Extrémě zpomalený IE a další potíže
Napsal: 02 pro 2012 22:46
Dobrý večer,
Na počátku potíží bude pravděpodobně spuštění viru cca před měsícem po návštěvě napadených webových stránek kamaráda. Nepředpokládal jsem, že by soubor, který jsem nejspíš spustil byl vir.
Hlavním problémem je extrémně zpomalené načítání dat v IE. Někdy se to na krátkou dobu jakoby srovná, ale většinou stačí IE zavřít a znovu otevřít, nebo jen novou kartu a problém je zpět. Obvykle se stránky ani nenačtou a IE tak nelze téměř používat.
Při posouvání oken po ploše windows 7 celá plocha obrazovky bíle problikává a za posouvaným oknem zůstávají stopy, které rychle mizí.
Také například mikroaplikace na ploše s předpovědí počasí se často nemůže připojit, někdy data zobrazí třeba až po 20 minutách.
Firefox běží, ale měl jsem s ním také problémy např ve spouštění videí v Youtube, která nějaký čas nešla spustit. Teď vypadá Firefox ok.
Google chrome jediný běží celou dobu. Vady se ale také projevují. Zobrazení nově otevřené stránky napřed zůstane někdy bílé nebo se zdá od počátku zamrznuté. Ve skutečnosti stránka někde na pozadí běží, ale pro aktivní běh i na obrazovce musím kliknout třeba na sousední kartu a pak se vrátit. Od toho momentu je teprve stránka ok.
Počítač jsem se snažil všemožně čistit, později i trochu nahodile pomocí různých prográmků z netu, asi i hodně neodborně. C je defragmentované. Volný prostor je asi 55Gb.
Na začátku jsem měl podezření jen na poškozené IE. Proto jsem i dvakrát odinstaloval 9 na 8. Problém byl stejný. Teď mám v PC dokonce IE10.
Norton Antivirus nic od počátku problémů nehlásí. Další antiviry sice něco málo našly, ale pak už to vypadalo čisté.
Jenže problém přetrvává...
O potkání se s virem svědčí například upravený soubor hosts, který měl zajímavý seznam k přesměrování.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Aleš at 2012-12-02 22:14:47
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 58 GB (10%) free of 600 GB
Total RAM: 3550 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:14:58, on 2.12.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16438)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Winamp\winampa.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Plextor\PlexUTILITIES\PlexRadar.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Norton Internet Security\Engine\20.2.0.19\ccSvcHst.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Aleš\Downloads\RSIT.exe
C:\Program Files\trend micro\Aleš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\Snagit 10\SnagitBHO.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\coIEPlg.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [BCU] "C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [CnOServerLauncher] CNOServerLauncher.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2946250080-1995555880-189430243-1004\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2946250080-1995555880-189430243-1004\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: plexradar.lnk = C:\Program Files\Plextor\PlexUTILITIES\PlexRadar.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/f ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - Unknown owner - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: mental ray 3.9 Satellite for Autodesk 3ds Max Design 2012 32-bit - English 32-bit (mi-raysat_3dsmax2012_32) - Unknown owner - C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\ccSvcHst.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Printer Control - Unknown owner - C:\Windows\system32\PrintCtrl.exe (file missing)
O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2011.SP2a\RpcAgentSrv.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
--
End of file - 9467 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\One-Click Tweak.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Aleš\AppData\Roaming\Mozilla\Firefox\Profiles\o8qwglwp.default
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
"{BBDA0591-3099-440a-AA10-41764D9DB4DB}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\IPSFFPlgn\
"{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\coFFPlgn\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.110 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_110.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1167637.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=15.0.0.198]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=15.0.0.198]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.0.198]
"Description"=RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.0.198]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=15.0.0.198]
"Description"=15.0.0.198
"Path"=c:\program files\real\realplayer\Netscape6\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
nppl3260.dll
nppl3260.xpt
nprjplug.dll
nprpjplug.dll
npwachk.dll
nsjsrealplayerplugin.xpt
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00C6482D-C502-44C8-8409-FCE54AD9C208}]
SnagIt Toolbar Loader - C:\Program Files\TechSmith\Snagit 10\SnagitBHO.dll [2010-04-13 63304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-12-03 425680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\coIEPlg.dll [2012-10-18 498584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\IPS\IPSBHO.DLL [2012-09-06 387040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-09-25 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-09-22 192144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-09-25 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\coIEPlg.dll [2012-10-18 498584]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-11-08 6756048]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2011-07-11 74752]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"BCU"=C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe [2009-10-26 375000]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-12-15 8120864]
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"CnOServerLauncher"=CNOServerLauncher.exe []
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27 919008]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2011-04-16 2736128]
"AnyDVD"=C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe [2011-06-12 5045880]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]
"OfficeSyncProcess"=C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE []
C:\Users\Aleš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
plexradar.lnk - C:\Program Files\Plextor\PlexUTILITIES\PlexRadar.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"NoSecCPL"=0
"NoDispCPL"=0
"NoDispScrSavPage"=0
"NoDispAppearancePage"=0
"NoDispSettingsPage"=0
"NoDevMgrPage"=0
"NoConfigPage"=0
"NoVirtMemPage"=0
"NoFileSysPage"=0
"NoNetSetup"=0
"NoNetSetupIDPage"=0
"NoNetSetupSecurityPage"=0
"NoWorkgroupContents"=0
"NoEntireNetwork"=0
"NoFileSharingControl"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDesktop"=0
"NoFolderOptions"=0x00000000
"RestrictRun"=0
"NoResolveTrack"=1
"NoThumbnailCache"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoFolderOptions"=0x00000000
"NoResolveTrack"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.pDAD"=prodad-codec.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - %SystemRoot%\System32\CScript.exe "%1" %*
.vbs - open - %SystemRoot%\System32\CScript.exe "%1" %*
======List of files/folders created in the last 2 months======
2012-12-02 12:40:51 ----D---- C:\Program Files\Mozilla Firefox
2012-12-02 10:17:36 ----A---- C:\Windows\system32\drivers\tmrkb.sys
2012-12-01 21:35:45 ----D---- C:\Program Files\trend micro
2012-12-01 21:35:44 ----D---- C:\rsit
2012-12-01 19:25:48 ----D---- C:\Program Files\RegUtility
2012-11-30 21:57:00 ----A---- C:\Windows\system32\urlmon.dll
2012-11-30 21:57:00 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-11-30 21:57:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2012-11-30 21:57:00 ----A---- C:\Windows\system32\msls31.dll
2012-11-30 21:57:00 ----A---- C:\Windows\system32\elshyph.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\wininet.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\wextract.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\webcheck.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\vbscript.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\url.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\pngfilt.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\occache.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\msrating.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshtmlmedia.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshtmler.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshtmled.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshtml.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshta.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\msfeedssync.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\msfeeds.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\licmgr10.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\jsproxy.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\jscript9.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\jscript.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\inseng.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\imgutil.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iexpress.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieUnatt.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieui.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iesysprep.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iesetup.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iertutil.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iernonce.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iepeers.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieframe.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iedkcs32.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieapfltr.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieapfltr.dat
2012-11-30 21:56:59 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ie4uinit.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\icardie.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\dxtrans.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\dxtmsft.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\XpsPrint.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\WMPhoto.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\UIAnimation.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\FntCache.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\dxgi.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\DWrite.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d11.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10warp.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10level9.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10core.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10_1core.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10_1.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d2d1.dll
2012-11-26 21:58:32 ----D---- C:\ProgramData\Spybot - Search & Destroy
2012-11-25 12:01:38 ----D---- C:\Program Files\Defraggler
2012-11-25 01:02:40 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-11-24 21:38:31 ----D---- C:\proverit
2012-11-20 02:09:01 ----D---- C:\Program Files\Symantec
2012-11-20 02:09:01 ----D---- C:\Program Files\Common Files\Symantec Shared
2012-11-20 02:09:01 ----A---- C:\Windows\system32\drivers\SYMEVENT.SYS
2012-11-20 02:01:22 ----D---- C:\Program Files\Norton Internet Security
2012-11-20 02:01:15 ----D---- C:\Program Files\NortonInstaller
2012-11-20 01:20:46 ----D---- C:\ProgramData\PCSettings
2012-11-19 07:24:18 ----D---- C:\Program Files\Emsisoft Anti-Malware
2012-11-16 07:14:38 ----D---- C:\Users\Aleš\AppData\Roaming\Malwarebytes
2012-11-16 07:14:25 ----D---- C:\ProgramData\Malwarebytes
2012-11-15 22:05:47 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-11-15 22:05:46 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2012-11-15 22:05:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-11-15 22:05:45 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2012-11-15 22:05:42 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-11-15 22:05:38 ----A---- C:\Windows\system32\wksprtPS.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\TSWbPrxy.exe
2012-11-15 22:05:38 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\tsgqec.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\rdpudd.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\rdpendp_winip.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\aaclient.dll
2012-11-15 22:05:37 ----A---- C:\Windows\system32\wksprt.exe
2012-11-15 22:05:37 ----A---- C:\Windows\system32\rdpcorets.dll
2012-11-15 22:05:37 ----A---- C:\Windows\system32\mstscax.dll
2012-11-15 22:05:37 ----A---- C:\Windows\system32\mstsc.exe
2012-11-15 02:10:01 ----A---- C:\Windows\system32\schannel.dll
2012-11-15 02:10:01 ----A---- C:\Windows\system32\ncrypt.dll
2012-11-15 02:10:01 ----A---- C:\Windows\system32\lsasrv.dll
2012-11-15 02:10:01 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-11-15 02:10:01 ----A---- C:\Windows\system32\drivers\cng.sys
2012-11-15 01:34:46 ----A---- C:\Windows\system32\Wdfres.dll
2012-11-15 01:34:46 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2012-11-15 01:34:46 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2012-11-15 01:34:00 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-11-15 01:34:00 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFx.dll
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFHost.exe
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\wamregps.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\iisRtl.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\iisrstap.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\iisreset.exe
2012-11-15 01:31:32 ----A---- C:\Windows\system32\ahadmin.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\admwprox.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\nlasvc.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\nlaapi.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\netevent.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\netcorehc.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\ncsi.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-11-15 01:26:46 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-11-15 01:26:32 ----A---- C:\Windows\system32\win32k.sys
2012-11-15 01:26:25 ----A---- C:\Windows\system32\synceng.dll
2012-11-15 01:26:18 ----A---- C:\Windows\system32\dhcpcore6.dll
2012-11-15 01:26:17 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2012-11-12 19:23:24 ----D---- C:\Users\Aleš\AppData\Roaming\ESET
2012-11-12 07:37:38 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2012-11-12 07:37:38 ----A---- C:\Windows\system32\javaw.exe
2012-11-12 07:37:38 ----A---- C:\Windows\system32\java.exe
2012-11-12 07:05:36 ----D---- C:\Program Files\Seznam.cz
2012-11-11 22:54:29 ----RSD---- C:\RavBin
2012-11-11 22:53:43 ----D---- C:\Program Files\Rising
2012-11-11 22:53:32 ----D---- C:\ProgramData\Rising
2012-11-11 22:38:09 ----D---- C:\ProgramData\Kaspersky Lab
2012-11-11 22:30:30 ----D---- C:\Users\Aleš\AppData\Roaming\LavasoftStatistics
2012-11-03 20:20:20 ----D---- C:\ProgramData\ArcSoft
2012-11-03 20:20:16 ----D---- C:\Users\Aleš\AppData\Roaming\ArcSoft
2012-11-03 20:19:38 ----A---- C:\Windows\system32\drivers\afc.sys
2012-11-03 20:18:31 ----D---- C:\Program Files\Common Files\ArcSoft
2012-10-10 21:15:28 ----A---- C:\Windows\system32\nvumdshim.dll
2012-10-10 21:15:04 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-10-10 21:15:00 ----A---- C:\Windows\system32\nvcuvid.dll
2012-10-10 21:14:50 ----A---- C:\Windows\system32\nvdispgenco32.dll
2012-10-10 21:14:46 ----A---- C:\Windows\system32\nvcompiler.dll
2012-10-10 21:14:42 ----A---- C:\Windows\system32\nvcuda.dll
2012-10-10 21:14:28 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-10-10 21:14:22 ----A---- C:\Windows\system32\nvoglv32.dll
2012-10-10 21:14:18 ----A---- C:\Windows\system32\nvinit.dll
2012-10-10 21:14:16 ----A---- C:\Windows\system32\nvopencl.dll
2012-10-10 06:40:57 ----A---- C:\Windows\system32\wintrust.dll
2012-10-10 06:40:51 ----A---- C:\Windows\system32\tzres.dll
2012-10-10 06:40:41 ----A---- C:\Windows\system32\KernelBase.dll
2012-10-10 06:40:41 ----A---- C:\Windows\system32\kernel32.dll
2012-10-10 06:40:41 ----A---- C:\Windows\system32\conhost.exe
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-10-10 06:40:40 ----A---- C:\Windows\system32\winsrv.dll
2012-10-10 06:40:29 ----A---- C:\Windows\system32\cryptsvc.dll
2012-10-10 06:40:29 ----A---- C:\Windows\system32\cryptnet.dll
2012-10-10 06:40:29 ----A---- C:\Windows\system32\crypt32.dll
2012-10-10 06:40:23 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-10-10 06:40:22 ----A---- C:\Windows\system32\kerberos.dll
2012-10-10 06:40:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-10-10 06:40:21 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-10-08 08:21:08 ----A---- C:\Windows\system32\drivers\EpfwLWF.sys
======List of files/folders modified in the last 2 months======
2012-12-02 22:14:37 ----D---- C:\Windows\Temp
2012-12-02 22:13:25 ----D---- C:\Windows\Prefetch
2012-12-02 22:12:43 ----SHD---- C:\System Volume Information
2012-12-02 22:12:19 ----A---- C:\Windows\system32\log.txt
2012-12-02 22:12:04 ----D---- C:\ProgramData\NVIDIA
2012-12-02 22:10:46 ----RD---- C:\Program Files
2012-12-02 22:10:46 ----D---- C:\Windows\system32\drivers
2012-12-02 22:10:46 ----D---- C:\Windows\System32
2012-12-02 22:10:06 ----D---- C:\Windows\system32\config
2012-12-02 22:07:33 ----HD---- C:\ProgramData
2012-12-02 17:35:36 ----SD---- C:\Users\Aleš\AppData\Roaming\Microsoft
2012-12-02 12:18:59 ----D---- C:\Stazeno
2012-12-02 12:07:52 ----D---- C:\Windows\system32\NDF
2012-12-02 10:20:42 ----D---- C:\Program Files\uTorrent
2012-12-02 10:19:41 ----D---- C:\Users\Aleš\AppData\Roaming\uTorrent
2012-12-01 15:02:24 ----D---- C:\Windows\rescache
2012-12-01 09:08:30 ----D---- C:\Windows\system32\drivers\etc
2012-12-01 07:55:43 ----D---- C:\Windows\system32\Tasks
2012-12-01 07:55:41 ----D---- C:\Windows\Tasks
2012-11-30 22:02:10 ----D---- C:\Windows\winsxs
2012-11-30 21:59:31 ----D---- C:\Windows\system32\cs-CZ
2012-11-30 21:59:31 ----D---- C:\Program Files\Internet Explorer
2012-11-30 21:59:30 ----D---- C:\Windows\system32\migration
2012-11-30 21:59:30 ----D---- C:\Windows\system32\en-US
2012-11-30 21:59:30 ----D---- C:\Windows\PolicyDefinitions
2012-11-30 21:59:30 ----D---- C:\Windows\inf
2012-11-30 21:58:49 ----D---- C:\Windows\Logs
2012-11-30 21:58:36 ----D---- C:\Windows\system32\catroot
2012-11-30 21:58:03 ----D---- C:\Windows\system32\catroot2
2012-11-30 21:48:15 ----D---- C:\Windows
2012-11-28 02:11:55 ----D---- C:\Windows\AppPatch
2012-11-28 01:26:42 ----D---- C:\ProgramData\Adobe
2012-11-28 01:12:43 ----SD---- C:\ProgramData\Microsoft
2012-11-25 21:15:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-11-25 01:03:01 ----D---- C:\Users\Aleš\AppData\Roaming\Mozilla
2012-11-24 23:20:49 ----SHD---- C:\Windows\Installer
2012-11-24 23:20:49 ----HD---- C:\Config.Msi
2012-11-21 06:13:23 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-11-20 02:10:47 ----D---- C:\ProgramData\Norton
2012-11-20 02:09:01 ----D---- C:\Program Files\Common Files
2012-11-20 02:01:23 ----D---- C:\Windows\system32\drivers\NIS
2012-11-20 01:43:25 ----HD---- C:\win32
2012-11-20 01:31:38 ----D---- C:\Windows\system32\DriverStore
2012-11-17 14:07:08 ----D---- C:\Windows\Minidump
2012-11-15 22:08:28 ----D---- C:\Windows\system32\wbem
2012-11-15 22:08:28 ----D---- C:\Windows\system32\drivers\en-US
2012-11-15 02:42:59 ----RSD---- C:\Windows\assembly
2012-11-15 02:42:59 ----D---- C:\Windows\Microsoft.NET
2012-11-15 02:02:12 ----RSD---- C:\Windows\Fonts
2012-11-15 02:02:12 ----D---- C:\Windows\system32\inetsrv
2012-11-15 02:02:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2012-11-15 01:47:26 ----D---- C:\ProgramData\Microsoft Help
2012-11-15 01:40:44 ----A---- C:\Windows\system32\MRT.exe
2012-11-15 01:37:52 ----D---- C:\Program Files\NVIDIA Corporation
2012-11-15 01:37:26 ----RD---- C:\Users
2012-11-15 01:37:20 ----HD---- C:\temp
2012-11-15 01:32:18 ----A---- C:\Windows\win.ini
2012-11-12 07:37:38 ----D---- C:\Program Files\Java
2012-11-11 11:18:39 ----D---- C:\Users\Aleš\AppData\Roaming\Vso
2012-11-11 10:32:17 ----D---- C:\ProgramData\Google
2012-11-11 10:31:43 ----D---- C:\Program Files\DAEMON Tools Toolbar
2012-11-08 00:37:35 ----A---- C:\Windows\system32\cmdcsr.dll
2012-11-08 00:37:34 ----A---- C:\Windows\system32\guard32.dll
2012-11-03 20:36:46 ----HD---- C:\Program Files\InstallShield Installation Information
2012-11-01 22:17:16 ----A---- C:\Windows\MovingPicture.ini
2012-10-24 22:01:56 ----A---- C:\Windows\MaterialsDlg.ini
2012-10-22 07:47:48 ----D---- C:\DelamStranky
2012-10-10 21:14:50 ----A---- C:\Windows\system32\nvwgf2um.dll
2012-10-10 21:14:44 ----A---- C:\Windows\system32\nvapi.dll
2012-10-10 21:14:22 ----A---- C:\Windows\system32\nvdispco32.dll
2012-10-10 21:14:16 ----A---- C:\Windows\system32\nvd3dum.dll
2012-10-03 20:44:58 ----A---- C:\Windows\LuminancesDlg.ini
2012-10-03 20:44:58 ----A---- C:\Windows\EnvironmentsDlg.ini
2012-10-03 20:20:48 ----D---- C:\ProgramData\IMSIDesign
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BTHidEnum;Bluetooth HID Enumerator; C:\Windows\System32\Drivers\vbtenum.sys [2007-03-05 20880]
R0 BTHidMgr;Bluetooth HID Manager Service; C:\Windows\System32\Drivers\BTHidMgr.sys [2007-03-05 35600]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-12-13 428088]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NIS\1402000.013\SYMDS.SYS [2012-10-03 368288]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NIS\1402000.013\SYMEFA.SYS [2012-10-03 927904]
R1 AsIO;AsIO; C:\Windows\system32\drivers\AsIO.sys [2009-08-04 11296]
R1 AsUpIO;AsUpIO; C:\Windows\system32\drivers\AsUpIO.sys [2009-07-06 11448]
R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20121106.001\BHDrvx86.sys [2012-10-24 995488]
R1 ccSet_NIS;Norton Internet Security Settings Manager; C:\Windows\system32\drivers\NIS\1402000.013\ccSetx86.sys [2012-10-03 134304]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2012-11-08 494416]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2012-11-08 36072]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2012-11-19 376480]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2010-12-16 31088]
R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20121130.001\IDSvix86.sys [2012-11-19 386720]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2012-11-08 82952]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\NIS\1402000.013\SRTSPX.SYS [2012-09-06 32888]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NIS\1402000.013\Ironx86.SYS [2012-09-06 175264]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NIS\1402000.013\SYMNETS.SYS [2012-09-06 338592]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2006-11-10 18688]
R3 AnyDVD;AnyDVD; C:\Windows\System32\Drivers\AnyDVD.sys [2011-03-25 117752]
R3 BlueletAudio;Bluetooth Audio Service; C:\Windows\system32\DRIVERS\blueletaudio.sys [2007-05-11 34704]
R3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\Windows\system32\DRIVERS\BlueletSCOAudio.sys [2007-03-05 27792]
R3 BT;Bluetooth PAN Network Adapter; C:\Windows\system32\DRIVERS\btnetdrv.sys [2007-03-05 18320]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-11-19 106656]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2009-09-17 41088]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-12-15 2978016]
R3 MarvinBus;Pinnacle Marvin Bus; C:\Windows\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 13216]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20121201.006\NAVENG.SYS [2012-11-19 92704]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20121201.006\NAVEX15.SYS [2012-11-19 1601184]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2010-09-07 123496]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2011-04-23 47360]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 8192]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
R3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\system32\drivers\NIS\1402000.013\SRTSP.SYS [2012-10-08 586400]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2012-11-20 142496]
R3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
R3 VComm;Virtual Serial port driver; C:\Windows\system32\DRIVERS\VComm.sys [2007-03-05 34448]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\Windows\System32\Drivers\VcommMgr.sys [2007-03-05 44304]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\Windows\System32\Drivers\btcusb.sys [2007-05-09 36496]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\drivers\Dot4Prt.sys [2010-11-20 16384]
S3 Dot4Scan;Scan Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Scan.sys [2009-07-14 10752]
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2010-02-03 94336]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 RimUsb;zařízení BlackBerry Smartphone; C:\Windows\System32\Drivers\RimUsb.sys [2007-05-14 22656]
S3 SANDRA;SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2011.SP2a\WNt500x86\Sandra.sys [2009-08-07 23112]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 BCUService;Browser Configuration Utility Service; C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-10-26 223464]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-11-08 1990464]
R2 DvmMDES;DeviceVM Meta Data Export Service; C:\ASUS.SYS\config\DVMExportService.exe [2009-10-16 319488]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2011-04-16 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 mi-raysat_3dsmax2012_32;mental ray 3.9 Satellite for Autodesk 3ds Max Design 2012 32-bit - English 32-bit; C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe [2011-02-23 86016]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2008-09-24 935208]
R2 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
R2 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
R2 NIS;Norton Internet Security; C:\Program Files\Norton Internet Security\Engine\20.2.0.19\ccSvcHst.exe [2012-10-10 143928]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-10-02 645992]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-04-17 136176]
S2 Printer Control;Printer Control; C:\Windows\system32\PrintCtrl.exe []
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-11-21 250808]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-06-26 1044816]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-04-17 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-12 194032]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-12-02 115168]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 SandraAgentSrv;SiSoftware Deployment Agent Service; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2011.SP2a\RpcAgentSrv.exe [2009-08-10 93848]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;Služba Technologie aktivace Windows; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-04-16 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Na počátku potíží bude pravděpodobně spuštění viru cca před měsícem po návštěvě napadených webových stránek kamaráda. Nepředpokládal jsem, že by soubor, který jsem nejspíš spustil byl vir.
Hlavním problémem je extrémně zpomalené načítání dat v IE. Někdy se to na krátkou dobu jakoby srovná, ale většinou stačí IE zavřít a znovu otevřít, nebo jen novou kartu a problém je zpět. Obvykle se stránky ani nenačtou a IE tak nelze téměř používat.
Při posouvání oken po ploše windows 7 celá plocha obrazovky bíle problikává a za posouvaným oknem zůstávají stopy, které rychle mizí.
Také například mikroaplikace na ploše s předpovědí počasí se často nemůže připojit, někdy data zobrazí třeba až po 20 minutách.
Firefox běží, ale měl jsem s ním také problémy např ve spouštění videí v Youtube, která nějaký čas nešla spustit. Teď vypadá Firefox ok.
Google chrome jediný běží celou dobu. Vady se ale také projevují. Zobrazení nově otevřené stránky napřed zůstane někdy bílé nebo se zdá od počátku zamrznuté. Ve skutečnosti stránka někde na pozadí běží, ale pro aktivní běh i na obrazovce musím kliknout třeba na sousední kartu a pak se vrátit. Od toho momentu je teprve stránka ok.
Počítač jsem se snažil všemožně čistit, později i trochu nahodile pomocí různých prográmků z netu, asi i hodně neodborně. C je defragmentované. Volný prostor je asi 55Gb.
Na začátku jsem měl podezření jen na poškozené IE. Proto jsem i dvakrát odinstaloval 9 na 8. Problém byl stejný. Teď mám v PC dokonce IE10.
Norton Antivirus nic od počátku problémů nehlásí. Další antiviry sice něco málo našly, ale pak už to vypadalo čisté.
Jenže problém přetrvává...
O potkání se s virem svědčí například upravený soubor hosts, který měl zajímavý seznam k přesměrování.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Aleš at 2012-12-02 22:14:47
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 58 GB (10%) free of 600 GB
Total RAM: 3550 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:14:58, on 2.12.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16438)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Winamp\winampa.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Plextor\PlexUTILITIES\PlexRadar.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Norton Internet Security\Engine\20.2.0.19\ccSvcHst.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Aleš\Downloads\RSIT.exe
C:\Program Files\trend micro\Aleš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\Snagit 10\SnagitBHO.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\coIEPlg.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [BCU] "C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [CnOServerLauncher] CNOServerLauncher.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2946250080-1995555880-189430243-1004\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2946250080-1995555880-189430243-1004\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: plexradar.lnk = C:\Program Files\Plextor\PlexUTILITIES\PlexRadar.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/f ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - Unknown owner - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: mental ray 3.9 Satellite for Autodesk 3ds Max Design 2012 32-bit - English 32-bit (mi-raysat_3dsmax2012_32) - Unknown owner - C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\ccSvcHst.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Printer Control - Unknown owner - C:\Windows\system32\PrintCtrl.exe (file missing)
O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2011.SP2a\RpcAgentSrv.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
--
End of file - 9467 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\One-Click Tweak.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Aleš\AppData\Roaming\Mozilla\Firefox\Profiles\o8qwglwp.default
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
"{BBDA0591-3099-440a-AA10-41764D9DB4DB}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\IPSFFPlgn\
"{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"=C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\coFFPlgn\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.110 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_110.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1167637.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=15.0.0.198]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=15.0.0.198]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.0.198]
"Description"=RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.0.198]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=15.0.0.198]
"Description"=15.0.0.198
"Path"=c:\program files\real\realplayer\Netscape6\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
nppl3260.dll
nppl3260.xpt
nprjplug.dll
nprpjplug.dll
npwachk.dll
nsjsrealplayerplugin.xpt
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00C6482D-C502-44C8-8409-FCE54AD9C208}]
SnagIt Toolbar Loader - C:\Program Files\TechSmith\Snagit 10\SnagitBHO.dll [2010-04-13 63304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-12-03 425680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\coIEPlg.dll [2012-10-18 498584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\IPS\IPSBHO.DLL [2012-09-06 387040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-09-25 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-09-22 192144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-09-25 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton Internet Security\Engine\20.2.0.19\coIEPlg.dll [2012-10-18 498584]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-11-08 6756048]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2011-07-11 74752]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"BCU"=C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe [2009-10-26 375000]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-12-15 8120864]
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"CnOServerLauncher"=CNOServerLauncher.exe []
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27 919008]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2011-04-16 2736128]
"AnyDVD"=C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe [2011-06-12 5045880]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]
"OfficeSyncProcess"=C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE []
C:\Users\Aleš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
plexradar.lnk - C:\Program Files\Plextor\PlexUTILITIES\PlexRadar.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"NoSecCPL"=0
"NoDispCPL"=0
"NoDispScrSavPage"=0
"NoDispAppearancePage"=0
"NoDispSettingsPage"=0
"NoDevMgrPage"=0
"NoConfigPage"=0
"NoVirtMemPage"=0
"NoFileSysPage"=0
"NoNetSetup"=0
"NoNetSetupIDPage"=0
"NoNetSetupSecurityPage"=0
"NoWorkgroupContents"=0
"NoEntireNetwork"=0
"NoFileSharingControl"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDesktop"=0
"NoFolderOptions"=0x00000000
"RestrictRun"=0
"NoResolveTrack"=1
"NoThumbnailCache"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoFolderOptions"=0x00000000
"NoResolveTrack"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.pDAD"=prodad-codec.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - %SystemRoot%\System32\CScript.exe "%1" %*
.vbs - open - %SystemRoot%\System32\CScript.exe "%1" %*
======List of files/folders created in the last 2 months======
2012-12-02 12:40:51 ----D---- C:\Program Files\Mozilla Firefox
2012-12-02 10:17:36 ----A---- C:\Windows\system32\drivers\tmrkb.sys
2012-12-01 21:35:45 ----D---- C:\Program Files\trend micro
2012-12-01 21:35:44 ----D---- C:\rsit
2012-12-01 19:25:48 ----D---- C:\Program Files\RegUtility
2012-11-30 21:57:00 ----A---- C:\Windows\system32\urlmon.dll
2012-11-30 21:57:00 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-11-30 21:57:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2012-11-30 21:57:00 ----A---- C:\Windows\system32\msls31.dll
2012-11-30 21:57:00 ----A---- C:\Windows\system32\elshyph.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\wininet.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\wextract.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\webcheck.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\vbscript.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\url.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\pngfilt.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\occache.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\msrating.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshtmlmedia.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshtmler.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshtmled.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshtml.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\mshta.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\msfeedssync.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\msfeeds.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\licmgr10.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\jsproxy.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\jscript9.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\jscript.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\inseng.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\imgutil.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iexpress.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieUnatt.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieui.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iesysprep.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iesetup.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iertutil.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iernonce.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iepeers.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieframe.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\iedkcs32.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieapfltr.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ieapfltr.dat
2012-11-30 21:56:59 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\ie4uinit.exe
2012-11-30 21:56:59 ----A---- C:\Windows\system32\icardie.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\dxtrans.dll
2012-11-30 21:56:59 ----A---- C:\Windows\system32\dxtmsft.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2012-11-30 21:56:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\XpsPrint.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\WMPhoto.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\UIAnimation.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\FntCache.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\dxgi.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\DWrite.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d11.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10warp.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10level9.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10core.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10_1core.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10_1.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d3d10.dll
2012-11-30 21:56:25 ----A---- C:\Windows\system32\d2d1.dll
2012-11-26 21:58:32 ----D---- C:\ProgramData\Spybot - Search & Destroy
2012-11-25 12:01:38 ----D---- C:\Program Files\Defraggler
2012-11-25 01:02:40 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-11-24 21:38:31 ----D---- C:\proverit
2012-11-20 02:09:01 ----D---- C:\Program Files\Symantec
2012-11-20 02:09:01 ----D---- C:\Program Files\Common Files\Symantec Shared
2012-11-20 02:09:01 ----A---- C:\Windows\system32\drivers\SYMEVENT.SYS
2012-11-20 02:01:22 ----D---- C:\Program Files\Norton Internet Security
2012-11-20 02:01:15 ----D---- C:\Program Files\NortonInstaller
2012-11-20 01:20:46 ----D---- C:\ProgramData\PCSettings
2012-11-19 07:24:18 ----D---- C:\Program Files\Emsisoft Anti-Malware
2012-11-16 07:14:38 ----D---- C:\Users\Aleš\AppData\Roaming\Malwarebytes
2012-11-16 07:14:25 ----D---- C:\ProgramData\Malwarebytes
2012-11-15 22:05:47 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-11-15 22:05:46 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2012-11-15 22:05:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-11-15 22:05:45 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2012-11-15 22:05:42 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-11-15 22:05:38 ----A---- C:\Windows\system32\wksprtPS.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\TSWbPrxy.exe
2012-11-15 22:05:38 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\tsgqec.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\rdpudd.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\rdpendp_winip.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2012-11-15 22:05:38 ----A---- C:\Windows\system32\aaclient.dll
2012-11-15 22:05:37 ----A---- C:\Windows\system32\wksprt.exe
2012-11-15 22:05:37 ----A---- C:\Windows\system32\rdpcorets.dll
2012-11-15 22:05:37 ----A---- C:\Windows\system32\mstscax.dll
2012-11-15 22:05:37 ----A---- C:\Windows\system32\mstsc.exe
2012-11-15 02:10:01 ----A---- C:\Windows\system32\schannel.dll
2012-11-15 02:10:01 ----A---- C:\Windows\system32\ncrypt.dll
2012-11-15 02:10:01 ----A---- C:\Windows\system32\lsasrv.dll
2012-11-15 02:10:01 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-11-15 02:10:01 ----A---- C:\Windows\system32\drivers\cng.sys
2012-11-15 01:34:46 ----A---- C:\Windows\system32\Wdfres.dll
2012-11-15 01:34:46 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2012-11-15 01:34:46 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2012-11-15 01:34:00 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-11-15 01:34:00 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFx.dll
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFHost.exe
2012-11-15 01:33:59 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\wamregps.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\iisRtl.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\iisrstap.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\iisreset.exe
2012-11-15 01:31:32 ----A---- C:\Windows\system32\ahadmin.dll
2012-11-15 01:31:32 ----A---- C:\Windows\system32\admwprox.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\nlasvc.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\nlaapi.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\netevent.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\netcorehc.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\ncsi.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-11-15 01:26:46 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-11-15 01:26:46 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-11-15 01:26:32 ----A---- C:\Windows\system32\win32k.sys
2012-11-15 01:26:25 ----A---- C:\Windows\system32\synceng.dll
2012-11-15 01:26:18 ----A---- C:\Windows\system32\dhcpcore6.dll
2012-11-15 01:26:17 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2012-11-12 19:23:24 ----D---- C:\Users\Aleš\AppData\Roaming\ESET
2012-11-12 07:37:38 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2012-11-12 07:37:38 ----A---- C:\Windows\system32\javaw.exe
2012-11-12 07:37:38 ----A---- C:\Windows\system32\java.exe
2012-11-12 07:05:36 ----D---- C:\Program Files\Seznam.cz
2012-11-11 22:54:29 ----RSD---- C:\RavBin
2012-11-11 22:53:43 ----D---- C:\Program Files\Rising
2012-11-11 22:53:32 ----D---- C:\ProgramData\Rising
2012-11-11 22:38:09 ----D---- C:\ProgramData\Kaspersky Lab
2012-11-11 22:30:30 ----D---- C:\Users\Aleš\AppData\Roaming\LavasoftStatistics
2012-11-03 20:20:20 ----D---- C:\ProgramData\ArcSoft
2012-11-03 20:20:16 ----D---- C:\Users\Aleš\AppData\Roaming\ArcSoft
2012-11-03 20:19:38 ----A---- C:\Windows\system32\drivers\afc.sys
2012-11-03 20:18:31 ----D---- C:\Program Files\Common Files\ArcSoft
2012-10-10 21:15:28 ----A---- C:\Windows\system32\nvumdshim.dll
2012-10-10 21:15:04 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-10-10 21:15:00 ----A---- C:\Windows\system32\nvcuvid.dll
2012-10-10 21:14:50 ----A---- C:\Windows\system32\nvdispgenco32.dll
2012-10-10 21:14:46 ----A---- C:\Windows\system32\nvcompiler.dll
2012-10-10 21:14:42 ----A---- C:\Windows\system32\nvcuda.dll
2012-10-10 21:14:28 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-10-10 21:14:22 ----A---- C:\Windows\system32\nvoglv32.dll
2012-10-10 21:14:18 ----A---- C:\Windows\system32\nvinit.dll
2012-10-10 21:14:16 ----A---- C:\Windows\system32\nvopencl.dll
2012-10-10 06:40:57 ----A---- C:\Windows\system32\wintrust.dll
2012-10-10 06:40:51 ----A---- C:\Windows\system32\tzres.dll
2012-10-10 06:40:41 ----A---- C:\Windows\system32\KernelBase.dll
2012-10-10 06:40:41 ----A---- C:\Windows\system32\kernel32.dll
2012-10-10 06:40:41 ----A---- C:\Windows\system32\conhost.exe
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-10-10 06:40:40 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-10-10 06:40:40 ----A---- C:\Windows\system32\winsrv.dll
2012-10-10 06:40:29 ----A---- C:\Windows\system32\cryptsvc.dll
2012-10-10 06:40:29 ----A---- C:\Windows\system32\cryptnet.dll
2012-10-10 06:40:29 ----A---- C:\Windows\system32\crypt32.dll
2012-10-10 06:40:23 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-10-10 06:40:22 ----A---- C:\Windows\system32\kerberos.dll
2012-10-10 06:40:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-10-10 06:40:21 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-10-08 08:21:08 ----A---- C:\Windows\system32\drivers\EpfwLWF.sys
======List of files/folders modified in the last 2 months======
2012-12-02 22:14:37 ----D---- C:\Windows\Temp
2012-12-02 22:13:25 ----D---- C:\Windows\Prefetch
2012-12-02 22:12:43 ----SHD---- C:\System Volume Information
2012-12-02 22:12:19 ----A---- C:\Windows\system32\log.txt
2012-12-02 22:12:04 ----D---- C:\ProgramData\NVIDIA
2012-12-02 22:10:46 ----RD---- C:\Program Files
2012-12-02 22:10:46 ----D---- C:\Windows\system32\drivers
2012-12-02 22:10:46 ----D---- C:\Windows\System32
2012-12-02 22:10:06 ----D---- C:\Windows\system32\config
2012-12-02 22:07:33 ----HD---- C:\ProgramData
2012-12-02 17:35:36 ----SD---- C:\Users\Aleš\AppData\Roaming\Microsoft
2012-12-02 12:18:59 ----D---- C:\Stazeno
2012-12-02 12:07:52 ----D---- C:\Windows\system32\NDF
2012-12-02 10:20:42 ----D---- C:\Program Files\uTorrent
2012-12-02 10:19:41 ----D---- C:\Users\Aleš\AppData\Roaming\uTorrent
2012-12-01 15:02:24 ----D---- C:\Windows\rescache
2012-12-01 09:08:30 ----D---- C:\Windows\system32\drivers\etc
2012-12-01 07:55:43 ----D---- C:\Windows\system32\Tasks
2012-12-01 07:55:41 ----D---- C:\Windows\Tasks
2012-11-30 22:02:10 ----D---- C:\Windows\winsxs
2012-11-30 21:59:31 ----D---- C:\Windows\system32\cs-CZ
2012-11-30 21:59:31 ----D---- C:\Program Files\Internet Explorer
2012-11-30 21:59:30 ----D---- C:\Windows\system32\migration
2012-11-30 21:59:30 ----D---- C:\Windows\system32\en-US
2012-11-30 21:59:30 ----D---- C:\Windows\PolicyDefinitions
2012-11-30 21:59:30 ----D---- C:\Windows\inf
2012-11-30 21:58:49 ----D---- C:\Windows\Logs
2012-11-30 21:58:36 ----D---- C:\Windows\system32\catroot
2012-11-30 21:58:03 ----D---- C:\Windows\system32\catroot2
2012-11-30 21:48:15 ----D---- C:\Windows
2012-11-28 02:11:55 ----D---- C:\Windows\AppPatch
2012-11-28 01:26:42 ----D---- C:\ProgramData\Adobe
2012-11-28 01:12:43 ----SD---- C:\ProgramData\Microsoft
2012-11-25 21:15:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-11-25 01:03:01 ----D---- C:\Users\Aleš\AppData\Roaming\Mozilla
2012-11-24 23:20:49 ----SHD---- C:\Windows\Installer
2012-11-24 23:20:49 ----HD---- C:\Config.Msi
2012-11-21 06:13:23 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-11-20 02:10:47 ----D---- C:\ProgramData\Norton
2012-11-20 02:09:01 ----D---- C:\Program Files\Common Files
2012-11-20 02:01:23 ----D---- C:\Windows\system32\drivers\NIS
2012-11-20 01:43:25 ----HD---- C:\win32
2012-11-20 01:31:38 ----D---- C:\Windows\system32\DriverStore
2012-11-17 14:07:08 ----D---- C:\Windows\Minidump
2012-11-15 22:08:28 ----D---- C:\Windows\system32\wbem
2012-11-15 22:08:28 ----D---- C:\Windows\system32\drivers\en-US
2012-11-15 02:42:59 ----RSD---- C:\Windows\assembly
2012-11-15 02:42:59 ----D---- C:\Windows\Microsoft.NET
2012-11-15 02:02:12 ----RSD---- C:\Windows\Fonts
2012-11-15 02:02:12 ----D---- C:\Windows\system32\inetsrv
2012-11-15 02:02:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2012-11-15 01:47:26 ----D---- C:\ProgramData\Microsoft Help
2012-11-15 01:40:44 ----A---- C:\Windows\system32\MRT.exe
2012-11-15 01:37:52 ----D---- C:\Program Files\NVIDIA Corporation
2012-11-15 01:37:26 ----RD---- C:\Users
2012-11-15 01:37:20 ----HD---- C:\temp
2012-11-15 01:32:18 ----A---- C:\Windows\win.ini
2012-11-12 07:37:38 ----D---- C:\Program Files\Java
2012-11-11 11:18:39 ----D---- C:\Users\Aleš\AppData\Roaming\Vso
2012-11-11 10:32:17 ----D---- C:\ProgramData\Google
2012-11-11 10:31:43 ----D---- C:\Program Files\DAEMON Tools Toolbar
2012-11-08 00:37:35 ----A---- C:\Windows\system32\cmdcsr.dll
2012-11-08 00:37:34 ----A---- C:\Windows\system32\guard32.dll
2012-11-03 20:36:46 ----HD---- C:\Program Files\InstallShield Installation Information
2012-11-01 22:17:16 ----A---- C:\Windows\MovingPicture.ini
2012-10-24 22:01:56 ----A---- C:\Windows\MaterialsDlg.ini
2012-10-22 07:47:48 ----D---- C:\DelamStranky
2012-10-10 21:14:50 ----A---- C:\Windows\system32\nvwgf2um.dll
2012-10-10 21:14:44 ----A---- C:\Windows\system32\nvapi.dll
2012-10-10 21:14:22 ----A---- C:\Windows\system32\nvdispco32.dll
2012-10-10 21:14:16 ----A---- C:\Windows\system32\nvd3dum.dll
2012-10-03 20:44:58 ----A---- C:\Windows\LuminancesDlg.ini
2012-10-03 20:44:58 ----A---- C:\Windows\EnvironmentsDlg.ini
2012-10-03 20:20:48 ----D---- C:\ProgramData\IMSIDesign
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BTHidEnum;Bluetooth HID Enumerator; C:\Windows\System32\Drivers\vbtenum.sys [2007-03-05 20880]
R0 BTHidMgr;Bluetooth HID Manager Service; C:\Windows\System32\Drivers\BTHidMgr.sys [2007-03-05 35600]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-12-13 428088]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NIS\1402000.013\SYMDS.SYS [2012-10-03 368288]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NIS\1402000.013\SYMEFA.SYS [2012-10-03 927904]
R1 AsIO;AsIO; C:\Windows\system32\drivers\AsIO.sys [2009-08-04 11296]
R1 AsUpIO;AsUpIO; C:\Windows\system32\drivers\AsUpIO.sys [2009-07-06 11448]
R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20121106.001\BHDrvx86.sys [2012-10-24 995488]
R1 ccSet_NIS;Norton Internet Security Settings Manager; C:\Windows\system32\drivers\NIS\1402000.013\ccSetx86.sys [2012-10-03 134304]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2012-11-08 494416]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2012-11-08 36072]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2012-11-19 376480]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2010-12-16 31088]
R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20121130.001\IDSvix86.sys [2012-11-19 386720]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2012-11-08 82952]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\NIS\1402000.013\SRTSPX.SYS [2012-09-06 32888]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NIS\1402000.013\Ironx86.SYS [2012-09-06 175264]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NIS\1402000.013\SYMNETS.SYS [2012-09-06 338592]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2006-11-10 18688]
R3 AnyDVD;AnyDVD; C:\Windows\System32\Drivers\AnyDVD.sys [2011-03-25 117752]
R3 BlueletAudio;Bluetooth Audio Service; C:\Windows\system32\DRIVERS\blueletaudio.sys [2007-05-11 34704]
R3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\Windows\system32\DRIVERS\BlueletSCOAudio.sys [2007-03-05 27792]
R3 BT;Bluetooth PAN Network Adapter; C:\Windows\system32\DRIVERS\btnetdrv.sys [2007-03-05 18320]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-11-19 106656]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2009-09-17 41088]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-12-15 2978016]
R3 MarvinBus;Pinnacle Marvin Bus; C:\Windows\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 13216]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20121201.006\NAVENG.SYS [2012-11-19 92704]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20121201.006\NAVEX15.SYS [2012-11-19 1601184]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2010-09-07 123496]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2011-04-23 47360]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 8192]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
R3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\system32\drivers\NIS\1402000.013\SRTSP.SYS [2012-10-08 586400]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2012-11-20 142496]
R3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
R3 VComm;Virtual Serial port driver; C:\Windows\system32\DRIVERS\VComm.sys [2007-03-05 34448]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\Windows\System32\Drivers\VcommMgr.sys [2007-03-05 44304]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\Windows\System32\Drivers\btcusb.sys [2007-05-09 36496]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\drivers\Dot4Prt.sys [2010-11-20 16384]
S3 Dot4Scan;Scan Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Scan.sys [2009-07-14 10752]
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2010-02-03 94336]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 RimUsb;zařízení BlackBerry Smartphone; C:\Windows\System32\Drivers\RimUsb.sys [2007-05-14 22656]
S3 SANDRA;SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2011.SP2a\WNt500x86\Sandra.sys [2009-08-07 23112]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 BCUService;Browser Configuration Utility Service; C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-10-26 223464]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-11-08 1990464]
R2 DvmMDES;DeviceVM Meta Data Export Service; C:\ASUS.SYS\config\DVMExportService.exe [2009-10-16 319488]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2011-04-16 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 mi-raysat_3dsmax2012_32;mental ray 3.9 Satellite for Autodesk 3ds Max Design 2012 32-bit - English 32-bit; C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe [2011-02-23 86016]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2008-09-24 935208]
R2 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
R2 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
R2 NIS;Norton Internet Security; C:\Program Files\Norton Internet Security\Engine\20.2.0.19\ccSvcHst.exe [2012-10-10 143928]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-10-02 645992]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-04-17 136176]
S2 Printer Control;Printer Control; C:\Windows\system32\PrintCtrl.exe []
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-11-21 250808]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-06-26 1044816]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-04-17 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-12 194032]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-12-02 115168]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 SandraAgentSrv;SiSoftware Deployment Agent Service; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2011.SP2a\RpcAgentSrv.exe [2009-08-10 93848]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;Služba Technologie aktivace Windows; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-04-16 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------