OTL log
OTL logfile created on: 9. 11. 2014 2:42:58 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\WHZYY\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.17088)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d. M. yyyy
7,89 Gb Total Physical Memory | 5,42 Gb Available Physical Memory | 68,74% Memory free
9,33 Gb Paging File | 6,64 Gb Available in Paging File | 71,21% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 467,82 Gb Total Space | 77,75 Gb Free Space | 16,62% Space Free | Partition Type: NTFS
Drive D: | 211,66 Gb Total Space | 128,96 Gb Free Space | 60,93% Space Free | Partition Type: NTFS
Computer Name: WHZY | User Name: WHZYY | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014/11/09 02:41:47 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\WHZYY\Desktop\OTL.exe
PRC - [2014/10/22 16:33:20 | 000,432,888 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2014/10/22 16:33:00 | 000,703,736 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2014/10/22 16:33:00 | 000,432,888 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2014/10/22 15:16:42 | 000,124,208 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
PRC - [2014/10/22 15:16:38 | 000,164,656 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
PRC - [2014/10/22 05:05:02 | 000,854,344 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014/10/21 17:52:24 | 022,869,088 | ---- | M] (Google) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe
PRC - [2014/09/13 01:52:04 | 036,414,624 | ---- | M] (Dropbox, Inc.) -- C:\Users\WHZYY\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2014/04/30 19:28:45 | 002,199,840 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
PRC - [2013/12/06 20:59:42 | 000,103,736 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrB.exe
PRC - [2013/10/30 19:09:08 | 002,990,304 | ---- | M] (Nota Inc.) -- C:\Program Files (x86)\Gyazo\GyStation.exe
PRC - [2013/01/07 23:25:30 | 000,384,888 | ---- | M] (BlueStack Systems, Inc.) -- c:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
PRC - [2012/09/06 12:50:40 | 001,124,288 | ---- | M] (Motorola Solutions, Inc.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
PRC - [2012/08/27 16:45:56 | 001,112,000 | ---- | M] (Motorola Solutions, Inc.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
========== Modules (No Company Name) ==========
MOD - [2014/11/09 02:23:30 | 000,043,008 | ---- | M] () -- c:\Users\WHZYY\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpsbmvt0.dll
MOD - [2014/11/09 02:22:35 | 001,160,704 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\_ssl.pyd
MOD - [2014/11/09 02:22:35 | 001,062,400 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\wx._controls_.pyd
MOD - [2014/11/09 02:22:35 | 000,811,008 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\wx._windows_.pyd
MOD - [2014/11/09 02:22:35 | 000,805,888 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\wx._gdi_.pyd
MOD - [2014/11/09 02:22:35 | 000,713,216 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\_hashlib.pyd
MOD - [2014/11/09 02:22:35 | 000,686,080 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\unicodedata.pyd
MOD - [2014/11/09 02:22:35 | 000,525,640 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\windows._lib_cacheinvalidation.pyd
MOD - [2014/11/09 02:22:35 | 000,167,936 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32gui.pyd
MOD - [2014/11/09 02:22:35 | 000,128,512 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\_elementtree.pyd
MOD - [2014/11/09 02:22:35 | 000,127,488 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\pyexpat.pyd
MOD - [2014/11/09 02:22:35 | 000,119,808 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32file.pyd
MOD - [2014/11/09 02:22:35 | 000,110,080 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\PyWinTypes27.dll
MOD - [2014/11/09 02:22:35 | 000,108,544 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32security.pyd
MOD - [2014/11/09 02:22:35 | 000,098,816 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32api.pyd
MOD - [2014/11/09 02:22:35 | 000,087,552 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\_ctypes.pyd
MOD - [2014/11/09 02:22:35 | 000,070,656 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\wx._html2.pyd
MOD - [2014/11/09 02:22:35 | 000,045,568 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\_socket.pyd
MOD - [2014/11/09 02:22:35 | 000,038,912 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32inet.pyd
MOD - [2014/11/09 02:22:35 | 000,027,136 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\_multiprocessing.pyd
MOD - [2014/11/09 02:22:35 | 000,025,600 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32pdh.pyd
MOD - [2014/11/09 02:22:35 | 000,024,064 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32pipe.pyd
MOD - [2014/11/09 02:22:35 | 000,018,432 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32event.pyd
MOD - [2014/11/09 02:22:35 | 000,017,408 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32profile.pyd
MOD - [2014/11/09 02:22:35 | 000,010,240 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\select.pyd
MOD - [2014/11/09 02:22:35 | 000,007,168 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\hashobjs_ext.pyd
MOD - [2014/11/09 02:22:34 | 001,175,040 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\wx._core_.pyd
MOD - [2014/11/09 02:22:34 | 000,735,232 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\wx._misc_.pyd
MOD - [2014/11/09 02:22:34 | 000,557,056 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\pysqlite2._sqlite.pyd
MOD - [2014/11/09 02:22:34 | 000,364,544 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\pythoncom27.dll
MOD - [2014/11/09 02:22:34 | 000,320,512 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32com.shell.shell.pyd
MOD - [2014/11/09 02:22:34 | 000,122,368 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\wx._wizard.pyd
MOD - [2014/11/09 02:22:34 | 000,078,336 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\wx._animate.pyd
MOD - [2014/11/09 02:22:34 | 000,035,840 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32process.pyd
MOD - [2014/11/09 02:22:34 | 000,022,528 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32ts.pyd
MOD - [2014/11/09 02:22:34 | 000,011,264 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Temp\_MEI48842\win32crypt.pyd
MOD - [2014/11/08 21:16:46 | 007,041,536 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\3ae088663a4482609edd33763e1261bb\System.Core.ni.dll
MOD - [2014/11/08 21:16:40 | 010,051,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\dfb8b0724c39cdbbfcbb6f83a5be22cc\System.ni.dll
MOD - [2014/11/08 21:16:34 | 016,953,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\391541c89ed7585fc7e8936c43cee387\mscorlib.ni.dll
MOD - [2014/10/22 05:04:57 | 008,910,664 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll
MOD - [2014/10/22 05:04:51 | 001,042,760 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libglesv2.dll
MOD - [2014/10/22 05:04:49 | 000,211,272 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libegl.dll
MOD - [2014/10/22 05:04:48 | 001,681,224 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll
MOD - [2014/09/13 09:21:12 | 002,997,248 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\017ba5623263deaab4e228cf294c4812\System.IdentityModel.ni.dll
MOD - [2014/09/13 01:20:59 | 003,610,624 | ---- | M] () -- C:\Users\WHZYY\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2014/09/11 10:30:26 | 019,720,192 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\2a94b8581236984c29b2eeed12b599d6\System.ServiceModel.ni.dll
MOD - [2014/09/11 07:35:32 | 000,122,880 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\b876b8527a4f5d88073e672fc4dfc570\SMDiagnostics.ni.dll
MOD - [2014/09/11 07:35:31 | 000,794,112 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\c69f0ae329662091fb788f851e30461a\System.ServiceModel.Internals.ni.dll
MOD - [2014/09/11 07:24:28 | 007,668,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\10216950450614b68fe2f42e33fa3c80\System.Xml.ni.dll
MOD - [2014/09/11 07:24:24 | 001,900,544 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\0695213fe098bc158d07e45203be633b\System.Xaml.ni.dll
MOD - [2014/09/11 07:24:22 | 012,877,824 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\f19197acf91e929a378151a745976330\System.Windows.Forms.ni.dll
MOD - [2014/09/11 07:24:00 | 002,822,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\8342e2bcd229103fdfc7abd2bcd26ea3\System.Runtime.Serialization.ni.dll
MOD - [2014/09/11 07:23:54 | 007,329,792 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\1a058ea8e6bb73e4c6b4655be67a729a\System.Data.ni.dll
MOD - [2014/09/11 07:23:48 | 000,975,872 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\270a200e4a55f281235dcbde07450912\System.Configuration.ni.dll
MOD - [2014/09/11 07:22:52 | 018,785,280 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\d96c3e36abc8c0676be9ea0756c6a5cb\PresentationFramework.ni.dll
MOD - [2014/09/11 07:22:26 | 011,021,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\65b3f39148fe1fcac216b1430a7efece\PresentationCore.ni.dll
MOD - [2014/09/11 07:22:20 | 003,941,888 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\fa7822975c29eda31e6b416ab8ad774b\WindowsBase.ni.dll
MOD - [2014/05/20 03:44:03 | 000,012,120 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\coprocmanager\detoured.dll
MOD - [2014/02/17 20:16:40 | 000,260,096 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsForm0b574481#\5473f539c6bf54f412085dc9e6dbde3a\WindowsFormsIntegration.ni.dll
MOD - [2014/02/17 20:16:07 | 000,190,976 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\30caed6dd3390553adf0d78426beb375\UIAutomationTypes.ni.dll
MOD - [2014/02/17 20:14:37 | 000,146,944 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Numerics\fb3c48d0b572fe532f915951406516f7\System.Numerics.ni.dll
MOD - [2014/02/17 20:05:54 | 000,222,208 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Serv759bfb78#\0227d737c879308fad54b7d71b172d37\System.ServiceProcess.ni.dll
MOD - [2014/02/17 20:05:04 | 001,180,160 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\dd78e73a53e65bcad68c4e570bdacb05\System.Management.ni.dll
MOD - [2014/02/17 20:05:02 | 001,644,544 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\61be23d6a688188e3419a1eb46fc9d9d\System.Drawing.ni.dll
MOD - [2014/02/17 20:04:43 | 000,475,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatioaec034ca#\d3abe72a65b16c5ca129dd4509450190\PresentationFramework.Aero2.ni.dll
MOD - [2013/08/23 20:01:44 | 025,100,288 | ---- | M] () -- C:\Users\WHZYY\AppData\Roaming\Dropbox\bin\libcef.dll
========== Services (SafeList) ==========
SRV:
64bit: - [2014/10/31 17:40:14 | 021,569,024 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)
SRV:
64bit: - [2014/05/30 00:02:28 | 000,439,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:
64bit: - [2014/03/29 09:05:59 | 000,016,056 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:
64bit: - [2013/08/16 06:39:26 | 002,371,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:
64bit: - [2013/06/24 23:54:45 | 000,263,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:
64bit: - [2013/06/01 10:19:58 | 000,207,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:
64bit: - [2013/05/04 07:58:02 | 000,470,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:
64bit: - [2013/05/04 07:57:05 | 000,179,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:
64bit: - [2013/04/09 05:48:42 | 000,169,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:
64bit: - [2013/03/13 20:50:51 | 002,675,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:
64bit: - [2013/03/13 20:20:53 | 000,116,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:
64bit: - [2013/03/02 03:45:07 | 000,171,008 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:
64bit: - [2013/03/02 03:45:05 | 000,180,224 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:
64bit: - [2013/01/10 00:23:16 | 001,964,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:
64bit: - [2012/07/26 04:07:47 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:
64bit: - [2012/07/26 04:07:40 | 000,283,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:
64bit: - [2012/07/26 04:07:25 | 000,012,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:
64bit: - [2012/07/26 04:06:34 | 000,743,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:
64bit: - [2012/07/26 04:06:33 | 000,161,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:
64bit: - [2012/07/26 04:06:33 | 000,073,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:
64bit: - [2012/07/26 04:05:55 | 000,059,904 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:
64bit: - [2012/07/26 04:05:34 | 000,037,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:
64bit: - [2012/07/26 04:05:24 | 000,342,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:
64bit: - [2012/07/26 04:05:08 | 000,122,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AUInstallAgent.dll -- (AllUserInstallAgent)
SRV:
64bit: - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:
64bit: - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:
64bit: - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:
64bit: - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:
64bit: - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:
64bit: - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV - [2014/11/08 19:47:54 | 003,092,480 | ---- | M] (LogMeIn Inc.) [Auto | Stopped] -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2014/10/22 16:33:20 | 000,432,888 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2014/10/22 16:33:00 | 000,432,888 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2014/10/22 15:16:38 | 000,164,656 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe -- (Avira.OE.ServiceHost)
SRV - [2014/04/03 19:21:48 | 000,315,008 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/12/06 20:59:42 | 000,103,736 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrB.exe -- (PnkBstrB)
SRV - [2013/09/03 01:38:28 | 000,759,192 | ---- | M] (Tunngle.net GmbH) [On_Demand | Stopped] -- C:\Program Files (x86)\Tunngle\TnglCtrl.exe -- (TunngleService)
SRV - [2013/03/13 20:50:51 | 002,675,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2013/02/04 17:43:22 | 000,155,824 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe -- (Sony PC Companion)
SRV - [2013/01/07 23:25:30 | 000,384,888 | ---- | M] (BlueStack Systems, Inc.) [Auto | Running] -- c:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe -- (BstHdLogRotatorSvc)
SRV - [2013/01/07 23:25:08 | 000,393,080 | ---- | M] (BlueStack Systems, Inc.) [Auto | Stopped] -- c:\Program Files (x86)\BlueStacks\HD-Service.exe -- (BstHdAndroidSvc)
SRV - [2012/09/06 12:50:40 | 001,124,288 | ---- | M] (Motorola Solutions, Inc.) [Auto | Running] -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe -- (Bluetooth OBEX Service)
SRV - [2012/09/02 02:07:22 | 000,014,904 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2012/08/27 16:45:56 | 001,112,000 | ---- | M] (Motorola Solutions, Inc.) [Auto | Running] -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe -- (Bluetooth Device Monitor)
SRV - [2012/07/26 04:20:04 | 000,018,432 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
========== Driver Services (SafeList) ==========
DRV:
64bit: - [2014/11/03 18:12:12 | 000,046,136 | -H-- | M] (LogMeIn Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\Hamdrv.sys -- (hamachi)
DRV:
64bit: - [2014/10/22 16:33:00 | 000,131,608 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\avipbb.sys -- (avipbb)
DRV:
64bit: - [2014/10/22 16:33:00 | 000,119,272 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\Windows\SysNative\Drivers\avgntflt.sys -- (avgntflt)
DRV:
64bit: - [2014/10/22 16:33:00 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\avkmgr.sys -- (avkmgr)
DRV:
64bit: - [2014/09/28 18:55:06 | 000,030,424 | ---- | M] (Sony Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ggsomc.sys -- (ggsomc)
DRV:
64bit: - [2014/09/28 18:55:06 | 000,016,088 | ---- | M] (Sony Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ggflt.sys -- (ggflt)
DRV:
64bit: - [2014/09/14 09:43:27 | 001,385,272 | ---- | M] (Motorola Solutions, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\btmhsf.sys -- (btmhsf)
DRV:
64bit: - [2014/09/14 09:43:27 | 000,069,088 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\iBtFltCoex.sys -- (ibtfltcoex)
DRV:
64bit: - [2014/07/06 12:59:26 | 000,359,128 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV:
64bit: - [2014/07/06 12:59:19 | 000,163,536 | ---- | M] (Qualcomm Atheros, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\e22w8x64.sys -- (Ke2200)
DRV:
64bit: - [2014/07/06 12:59:08 | 000,100,312 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\TeeDriverx64.sys -- (MEIx64)
DRV:
64bit: - [2014/07/06 12:58:30 | 003,349,984 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\NETwew00.sys -- (NETwNe64)
DRV:
64bit: - [2014/05/20 03:44:03 | 000,032,544 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\nvpciflt.sys -- (nvpciflt)
DRV:
64bit: - [2014/04/30 19:28:22 | 000,018,776 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms)
DRV:
64bit: - [2014/03/31 17:42:44 | 000,040,392 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
DRV:
64bit: - [2014/03/28 20:19:38 | 000,035,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdBoot.sys -- (WdBoot)
DRV:
64bit: - [2014/03/23 23:11:52 | 000,269,592 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WdFilter.sys -- (WdFilter)
DRV:
64bit: - [2014/01/22 08:52:10 | 000,206,080 | ---- | M] (DEVGURU Co., LTD.(
www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssudmdm.sys -- (ssudmdm)
DRV:
64bit: - [2014/01/22 08:52:10 | 000,108,800 | ---- | M] (DEVGURU Co., LTD.(
www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ssudbus.sys -- (dg_ssudbus)
DRV:
64bit: - [2013/12/14 13:28:09 | 000,303,616 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\Drivers\atksgt.sys -- (atksgt)
DRV:
64bit: - [2013/12/14 13:26:50 | 000,035,328 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\Drivers\lirsgt.sys -- (lirsgt)
DRV:
64bit: - [2013/12/08 15:36:36 | 000,386,680 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\sptd.sys -- (sptd)
DRV:
64bit: - [2013/10/10 12:53:35 | 000,096,600 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\wfplwfs.sys -- (WFPLWFS)
DRV:
64bit: - [2013/10/05 07:10:20 | 000,285,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\spaceport.sys -- (spaceport)
DRV:
64bit: - [2013/10/02 03:50:07 | 000,447,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\USBHUB3.SYS -- (USBHUB3)
DRV:
64bit: - [2013/09/09 21:09:30 | 000,254,528 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:
64bit: - [2013/08/16 06:41:13 | 000,058,200 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\Drivers\dam.sys -- (dam)
DRV:
64bit: - [2013/08/10 07:30:22 | 000,151,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\tpm.sys -- (TPM)
DRV:
64bit: - [2013/07/09 09:04:07 | 000,120,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:
64bit: - [2013/07/02 02:41:47 | 000,337,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\USBXHCI.SYS -- (USBXHCI)
DRV:
64bit: - [2013/07/02 02:41:47 | 000,213,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\UCX01000.SYS -- (UCX01000)
DRV:
64bit: - [2013/06/29 07:15:54 | 000,195,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\sdbus.sys -- (sdbus)
DRV:
64bit: - [2013/06/01 04:08:57 | 000,037,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:
64bit: - [2013/03/13 20:55:39 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hidi2c.sys -- (hidi2c)
DRV:
64bit: - [2013/03/13 20:50:51 | 000,022,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\fxppm.sys -- (FxPPM)
DRV:
64bit: - [2013/03/13 20:42:41 | 000,056,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\sdstor.sys -- (sdstor)
DRV:
64bit: - [2013/03/13 20:22:22 | 000,027,880 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:
64bit: - [2013/03/13 20:20:33 | 003,265,256 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\evbda.sys -- (ebdrv)
DRV:
64bit: - [2013/03/13 20:20:33 | 000,533,224 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\bxvbda.sys -- (b06bdrv)
DRV:
64bit: - [2013/03/13 18:26:15 | 000,295,760 | ---- | M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\ETD.sys -- (ETD)
DRV:
64bit: - [2013/03/13 18:25:16 | 000,032,344 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\MBfilt64.sys -- (MBfilt)
DRV:
64bit: - [2013/03/13 18:23:17 | 009,004,384 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\igdkmd64.sys -- (igfx)
DRV:
64bit: - [2013/03/13 18:23:05 | 000,342,528 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\IntcDAud.sys -- (IntcDAud)
DRV:
64bit: - [2013/03/02 11:57:46 | 000,077,544 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\storahci.sys -- (storahci)
DRV:
64bit: - [2013/03/02 11:39:38 | 000,069,864 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\pdc.sys -- (pdc)
DRV:
64bit: - [2013/01/10 02:53:32 | 000,028,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:
64bit: - [2012/11/27 04:55:44 | 000,029,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\BthhfHid.sys -- (bthhfhid)
DRV:
64bit: - [2012/09/25 07:09:26 | 000,074,096 | ---- | M] (Qualcomm Atheros, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\bwcW8x64.sys -- (BfLwf)
DRV:
64bit: - [2012/09/02 02:01:56 | 000,647,736 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\iaStorA.sys -- (iaStorA)
DRV:
64bit: - [2012/08/27 16:48:12 | 000,121,728 | ---- | M] (Motorola Solutions, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\btmaux.sys -- (btmaux)
DRV:
64bit: - [2012/07/31 09:45:10 | 000,038,992 | ---- | M] (Screaming Bee LLC) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\ScreamingBAudio64.sys -- (ScreamBAudioSvc)
DRV:
64bit: - [2012/07/26 06:26:46 | 000,025,328 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:
64bit: - [2012/07/26 06:26:45 | 000,033,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\condrv.sys -- (condrv)
DRV:
64bit: - [2012/07/26 06:00:58 | 000,322,800 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:
64bit: - [2012/07/26 06:00:58 | 000,106,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\VerifierExt.sys -- (VerifierExt)
DRV:
64bit: - [2012/07/26 06:00:58 | 000,097,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\uaspstor.sys -- (UASPStor)
DRV:
64bit: - [2012/07/26 06:00:57 | 000,077,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\acpiex.sys -- (acpiex)
DRV:
64bit: - [2012/07/26 06:00:55 | 000,064,240 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\mvumis.sys -- (mvumis)
DRV:
64bit: - [2012/07/26 06:00:55 | 000,030,960 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\stexstor.sys -- (stexstor)
DRV:
64bit: - [2012/07/26 06:00:52 | 000,092,400 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:
64bit: - [2012/07/26 06:00:52 | 000,081,136 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\lsi_sss.sys -- (LSI_SSS)
DRV:
64bit: - [2012/07/26 06:00:52 | 000,064,752 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\HpSAMD.sys -- (HpSAMD)
DRV:
64bit: - [2012/07/26 06:00:51 | 000,113,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:
64bit: - [2012/07/26 06:00:51 | 000,081,136 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\EhStorClass.sys -- (EhStorClass)
DRV:
64bit: - [2012/07/26 06:00:49 | 000,258,288 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsbs.sys -- (amdsbs)
DRV:
64bit: - [2012/07/26 06:00:49 | 000,106,736 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\3ware.sys -- (3ware)
DRV:
64bit: - [2012/07/26 06:00:49 | 000,076,016 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdsata.sys -- (amdsata)
DRV:
64bit: - [2012/07/26 06:00:48 | 000,026,352 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\Drivers\amdxata.sys -- (amdxata)
DRV:
64bit: - [2012/07/26 05:57:54 | 000,361,200 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\clfs.sys -- (CLFS)
DRV:
64bit: - [2012/07/26 05:53:16 | 000,067,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vpci.sys -- (vpci)
DRV:
64bit: - [2012/07/26 04:17:38 | 000,036,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\terminpt.sys -- (terminpt)
DRV:
64bit: - [2012/07/26 03:29:14 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\mshidumdf.sys -- (mshidumdf)
DRV:
64bit: - [2012/07/26 03:29:08 | 000,048,640 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:
64bit: - [2012/07/26 03:29:03 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\HyperVideo.sys -- (HyperVideo)
DRV:
64bit: - [2012/07/26 03:28:52 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\BasicRender.sys -- (BasicRender)
DRV:
64bit: - [2012/07/26 03:27:58 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\vmgencounter.sys -- (gencounter)
DRV:
64bit: - [2012/07/26 03:27:41 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\kdnic.sys -- (kdnic)
DRV:
64bit: - [2012/07/26 03:27:37 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpitime.sys -- (acpitime)
DRV:
64bit: - [2012/07/26 03:27:33 | 000,023,552 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\npsvctrig.sys -- (npsvctrig)
DRV:
64bit: - [2012/07/26 03:27:29 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:
64bit: - [2012/07/26 03:27:16 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\acpipagr.sys -- (acpipagr)
DRV:
64bit: - [2012/07/26 03:27:01 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\hyperkbd.sys -- (hyperkbd)
DRV:
64bit: - [2012/07/26 03:26:57 | 000,089,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\xusb22.sys -- (xusb22)
DRV:
64bit: - [2012/07/26 03:26:46 | 000,062,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SerCx.sys -- (SerCx)
DRV:
64bit: - [2012/07/26 03:26:43 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\SpbCx.sys -- (SpbCx)
DRV:
64bit: - [2012/07/26 03:26:34 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:
64bit: - [2012/07/26 03:26:13 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\bthhfenum.sys -- (BthHFEnum)
DRV:
64bit: - [2012/07/26 03:25:57 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\dmvsc.sys -- (dmvsc)
DRV:
64bit: - [2012/07/26 03:25:56 | 000,057,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:
64bit: - [2012/07/26 03:25:13 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\wpcfltr.sys -- (wpcfltr)
DRV:
64bit: - [2012/07/26 03:25:02 | 000,202,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\BthLEEnum.sys -- (BthLEEnum)
DRV:
64bit: - [2012/07/26 03:25:01 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:
64bit: - [2012/07/26 03:23:53 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\mslldp.sys -- (MsLldp)
DRV:
64bit: - [2012/07/26 03:23:42 | 000,097,792 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\Drivers\Ndu.sys -- (Ndu)
DRV:
64bit: - [2012/06/02 15:31:56 | 000,589,824 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\Rt630x64.sys -- (RTL8168)
DRV:
64bit: - [2009/09/16 07:02:42 | 000,031,232 | ---- | M] (Tunngle.net) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\tap0901t.sys -- (tap0901t)
DRV - [2013/02/01 17:34:10 | 000,019,952 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys -- (ipadtst)
DRV - [2013/01/07 23:25:20 | 000,071,032 | ---- | M] (BlueStack Systems) [Kernel | Auto | Running] -- c:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys -- (BstHdDrv)
DRV - [2012/10/26 03:45:52 | 000,013,368 | ---- | M] (MSI) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys -- (NTIOLib_1_0_3)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:
64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1364888623-3007056578-2871405216-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-1364888623-3007056578-2871405216-1002\..\SearchScopes,DefaultScope = {568E7922-4150-4E06-BBC1-23095D060860}
IE - HKU\S-1-5-21-1364888623-3007056578-2871405216-1002\..\SearchScopes\{568E7922-4150-4E06-BBC1-23095D060860}: "URL" =
http://www.bing.com/search?q={searchTer ... &pc=MAMIJS;
IE - HKU\S-1-5-21-1364888623-3007056578-2871405216-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledAddons: %7B546f7A73-c736-cf2d-c542-54687f7a1a32%7D:1
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:28.0
FF - user.js - File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.60.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.60.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/03/29 13:49:16 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/03/29 13:49:17 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 28.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/03/29 13:49:16 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 28.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/03/29 13:49:17 | 000,000,000 | ---D | M]
[2013/10/06 22:03:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\WHZYY\AppData\Roaming\Mozilla\Extensions
[2014/11/09 02:00:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\WHZYY\AppData\Roaming\Mozilla\Firefox\Profiles\aivxr4c5.default\extensions
[2013/12/06 22:47:24 | 000,000,000 | ---D | M] (Flashblock) -- C:\Users\WHZYY\AppData\Roaming\Mozilla\Firefox\Profiles\aivxr4c5.default\extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a}
[2014/11/08 19:53:23 | 000,000,000 | ---D | M] (.) -- C:\Users\WHZYY\AppData\Roaming\Mozilla\Firefox\Profiles\aivxr4c5.default\extensions\{546f7A73-c736-cf2d-c542-54687f7a1a32}
[2014/11/09 02:00:28 | 000,000,000 | ---D | M] (Avira Browser Safety) -- C:\Users\WHZYY\AppData\Roaming\Mozilla\Firefox\Profiles\aivxr4c5.default\extensions\
abs@avira.com
[2013/12/08 15:36:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\WHZYY\AppData\Roaming\Mozilla\Firefox\Profilesaivxr4c5.default\extensions
[2013/12/08 15:36:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\WHZYY\AppData\Roaming\Mozilla\Firefox\Profilesaivxr4c5.default\extensions\staged
[2014/10/04 01:01:25 | 000,226,542 | ---- | M] () (No name found) -- C:\Users\WHZYY\AppData\Roaming\Mozilla\Firefox\Profiles\aivxr4c5.default\extensions\
firefox-hotfix@mozilla.org.xpi
[2014/11/08 16:44:29 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/03/29 13:49:26 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
========== Chrome ==========
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.8_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgpffljkgjmijjdmjbdppndoojdgboe\3.2.0_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.7_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecdfddndpamlpfpicfeoblidlbnmcpco\3.1_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.0_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk\1.4.1_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdgkfajodaliacghnafobjnclblcfmlm\1.0_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\WHZYY\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2014/11/08 20:46:24 | 000,000,035 | ---- | M]) - C:\Windows\SysNative\Drivers\etc\hosts
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:
64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:
64bit: - HKLM..\Run: [BTMTrayAgent] C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll (Motorola Solutions, Inc.)
O4:
64bit: - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
O4:
64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:
64bit: - HKLM..\Run: [ShadowPlay] C:\Windows\SysNative\nvspcap64.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent File not found
O4 - HKU\S-1-5-21-1364888623-3007056578-2871405216-1002..\Run: [CCleaner Monitoring] C:\Program Files (x86)\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-1364888623-3007056578-2871405216-1002..\Run: [GoogleDriveSync] C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google)
O4 - HKU\S-1-5-21-1364888623-3007056578-2871405216-1002..\Run: [Gyazo] C:\Program Files (x86)\Gyazo\GyStation.exe (Nota Inc.)
O4 - Startup: C:\Users\WHZYY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip ()
O4 - Startup: C:\Users\WHZYY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\WHZYY\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideSCAHealth = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-1364888623-3007056578-2871405216-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
O8:
64bit: - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm ()
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm ()
O13
64bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2C8D1927-0368-47D1-A3D2-630819F691E8}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{77227F01-70A9-458E-801A-63FBA2F9D36C}: DhcpNameServer = 7.254.254.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8F3315DD-DAAF-48E3-BA8D-943053396A68}: DhcpNameServer = 192.168.100.1
O18:
64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:
64bit: - Protocol\Handler\wlpg - No CLSID value found
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\System32\Userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (bj.dll) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:
64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O30 - LSA: Security Packages - (livessp) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs:
64bit: wlidsvc - C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
NetSvcs:
64bit: DsmSvc - C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
NetSvcs:
64bit: NcaSvc - C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
NetSvcs:
64bit: SystemEventsBroker - C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)
Drivers32:
64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:
64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FMVC - C:\Windows\SysWow64\fmcodec.DLL (Fox Magic Software)
Drivers32: VIDC.FPS1 - C:\Windows\SysWow64\frapsvid.dll (Beepa P/L)
Drivers32: vidc.VP60 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 30 Days ==========
[2014/11/09 02:41:32 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\WHZYY\Desktop\OTL.exe
[2014/11/09 02:07:08 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\AppData\Roaming\Avira
[2014/11/09 02:03:14 | 000,131,608 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2014/11/09 02:03:14 | 000,119,272 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2014/11/09 02:03:14 | 000,028,600 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2014/11/09 02:00:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2014/11/09 01:59:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
[2014/11/09 01:59:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2014/11/09 01:51:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab Setup Files
[2014/11/09 01:04:52 | 000,131,800 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2014/11/09 01:04:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
[2014/11/09 01:04:04 | 000,096,472 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
[2014/11/09 01:03:51 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\Desktop\mbar
[2014/11/09 00:58:01 | 014,439,144 | ---- | C] (Malwarebytes Corp.) -- C:\Users\WHZYY\Desktop\mbar-1.08.0.1001.exe
[2014/11/09 00:37:06 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\AppData\Roaming\BitTorrent
[2014/11/08 23:39:39 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\Desktop\Smart
[2014/11/08 20:18:04 | 000,000,000 | ---D | C] -- C:\Windows\tasks\ImCleanDisabled
[2014/11/08 19:43:48 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\Desktop\FRST-OlderVersion
[2014/11/08 19:18:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2014/11/08 19:18:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LogMeIn Hamachi
[2014/11/08 17:51:09 | 000,000,000 | -HSD | C] -- C:\found.000
[2014/11/08 16:51:04 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/11/08 15:41:30 | 000,000,000 | ---D | C] -- C:\FRST
[2014/11/08 15:18:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CCleaner
[2014/11/03 18:12:12 | 000,046,136 | -H-- | C] (LogMeIn Inc.) -- C:\Windows\SysNative\drivers\Hamdrv.sys
[2014/10/14 00:09:46 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\AppData\Roaming\MKKE
[2014/10/13 23:58:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mortal Kombat Complete Edition
[2014/10/13 18:53:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cheat Engine 6.4
[2014/10/13 18:50:54 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\AppData\Roaming\fizzy
[2014/10/13 16:47:44 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\Documents\Ghost Games
[2014/10/13 12:19:44 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\Documents\Battlefield 4
[2014/10/13 08:16:12 | 000,000,000 | ---D | C] -- C:\Users\WHZYY\Desktop\Vizitka
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2014/11/09 02:44:28 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014/11/09 02:41:47 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\WHZYY\Desktop\OTL.exe
[2014/11/09 02:18:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/11/09 02:16:08 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2014/11/09 02:16:03 | 2483,630,079 | -HS- | M] () -- C:\hiberfil.sys
[2014/11/09 02:09:01 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/11/09 02:00:00 | 000,001,143 | ---- | M] () -- C:\Users\Public\Desktop\Avira.lnk
[2014/11/09 01:57:22 | 000,659,544 | ---- | M] () -- C:\Users\WHZYY\Documents\cc_20141109_015718.reg
[2014/11/09 01:56:50 | 000,001,031 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014/11/09 01:35:19 | 000,052,300 | ---- | M] () -- C:\Users\WHZYY\Desktop\tdsss.zip
[2014/11/09 01:33:19 | 000,000,715 | ---- | M] () -- C:\Users\WHZYY\Desktop\mbar-log-2014-11-09 (01-05-01).rar
[2014/11/09 01:04:52 | 000,131,800 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2014/11/09 01:04:04 | 000,096,472 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
[2014/11/09 00:58:22 | 014,439,144 | ---- | M] (Malwarebytes Corp.) -- C:\Users\WHZYY\Desktop\mbar-1.08.0.1001.exe
[2014/11/09 00:37:42 | 000,000,879 | ---- | M] () -- C:\Users\WHZYY\Desktop\BitTorrent.lnk
[2014/11/08 23:41:49 | 000,000,292 | ---- | M] () -- C:\Users\WHZYY\Desktop\DiskInfo.ini
[2014/11/08 23:38:30 | 002,664,590 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/11/08 23:38:30 | 000,791,060 | ---- | M] () -- C:\Windows\SysNative\perfh00C.dat
[2014/11/08 23:38:30 | 000,728,526 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2014/11/08 23:38:30 | 000,711,282 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/11/08 23:38:30 | 000,155,620 | ---- | M] () -- C:\Windows\SysNative\perfc00C.dat
[2014/11/08 23:38:30 | 000,148,542 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2014/11/08 23:38:30 | 000,133,150 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/11/08 23:34:36 | 000,765,814 | ---- | M] () -- C:\Users\WHZYY\Desktop\asdqwexcxcxc.png
[2014/11/08 23:10:51 | 000,980,551 | ---- | M] () -- C:\Users\WHZYY\Desktop\asodkqwodkoyk.png
[2014/11/08 21:44:01 | 000,002,193 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/11/08 20:46:24 | 000,000,035 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2014/11/08 19:53:17 | 000,000,008 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2014/11/08 19:18:18 | 000,000,936 | ---- | M] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2014/11/08 16:50:26 | 002,145,792 | ---- | M] () -- C:\Users\WHZYY\Desktop\AdwCleaner.exe
[2014/11/08 16:42:11 | 001,441,791 | ---- | M] () -- C:\Users\WHZYY\Desktop\Untitled-1.psd
[2014/11/08 15:45:28 | 000,012,084 | ---- | M] () -- C:\Users\WHZYY\Desktop\Addition.zip
[2014/11/08 15:45:06 | 000,012,100 | ---- | M] () -- C:\Users\WHZYY\Desktop\Addition.rar
[2014/11/08 12:02:16 | 000,001,456 | ---- | M] () -- C:\Users\WHZYY\AppData\Local\Adobe Save for Web 13.0 Prefs
[2014/11/08 12:02:13 | 001,035,289 | ---- | M] () -- C:\Users\WHZYY\Desktop\speedfree1.jpg
[2014/11/03 18:12:12 | 000,046,136 | -H-- | M] (LogMeIn Inc.) -- C:\Windows\SysNative\drivers\Hamdrv.sys
[2014/10/31 19:44:55 | 000,633,856 | ---- | M] () -- C:\Windows\SysWow64\xliveinstallhost.exe
[2014/10/31 19:42:55 | 000,728,064 | ---- | M] () -- C:\Windows\SysWow64\MSIService.exe
[2014/10/31 19:42:15 | 000,828,416 | ---- | M] () -- C:\Windows\SysWow64\javaws.exe
[2014/10/31 19:42:15 | 000,736,256 | ---- | M] () -- C:\Windows\SysWow64\javaw.exe
[2014/10/31 19:41:41 | 001,265,152 | ---- | M] () -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014/10/22 16:33:00 | 000,131,608 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2014/10/22 16:33:00 | 000,119,272 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2014/10/22 16:33:00 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2014/10/13 23:58:18 | 000,000,711 | ---- | M] () -- C:\Users\Public\Desktop\Cat-A-Cat Games.lnk
[2014/10/13 23:58:17 | 000,000,728 | ---- | M] () -- C:\Users\Public\Desktop\Mortal Kombat Complete Edition.lnk
[2014/10/13 18:53:42 | 000,001,099 | ---- | M] () -- C:\Users\WHZYY\Desktop\Cheat Engine.lnk
[2014/10/13 13:49:35 | 000,000,110 | ---- | M] () -- C:\Users\WHZYY\Desktop\mok.bat
[2014/10/13 09:18:10 | 097,726,398 | ---- | M] () -- C:\Users\WHZYY\Desktop\IMG_2030.psd
[2014/10/10 20:16:24 | 000,093,330 | ---- | M] () -- C:\Users\WHZYY\Desktop\3.jpg
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2014/11/09 02:44:28 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014/11/09 02:00:00 | 000,001,143 | ---- | C] () -- C:\Users\Public\Desktop\Avira.lnk
[2014/11/09 01:57:20 | 000,659,544 | ---- | C] () -- C:\Users\WHZYY\Documents\cc_20141109_015718.reg
[2014/11/09 01:56:50 | 000,001,031 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014/11/09 01:34:10 | 000,052,300 | ---- | C] () -- C:\Users\WHZYY\Desktop\tdsss.zip
[2014/11/09 01:33:19 | 000,000,715 | ---- | C] () -- C:\Users\WHZYY\Desktop\mbar-log-2014-11-09 (01-05-01).rar
[2014/11/09 00:37:42 | 000,000,879 | ---- | C] () -- C:\Users\WHZYY\Desktop\BitTorrent.lnk
[2014/11/08 23:39:39 | 000,000,292 | ---- | C] () -- C:\Users\WHZYY\Desktop\DiskInfo.ini
[2014/11/08 23:34:36 | 000,765,814 | ---- | C] () -- C:\Users\WHZYY\Desktop\asdqwexcxcxc.png
[2014/11/08 23:10:51 | 000,980,551 | ---- | C] () -- C:\Users\WHZYY\Desktop\asodkqwodkoyk.png
[2014/11/08 19:18:18 | 000,000,936 | ---- | C] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2014/11/08 16:50:17 | 002,145,792 | ---- | C] () -- C:\Users\WHZYY\Desktop\AdwCleaner.exe
[2014/11/08 16:42:10 | 001,441,791 | ---- | C] () -- C:\Users\WHZYY\Desktop\Untitled-1.psd
[2014/11/08 15:45:28 | 000,012,084 | ---- | C] () -- C:\Users\WHZYY\Desktop\Addition.zip
[2014/11/08 15:45:06 | 000,012,100 | ---- | C] () -- C:\Users\WHZYY\Desktop\Addition.rar
[2014/11/08 12:02:09 | 001,035,289 | ---- | C] () -- C:\Users\WHZYY\Desktop\speedfree1.jpg
[2014/10/13 23:58:18 | 000,000,711 | ---- | C] () -- C:\Users\Public\Desktop\Cat-A-Cat Games.lnk
[2014/10/13 23:58:17 | 000,000,728 | ---- | C] () -- C:\Users\Public\Desktop\Mortal Kombat Complete Edition.lnk
[2014/10/13 18:53:42 | 000,001,099 | ---- | C] () -- C:\Users\WHZYY\Desktop\Cheat Engine.lnk
[2014/10/13 13:41:39 | 000,000,110 | ---- | C] () -- C:\Users\WHZYY\Desktop\mok.bat
[2014/10/13 09:18:08 | 097,726,398 | ---- | C] () -- C:\Users\WHZYY\Desktop\IMG_2030.psd
[2014/10/10 20:16:23 | 000,093,330 | ---- | C] () -- C:\Users\WHZYY\Desktop\3.jpg
[2014/09/25 22:56:02 | 000,000,600 | ---- | C] () -- C:\Users\WHZYY\PUTTY.RND
[2014/08/21 22:32:36 | 000,000,039 | ---- | C] () -- C:\Users\WHZYY\AppData\Roaming\TheHunterSettings_steam_live.cfg
[2014/08/21 22:25:36 | 000,000,098 | ---- | C] () -- C:\Users\WHZYY\AppData\Roaming\LauncherSettings_live.cfg
[2014/08/17 11:10:01 | 001,265,152 | ---- | C] () -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014/07/06 13:12:26 | 000,828,416 | ---- | C] () -- C:\Windows\SysWow64\javaws.exe
[2014/07/06 13:12:24 | 000,736,256 | ---- | C] () -- C:\Windows\SysWow64\javaw.exe
[2014/05/25 15:20:20 | 000,000,008 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2014/02/09 14:50:00 | 000,001,480 | ---- | C] () -- C:\Users\WHZYY\AppData\Local\Adobe Uložit pro web 13.0 Prefs
[2014/01/25 20:22:21 | 000,000,000 | -HS- | C] () -- C:\Users\WHZYY\AppData\Local\LumaEmu
[2014/01/16 13:49:32 | 000,000,132 | ---- | C] () -- C:\Users\WHZYY\AppData\Roaming\Adobe PNG Format CS6 Prefs
[2014/01/10 19:45:54 | 000,001,096 | ---- | C] () -- C:\Users\WHZYY\AppData\Local\SRDownloader.nast
[2013/11/23 22:53:49 | 000,682,280 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2013/10/26 22:19:16 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\Access.dat
[2013/10/12 22:18:55 | 001,129,667 | ---- | C] () -- C:\Windows\SysWow64\poclbm130302Intel(R) HD Graphics 4000gv1w256l4.bin
[2013/10/12 22:18:19 | 000,000,000 | ---- | C] () -- C:\Users\WHZYY\regbcm
[2013/10/12 21:14:12 | 000,001,456 | ---- | C] () -- C:\Users\WHZYY\AppData\Local\Adobe Save for Web 13.0 Prefs
[2013/09/12 15:41:03 | 000,083,968 | ---- | C] () -- C:\Windows\SysWow64\OEMLicense.dll
[2013/09/10 20:35:47 | 004,446,016 | ---- | C] () -- C:\Users\WHZYY\AppData\Local\Tempmusic.ogg
[2013/09/10 20:35:45 | 000,042,328 | ---- | C] () -- C:\Users\WHZYY\AppData\Local\Tempbg.jpg
[2013/09/09 22:00:21 | 000,103,736 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2013/09/09 22:00:20 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013/03/13 22:09:04 | 000,728,064 | ---- | C] () -- C:\Windows\SysWow64\MSIService.exe
[2013/03/13 21:47:19 | 000,001,313 | ---- | C] () -- C:\Windows\THXCfg_SP_APOIM.ini
[2013/03/13 21:47:19 | 000,001,212 | ---- | C] () -- C:\Windows\THXCfg_HP_APOIM.ini
[2013/03/13 21:47:19 | 000,001,212 | ---- | C] () -- C:\Windows\THXCfg_APOIM.ini
[2013/03/13 21:47:18 | 000,182,272 | ---- | C] () -- C:\Windows\SysWow64\APOMngr.DLL
[2013/03/13 21:47:18 | 000,073,728 | ---- | C] () -- C:\Windows\SysWow64\CmdRtr.DLL
[2013/03/13 21:33:59 | 015,715,218 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/03/13 18:23:24 | 000,598,780 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng700.bin
[2013/03/13 18:23:12 | 000,064,512 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2013/03/13 18:23:09 | 000,755,048 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng700.bin