Stránka 1 z 1

Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 10:47
od ponte
Malwarebytes Anti-Malware (PRO) 1.60.0.1800
www.malwarebytes.org

Verzia databázy: v2012.01.28.06

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Luky :: LUKY-PC [administrátor]

Ochrana: Zapnuté

29. 1. 2012 9:42:16
mbam-log-2012-01-29 (10-46-43).txt

Typ kontroly: Vlastná kontrola
Možnosti kontroly zapnuté: Systémové súbory | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: Pamäť | Po spustení | Registre | Heuristika/Extra | P2P
Objektov kontrolovaných: 137669
Uplynutý čas: 1 hod, 4 min, 14 sek

Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)

Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)

Detegované registračné kľúče: 9
HKCR\CLSID\{25514C64-8321-494e-BD3E-3DBAB3F8CEBA} (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
HKCR\TypeLib\{60BE6B2E-F2F5-4404-AA1E-4381D4A6EEA2} (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
HKCR\Interface\{6427058B-217C-4C7F-A6CE-C7934C0BDCEB} (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
HKCR\RewardsArcade.FBApi.1 (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
HKCR\RewardsArcade.FBApi (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
HKCR\CLSID\{597A9974-8CB0-4f41-B61F-ED065738A397} (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
HKCR\RewardsArcade.BHO.1 (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{597A9974-8CB0-4F41-B61F-ED065738A397} (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RewardsArcade (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.

Detegované registračné hodnoty: 0
(Škodlivé položky neboli zistené)

Detegované položky registračných dát: 0
(Škodlivé položky neboli zistené)

Detegované priečinky: 15
C:\Program Files (x86)\RewardsArcade (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498 (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Chrome (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\Images (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\defaults (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\defaults\preferences (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\locale (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\locale\en-US (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.

Detegované súbory: 57
C:\Program Files (x86)\RewardsArcade\fb.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Program Files (x86)\RewardsArcade\appAPIinternalWrapper.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Program Files (x86)\RewardsArcade\jquery.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Program Files (x86)\RewardsArcade\json.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Program Files (x86)\RewardsArcade\RewardsArcade.dll (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Program Files (x86)\RewardsArcade\RewardsArcade.exe (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Program Files (x86)\RewardsArcade\Uninstall.exe (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Program Files (x86)\RewardsArcade\UserConfirmation.exe (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\uninstall.ico (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Chrome\rewardsarcade.crx (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome.manifest (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\install.rdf (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\background.html (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\browser.xul (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\crossrider.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\crossriderapi.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\dialog.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\manage-apps-style.css (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\manage-apps.html (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\messaging.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\options.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\options.xul (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\push.html (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\search_dialog.xul (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\socialapi.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\update.html (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\utilityapi.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\workers_chain.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\faye-browser-min.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\jquery-1.4.2.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\facebox.css (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\facebox.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\Images\b.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\Images\bl.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\Images\br.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\Images\closelabel.gif (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\Images\loading.gif (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\Images\tl.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\chrome\content\lib\facebox\Images\tr.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\defaults\preferences\prefs.js (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\locale\en-US\translations.dtd (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\button1.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\button2.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\button3.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\button4.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\button5.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\crossrider_statusbar.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\icon128.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\icon16.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\icon24.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\icon48.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\panelarrow-up.png (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\popup.css (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\popup.html (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\popup_binding.xml (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\skin.css (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.
C:\Users\Luky\AppData\Local\RewardsArcade\498\Firefox\skin\update.css (PUP.RewardsArcade) -> Žiadna úloha nevykonaná.

(koniec)

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 11:19
od ponte
neviem teraz či to možem všetko dat zmazat či ako sa bojim že len nejaky falošny polach bo to nejak vela je toho ale skusal som dvakrat urobit sken a stale to iste.

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 11:39
od Roli
Zdravím, přes Odebrat programy odinstaluj Rewards Arcade a pak udělej sken Mbam ještě jednou a dej mi sem log.

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 11:41
od ponte
dobre idem na to

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 12:44
od ponte
Malwarebytes Anti-Malware (PRO) 1.60.0.1800
www.malwarebytes.org

Verzia databázy: v2012.01.28.06

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Luky :: LUKY-PC [administrátor]

Ochrana: Zapnuté

29. 1. 2012 11:41:19
mbam-log-2012-01-29 (11-41-19).txt

Typ kontroly: Vlastná kontrola
Možnosti kontroly zapnuté: Systémové súbory | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: Pamäť | Po spustení | Registre | Heuristika/Extra | P2P
Objektov kontrolovaných: 137791
Uplynutý čas: 1 hod, 2 min, 44 sek

Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)

Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)

Detegované registračné kľúče: 0
(Škodlivé položky neboli zistené)

Detegované registračné hodnoty: 0
(Škodlivé položky neboli zistené)

Detegované položky registračných dát: 0
(Škodlivé položky neboli zistené)

Detegované priečinky: 0
(Škodlivé položky neboli zistené)

Detegované súbory: 0
(Škodlivé položky neboli zistené)

(koniec)

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 15:51
od Roli
Bezva, ještě mi sem dej pro kontrolu log.txt z Rsit.

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 16:01
od ponte
Logfile of random's system information tool 1.09 (written by random/random)
Run by Luky at 2012-01-29 15:57:49
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 37 GB (57%) free of 65 GB
Total RAM: 4093 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:57:55, on 29. 1. 2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe
C:\Program Files (x86)\Free Download Manager\fdm.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\AIMP2\AIMP2.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Luky.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8118
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\IPS\IPSBHO.DLL
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\coIEPlg.dll
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files (x86)\Free Download Manager\fdm.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O8 - Extra context menu item: Previesť cieľ odkazu do formátu Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Previesť do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Prevziať pomocou FDM - file://C:\Program Files (x86)\Free Download Manager\dllink.htm
O8 - Extra context menu item: Prevziať video pomocou FDM - file://C:\Program Files (x86)\Free Download Manager\dlfvideo.htm
O8 - Extra context menu item: Prevziať vybrané pomocou FDM - file://C:\Program Files (x86)\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Prevziať všetko pomocou FDM - file://C:\Program Files (x86)\Free Download Manager\dlall.htm
O8 - Extra context menu item: Pridať cieľ odkazu do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Pridať do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9866 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\diMaster.dll" /prefetch:1
C:\Windows\Explorer.EXE
"C:\Program Files\OO Software\Defrag\oodag.exe"
C:\Windows\SysWOW64\IoctlSvc.exe
"C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe" /c /a /s UserSession2
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesApp64.exe" /TUStart /pid:1552
"C:\Program Files\OO Software\Defrag\oodtray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Free Download Manager\fdm.exe" -autorun
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
"C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\AIMP2\AIMP2.exe"
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/SilentExperimentB/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --extension-process --renderer-print-preview --channel=1436.0115C700.204002442 /prefetch:3
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/SilentExperimentB/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --extension-process --renderer-print-preview --channel=1436.0115C8C0.675108872 /prefetch:3
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Luky\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.2.1.6_0\npcoplgn.dll" --lang=sk --channel=1436.059561E0.2122469710 /prefetch:4
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=service --lang=sk
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel=1436.0544E320.545866437 /prefetch:12
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/SilentExperimentB/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndDynamic/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --extension-process --renderer-print-preview --channel=1436.09FEB700.1079340593 /prefetch:3
C:\Windows\system32\rundll32.exe "C:\Users\Luky\AppData\Local\Google\Chrome\APPLIC~1\180101~1.2\gcswf32.dll",BrokerMain browser=chrome
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Luky\AppData\Local\Google\Chrome\Application\18.0.1017.2\gcswf32.dll" --lang=sk --channel=1436.0617BB40.1659354462 --flash-broker=4852 /prefetch:4
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/SilentExperimentB/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndDynamic/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel=1436.09F2E700.77128412 /prefetch:3
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/SilentExperimentB/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndDynamic/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel=1436.07CC1C40.124354397 /prefetch:3
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/SilentExperimentB/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndDynamic/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel=1436.07CC1380.1519061119 /prefetch:3
"C:\Users\Luky\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/SilentExperimentB/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndDynamic/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel=1436.078E68C0.1045357185 /prefetch:3
"C:\Users\Luky\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\SUPERAntiSpyware Scheduled Task bfcd2ff3-62b4-4345-9f46-9fd7d02cc2a7.job
C:\Windows\tasks\SUPERAntiSpyware Scheduled Task fb4c018b-a157-4d82-aaa2-06ae547374ca.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Luky\AppData\Roaming\Mozilla\Firefox\Profiles\w5p03w8b.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml

C:\Users\Luky\AppData\Roaming\Mozilla\Firefox\Profiles\w5p03w8b.default\extensions\
{37fa1426-b82d-11db-8314-0800200c9a66}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-01-06 79240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\coIEPlg.dll [2011-11-02 492984]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\IPS\IPSBHO.DLL [2011-07-26 210872]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
Free Download Manager - C:\Program Files (x86)\Free Download Manager\iefdm2.dll [2011-12-28 230400]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\coIEPlg.dll [2011-11-02 492984]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2011-06-29 3992904]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"Free Download Manager"=C:\Program Files (x86)\Free Download Manager\fdm.exe [2011-12-28 6148096]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-10-13 17351304]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2011-12-09 5486464]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OODefragTray]
C:\Program Files\OO Software\Defrag\oodtray.exe [2011-06-29 3992904]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Malwarebytes' Anti-Malware"=C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [2011-12-24 460872]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-12-05 343168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2012-01-06 249344]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2012-01-29 15:57:49 ----D---- C:\rsit
2012-01-27 11:45:09 ----D---- C:\ProgramData\ATI
2012-01-27 11:45:07 ----D---- C:\Program Files (x86)\AMD APP
2012-01-27 10:31:25 ----D---- C:\AMD
2012-01-22 12:49:13 ----D---- C:\Users\Luky\AppData\Roaming\SUPERAntiSpyware.com
2012-01-22 12:48:56 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2012-01-22 12:48:56 ----D---- C:\Program Files\SUPERAntiSpyware
2012-01-21 18:24:16 ----D---- C:\Users\Luky\AppData\Roaming\OpenOffice.org
2012-01-21 18:23:08 ----D---- C:\Program Files (x86)\OpenOffice.org 3
2012-01-21 18:22:34 ----D---- C:\Program Files (x86)\OpenOffice.org 3.2 (sk) Installation Files
2012-01-21 14:35:52 ----D---- C:\Users\Luky\AppData\Roaming\Skype
2012-01-21 14:35:41 ----RD---- C:\Program Files (x86)\Skype
2012-01-21 14:35:39 ----D---- C:\ProgramData\Skype
2012-01-21 12:15:57 ----D---- C:\Program Files\trend micro
2012-01-10 23:14:12 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-01-10 23:14:12 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-01-10 23:14:12 ----A---- C:\Windows\system32\quartz.dll
2012-01-10 23:14:11 ----A---- C:\Windows\system32\qdvd.dll
2012-01-10 23:14:10 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-01-10 23:14:10 ----A---- C:\Windows\system32\ntdll.dll
2012-01-10 23:14:09 ----A---- C:\Windows\system32\schannel.dll
2012-01-10 23:14:08 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-01-10 23:14:08 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-01-10 23:14:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-01-10 23:14:08 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-01-10 23:14:08 ----A---- C:\Windows\system32\webio.dll
2012-01-10 23:14:08 ----A---- C:\Windows\system32\sspisrv.dll
2012-01-10 23:14:08 ----A---- C:\Windows\system32\sspicli.dll
2012-01-10 23:14:08 ----A---- C:\Windows\system32\secur32.dll
2012-01-10 23:14:08 ----A---- C:\Windows\system32\lsass.exe
2012-01-10 23:14:08 ----A---- C:\Windows\system32\lsasrv.dll
2012-01-10 23:14:08 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-01-10 23:14:08 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-01-10 23:14:08 ----A---- C:\Windows\system32\drivers\cng.sys
2012-01-10 23:14:06 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-01-10 23:14:06 ----A---- C:\Windows\system32\packager.dll
2012-01-06 16:03:09 ----HD---- C:\Windows\AxInstSV
2012-01-06 15:54:57 ----A---- C:\Windows\system32\npdeployJava1.dll
2012-01-06 15:54:57 ----A---- C:\Windows\system32\javaws.exe
2012-01-06 15:54:57 ----A---- C:\Windows\system32\javaw.exe
2012-01-06 15:54:57 ----A---- C:\Windows\system32\java.exe
2012-01-06 15:51:33 ----D---- C:\Program Files (x86)\FileHippo.com
2012-01-06 14:40:16 ----A---- C:\Windows\AutoKMS.ini
2012-01-06 14:22:42 ----SHD---- C:\$RECYCLE.BIN
2012-01-06 14:20:21 ----D---- C:\Windows\temp
2012-01-06 14:11:15 ----D---- C:\Windows\ERDNT
2012-01-06 10:23:58 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-01-06 10:23:58 ----A---- C:\Windows\system32\fsutil.exe
2012-01-06 10:23:58 ----A---- C:\Windows\system32\esent.dll
2012-01-06 10:23:58 ----A---- C:\Windows\system32\drivers\storport.sys
2012-01-06 10:23:58 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-01-06 10:23:58 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-01-06 10:23:58 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-01-06 10:23:58 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-01-06 10:23:58 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-01-06 10:23:57 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-01-06 10:23:57 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-01-06 10:23:57 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-01-06 10:23:52 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-01-06 10:23:52 ----A---- C:\Windows\system32\drivers\usbohci.sys
2012-01-06 10:23:52 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-01-06 10:23:52 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-01-06 10:23:52 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-01-06 10:23:52 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-01-06 10:22:08 ----D---- C:\Windows\pss
2012-01-06 10:08:15 ----D---- C:\Program Files\Defraggler
2012-01-06 09:48:41 ----D---- C:\Windows\SYSWOW64\Wat
2012-01-06 09:48:41 ----D---- C:\Windows\system32\Wat
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\wextract.exe
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\url.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\occache.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\msrating.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\msls31.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\mshta.exe
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\inseng.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\icardie.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2012-01-06 09:09:17 ----A---- C:\Windows\SYSWOW64\admparse.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\wininet.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\wextract.exe
2012-01-06 09:09:16 ----A---- C:\Windows\system32\webcheck.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\vbscript.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\urlmon.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\url.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-01-06 09:09:16 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-01-06 09:09:16 ----A---- C:\Windows\system32\pngfilt.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\occache.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\msrating.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\msls31.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\mshtmler.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\mshtmled.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\mshtml.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\mshta.exe
2012-01-06 09:09:16 ----A---- C:\Windows\system32\msfeedssync.exe
2012-01-06 09:09:16 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\msfeeds.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\licmgr10.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\jsproxy.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\jscript9.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\jscript.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\inseng.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\imgutil.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\iexpress.exe
2012-01-06 09:09:16 ----A---- C:\Windows\system32\ieUnatt.exe
2012-01-06 09:09:16 ----A---- C:\Windows\system32\ieui.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\iesysprep.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\iesetup.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\iertutil.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\iernonce.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\iepeers.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\ieframe.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\iedkcs32.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\ieapfltr.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\ieapfltr.dat
2012-01-06 09:09:16 ----A---- C:\Windows\system32\ieakui.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\ieaksie.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\ieakeng.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\ie4uinit.exe
2012-01-06 09:09:16 ----A---- C:\Windows\system32\icardie.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\dxtrans.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\dxtmsft.dll
2012-01-06 09:09:16 ----A---- C:\Windows\system32\admparse.dll
2012-01-06 09:04:21 ----A---- C:\Windows\system32\MRT.exe
2012-01-06 09:01:33 ----D---- C:\Program Files (x86)\MSXML 4.0
2012-01-06 08:55:56 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-01-06 08:55:56 ----A---- C:\Windows\system32\tzres.dll
2012-01-06 08:55:37 ----A---- C:\Windows\system32\winresume.exe
2012-01-06 08:55:37 ----A---- C:\Windows\system32\winload.exe
2012-01-06 08:55:37 ----A---- C:\Windows\system32\kdusb.dll
2012-01-06 08:55:37 ----A---- C:\Windows\system32\kdcom.dll
2012-01-06 08:55:37 ----A---- C:\Windows\system32\kd1394.dll
2012-01-06 08:55:34 ----A---- C:\Windows\system32\shell32.dll
2012-01-06 08:55:33 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-01-06 08:55:29 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-01-06 08:55:29 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-01-06 08:55:29 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-01-06 08:55:29 ----A---- C:\Windows\system32\tquery.dll
2012-01-06 08:55:29 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-01-06 08:55:29 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-01-06 08:55:29 ----A---- C:\Windows\system32\mssrch.dll
2012-01-06 08:55:28 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-01-06 08:55:28 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-01-06 08:55:28 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-01-06 08:55:28 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-01-06 08:55:28 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-01-06 08:55:28 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-01-06 08:55:28 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-01-06 08:55:28 ----A---- C:\Windows\system32\mssvp.dll
2012-01-06 08:55:28 ----A---- C:\Windows\system32\mssphtb.dll
2012-01-06 08:55:28 ----A---- C:\Windows\system32\mssph.dll
2012-01-06 08:55:28 ----A---- C:\Windows\system32\msscntrs.dll
2012-01-06 08:55:22 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-01-06 08:55:22 ----A---- C:\Windows\system32\wow64win.dll
2012-01-06 08:55:22 ----A---- C:\Windows\system32\winsrv.dll
2012-01-06 08:55:22 ----A---- C:\Windows\system32\KernelBase.dll
2012-01-06 08:55:22 ----A---- C:\Windows\system32\kernel32.dll
2012-01-06 08:55:22 ----A---- C:\Windows\system32\conhost.exe
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-01-06 08:55:21 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-01-06 08:55:21 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-01-06 08:55:21 ----A---- C:\Windows\SYSWOW64\user.exe
2012-01-06 08:55:21 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-01-06 08:55:21 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-01-06 08:55:21 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-01-06 08:55:21 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-01-06 08:55:21 ----A---- C:\Windows\system32\wow64cpu.dll
2012-01-06 08:55:21 ----A---- C:\Windows\system32\wow64.dll
2012-01-06 08:55:21 ----A---- C:\Windows\system32\ntvdm64.dll
2012-01-06 08:55:16 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-01-06 08:55:15 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-01-06 08:55:15 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-01-06 08:55:14 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-01-06 08:55:12 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-01-06 08:55:10 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-01-06 08:55:10 ----A---- C:\Windows\system32\EncDec.dll
2012-01-06 08:55:10 ----A---- C:\Windows\system32\drivers\afd.sys
2012-01-06 08:55:08 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-01-06 08:55:08 ----A---- C:\Windows\system32\poqexec.exe
2012-01-06 08:55:03 ----A---- C:\Windows\SYSWOW64\sbe.dll
2012-01-06 08:55:03 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2012-01-06 08:55:03 ----A---- C:\Windows\system32\sbe.dll
2012-01-06 08:55:03 ----A---- C:\Windows\system32\CPFilters.dll
2012-01-06 08:54:58 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-01-06 08:54:58 ----A---- C:\Windows\system32\drivers\srv.sys
2012-01-06 08:54:57 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-01-06 08:54:53 ----A---- C:\Windows\system32\win32k.sys
2012-01-06 08:54:49 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-01-06 08:54:49 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-01-06 08:54:49 ----A---- C:\Windows\system32\FntCache.dll
2012-01-06 08:54:49 ----A---- C:\Windows\system32\DWrite.dll
2012-01-06 08:54:49 ----A---- C:\Windows\system32\d2d1.dll
2012-01-06 08:54:47 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-01-06 08:54:47 ----A---- C:\Windows\system32\mfc42u.dll
2012-01-06 08:54:47 ----A---- C:\Windows\system32\mfc42.dll
2012-01-06 08:54:46 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-01-06 08:54:44 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2012-01-06 08:54:44 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-01-06 08:54:44 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-01-06 08:54:44 ----A---- C:\Windows\system32\fontsub.dll
2012-01-06 08:54:44 ----A---- C:\Windows\system32\atmlib.dll
2012-01-06 08:54:44 ----A---- C:\Windows\system32\atmfd.dll
2012-01-06 08:54:42 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-01-06 08:54:42 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-01-06 08:54:39 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-01-06 08:54:39 ----A---- C:\Windows\system32\XpsPrint.dll
2012-01-06 08:54:34 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-01-06 08:54:34 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-01-06 08:54:34 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-01-06 08:54:34 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-01-06 08:54:34 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-01-06 08:54:34 ----A---- C:\Windows\system32\odbctrac.dll
2012-01-06 08:54:34 ----A---- C:\Windows\system32\odbccu32.dll
2012-01-06 08:54:34 ----A---- C:\Windows\system32\odbccr32.dll
2012-01-06 08:54:34 ----A---- C:\Windows\system32\odbccp32.dll
2012-01-06 08:54:22 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-01-06 08:54:22 ----A---- C:\Windows\system32\psisdecd.dll
2012-01-06 08:54:19 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-01-06 08:54:19 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-01-06 08:54:19 ----A---- C:\Windows\system32\oleaut32.dll
2012-01-06 08:54:19 ----A---- C:\Windows\system32\oleacc.dll
2012-01-06 08:54:16 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-01-06 08:54:16 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-01-06 08:54:16 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-01-06 08:54:13 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-01-06 08:54:13 ----A---- C:\Windows\explorer.exe
2012-01-06 08:54:11 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-01-06 08:54:11 ----A---- C:\Windows\system32\inetcomm.dll
2012-01-06 08:54:05 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2012-01-06 08:54:05 ----A---- C:\Windows\system32\kerberos.dll
2012-01-06 08:54:03 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-01-06 08:54:03 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-01-06 08:54:03 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-01-06 08:54:03 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-01-06 08:54:03 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-01-06 08:54:00 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-01-06 08:54:00 ----A---- C:\Windows\system32\prevhost.exe
2012-01-06 08:53:57 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-01-06 08:53:55 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2012-01-06 08:53:55 ----A---- C:\Windows\system32\d3d10_1.dll
2012-01-06 08:53:50 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-01-06 08:53:50 ----A---- C:\Windows\system32\xmllite.dll
2012-01-06 08:53:48 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-01-06 08:53:48 ----A---- C:\Windows\system32\csrsrv.dll
2012-01-06 08:53:45 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-01-06 08:53:45 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-01-06 08:53:45 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-01-06 08:53:45 ----A---- C:\Windows\system32\dnsapi.dll
2012-01-06 08:53:44 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-01-06 08:40:58 ----D---- C:\Program Files\Common Files\Symantec Shared
2012-01-06 08:40:58 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2012-01-06 08:40:38 ----D---- C:\Windows\system32\drivers\NISx64
2012-01-06 08:40:37 ----D---- C:\Program Files (x86)\Norton Internet Security
2012-01-06 08:40:36 ----D---- C:\ProgramData\Norton
2012-01-06 08:40:12 ----D---- C:\ProgramData\NortonInstaller
2012-01-06 08:40:12 ----D---- C:\Program Files (x86)\NortonInstaller
2012-01-06 08:26:04 ----D---- C:\Users\Luky\AppData\Roaming\Malwarebytes
2012-01-06 08:26:02 ----D---- C:\ProgramData\Malwarebytes
2012-01-06 08:26:00 ----A---- C:\Windows\system32\drivers\mbam.sys
2012-01-06 08:25:59 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-01-06 08:20:57 ----A---- C:\Windows\system32\TURegOpt.exe
2012-01-06 08:20:56 ----A---- C:\Windows\SYSWOW64\authuitu.dll
2012-01-06 08:20:56 ----A---- C:\Windows\system32\authuitu.dll
2012-01-06 08:20:51 ----D---- C:\Program Files (x86)\TuneUp Utilities 2012
2012-01-06 08:20:00 ----SHD---- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-01-06 08:19:58 ----D---- C:\Windows\SYSWOW64\2000
2012-01-06 08:17:35 ----D---- C:\Windows\system32\Macromed
2012-01-06 08:15:35 ----DC---- C:\Windows\system32\DRVSTORE
2012-01-06 08:15:35 ----A---- C:\Windows\system32\drivers\usbfilter.sys
2012-01-06 08:10:10 ----ASH---- C:\pagefile.sys

======List of files/folders modified in the last 1 month======

2012-01-29 15:57:02 ----D---- C:\Users\Luky\AppData\Roaming\AIMP
2012-01-29 15:55:48 ----D---- C:\Users\Luky\AppData\Roaming\Free Download Manager
2012-01-29 14:49:59 ----D---- C:\Windows
2012-01-29 14:36:20 ----RD---- C:\Program Files (x86)
2012-01-29 14:01:48 ----D---- C:\Windows\Prefetch
2012-01-29 09:47:30 ----D---- C:\Windows\System32
2012-01-29 09:47:30 ----D---- C:\Windows\inf
2012-01-29 09:47:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-01-29 09:42:01 ----SHD---- C:\System Volume Information
2012-01-29 09:39:38 ----D---- C:\Windows\system32\config
2012-01-29 09:13:07 ----D---- C:\Program Files\CCleaner
2012-01-29 08:45:32 ----D---- C:\Users\Luky\AppData\Roaming\Azureus
2012-01-29 08:45:30 ----D---- C:\Windows\Minidump
2012-01-29 08:36:07 ----D---- C:\Windows\system32\drivers
2012-01-29 08:34:18 ----D---- C:\Program Files (x86)\Vuze
2012-01-29 08:29:14 ----D---- C:\Windows\SYSWOW64\drivers
2012-01-27 20:18:46 ----D---- C:\Windows\Tasks
2012-01-27 20:18:46 ----D---- C:\Windows\system32\wfp
2012-01-27 20:18:45 ----D---- C:\Windows\system32\wbem
2012-01-27 20:18:45 ----D---- C:\Windows\system32\oodag
2012-01-27 20:18:45 ----D---- C:\Windows\system32\drivers\etc
2012-01-27 20:18:44 ----D---- C:\Windows\AppCompat
2012-01-27 20:18:36 ----D---- C:\Windows\registration
2012-01-27 20:18:17 ----SD---- C:\ProgramData\Microsoft
2012-01-27 19:43:42 ----D---- C:\Windows\system32\LogFiles
2012-01-27 13:15:41 ----D---- C:\Boot
2012-01-27 11:55:13 ----D---- C:\Windows\SoftwareDistribution
2012-01-27 11:51:02 ----SHD---- C:\Windows\Installer
2012-01-27 11:46:31 ----D---- C:\Windows\SysWOW64
2012-01-27 11:45:41 ----D---- C:\Windows\system32\catroot
2012-01-27 11:45:09 ----D---- C:\ProgramData
2012-01-27 11:44:49 ----D---- C:\Program Files\ATI Technologies
2012-01-27 11:44:34 ----D---- C:\ProgramData\AMD
2012-01-27 11:43:39 ----D---- C:\Windows\system32\DriverStore
2012-01-27 11:26:36 ----D---- C:\Windows\system32\catroot2
2012-01-22 12:49:14 ----D---- C:\Windows\system32\Tasks
2012-01-22 12:48:56 ----RD---- C:\Program Files
2012-01-21 18:36:09 ----D---- C:\Windows\Microsoft.NET
2012-01-21 18:36:08 ----RSD---- C:\Windows\assembly
2012-01-21 18:23:26 ----D---- C:\Windows\winsxs
2012-01-21 18:23:10 ----RSD---- C:\Windows\Fonts
2012-01-21 17:53:35 ----D---- C:\Downloads
2012-01-21 17:44:17 ----D---- C:\Program Files (x86)\Vuze_Remote
2012-01-21 17:39:36 ----D---- C:\ProgramData\Microsoft Help
2012-01-21 17:39:07 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-01-21 17:38:49 ----D---- C:\Windows\ShellNew
2012-01-21 17:38:49 ----D---- C:\Program Files (x86)\MSBuild
2012-01-21 17:38:48 ----D---- C:\Program Files (x86)\Common Files
2012-01-21 17:37:52 ----A---- C:\Windows\win.ini
2012-01-21 17:37:26 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-01-16 23:26:59 ----D---- C:\Windows\system32\NDF
2012-01-12 20:36:24 ----D---- C:\Windows\debug
2012-01-11 02:00:17 ----D---- C:\Windows\ehome
2012-01-07 02:08:25 ----D---- C:\Windows\rescache
2012-01-06 17:08:14 ----D---- C:\Recovery
2012-01-06 17:08:13 ----D---- C:\Windows\system32\Msdtc
2012-01-06 15:54:36 ----A---- C:\Windows\system32\deployJava1.dll
2012-01-06 15:54:34 ----D---- C:\Program Files\Java
2012-01-06 14:18:17 ----A---- C:\Windows\system.ini
2012-01-06 14:14:42 ----D---- C:\Windows\AppPatch
2012-01-06 14:14:41 ----D---- C:\Program Files\Common Files
2012-01-06 12:39:19 ----D---- C:\Windows\SYSWOW64\en-US
2012-01-06 12:39:19 ----D---- C:\Windows\system32\en-US
2012-01-06 12:00:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-01-06 12:00:04 ----D---- C:\Windows\system32\cs-CZ
2012-01-06 09:58:58 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-01-06 09:56:11 ----D---- C:\Windows\Panther
2012-01-06 09:56:11 ----D---- C:\Windows\Logs
2012-01-06 09:15:18 ----D---- C:\Program Files\Internet Explorer
2012-01-06 09:15:18 ----D---- C:\Program Files\Common Files\System
2012-01-06 09:15:17 ----D---- C:\Windows\SYSWOW64\sk-SK
2012-01-06 09:15:17 ----D---- C:\Windows\system32\sk-SK
2012-01-06 09:15:17 ----D---- C:\Program Files (x86)\Internet Explorer
2012-01-06 09:15:13 ----D---- C:\Windows\SYSWOW64\migration
2012-01-06 09:15:12 ----D---- C:\Windows\system32\migration
2012-01-06 09:15:12 ----D---- C:\Windows\PolicyDefinitions
2012-01-06 09:15:09 ----D---- C:\Windows\system32\Boot
2012-01-06 08:37:14 ----D---- C:\Program Files (x86)\Free Download Manager
2012-01-06 08:20:53 ----D---- C:\Users\Luky\AppData\Roaming\TuneUp Software
2012-01-06 08:20:53 ----D---- C:\ProgramData\TuneUp Software
2012-01-06 08:10:08 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2011-10-04 80000]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2011-10-04 40576]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1302000.00A\SYMDS64.SYS [2011-05-16 451192]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1302000.00A\SYMEFA64.SYS [2011-09-27 1084024]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 BHDrvx64;BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\BASHDefs\20120121.002\BHDrvx64.sys [2012-01-21 1157240]
R1 ccSet_NIS;Norton Internet Security Settings Manager; C:\Windows\system32\drivers\NISx64\1302000.00A\ccSetx64.sys [2011-08-09 167048]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2012-01-06 482936]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\IPSDefs\20120126.003_806\IDSvia64.sys [2012-01-26 488568]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1302000.00A\SRTSPX64.SYS [2011-08-03 37496]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1302000.00A\Ironx64.SYS [2011-07-26 189560]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\NISx64\1302000.00A\SYMNETS.SYS [2011-07-26 401016]
R2 AODDriver4.01;AODDriver4.01; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2011-06-24 55424]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-12-06 10720256]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-12-06 327168]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-10-17 93712]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-01-27 138360]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2011-12-10 23152]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\VirusDefs\20120128.009\ENG64.SYS [2012-01-29 117880]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\VirusDefs\20120128.009\EX64.SYS [2012-01-29 2048632]
R3 P17;SB Audigy; C:\Windows\system32\drivers\P17.sys [2009-04-21 1288192]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-01 187392]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\NISx64\1302000.00A\SRTSP64.SYS [2011-08-03 729720]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2012-01-06 174200]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [2011-12-12 11856]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2011-08-17 53376]
S3 atikmdag;atikmdag; C:\Windows\system32\drivers\atikmdag.sys [2011-12-06 10720256]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2011-08-12 140672]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-12-06 235520]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-12-05 361984]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2008-11-18 307200]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-12-24 652872]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe [2011-08-10 138760]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2011-06-29 3246920]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [2006-12-19 81920]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2011-12-14 2123584]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2011-11-01 79360]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-11-01 651720]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2008-04-08 800040]
S3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2008-01-22 275752]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-01-06 1255736]

-----------------EOF-----------------

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 16:27
od Roli
Tak takhle by to ale nešlo, co uděláme s tím nelegálním softíkem od Microsoftu :???:

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 16:29
od ponte
teraz neviem že s ktorym jeden som už vymazal mislym že to bol office to my tiež tu jeden poradil od vas že to mam dat preč

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 17:02
od Roli
Tak to vypadá že máš nelegální Windows 7 Ultimate nebo se pletu :???:

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 17:06
od ponte
win 7 my inštalovaly v obchode už som ho mal ja som myslel že win 7 manager tak ten ano ten je nelegalny ale win 7 by nemal byt nelegalny ked ano tak potom som stoho nejak pomiatnuty lebo ak ano tak otom neviem aspon ja nie ja som stale bol na tom že my tam daly legalny to snad nie super sprava teraz ste ma potešily sakra ste si isty že je nelegalny?

Re: Malware bytes hlasi 81 nebezpečnych položiek

Napsal: 29 led 2012 17:30
od Roli
No máš tam crack na produkty Microsoftu, proto se ptám.


Stáhni a ulož na plochu CKScanner,

spusť aplikaci a v otevřeném okně klikni na Search For Files.

Po dokončení skenu klikni na Save List to File a potvrď OK.

Tímto uložíš na plochu log s názvem ckfiles.txt, jeho obsah mi sem zkopíruj.