-09 20:23:20 ----D---- C:\rsit
2013-08-29 14:22:51 ----D---- C:\Users\Kaja\AppData\Roaming\CyberLink
2013-08-29 14:22:51 ----D---- C:\ProgramData\CyberLink
2013-08-27 21:58:03 ----D---- C:\Program Files (x86)\Cisco
2013-08-27 21:37:23 ----A---- C:\Windows\system32\bcmwlrc.dll
2013-08-27 21:37:19 ----D---- C:\Program Files\Broadcom
2013-08-27 21:24:46 ----D---- C:\Windows\system32\nn-NO
2013-08-27 21:24:46 ----D---- C:\Program Files (x86)\Atheros
2013-08-27 21:24:46 ----A---- C:\Windows\system32\athihvui.dll
2013-08-27 21:24:46 ----A---- C:\Windows\system32\athihvs.dll
2013-08-27 21:22:49 ----D---- C:\ProgramData\Atheros
2013-08-27 20:23:00 ----D---- C:\Program Files (x86)\DLLSuite
2013-08-27 19:38:03 ----D---- C:\Users\Kaja\AppData\Roaming\ParetoLogic
2013-08-27 19:38:03 ----D---- C:\Users\Kaja\AppData\Roaming\DriverCure
2013-08-27 19:37:24 ----D---- C:\ProgramData\ParetoLogic
2013-08-27 16:21:59 ----D---- C:\Program Files (x86)\SpeedFan
2013-08-21 14:59:13 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-08-21 14:59:10 ----A---- C:\Windows\system32\ieui.dll
2013-08-21 14:59:03 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-08-21 14:59:02 ----A---- C:\Windows\system32\iesetup.dll
2013-08-21 14:59:02 ----A---- C:\Windows\system32\iernonce.dll
2013-08-21 14:59:01 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-08-21 14:59:01 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-08-21 14:59:00 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-08-21 14:59:00 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-21 14:59:00 ----A---- C:\Windows\system32\ie4uinit.exe
2013-08-21 14:58:59 ----A---- C:\Windows\system32\iesysprep.dll
2013-08-21 14:58:58 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-08-21 14:58:54 ----A---- C:\Windows\system32\iertutil.dll
2013-08-21 14:58:46 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-08-21 14:58:45 ----A---- C:\Windows\system32\msfeeds.dll
2013-08-21 14:58:42 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-08-21 14:58:42 ----A---- C:\Windows\system32\jscript.dll
2013-08-21 14:58:39 ----A---- C:\Windows\system32\jscript9.dll
2013-08-21 14:58:33 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-08-21 14:58:30 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-08-21 14:58:28 ----A---- C:\Windows\system32\urlmon.dll
2013-08-21 14:58:22 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-08-21 14:58:22 ----A---- C:\Windows\system32\jsproxy.dll
2013-08-21 14:58:19 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-08-21 14:58:16 ----A---- C:\Windows\system32\wininet.dll
2013-08-21 14:58:10 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-08-21 14:58:02 ----A---- C:\Windows\system32\ieframe.dll
2013-08-21 14:57:57 ----A---- C:\Windows\system32\mshtml.dll
2013-08-21 14:57:43 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-08-20 20:02:01 ----D---- C:\Program Files (x86)\Drakensang Online
2013-08-20 14:39:13 ----A---- C:\Windows\system32\crypt32.dll
2013-08-20 14:39:11 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-08-20 14:39:10 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-08-20 14:39:10 ----A---- C:\Windows\system32\wintrust.dll
2013-08-20 14:39:09 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-08-20 14:39:08 ----A---- C:\Windows\system32\cryptsvc.dll
2013-08-20 14:39:07 ----A---- C:\Windows\system32\cryptnet.dll
2013-08-20 14:39:06 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-08-20 14:38:08 ----A---- C:\Windows\system32\rpcrt4.dll
2013-08-20 14:38:07 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-08-20 14:38:01 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-08-20 14:37:46 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-08-20 14:37:46 ----A---- C:\Windows\system32\tzres.dll
2013-08-20 14:37:26 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-08-20 14:37:24 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-08-20 14:37:20 ----A---- C:\Windows\system32\drivers\tcpip.sys
======List of files/folders modified in the last 1 month======
2013-09-10 17:26:03 ----D---- C:\Windows\Temp
2013-09-10 16:46:33 ----D---- C:\Windows\Minidump
2013-09-10 16:46:27 ----D---- C:\Windows
2013-09-10 16:44:06 ----D---- C:\Users\Kaja\AppData\Roaming\BitTorrent
2013-09-10 16:39:27 ----D---- C:\Windows\system32\config
2013-09-10 16:29:28 ----D---- C:\Program Files (x86)\The KMPlayer
2013-09-10 16:21:24 ----D---- C:\Windows\Prefetch
2013-09-10 15:44:02 ----SHD---- C:\System Volume Information
2013-09-09 20:23:22 ----RD---- C:\Program Files
2013-09-06 12:20:46 ----D---- C:\Users\Kaja\AppData\Roaming\vlc
2013-09-04 10:26:37 ----D---- C:\ProgramData\McAfee
2013-09-04 10:26:34 ----D---- C:\Program Files (x86)\McAfee
2013-09-03 10:40:24 ----D---- C:\Program Files\mcafee
2013-08-30 20:40:45 ----SHD---- C:\Windows\Installer
2013-08-30 20:40:03 ----D---- C:\Program Files (x86)\Calibre2
2013-08-29 14:22:51 ----HD---- C:\ProgramData
2013-08-29 12:07:05 ----D---- C:\ProgramData\Microsoft Help
2013-08-29 12:04:28 ----D---- C:\Windows\winsxs
2013-08-28 05:48:37 ----D---- C:\Windows\system32\LogFiles
2013-08-27 23:58:35 ----D---- C:\Windows\rescache
2013-08-27 21:58:03 ----RD---- C:\Program Files (x86)
2013-08-27 21:57:51 ----D---- C:\Windows\system32\en-US
2013-08-27 21:57:51 ----D---- C:\Windows\system32\cs-CZ
2013-08-27 21:57:51 ----D---- C:\Windows\System32
2013-08-27 21:57:19 ----D---- C:\Windows\system32\zh-HK
2013-08-27 21:57:18 ----D---- C:\Windows\system32\zh-TW
2013-08-27 21:57:18 ----D---- C:\Windows\system32\zh-CN
2013-08-27 21:57:18 ----D---- C:\Windows\system32\tr-TR
2013-08-27 21:57:18 ----D---- C:\Windows\system32\th-TH
2013-08-27 21:57:17 ----D---- C:\Windows\system32\sv-SE
2013-08-27 21:57:17 ----D---- C:\Windows\system32\sl-SI
2013-08-27 21:57:17 ----D---- C:\Windows\system32\sk-SK
2013-08-27 21:57:16 ----D---- C:\Windows\system32\ru-RU
2013-08-27 21:57:16 ----D---- C:\Windows\system32\ro-RO
2013-08-27 21:57:16 ----D---- C:\Windows\system32\pt-PT
2013-08-27 21:57:16 ----D---- C:\Windows\system32\pt-BR
2013-08-27 21:57:15 ----D---- C:\Windows\system32\pl-PL
2013-08-27 21:57:15 ----D---- C:\Windows\system32\nl-NL
2013-08-27 21:57:14 ----D---- C:\Windows\system32\nb-NO
2013-08-27 21:57:14 ----D---- C:\Windows\system32\lv-LV
2013-08-27 21:57:14 ----D---- C:\Windows\system32\lt-LT
2013-08-27 21:57:14 ----D---- C:\Windows\system32\ko-KR
2013-08-27 21:57:14 ----D---- C:\Windows\system32\ja-JP
2013-08-27 21:57:13 ----D---- C:\Windows\system32\it-IT
2013-08-27 21:57:13 ----D---- C:\Windows\system32\hu-HU
2013-08-27 21:57:13 ----D---- C:\Windows\system32\hr-HR
2013-08-27 21:57:13 ----D---- C:\Windows\system32\he-IL
2013-08-27 21:57:12 ----D---- C:\Windows\system32\fr-FR
2013-08-27 21:57:12 ----D---- C:\Windows\system32\fi-FI
2013-08-27 21:57:12 ----D---- C:\Windows\system32\et-EE
2013-08-27 21:57:12 ----D---- C:\Windows\system32\es-ES
2013-08-27 21:57:11 ----D---- C:\Windows\system32\el-GR
2013-08-27 21:57:11 ----D---- C:\Windows\system32\de-DE
2013-08-27 21:57:10 ----D---- C:\Windows\system32\da-DK
2013-08-27 21:57:10 ----D---- C:\Windows\system32\bg-BG
2013-08-27 21:57:09 ----D---- C:\Windows\system32\ar-SA
2013-08-27 21:25:14 ----D---- C:\Windows\system32\catroot
2013-08-27 21:25:11 ----D---- C:\Windows\system32\DriverStore
2013-08-27 21:25:09 ----D---- C:\Windows\inf
2013-08-27 21:24:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-08-27 20:24:58 ----D---- C:\Windows\system32\Tasks
2013-08-27 20:24:57 ----D---- C:\Program Files (x86)\Common Files
2013-08-27 20:24:56 ----D---- C:\Windows\Tasks
2013-08-27 20:16:22 ----D---- C:\Windows\SysWOW64
2013-08-27 16:42:18 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-08-25 21:46:03 ----D---- C:\Windows\system32\drivers
2013-08-25 21:45:55 ----D---- C:\Windows\system32\drivers\UMDF
2013-08-23 03:17:07 ----D---- C:\Windows\Microsoft.NET
2013-08-23 03:17:02 ----RSD---- C:\Windows\assembly
2013-08-21 19:21:28 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-08-21 19:21:27 ----D---- C:\Program Files (x86)\Internet Explorer
2013-08-21 19:21:26 ----D---- C:\Program Files\Internet Explorer
2013-08-21 15:00:15 ----D---- C:\Windows\system32\catroot2
2013-08-14 12:15:38 ----SD---- C:\Users\Kaja\AppData\Roaming\Microsoft
2013-08-14 12:04:16 ----RSD---- C:\Windows\Fonts
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-06-28 189936]
R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2012-02-22 647208]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2012-02-22 289664]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-06-28 1030952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-06-28 378944]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2011-07-25 22648]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2011-07-25 20520]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2011-07-25 62776]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-05-24 9359872]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-05-24 309760]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-03-30 114704]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2011-03-01 4720704]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2011-01-10 349736]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2011-01-24 107560]
R3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2010-09-14 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-02-15 39464]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-09-14 21416]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2011-03-25 1583744]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-06-01 283200]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-11-12 138024]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-01-25 77424]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\Windows\system32\drivers\mfeapfk.sys [2012-02-22 160792]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2012-02-22 229528]
R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2012-02-22 487296]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-28 44672]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 mferkdet;McAfee Inc. mferkdet; C:\Windows\system32\drivers\mferkdet.sys [2012-02-22 100912]
S3 PCDSRVC{91725DDC-9F3A1619-06020200}_0;PCDSRVC{91725DDC-9F3A1619-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\users\kaja\appdata\local\temp\567rhl9vhwq9\pcdrdiag\bin\pcdsrvc_x64.pkms []
S3 PCDSRVC{91725DDC-C25FB371-06020200}_0;PCDSRVC{91725DDC-C25FB371-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\users\kaja\appdata\local\temp\ik15fz47ncaa\pcdrdiag\bin\pcdsrvc_x64.pkms []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-12-01 250984]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-05-24 204288]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-05-12 249648]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2011-03-09 956192]
R2 CxAudMsg;@C:\Windows\system32\CxAudMsg64.exe,-100; C:\Windows\system32\CxAudMsg64.exe [2010-12-17 198784]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]
R2 GREGService;GREGService; C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2011-05-26 29696]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2012-05-25 199304]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2012-05-25 210616]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2012-05-25 162224]
R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2010-06-02 2804568]
R2 QipGuard;QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [2011-10-12 191440]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-01 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-06-07 191752]
S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-04-02 173424]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-01 116648]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-06-02 1255736]
S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
-----------------EOF-----------------
Run by Kaja at 2013-09-10 17:25:54
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 169 GB (36%) free of 463 GB
Total RAM: 3819 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:26:03, on 10.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16660)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe
C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe
C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Kaja.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Kaja\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: KMPlayer Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [QIP Internet Guardian] C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe /p
O4 - HKCU\..\Run: [LinkMagic for magicolor 1680MF] C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe -startup
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @C:\Windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\Windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: QipGuard - QIP.ru - C:\Program Files (x86)\QipGuard\QipGuard.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14380 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 27880528
\??\C:\Windows\system32\conhost.exe "-263771031-1445745350-1717042084-10559414459442900221878413990-18056626321475074719
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\system32\CxAudMsg64.exe
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files (x86)\Acer\Registration\GREGsvc.exe"
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE
taskeng.exe {40AF9A77-B06B-4E50-97AE-61E778E47C1E}
"C:\Program Files (x86)\QipGuard\QipGuard.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe" /p
"C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe" -startup
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
"C:\Windows\System32\StikyNot.exe"
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6140.0.1941096265\2072910596" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --gpu-vendor-id=0x1002 --gpu-device-id=0x9807 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.861.0.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.1.1603442756\873596211" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.2.1335046466\1928666265" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.3.1541087559\647551687" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.4.1173085881\1330665194" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.5.1074300482\1738663534" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.6.460652858\884104495" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.8.1862182171\997744551" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.10.1623881050\829044928" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.11.16317496\164571910" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="6140.12.1402323984\224531619" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.21.1293059602\561123706" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_37/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6140.48.1465440656\1953243041" /prefetch:673131151
"C:\Users\Kaja\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130601114258.dll [2012-05-25 94720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-16 62376]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2012-08-16 4171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]
QIPBHO Class - C:\Users\Kaja\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2011-10-12 142288]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07 1152264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
KMPlayer Toolbar - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-04-30 1527432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07 1152264]
{D4027C7F-154A-4066-A1AD-4243D8127440} - KMPlayer Toolbar - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-04-30 1527432]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2010-11-12 2588968]
"Power Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"QIP Internet Guardian"=C:\Users\Kaja\AppData\Roaming\QipGuard\QipGuard.exe [2011-10-12 191440]
"LinkMagic for magicolor 1680MF"=C:\Program Files (x86)\KONICA MINOLTA\magicolor 1680MF\LinkMagic for magicolor 1680MF\lmmc1680.exe [2008-08-26 5005312]
"ISUSPM"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-03-20 213936]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2009-07-14 427520]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SuiteTray"=C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2011-04-02 340848]
"EgisTecPMMUpdate"=C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [2011-03-29 408432]
"EgisUpdate"=C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [2011-03-29 202608]
"Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2010-06-02 1155928]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2011-07-01 1103440]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-05-24 336384]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
""= []
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2012-08-16 4171424]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-09-10 15:31:00 ----D---- C:\_OTM
2013-09-09 20:23:22 ----D---- C:\Program Files\trend micro
2013-09-09 20:23:20 ----D---- C:\rsit
2013-08-29 14:22:51 ----D---- C:\Users\Kaja\AppData\Roaming\CyberLink
2013-08-29 14:22:51 ----D---- C:\ProgramData\CyberLink
2013-08-27 21:58:03 ----D---- C:\Program Files (x86)\Cisco
2013-08-27 21:37:23 ----A---- C:\Windows\system32\bcmwlrc.dll
2013-08-27 21:37:19 ----D---- C:\Program Files\Broadcom
2013-08-27 21:24:46 ----D---- C:\Windows\system32\nn-NO
2013-08-27 21:24:46 ----D---- C:\Program Files (x86)\Atheros
2013-08-27 21:24:46 ----A---- C:\Windows\system32\athihvui.dll
2013-08-27 21:24:46 ----A---- C:\Windows\system32\athihvs.dll
2013-08-27 21:22:49 ----D---- C:\ProgramData\Atheros
2013-08-27 20:23:00 ----D---- C:\Program Files (x86)\DLLSuite
2013-08-27 19:38:03 ----D---- C:\Users\Kaja\AppData\Roaming\ParetoLogic
2013-08-27 19:38:03 ----D---- C:\Users\Kaja\AppData\Roaming\DriverCure
2013-08-27 19:37:24 ----D---- C:\ProgramData\ParetoLogic
2013-08-27 16:21:59 ----D---- C:\Program Files (x86)\SpeedFan
2013-08-21 14:59:13 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-08-21 14:59:10 ----A---- C:\Windows\system32\ieui.dll
2013-08-21 14:59:03 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-08-21 14:59:02 ----A---- C:\Windows\system32\iesetup.dll
2013-08-21 14:59:02 ----A---- C:\Windows\system32\iernonce.dll
2013-08-21 14:59:01 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-08-21 14:59:01 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-08-21 14:59:00 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-08-21 14:59:00 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-21 14:59:00 ----A---- C:\Windows\system32\ie4uinit.exe
2013-08-21 14:58:59 ----A---- C:\Windows\system32\iesysprep.dll
2013-08-21 14:58:58 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-08-21 14:58:54 ----A---- C:\Windows\system32\iertutil.dll
2013-08-21 14:58:46 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-08-21 14:58:45 ----A---- C:\Windows\system32\msfeeds.dll
2013-08-21 14:58:42 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-08-21 14:58:42 ----A---- C:\Windows\system32\jscript.dll
2013-08-21 14:58:39 ----A---- C:\Windows\system32\jscript9.dll
2013-08-21 14:58:33 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-08-21 14:58:30 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-08-21 14:58:28 ----A---- C:\Windows\system32\urlmon.dll
2013-08-21 14:58:22 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-08-21 14:58:22 ----A---- C:\Windows\system32\jsproxy.dll
2013-08-21 14:58:19 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-08-21 14:58:16 ----A---- C:\Windows\system32\wininet.dll
2013-08-21 14:58:10 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-08-21 14:58:02 ----A---- C:\Windows\system32\ieframe.dll
2013-08-21 14:57:57 ----A---- C:\Windows\system32\mshtml.dll
2013-08-21 14:57:43 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-08-20 20:02:01 ----D---- C:\Program Files (x86)\Drakensang Online
2013-08-20 14:39:13 ----A---- C:\Windows\system32\crypt32.dll
2013-08-20 14:39:11 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-08-20 14:39:10 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-08-20 14:39:10 ----A---- C:\Windows\system32\wintrust.dll
2013-08-20 14:39:09 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-08-20 14:39:08 ----A---- C:\Windows\system32\cryptsvc.dll
2013-08-20 14:39:07 ----A---- C:\Windows\system32\cryptnet.dll
2013-08-20 14:39:06 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-08-20 14:38:08 ----A---- C:\Windows\system32\rpcrt4.dll
2013-08-20 14:38:07 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-08-20 14:38:01 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-08-20 14:37:46 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-08-20 14:37:46 ----A---- C:\Windows\system32\tzres.dll
2013-08-20 14:37:26 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-08-20 14:37:24 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-08-20 14:37:20 ----A---- C:\Windows\system32\drivers\tcpip.sys
======List of files/folders modified in the last 1 month======
2013-09-10 17:26:03 ----D---- C:\Windows\Temp
2013-09-10 16:46:33 ----D---- C:\Windows\Minidump
2013-09-10 16:46:27 ----D---- C:\Windows
2013-09-10 16:44:06 ----D---- C:\Users\Kaja\AppData\Roaming\BitTorrent
2013-09-10 16:39:27 ----D---- C:\Windows\system32\config
2013-09-10 16:29:28 ----D---- C:\Program Files (x86)\The KMPlayer
2013-09-10 16:21:24 ----D---- C:\Windows\Prefetch
2013-09-10 15:44:02 ----SHD---- C:\System Volume Information
2013-09-09 20:23:22 ----RD---- C:\Program Files
2013-09-06 12:20:46 ----D---- C:\Users\Kaja\AppData\Roaming\vlc
2013-09-04 10:26:37 ----D---- C:\ProgramData\McAfee
2013-09-04 10:26:34 ----D---- C:\Program Files (x86)\McAfee
2013-09-03 10:40:24 ----D---- C:\Program Files\mcafee
2013-08-30 20:40:45 ----SHD---- C:\Windows\Installer
2013-08-30 20:40:03 ----D---- C:\Program Files (x86)\Calibre2
2013-08-29 14:22:51 ----HD---- C:\ProgramData
2013-08-29 12:07:05 ----D---- C:\ProgramData\Microsoft Help
2013-08-29 12:04:28 ----D---- C:\Windows\winsxs
2013-08-28 05:48:37 ----D---- C:\Windows\system32\LogFiles
2013-08-27 23:58:35 ----D---- C:\Windows\rescache
2013-08-27 21:58:03 ----RD---- C:\Program Files (x86)
2013-08-27 21:57:51 ----D---- C:\Windows\system32\en-US
2013-08-27 21:57:51 ----D---- C:\Windows\system32\cs-CZ
2013-08-27 21:57:51 ----D---- C:\Windows\System32
2013-08-27 21:57:19 ----D---- C:\Windows\system32\zh-HK
2013-08-27 21:57:18 ----D---- C:\Windows\system32\zh-TW
2013-08-27 21:57:18 ----D---- C:\Windows\system32\zh-CN
2013-08-27 21:57:18 ----D---- C:\Windows\system32\tr-TR
2013-08-27 21:57:18 ----D---- C:\Windows\system32\th-TH
2013-08-27 21:57:17 ----D---- C:\Windows\system32\sv-SE
2013-08-27 21:57:17 ----D---- C:\Windows\system32\sl-SI
2013-08-27 21:57:17 ----D---- C:\Windows\system32\sk-SK
2013-08-27 21:57:16 ----D---- C:\Windows\system32\ru-RU
2013-08-27 21:57:16 ----D---- C:\Windows\system32\ro-RO
2013-08-27 21:57:16 ----D---- C:\Windows\system32\pt-PT
2013-08-27 21:57:16 ----D---- C:\Windows\system32\pt-BR
2013-08-27 21:57:15 ----D---- C:\Windows\system32\pl-PL
2013-08-27 21:57:15 ----D---- C:\Windows\system32\nl-NL
2013-08-27 21:57:14 ----D---- C:\Windows\system32\nb-NO
2013-08-27 21:57:14 ----D---- C:\Windows\system32\lv-LV
2013-08-27 21:57:14 ----D---- C:\Windows\system32\lt-LT
2013-08-27 21:57:14 ----D---- C:\Windows\system32\ko-KR
2013-08-27 21:57:14 ----D---- C:\Windows\system32\ja-JP
2013-08-27 21:57:13 ----D---- C:\Windows\system32\it-IT
2013-08-27 21:57:13 ----D---- C:\Windows\system32\hu-HU
2013-08-27 21:57:13 ----D---- C:\Windows\system32\hr-HR
2013-08-27 21:57:13 ----D---- C:\Windows\system32\he-IL
2013-08-27 21:57:12 ----D---- C:\Windows\system32\fr-FR
2013-08-27 21:57:12 ----D---- C:\Windows\system32\fi-FI
2013-08-27 21:57:12 ----D---- C:\Windows\system32\et-EE
2013-08-27 21:57:12 ----D---- C:\Windows\system32\es-ES
2013-08-27 21:57:11 ----D---- C:\Windows\system32\el-GR
2013-08-27 21:57:11 ----D---- C:\Windows\system32\de-DE
2013-08-27 21:57:10 ----D---- C:\Windows\system32\da-DK
2013-08-27 21:57:10 ----D---- C:\Windows\system32\bg-BG
2013-08-27 21:57:09 ----D---- C:\Windows\system32\ar-SA
2013-08-27 21:25:14 ----D---- C:\Windows\system32\catroot
2013-08-27 21:25:11 ----D---- C:\Windows\system32\DriverStore
2013-08-27 21:25:09 ----D---- C:\Windows\inf
2013-08-27 21:24:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-08-27 20:24:58 ----D---- C:\Windows\system32\Tasks
2013-08-27 20:24:57 ----D---- C:\Program Files (x86)\Common Files
2013-08-27 20:24:56 ----D---- C:\Windows\Tasks
2013-08-27 20:16:22 ----D---- C:\Windows\SysWOW64
2013-08-27 16:42:18 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-08-25 21:46:03 ----D---- C:\Windows\system32\drivers
2013-08-25 21:45:55 ----D---- C:\Windows\system32\drivers\UMDF
2013-08-23 03:17:07 ----D---- C:\Windows\Microsoft.NET
2013-08-23 03:17:02 ----RSD---- C:\Windows\assembly
2013-08-21 19:21:28 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-08-21 19:21:27 ----D---- C:\Program Files (x86)\Internet Explorer
2013-08-21 19:21:26 ----D---- C:\Program Files\Internet Explorer
2013-08-21 15:00:15 ----D---- C:\Windows\system32\catroot2
2013-08-14 12:15:38 ----SD---- C:\Users\Kaja\AppData\Roaming\Microsoft
2013-08-14 12:04:16 ----RSD---- C:\Windows\Fonts
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-06-28 189936]
R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2012-02-22 647208]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2012-02-22 289664]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-06-28 1030952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-06-28 378944]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2011-07-25 22648]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2011-07-25 20520]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2011-07-25 62776]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-05-24 9359872]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-05-24 309760]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-03-30 114704]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2011-03-01 4720704]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 BTWAMPFL;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2011-01-10 349736]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2011-01-24 107560]
R3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2010-09-14 138280]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-02-15 39464]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-09-14 21416]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2011-03-25 1583744]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-06-01 283200]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-11-12 138024]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-01-25 77424]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\Windows\system32\drivers\mfeapfk.sys [2012-02-22 160792]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2012-02-22 229528]
R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2012-02-22 487296]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-28 44672]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 mferkdet;McAfee Inc. mferkdet; C:\Windows\system32\drivers\mferkdet.sys [2012-02-22 100912]
S3 PCDSRVC{91725DDC-9F3A1619-06020200}_0;PCDSRVC{91725DDC-9F3A1619-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\users\kaja\appdata\local\temp\567rhl9vhwq9\pcdrdiag\bin\pcdsrvc_x64.pkms []
S3 PCDSRVC{91725DDC-C25FB371-06020200}_0;PCDSRVC{91725DDC-C25FB371-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\users\kaja\appdata\local\temp\ik15fz47ncaa\pcdrdiag\bin\pcdsrvc_x64.pkms []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-12-01 250984]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-05-24 204288]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-05-12 249648]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2011-03-09 956192]
R2 CxAudMsg;@C:\Windows\system32\CxAudMsg64.exe,-100; C:\Windows\system32\CxAudMsg64.exe [2010-12-17 198784]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]
R2 GREGService;GREGService; C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2011-05-26 29696]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2012-05-25 199304]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2012-05-25 210616]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2012-05-25 162224]
R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2010-06-02 2804568]
R2 QipGuard;QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [2011-10-12 191440]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-01 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-06-07 191752]
S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-04-02 173424]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-01 116648]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-06-02 1255736]
S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
-----------------EOF-----------------