Stránka 1 z 1

Preventivka :)

Napsal: 16 pro 2011 19:50
od JrMn
Zdravim,
strucny prehlad problemov s PC:
  • Notebook mi pride pomaly, vsetko, aj notepad sa spusta aspon 15sekund
  • Physical Memory sa vyuziva pomerne vela, aj ked nic nebezi :3
Log sa nachadza tu:

Logfile of random's system information tool 1.09 (written by random/random)
Run by JerMenKoO at 2011-12-16 19:46:06
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 53 GB (18%) free of 292 GB
Total RAM: 3958 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:46:55, on 16. 12. 2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\WhatPulse\WhatPulse.exe
C:\Users\JerMenKoO\AppData\Local\Google\Update\1.3.21.79\GoogleCrashHandler.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files (x86)\mIRC\mirc.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\JerMenKoO.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [RoccatKone+] "C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE"
O4 - HKCU\..\Run: [Google Update] "C:\Users\JerMenKoO\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WhatPulse] C:\Program Files (x86)\WhatPulse\WhatPulse.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: LOLRecorder.lnk = C:\Program Files (x86)\LOLReplay\LOLRecorder.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Users\JERMEN~1\AppData\Local\lolbans\LOLLOA~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Mobility Manager Service (FMMService) - Flarion Technologies, Inc. - C:\PROGRA~2\T-MOBI~1\drivers\8B589B~1\FMMSER~1.EXE
O23 - Service: FOFDM DHCP Timing - Paradoxx Software - C:\PROGRA~2\T-MOBI~1\FOFDMD~1.EXE
O23 - Service: FOFDM Upgrade (FOFDMUpgrade) - Paradoxx Software - C:\PROGRA~2\T-MOBI~1\FOFDMU~1.EXE
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: RtVOsdService Installer (RtVOsdService) - Realtek Semiconductor Corp. - C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WireHelpSvc - Unknown owner - C:\Program Files\Common Files\WireHelpSvc.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12526 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
winlogon.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
atieclxx
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
C:\Windows\SysWOW64\svchost.exe -k netsvcs
C:\PROGRA~2\T-MOBI~1\drivers\8B589B~1\FMMSER~1.EXE
C:\PROGRA~2\T-MOBI~1\FOFDMD~1.EXE
C:\PROGRA~2\T-MOBI~1\FOFDMU~1.EXE
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\WhatPulse\WhatPulse.exe"
"C:\Users\JerMenKoO\AppData\Local\Google\Update\1.3.21.79\GoogleCrashHandler.exe" /crashhandler
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\WireHelpSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe" /Start
"C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe"
"C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe" -Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><ID>15186</ID><Title>HP Wireless Assistant</Title><Text>WLAN : Disabled
Bluetooth(r): Disabled</Text><IconPath>C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\images\wireless_off.ico</IconPath><Path>C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe</Path><Parameters>SHOWSTATUS</Parameters></Toast></hpNotification>"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"taskhost.exe"
"C:\Program Files (x86)\mIRC\mirc.exe" -r"C:\Users\JerMenKoO\AppData\Roaming\nbs-irc"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe"
"C:\Windows\system32\taskmgr.exe"
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=en-US --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/InstantControl2/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/SuggestHostPrefix/Default_Prefix/WarmSocketImpact/warm_socket/ --enable-print-preview --channel=3912.006B7C60.1568409905 --ignored=" --type=renderer " /prefetch:3
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=en-US --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/InstantControl2/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/SuggestHostPrefix/Default_Prefix/WarmSocketImpact/warm_socket/ --enable-print-preview --channel=3912.006B7B00.1140983498 --ignored=" --type=renderer " /prefetch:3
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=en-US --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/InstantControl2/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/SuggestHostPrefix/Default_Prefix/WarmSocketImpact/warm_socket/ --enable-print-preview --channel=3912.006B79A0.1215805001 --ignored=" --type=renderer " /prefetch:3
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=en-US --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/InstantControl2/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/SuggestHostPrefix/Default_Prefix/WarmSocketImpact/warm_socket/ --enable-print-preview --channel=3912.006B7840.1588068354 --ignored=" --type=renderer " /prefetch:3
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/InstantControl2/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/SuggestHostPrefix/Default_Prefix/WarmSocketImpact/warm_socket/ --enable-print-preview --channel=3912.073866E0.306484471 /prefetch:3
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/InstantControl2/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/SuggestHostPrefix/Default_Prefix/WarmSocketImpact/warm_socket/ --enable-print-preview --channel=3912.08DC09A0.119539291 /prefetch:3
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/InstantControl2/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/SuggestHostPrefix/Default_Prefix/WarmSocketImpact/warm_socket/ --enable-print-preview --channel=3912.089FB6E0.1656641325 /prefetch:3
C:\Windows\system32\rundll32.exe "C:\Users\JERMEN~1\AppData\Local\Google\Chrome\APPLIC~1\150874~1.121\gcswf32.dll",BrokerMain browser=chrome
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\15.0.874.121\gcswf32.dll" --lang=en-US --channel=3912.0A2E5A80.770649447 --flash-broker=3404 /prefetch:4
"C:\Users\JerMenKoO\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/InstantControl2/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/SuggestHostPrefix/Default_Prefix/WarmSocketImpact/warm_socket/ --enable-print-preview --channel=3912.0A44F9A0.1947088388 /prefetch:3
taskeng.exe {CF4C63C1-6ADD-4827-8E2F-5E6B113B6424}
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe30_ Global\UsGthrCtrlFltPipeMssGthrPipe30 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\Users\JerMenKoO\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

======Scheduled tasks folder======

C:\Windows\tasks\AutoKMS.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3771932870-3369830453-1068231195-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3771932870-3369830453-1068231195-1000UA.job
C:\Windows\tasks\HPCeeScheduleForJERMENKOO-PC$.job
C:\Windows\tasks\HPCeeScheduleForJerMenKoO.job

=========Mozilla firefox=========

ProfilePath - C:\Users\JerMenKoO\AppData\Roaming\Mozilla\Firefox\Profiles\bgxlb94l.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=1.1.11]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
amazondotcom.xml
bing.xml
eBay.xml
google.xml
twitter.xml
wikipedia.xml
yahoo.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2011-11-09 75656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-23 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll [2011-08-01 1536320]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2011-08-01 1000768]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-05-27 2096424]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2011-11-16 6489704]
"RtkOSD"=C:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exe [2009-10-13 995840]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-09-22 4035152]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\JerMenKoO\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-27 136176]
"WhatPulse"=C:\Program Files (x86)\WhatPulse\WhatPulse.exe [2011-11-15 3990528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-10-16 2363392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JerMenKoO^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Obrazovková spinka a spúšťač programu OneNote 2010.lnk]
C:\PROGRA~2\MICROS~4\Office14\ONENOTEM.EXE [2010-12-21 227712]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-11-25 98304]
"QlbCtrl.exe"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2010-02-25 323640]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2008-12-08 54576]
""= []
"WirelessAssistant"=C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"RoccatKone+"=C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE [2011-07-12 552960]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
LOLRecorder.lnk - C:\Program Files (x86)\LOLReplay\LOLRecorder.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2011-12-16 19:46:08 ----D---- C:\Program Files\trend micro
2011-12-16 19:46:06 ----D---- C:\rsit
2011-12-14 10:24:52 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-12-14 10:24:52 ----A---- C:\Windows\system32\mshtmled.dll
2011-12-14 10:24:51 ----A---- C:\Windows\SYSWOW64\url.dll
2011-12-14 10:24:51 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-12-14 10:24:51 ----A---- C:\Windows\system32\url.dll
2011-12-14 10:24:51 ----A---- C:\Windows\system32\iertutil.dll
2011-12-14 10:24:50 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-12-14 10:24:50 ----A---- C:\Windows\SYSWOW64\ieui.dll
2011-12-14 10:24:50 ----A---- C:\Windows\system32\urlmon.dll
2011-12-14 10:24:50 ----A---- C:\Windows\system32\jsproxy.dll
2011-12-14 10:24:50 ----A---- C:\Windows\system32\ieui.dll
2011-12-14 10:24:49 ----A---- C:\Windows\SYSWOW64\wininet.dll
2011-12-14 10:24:49 ----A---- C:\Windows\system32\wininet.dll
2011-12-14 10:24:48 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2011-12-14 10:24:48 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-12-14 10:24:48 ----A---- C:\Windows\system32\jscript9.dll
2011-12-14 10:24:47 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2011-12-14 10:24:47 ----A---- C:\Windows\system32\jscript.dll
2011-12-14 10:24:46 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-12-14 10:24:44 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-12-14 10:24:44 ----A---- C:\Windows\system32\mshtml.dll
2011-12-14 10:24:43 ----A---- C:\Windows\system32\ieframe.dll
2011-12-14 10:21:42 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2011-12-14 10:21:42 ----A---- C:\Windows\system32\EncDec.dll
2011-12-14 10:21:26 ----A---- C:\Windows\SYSWOW64\tzres.dll
2011-12-14 10:21:26 ----A---- C:\Windows\system32\tzres.dll
2011-12-14 10:21:05 ----A---- C:\Windows\system32\csrsrv.dll
2011-12-14 10:21:00 ----A---- C:\Windows\system32\win32k.sys
2011-12-10 02:06:07 ----D---- C:\Program Files (x86)\ZScreen
2011-12-08 18:11:48 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2011-12-08 18:11:48 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2011-12-08 18:11:48 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2011-12-08 18:11:48 ----A---- C:\Windows\system32\XAudio2_7.dll
2011-12-08 18:11:48 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2011-12-08 18:11:48 ----A---- C:\Windows\system32\xactengine3_7.dll
2011-12-08 18:11:46 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2011-12-08 18:11:46 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2011-12-08 18:11:46 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2011-12-08 18:11:46 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2011-12-08 18:11:46 ----A---- C:\Windows\system32\d3dx11_43.dll
2011-12-08 18:11:46 ----A---- C:\Windows\system32\d3dx10_43.dll
2011-12-08 18:11:46 ----A---- C:\Windows\system32\d3dcsx_43.dll
2011-12-08 18:11:46 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2011-12-08 18:11:45 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2011-12-08 18:11:45 ----A---- C:\Windows\system32\D3DX9_43.dll
2011-12-08 18:11:44 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2011-12-08 18:11:44 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2011-12-08 18:11:44 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2011-12-08 18:11:44 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2011-12-08 18:11:44 ----A---- C:\Windows\system32\XAudio2_6.dll
2011-12-08 18:11:44 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2011-12-08 18:11:44 ----A---- C:\Windows\system32\xactengine3_6.dll
2011-12-08 18:11:44 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2011-12-08 18:11:43 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2011-12-08 18:11:43 ----A---- C:\Windows\system32\XAudio2_5.dll
2011-12-08 18:11:42 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2011-12-08 18:11:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2011-12-08 18:11:42 ----A---- C:\Windows\system32\xactengine3_5.dll
2011-12-08 18:11:42 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-12-08 18:11:41 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2011-12-08 18:11:41 ----A---- C:\Windows\system32\d3dcsx_42.dll
2011-12-08 18:11:40 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2011-12-08 18:11:40 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2011-12-08 18:11:40 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2011-12-08 18:11:40 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-12-08 18:11:40 ----A---- C:\Windows\system32\d3dx11_42.dll
2011-12-08 18:11:40 ----A---- C:\Windows\system32\d3dx10_42.dll
2011-12-08 18:11:39 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2011-12-08 18:11:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2011-12-08 18:11:39 ----A---- C:\Windows\system32\d3dx10_41.dll
2011-12-08 18:11:39 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2011-12-08 18:11:38 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2011-12-08 18:11:38 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2011-12-08 18:11:38 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2011-12-08 18:11:38 ----A---- C:\Windows\system32\XAudio2_4.dll
2011-12-08 18:11:38 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2011-12-08 18:11:38 ----A---- C:\Windows\system32\D3DX9_41.dll
2011-12-08 18:11:37 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2011-12-08 18:11:37 ----A---- C:\Windows\system32\xactengine3_4.dll
2011-12-08 18:11:36 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2011-12-08 18:11:36 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2011-12-08 18:11:36 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2011-12-08 18:11:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2011-12-08 18:11:36 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2011-12-08 18:11:36 ----A---- C:\Windows\system32\D3DX9_40.dll
2011-12-08 18:11:36 ----A---- C:\Windows\system32\d3dx10_40.dll
2011-12-08 18:11:36 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2011-12-08 18:11:35 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2011-12-08 18:11:35 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2011-12-08 18:11:35 ----A---- C:\Windows\system32\XAudio2_3.dll
2011-12-08 18:11:35 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2011-12-08 18:11:34 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2011-12-08 18:11:34 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2011-12-08 18:11:34 ----A---- C:\Windows\system32\xactengine3_3.dll
2011-12-08 18:11:34 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2011-12-08 18:11:33 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2011-12-08 18:11:33 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2011-12-08 18:11:33 ----A---- C:\Windows\system32\XAudio2_2.dll
2011-12-08 18:11:33 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2011-12-08 18:11:32 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2011-12-08 18:11:32 ----A---- C:\Windows\system32\xactengine3_2.dll
2011-12-08 18:11:31 ----A---- C:\Windows\system32\d3dx10_39.dll
2011-12-08 18:11:31 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2011-12-08 18:11:30 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2011-12-08 18:11:30 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2011-12-08 18:11:30 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2011-12-08 18:11:30 ----A---- C:\Windows\system32\XAudio2_1.dll
2011-12-08 18:11:30 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2011-12-08 18:11:30 ----A---- C:\Windows\system32\xactengine3_1.dll
2011-12-08 18:11:30 ----A---- C:\Windows\system32\D3DX9_39.dll
2011-12-08 18:11:28 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2011-12-08 18:11:28 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2011-12-08 18:11:28 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2011-12-08 18:11:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2011-12-08 18:11:28 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2011-12-08 18:11:28 ----A---- C:\Windows\system32\D3DX9_38.dll
2011-12-08 18:11:28 ----A---- C:\Windows\system32\d3dx10_38.dll
2011-12-08 18:11:28 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2011-12-08 18:11:27 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2011-12-08 18:11:27 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2011-12-08 18:11:27 ----A---- C:\Windows\system32\XAudio2_0.dll
2011-12-08 18:11:27 ----A---- C:\Windows\system32\xactengine3_0.dll
2011-12-08 18:11:26 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2011-12-08 18:11:26 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2011-12-08 18:11:26 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2011-12-08 18:11:26 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2011-12-08 18:11:26 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2011-12-08 18:11:26 ----A---- C:\Windows\system32\D3DX9_37.dll
2011-12-08 18:11:26 ----A---- C:\Windows\system32\d3dx10_37.dll
2011-12-08 18:11:26 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2011-12-08 18:11:25 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2011-12-08 18:11:25 ----A---- C:\Windows\system32\xactengine2_10.dll
2011-12-08 18:11:24 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2011-12-08 18:11:24 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2011-12-08 18:11:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2011-12-08 18:11:24 ----A---- C:\Windows\system32\d3dx9_36.dll
2011-12-08 18:11:24 ----A---- C:\Windows\system32\d3dx10_36.dll
2011-12-08 18:11:24 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2011-12-08 18:11:23 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2011-12-08 18:11:23 ----A---- C:\Windows\system32\xactengine2_9.dll
2011-12-08 18:11:22 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2011-12-08 18:11:22 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2011-12-08 18:11:22 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2011-12-08 18:11:22 ----A---- C:\Windows\system32\d3dx9_35.dll
2011-12-08 18:11:22 ----A---- C:\Windows\system32\d3dx10_35.dll
2011-12-08 18:11:22 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2011-12-08 18:11:21 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2011-12-08 18:11:21 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2011-12-08 18:11:21 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2011-12-08 18:11:21 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2011-12-08 18:11:21 ----A---- C:\Windows\system32\xactengine2_8.dll
2011-12-08 18:11:21 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2011-12-08 18:11:21 ----A---- C:\Windows\system32\d3dx10_34.dll
2011-12-08 18:11:21 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2011-12-08 18:11:20 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2011-12-08 18:11:20 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2011-12-08 18:11:20 ----A---- C:\Windows\system32\xinput1_3.dll
2011-12-08 18:11:20 ----A---- C:\Windows\system32\d3dx9_34.dll
2011-12-08 18:11:19 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2011-12-08 18:11:19 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2011-12-08 18:11:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2011-12-08 18:11:19 ----A---- C:\Windows\system32\xactengine2_7.dll
2011-12-08 18:11:19 ----A---- C:\Windows\system32\d3dx10_33.dll
2011-12-08 18:11:19 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2011-12-08 18:11:18 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2011-12-08 18:11:18 ----A---- C:\Windows\system32\d3dx9_33.dll
2011-12-08 18:11:16 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2011-12-08 18:11:16 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2011-12-08 18:11:16 ----A---- C:\Windows\system32\xactengine2_6.dll
2011-12-08 18:11:16 ----A---- C:\Windows\system32\xactengine2_5.dll
2011-12-08 18:11:15 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2011-12-08 18:11:15 ----A---- C:\Windows\system32\d3dx10.dll
2011-12-08 18:11:11 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2011-12-08 18:11:11 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2011-12-08 18:11:11 ----A---- C:\Windows\system32\xactengine2_4.dll
2011-12-08 18:11:11 ----A---- C:\Windows\system32\x3daudio1_1.dll
2011-12-08 18:11:10 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2011-12-08 18:11:10 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2011-12-08 18:11:10 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2011-12-08 18:11:10 ----A---- C:\Windows\system32\xinput1_2.dll
2011-12-08 18:11:10 ----A---- C:\Windows\system32\xactengine2_3.dll
2011-12-08 18:11:10 ----A---- C:\Windows\system32\d3dx9_31.dll
2011-12-08 18:11:09 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2011-12-08 18:11:09 ----A---- C:\Windows\system32\xactengine2_2.dll
2011-12-08 18:11:08 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2011-12-08 18:11:08 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2011-12-08 18:11:08 ----A---- C:\Windows\system32\xinput1_1.dll
2011-12-08 18:11:08 ----A---- C:\Windows\system32\xactengine2_1.dll
2011-12-08 18:11:03 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2011-12-08 18:11:03 ----A---- C:\Windows\system32\d3dx9_30.dll
2011-12-08 18:11:02 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2011-12-08 18:11:02 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2011-12-08 18:11:02 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2011-12-08 18:11:02 ----A---- C:\Windows\system32\xactengine2_0.dll
2011-12-08 18:11:02 ----A---- C:\Windows\system32\x3daudio1_0.dll
2011-12-08 18:11:02 ----A---- C:\Windows\system32\d3dx9_29.dll
2011-12-08 18:11:01 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2011-12-08 18:11:01 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2011-12-08 18:11:01 ----A---- C:\Windows\system32\d3dx9_28.dll
2011-12-08 18:11:01 ----A---- C:\Windows\system32\d3dx9_27.dll
2011-12-08 18:11:00 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2011-12-08 18:11:00 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2011-12-08 18:11:00 ----A---- C:\Windows\system32\d3dx9_26.dll
2011-12-08 18:11:00 ----A---- C:\Windows\system32\d3dx9_25.dll
2011-12-08 18:10:59 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2011-12-08 18:10:59 ----A---- C:\Windows\system32\d3dx9_24.dll
2011-12-06 14:21:46 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2011-12-06 14:21:44 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2011-12-03 14:17:58 ----D---- C:\Users\JerMenKoO\AppData\Roaming\WhatPulse
2011-12-03 14:17:56 ----D---- C:\Program Files (x86)\WhatPulse
2011-11-27 19:40:36 ----D---- C:\Users\JerMenKoO\AppData\Roaming\Windows Live Writer
2011-11-26 17:33:10 ----D---- C:\Users\JerMenKoO\AppData\Roaming\Mozilla
2011-11-26 17:32:54 ----D---- C:\Program Files (x86)\Mozilla Firefox
2011-11-23 12:01:52 ----A---- C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2011-11-18 15:36:01 ----A---- C:\Windows\system32\drivers\VBoxDrv.sys
2011-11-18 15:35:51 ----A---- C:\Windows\system32\drivers\VBoxUSBMon.sys
2011-11-18 15:35:50 ----DC---- C:\Windows\system32\DRVSTORE

======List of files/folders modified in the last 1 month======

2011-12-16 19:46:17 ----D---- C:\Windows\Temp
2011-12-16 19:46:08 ----RD---- C:\Program Files
2011-12-16 19:37:59 ----A---- C:\ProgramData\HPWALog.txt
2011-12-16 19:23:57 ----D---- C:\Program Files (x86)\Steam
2011-12-16 19:18:11 ----D---- C:\Users\JerMenKoO\AppData\Roaming\nbs-irc
2011-12-16 16:51:45 ----D---- C:\Windows\system32\config
2011-12-16 16:40:48 ----D---- C:\Windows
2011-12-16 16:40:08 ----HD---- C:\ProgramData
2011-12-16 16:39:58 ----A---- C:\Windows\SYSWOW64\log.txt
2011-12-15 22:03:38 ----SHD---- C:\System Volume Information
2011-12-15 17:59:04 ----D---- C:\Program Files (x86)\LOLReplay
2011-12-15 17:20:39 ----D---- C:\Windows\System32
2011-12-15 17:20:39 ----D---- C:\Windows\inf
2011-12-15 17:20:39 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-12-15 00:20:02 ----D---- C:\Users\JerMenKoO\AppData\Roaming\codeblocks
2011-12-14 16:46:13 ----D---- C:\Users\JerMenKoO\AppData\Roaming\TS3Client
2011-12-14 16:14:27 ----D---- C:\Users\JerMenKoO\AppData\Roaming\Mumble
2011-12-14 11:41:44 ----D---- C:\Windows\winsxs
2011-12-14 11:39:57 ----D---- C:\Windows\SYSWOW64\migration
2011-12-14 11:39:57 ----D---- C:\Windows\SysWOW64
2011-12-14 11:39:57 ----D---- C:\Program Files\Internet Explorer
2011-12-14 11:39:57 ----D---- C:\Program Files (x86)\Internet Explorer
2011-12-14 11:39:56 ----D---- C:\Windows\system32\migration
2011-12-14 10:29:57 ----SHD---- C:\Windows\Installer
2011-12-14 10:29:36 ----D---- C:\ProgramData\Microsoft Help
2011-12-14 10:29:05 ----D---- C:\Windows\system32\catroot
2011-12-14 10:26:48 ----D---- C:\Windows\debug
2011-12-14 10:26:47 ----A---- C:\Windows\system32\MRT.exe
2011-12-14 10:25:05 ----D---- C:\Windows\system32\catroot2
2011-12-14 10:23:57 ----D---- C:\Windows\SYSWOW64\en-US
2011-12-14 10:23:57 ----D---- C:\Windows\system32\en-US
2011-12-13 18:28:34 ----D---- C:\Windows\system32\NDF
2011-12-12 22:31:40 ----D---- C:\Users\JerMenKoO\AppData\Roaming\uTorrent
2011-12-12 22:31:38 ----D---- C:\Windows\Minidump
2011-12-12 22:31:38 ----D---- C:\Windows\Logs
2011-12-12 22:28:02 ----D---- C:\Program Files (x86)\Common Files
2011-12-12 22:27:44 ----D---- C:\Program Files (x86)
2011-12-11 15:44:15 ----D---- C:\Users\JerMenKoO\AppData\Roaming\Skype
2011-12-10 22:03:24 ----RSD---- C:\Windows\assembly
2011-12-10 15:49:59 ----D---- C:\Windows\Microsoft.NET
2011-12-09 18:14:12 ----D---- C:\Windows\system32\drivers
2011-12-09 16:52:09 ----D---- C:\Program Files (x86)\uTorrent
2011-12-09 16:50:01 ----D---- C:\Program Files\Defraggler
2011-12-09 16:49:54 ----D---- C:\Program Files\CCleaner
2011-12-08 19:01:25 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2011-12-07 16:34:30 ----D---- C:\Windows\system32\wdi
2011-12-07 10:48:20 ----D---- C:\Windows\Tasks
2011-12-07 10:48:20 ----D---- C:\Windows\system32\Tasks
2011-12-06 17:42:56 ----SD---- C:\Users\JerMenKoO\AppData\Roaming\Microsoft
2011-12-06 14:46:26 ----D---- C:\Program Files (x86)\EA Games
2011-12-06 14:21:43 ----D---- C:\Windows\system32\LogFiles
2011-12-05 18:37:18 ----D---- C:\Borland
2011-11-24 16:33:11 ----RSD---- C:\Windows\Fonts
2011-11-24 15:39:37 ----D---- C:\World of Warcraft
2011-11-23 18:03:52 ----D---- C:\ProgramData\CyberLink
2011-11-20 15:32:35 ----D---- C:\Windows\Prefetch
2011-11-18 19:44:31 ----D---- C:\Program Files\TeamSpeak 3 Client
2011-11-18 16:17:18 ----D---- C:\Windows\system32\DriverStore
2011-11-17 17:18:43 ----D---- C:\Program Files (x86)\Fraps

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2011-08-04 62496]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-10-13 409624]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-11-02 526392]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2011-08-04 146432]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2011-08-04 38288]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2011-08-09 202576]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2011-08-04 187632]
R2 ESLWireAC;ESLWireAC; \??\C:\Windows\system32\drivers\ESLWireACD.sys [2011-08-08 161184]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2009-11-19 123408]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-11-25 6174720]
R3 ESLvnic1;ESLvnic Virtual Network 64 Bit; C:\Windows\system32\DRIVERS\ESLvnic.sys [2011-08-08 25528]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 18432]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-11-16 2494056]
R3 Leadtek;Leadtek USB Network Interface; C:\Windows\system32\DRIVERS\Leadtek.sys [2011-10-27 77360]
R3 NETw5s64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETw5s64.sys [2011-11-16 7680512]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-05-27 320560]
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-09-17 98344]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-09-17 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-09-17 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-09-17 21160]
S3 CpqDfw;Compaq Dfw; C:\Windows\system32\drivers\CpqDfw.sys []
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena Classic\safedrv.sys []
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2011-11-16 8505856]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2009-09-23 225280]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\Windows\system32\DRIVERS\VBoxNetAdp.sys [2011-11-04 146736]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetFlt.sys []
S3 X6va005;X6va005; \??\C:\Users\JERMEN~1\AppData\Local\Temp\005D96E.tmp []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-11-25 202752]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-09-04 873248]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2011-09-22 974944]
R2 ezSharedSvc;Easybits Shared Services for Windows; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 FMMService;Mobility Manager Service; C:\PROGRA~2\T-MOBI~1\drivers\8B589B~1\FMMSER~1.EXE [2011-10-27 40960]
R2 FOFDM DHCP Timing;FOFDM DHCP Timing; C:\PROGRA~2\T-MOBI~1\FOFDMD~1.EXE [2011-02-16 391680]
R2 FOFDMUpgrade;FOFDM Upgrade; C:\PROGRA~2\T-MOBI~1\FOFDMU~1.EXE [2011-02-16 188416]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-06-21 85560]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-03-28 94264]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-10-16 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-10-01 268824]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2011-12-06 75136]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-07-06 247152]
R2 RtVOsdService;RtVOsdService Installer; C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe [2010-06-24 315392]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2320920]
R2 WireHelpSvc;WireHelpSvc; C:\Program Files\Common Files\WireHelpSvc.exe [2011-08-08 168864]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-02-25 227896]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-03-28 799800]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 31125880]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2011-12-08 419624]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-10-28 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Dakujem vopred obetavemu radcovi ktory sa ma zhosti
~~

Re: Preventivka :)

Napsal: 17 pro 2011 10:07
od chodnik74
Dobrý den :welcome:

tak jdeme teda na to? :all_coholic:

:arrow: Odinstalovat BingBar, DAEMON Tools Toolbar a všechny nepotřebné toolbary


Program nepoužívejte bez doporučení Rádce a pozorně se řiďte následujících pokynu,protože program netoleruje chyby a může dojít k úplnému poškození systému!!
  • :arrow: Stáhneme si Combofix Obrázek
  • Program uložíme nejlépe na Plochu
  • Vypneme všechny rezidentní štíty.Jak antiviru,tak antispywaru a firewallu
  • Vypneme všechny běžící aplikace (ICQ,prohlížeč,programy) a necháme pouze Combofix
  • Spustíme Combofix.exe s administrátorským oprávněním
    U Windows XP se přihlásíme pod účtem správce
    Ve Windows 7 a Vista klikněte pravým tlačítkem myši na Combofix.exe a dejte ,,Spustit jako správce,,)
  • Hned po startu programu na vás vyskočí licenční podmínky,tak potvrdíme tlačítkemANO
  • Pokud vám Combofix nabídne instalaci Konzoly pro zotavení,tak souhlaste a nechte nainstalovat(zde je potřeba aktivní připojení na internet)
  • Pokračujte dle pokynů programu a během skenování na nic neklikejte,na pc nepracujte(ICQ,jiné aplikace,internet..).Nechte počítač v klidu.
  • Celý sken tvá mezi 5-15 min,ale pokud je v PC hodně havěti,tak se čas může lišit.
  • Po skončení skenování(případném restartu počítače) se vám zobrazí log z Combofixu,který mi vložte sem(Kdyby se log nezobrazil,tak jej najdete zde: C:\ComboFix.txt
  • (Pokud si nevíte rady s kterýmkoliv z výše uvedených kroků,tak se ptejte nebo mrkněte na detailnější návod včetně obrázků http://www.bleepingcomputer.com/combofi ... t-combofix )

Re: Preventivka :)

Napsal: 17 pro 2011 16:10
od JrMn
Ahoj Chodnik, dakujem ti ze si sa ma ujal.

Log z Combofixu je tu:


ComboFix 11-12-16.03 - JerMenKoO . 12. 2011 15:57:46.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.421.1033.18.3958.2592 [GMT 1:00]
Running from: c:\users\JerMenKoO\Desktop\ComboFix.exe
AV: ESET Smart Security 5.0 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Disabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 5.0 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\program files (x86)\TNod User & Password Finder\TNODUP.exe
c:\users\JerMenKoO\AppData\Local\._Revolution_
.
.
((((((((((((((((((((((((( Files Created from 2011-11-17 to 2011-12-17 )))))))))))))))))))))))))))))))
.
.
2011-12-17 15:05 . 2011-12-17 15:05 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-12-17 14:34 . 2011-12-17 14:34 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{83817DEF-09AE-433D-8211-E062D0E01753}\offreg.dll
2011-12-17 14:34 . 2011-11-21 11:40 8822856 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{83817DEF-09AE-433D-8211-E062D0E01753}\mpengine.dll
2011-12-16 18:46 . 2011-12-16 18:46 -------- d-----w- c:\program files\trend micro
2011-12-16 18:46 . 2011-12-16 18:47 -------- d-----w- C:\rsit
2011-12-14 09:21 . 2011-10-15 06:31 723456 ----a-w- c:\windows\system32\EncDec.dll
2011-12-14 09:21 . 2011-10-15 05:38 534528 ----a-w- c:\windows\SysWow64\EncDec.dll
2011-12-14 09:21 . 2011-11-05 05:32 2048 ----a-w- c:\windows\system32\tzres.dll
2011-12-14 09:21 . 2011-11-05 04:26 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2011-12-14 09:21 . 2011-10-26 05:21 43520 ----a-w- c:\windows\system32\csrsrv.dll
2011-12-14 09:21 . 2011-11-24 04:52 3145216 ----a-w- c:\windows\system32\win32k.sys
2011-12-08 00:38 . 2011-12-08 00:38 234768 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2011-12-08 00:37 . 2011-12-08 00:37 -------- d-----w- c:\users\JerMenKoO\AppData\Local\PunkBuster
2011-12-06 13:21 . 2011-12-08 00:38 234768 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2011-12-06 13:21 . 2011-12-06 13:21 189248 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2011-12-06 13:21 . 2011-12-06 14:18 75136 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2011-12-03 13:17 . 2011-12-03 13:18 -------- d-----w- c:\users\JerMenKoO\AppData\Roaming\WhatPulse
2011-12-03 13:17 . 2011-12-03 13:17 -------- d-----w- c:\program files (x86)\WhatPulse
2011-11-30 19:48 . 2011-11-30 19:48 -------- d-----w- c:\users\JerMenKoO\.idlerc
2011-11-27 18:40 . 2011-11-27 18:40 -------- d-----w- c:\users\JerMenKoO\AppData\Roaming\Windows Live Writer
2011-11-27 18:40 . 2011-11-27 18:40 -------- d-----w- c:\users\JerMenKoO\AppData\Local\Windows Live Writer
2011-11-26 16:33 . 2011-11-26 16:33 -------- d-----w- c:\users\JerMenKoO\AppData\Local\Mozilla
2011-11-25 20:53 . 2011-11-25 20:53 158056 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10139.bin
2011-11-18 14:38 . 2011-11-18 14:59 -------- d-----w- c:\users\JerMenKoO\VirtualBox VMs
2011-11-18 14:37 . 2011-11-18 14:59 -------- d-----w- c:\users\JerMenKoO\.VirtualBox
2011-11-18 14:36 . 2011-11-04 11:37 224048 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
2011-11-18 14:35 . 2011-11-04 11:37 130864 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
2011-11-18 14:35 . 2011-11-18 15:17 -------- dc----w- c:\windows\system32\DRVSTORE
2011-11-17 16:45 . 2011-11-17 16:45 -------- d-----w- c:\users\JerMenKoO\AppData\Local\Chromium
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-12-03 08:51 . 2011-10-27 18:37 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-16 14:34 . 2011-11-16 14:34 7680512 ----a-w- c:\windows\system32\drivers\NETw5s64.sys
2011-11-16 14:31 . 2011-11-16 14:33 332392 ----a-w- c:\windows\system32\RtlCPAPI64.dll
2011-11-16 14:31 . 2011-11-16 14:33 2048104 ----a-w- c:\windows\system32\RtPgEx64.dll
2011-11-16 14:31 . 2011-11-16 14:33 1146984 ----a-w- c:\windows\system32\RTSnMg64.cpl
2011-11-16 14:31 . 2011-11-16 14:33 2494056 ----a-w- c:\windows\system32\drivers\RTKVHD64.sys
2011-11-16 14:31 . 2011-11-16 14:33 569960 ----a-w- c:\windows\system32\RtkApi64.dll
2011-11-16 14:31 . 2011-11-16 14:33 2625640 ----a-w- c:\windows\system32\RtkAPO64.dll
2011-11-16 14:31 . 2011-11-16 14:33 149608 ----a-w- c:\windows\system32\RtkCfg64.dll
2011-11-16 14:31 . 2011-11-16 14:33 1215592 ----a-w- c:\windows\system32\RTCOM64.dll
2011-11-16 14:31 . 2011-11-16 14:33 80488 ----a-w- c:\windows\system32\RCoInst64.dll
2011-11-16 14:31 . 2011-11-16 14:33 200800 ----a-w- c:\windows\system32\AERTAC64.dll
2011-11-16 14:31 . 2010-02-11 09:25 1251944 ----a-w- c:\windows\RtlExUpd.dll
2011-11-16 14:29 . 2011-11-16 14:29 8505856 ----a-w- c:\windows\system32\drivers\NETwNs64.sys
2011-11-16 14:29 . 2011-11-16 14:29 2750464 ----a-w- c:\windows\system32\NETwNr64.dll
2011-11-16 14:29 . 2011-11-16 14:29 799232 ----a-w- c:\windows\system32\NETwNc64.dll
2011-11-09 14:35 . 2011-11-09 14:35 627600 ----a-w- c:\windows\system32\deployJava1.dll
2011-11-04 11:37 . 2011-11-04 11:37 146736 ----a-w- c:\windows\system32\drivers\VBoxNetAdp.sys
2011-11-03 16:33 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2011-11-03 16:33 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2011-11-03 15:20 . 2011-11-03 15:20 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2011-11-03 15:20 . 2011-11-03 15:20 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2011-11-03 15:20 . 2011-11-03 15:20 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2011-11-03 15:20 . 2011-11-03 15:20 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2011-11-03 15:20 . 2011-11-03 15:20 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2011-11-03 15:20 . 2011-11-03 15:20 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2011-11-03 15:20 . 2011-11-03 15:20 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2011-11-03 15:20 . 2011-11-03 15:20 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2011-11-03 15:20 . 2011-11-03 15:20 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2011-11-03 15:20 . 2011-11-03 15:20 367104 ----a-w- c:\windows\SysWow64\html.iec
2011-11-03 15:20 . 2011-11-03 15:20 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2011-11-03 15:20 . 2011-11-03 15:20 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2011-11-03 15:20 . 2011-11-03 15:20 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2011-11-03 15:20 . 2011-11-03 15:20 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2011-11-03 15:20 . 2011-11-03 15:20 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2011-11-03 15:20 . 2011-11-03 15:20 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2011-11-03 15:20 . 2011-11-03 15:20 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-11-03 15:20 . 2011-11-03 15:20 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-11-03 15:20 . 2011-11-03 15:20 85504 ----a-w- c:\windows\system32\iesetup.dll
2011-11-03 15:20 . 2011-11-03 15:20 76800 ----a-w- c:\windows\system32\tdc.ocx
2011-11-03 15:20 . 2011-11-03 15:20 49664 ----a-w- c:\windows\system32\imgutil.dll
2011-11-03 15:20 . 2011-11-03 15:20 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-11-03 15:20 . 2011-11-03 15:20 448512 ----a-w- c:\windows\system32\html.iec
2011-11-03 15:20 . 2011-11-03 15:20 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2011-11-03 15:20 . 2011-11-03 15:20 30720 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-03 15:20 . 2011-11-03 15:20 222208 ----a-w- c:\windows\system32\msls31.dll
2011-11-03 15:20 . 2011-11-03 15:20 173056 ----a-w- c:\windows\system32\ieUnatt.exe
2011-11-03 15:20 . 2011-11-03 15:20 165888 ----a-w- c:\windows\system32\iexpress.exe
2011-11-03 15:20 . 2011-11-03 15:20 160256 ----a-w- c:\windows\system32\wextract.exe
2011-11-03 15:20 . 2011-11-03 15:20 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-11-03 15:20 . 2011-11-03 15:20 12288 ----a-w- c:\windows\system32\mshta.exe
2011-11-03 15:20 . 2011-11-03 15:20 114176 ----a-w- c:\windows\system32\admparse.dll
2011-11-03 15:20 . 2011-11-03 15:20 111616 ----a-w- c:\windows\system32\iesysprep.dll
2011-11-03 15:20 . 2011-11-03 15:20 603648 ----a-w- c:\windows\system32\vbscript.dll
2011-10-27 15:38 . 2011-10-27 15:38 77360 ----a-w- c:\windows\system32\drivers\Leadtek.sys
2011-10-27 12:38 . 2010-02-11 09:34 588472 ----a-w- c:\windows\SysWow64\ezsvc7x.dll
2011-10-26 16:14 . 2011-10-26 16:14 614400 ----a-w- c:\windows\AutoKMS.exe
2011-10-03 03:06 . 2011-10-27 12:44 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll
2011-09-29 16:29 . 2011-11-09 14:36 1923952 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-08-08 10:37 . 2011-10-27 13:45 168864 ----a-w- c:\program files\Common Files\WireHelpSvc.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WhatPulse"="c:\program files (x86)\WhatPulse\WhatPulse.exe" [2011-11-15 3990528]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-11-25 98304]
"QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2010-02-25 323640]
"HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576]
"WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744]
"BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2009-9-4 1081632]
LOLRecorder.lnk - c:\program files (x86)\LOLReplay\LOLRecorder.exe [2011-12-18 493056]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2009-07-14 27136]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
R3 GGSAFERDriver;GGSAFER Driver;c:\program files (x86)\Garena Classic\safedrv.sys [x]
R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files (x86)\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 31125880]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [x]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;c:\windows\system32\DRIVERS\NETwNs64.sys [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2009-09-23 225280]
R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [x]
R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [x]
R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys [x]
R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R3 X6va005;X6va005;c:\users\JERMEN~1\AppData\Local\Temp\005D96E.tmp [x]
R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [2011-09-22 974944]
S2 ESLWireAC;ESLWireAC;c:\windows\system32\drivers\ESLWireACD.sys [x]
S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-06-21 85560]
S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-03-28 94264]
S2 RtVOsdService;RtVOsdService Installer;c:\program files\Realtek\RtVOsd\RtVOsdService.exe [2010-06-24 315392]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2320920]
S2 WireHelpSvc;WireHelpSvc;c:\program files\Common Files\WireHelpSvc.exe [2011-08-08 168864]
S3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-02-25 227896]
S3 ESLvnic1;ESLvnic Virtual Network 64 Bit;c:\windows\system32\DRIVERS\ESLvnic.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 Leadtek;Leadtek USB Network Interface;c:\windows\system32\DRIVERS\Leadtek.sys [x]
S3 NETw5s64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;c:\windows\system32\DRIVERS\NETw5s64.sys [x]
S3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
.
.
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
ezSharedSvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2009-10-16 20:49 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
.
Contents of the 'Scheduled Tasks' folder
.
2011-12-17 c:\windows\Tasks\AutoKMS.job
- c:\windows\AutoKMS.exe [2011-10-26 16:14]
.
2011-12-11 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3771932870-3369830453-1068231195-1000Core.job
- c:\users\JerMenKoO\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-27 12:39]
.
2011-12-17 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3771932870-3369830453-1068231195-1000UA.job
- c:\users\JerMenKoO\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-27 12:39]
.
2011-12-15 c:\windows\Tasks\HPCeeScheduleForJERMENKOO-PC$.job
- c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2009-10-07 12:22]
.
2011-12-07 c:\windows\Tasks\HPCeeScheduleForJerMenKoO.job
- c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2009-10-07 12:22]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2011-11-16 6489704]
"RtkOSD"="c:\program files (x86)\Realtek\Audio\OSD\RtVOsd64.exe" [2009-10-13 995840]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2011-09-22 4035152]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.sk/
uLocal Page = c:\windows\system32\blank.htm
mStart Page = hxxp://www.bing.com
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000
IE: E&xportovať do programu Microsoft Excel - c:\progra~2\MICROS~4\Office14\EXCEL.EXE/3000
IE: Od&oslať do programu OneNote - c:\progra~2\MICROS~4\Office14\ONBttnIE.dll/105
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
TCP: DhcpNameServer = 195.91.0.17 194.154.227.17
FF - ProfilePath - c:\users\JerMenKoO\AppData\Roaming\Mozilla\Firefox\Profiles\bgxlb94l.default\
.
- - - - ORPHANS REMOVED - - - -
.
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-{CA43FE4F-9FF2-4AD7-88F0-CC3BAC17B226} - c:\program files (x86)\InstallShield Installation Information\{CA43FE4F-9FF2-4AD7-88F0-CC3BAC17B226}\setup.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va005]
"ImagePath"="\??\c:\users\JERMEN~1\AppData\Local\Temp\005D96E.tmp"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2011-12-17 16:08:48
ComboFix-quarantined-files.txt 2011-12-17 15:08
.
Pre-Run: 57 130 217 472 bytes free
Post-Run: 56 646 512 640 bytes free
.
- - End Of File - - AFD2911AB0439BA151220F7E5115DC2D

Re: Preventivka :)

Napsal: 17 pro 2011 16:16
od chodnik74
Já valím pryč a nevím, zda se o víkendu dostanu ještě k pc, takže budeme pokračovat později. Kdyby jsi moc spěchal, tak se ozvi někomu z kolegů a ten se tě ujme.

:!: Odinstalovat nelegální eset, jinak nebudeme pokračovat dále ;-) viz pravidla fora..


Pravidla fora: č.1 a č.2, č.3

Re: Preventivka :)

Napsal: 17 pro 2011 17:36
od Rudy
Jelikož jste byl již vícekrát přistžen s nelegálním antivirem a dříve již byl upozorněn moderátorem, dostáváte 2. Warn Level za opakované porušení pravidel fóra. Nechápu, proč trváte na nelegálním Esetu, když ten vás naprosto vůbec nechrání právě proto, že je nelegální.

Re: Preventivka :)

Napsal: 20 pro 2011 17:16
od JrMn
Okej, ESET je prec, mam dat novy log?

Re: Preventivka :)

Napsal: 20 pro 2011 18:36
od chodnik74
Bohužel nemáte nárok na pomoct, vzhledem o opakovanému porušení pravidel :)

Re: Preventivka :)

Napsal: 22 pro 2011 13:39
od JrMn
Skoda, moja chyba. Dakujem tak ci tak.

Re: Preventivka :)

Napsal: 22 pro 2011 13:39
od chodnik74
Přeji hezké a klidné prožití svátků vánočních :)