Zpomalený notebook, restarty
Napsal: 27 bře 2013 18:23
Ahojte, moc vás prosím o pomoc. Blbne mi notebook. Najíždí poměrně dlouho systém a plocha, a většinou když najede, tak mi vyskočí hláška "Systém Windows musí být restartován, protože služba Spouštěč procesů serveru DCOM byla neočekávaně ukončena. Pak mi nejde zvuk, když kliknu na stav baterie tak tam mám napsáno "Server RPC není k dispozici", a když chci otevřít průzkumníka, počítač, ovládací panely apod. Tak mi to hodí podobnou hlášku. To že systém musí být restartován vypínám přes cmd příkazem shutdown -a. Nechal jsem celý disk projet MBAM - nic nenašel, Avastem - také nic nenašel, a pak jsem si stáhl MWAV - našel asi 6 virů. Jinak ty chyby ve službách se mi občas podaří opravit programem Tweaking.com - Windows Repair (All-in-one), ale jde to tak na dva restarty systému, pak se chyba objeví znovu. Než mi začala skákat tahle hláška, tak tam byla služba Napájení a Plug and Play, ale to jsem si ve službách nastavil, aby to při pádu služby nerestartovalo PC. Jenže u této služby to nejde. Dal bych log z RSIT, jenže ten mi nefunguje, tak přikládám log z DDS. Prosím o rychlejší pomoc pokud to půjde. Mockrát děkuji 
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16521 BrowserJavaVersion: 10.17.2
Run by wazzir at 18:15:30 on 2013-03-27
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.2975.835 [GMT 1:00]
.
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\afwServ.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\system32\PnkBstrA.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\wazzir\AppData\Local\Facebook\Update\FacebookUpdate.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\System Explorer\SystemExplorer.exe
C:\Users\wazzir\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
C:\Program Files\System Explorer\service\SystemExplorerService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\WmiPrvSE.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
.
============== Pseudo HJT Report ===============
.
uStart Page = about:blank
uSearch Page = hxxp://www.google.com
mSearch Page = hxxp://www.google.com
mDefault_Search_URL = hxxp://www.google.com
mSearchAssistant = hxxp://www.google.com/ie
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [Facebook Update] "c:\users\wazzir\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [SystemExplorerAutoStart] "c:\program files\system explorer\SystemExplorer.exe" /TRAY
mRun: [RTHDVCPL] c:\program files\realtek\audio\hda\RtkNGUI.exe -s
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
StartupFolder: c:\users\wazzir\appdata\roaming\micros~1\windows\startm~1\programs\startup\facebo~1.lnk - c:\users\wazzir\appdata\local\facebook\messenger\2.1.4814.0\FacebookMessenger.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:221
uPolicies-Explorer: NoResolveTrack = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:153
mPolicies-Explorer: MemCheckBoxInRunDlg = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\mif5ba~1\office14\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\mif5ba~1\office12\EXCEL.EXE/3000
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D}\3484144514D49425 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D}\7697D6465787 : DHCPNameServer = 192.168.1.250
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D}\B657C647572716 : DHCPNameServer = 192.168.1.1
Handler: AutorunsDisabled - <Clsid value has no data>
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - c:\program files\belarc\advisor\system\BAVoilaX.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: igfxcui - igfxdev.dll
AppInit_DLLs=
SSODL: WebCheck - <orphaned>
SEH: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - <orphaned>
LSA: Notification Packages = scecli c:\program files\widcomm\bluetooth software\BtwProximityCP.dll
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\25.0.1364.172\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/ig
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\users\wazzir\appdata\local\facebook\messenger\2.1.4814.0\npFbDesktopPlugin.dll
FF - plugin: c:\users\wazzir\appdata\locallow\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\windows\system32\adobe\director\np32dsw_1200112.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
FF - ExtSQL: 2013-02-23 16:44; {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}; c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
FF - ExtSQL: 2013-03-08 20:00; firefox@mega.co.nz; c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\extensions\firefox@mega.co.nz.xpi
FF - ExtSQL: 2013-03-23 18:46; wrc@avast.com; c:\program files\avast software\avast\webrep\FF
FF - ExtSQL: 2013-03-25 07:26; bartap@philikon.de; c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\extensions\bartap@philikon.de.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 aswNdis;avast! Firewall NDIS Filter Service;c:\windows\system32\drivers\aswNdis.sys [2013-3-24 12112]
R0 aswNdis2;avast! Firewall Core Firewall Service;c:\windows\system32\drivers\aswNdis2.sys [2013-3-24 199384]
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-3-23 49248]
R0 iaStorA;iaStorA;c:\windows\system32\drivers\iaStorA.sys [2012-9-11 530752]
R0 iaStorF;iaStorF;c:\windows\system32\drivers\iaStorF.sys [2012-9-11 24896]
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [2009-2-3 63096]
R1 aswFW;avast! TDI Firewall Driver;c:\windows\system32\drivers\aswFW.sys [2013-3-24 101656]
R1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [2013-3-24 21576]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2013-3-23 765736]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2013-3-23 368176]
R1 VD_FileDisk;VD_FileDisk;c:\windows\system32\drivers\vd_filedisk.sys [2011-1-26 24680]
R2 AERTFilters;Andrea RT Filters Service;c:\program files\realtek\audio\hda\AERTSrv.exe [2012-6-23 87968]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2013-3-23 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-3-23 66336]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2013-3-23 45248]
R2 avast! Firewall;avast! Firewall;c:\program files\avast software\avast\afwServ.exe [2013-3-24 136912]
R2 HPWMISVC;HPWMISVC;c:\program files\hewlett-packard\hp quick launch\HPWMISVC.exe [2010-1-18 17920]
R2 IconMan_R;IconMan_R;c:\program files\realtek\realtek usb 2.0 card reader\RIconMan.exe [2012-12-4 1828496]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2012-9-11 682344]
R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2012-9-11 398184]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [2010-3-15 127488]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-6-23 21104]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\drivers\RtsUStor.sys [2012-12-4 190976]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2012-12-4 585872]
R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver;c:\windows\system32\drivers\rtl8192se.sys [2011-9-8 1117800]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [2012-8-31 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [2012-6-27 30312]
S3 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-3-23 164736]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 btwampfl;btwampfl Bluetooth filter driver;c:\windows\system32\drivers\btwampfl.sys [2012-10-18 504360]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2012-10-18 33832]
S3 Com4QLBEx;Com4QLBEx;c:\program files\hewlett-packard\hp quick launch buttons\Com4QLBEx.exe [2012-6-23 227896]
S3 pneteth;PdaNet Broadband;c:\windows\system32\drivers\pneteth.sys [2012-12-31 13440]
S3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [2013-1-1 15576]
S3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [2013-1-1 10200]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-11-27 14848]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2012-6-27 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2012-6-27 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2012-6-27 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [2012-6-27 114280]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-11-27 49664]
S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\razer\razer game booster\driver\WinRing0.sys [2012-11-13 14416]
S4 DAUpdaterSvc;Dragon Age: Prameny - aktualizace obsahu;d:\program files\dragon age\bin_ship\daupdatersvc.service.exe [2009-12-15 25832]
S4 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files\hewlett-packard\shared\HPDrvMntSvc.exe [2011-3-28 94264]
S4 IAStorDataMgrSvc;Úložná technologie Intel® Rapid;c:\program files\intel\intel(r) rapid storage technology\IAStorDataMgrSvc.exe [2012-9-21 7168]
.
=============== Created Last 30 ================
.
2013-03-27 15:49:42 7108640 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{80c2905e-923b-4374-b610-d34aaf08a238}\mpengine.dll
2013-03-25 17:08:33 -------- d-----w- c:\windows\system32\catroot2
2013-03-25 16:49:25 1536 ----a-w- c:\windows\system32\wbem\WMIObjectsMigration.bin
2013-03-25 16:45:02 -------- d-----w- C:\RegBackup
2013-03-25 16:35:45 -------- d-----w- c:\program files\Tweaking.com
2013-03-25 16:34:55 -------- d-----w- C:\Tweaking.com_Windows_Repair_Logs
2013-03-25 15:03:29 22288 ----a-w- c:\windows\system32\temp.004
2013-03-25 15:03:27 492304 ----a-w- c:\windows\system32\temp.001
2013-03-25 15:03:27 16896 ----a-w- c:\windows\system32\temp.003
2013-03-25 15:03:27 1347344 ----a-w- c:\windows\system32\MSVBVM50.DLL
2013-03-25 15:03:27 118544 ----a-w- c:\windows\system32\temp.000
2013-03-25 15:03:27 114960 ----a-w- c:\windows\system32\temp.002
2013-03-25 15:03:27 109056 ----a-w- c:\windows\system32\UNINSTAL.EXE
2013-03-25 15:03:27 -------- d-----w- c:\windows\system32\BACKUP
2013-03-25 15:03:09 935632 ----a-w- c:\windows\system32\Vb40016.dll
2013-03-25 15:03:09 722192 ----a-w- c:\windows\system32\Vb40032.dll
2013-03-25 15:02:58 935632 ----a-w- c:\windows\system\Vb40016.dll
2013-03-25 15:02:58 722192 ----a-w- c:\windows\system\Vb40032.dll
2013-03-24 15:55:04 -------- d-----w- c:\users\wazzir\appdata\roaming\Unity
2013-03-24 14:22:08 -------- d-----w- c:\users\wazzir\appdata\local\Unity
2013-03-24 12:13:42 199384 ----a-w- c:\windows\system32\drivers\aswNdis2.sys
2013-03-24 12:13:41 101656 ----a-w- c:\windows\system32\drivers\aswFW.sys
2013-03-24 12:13:40 21576 ----a-w- c:\windows\system32\drivers\aswKbd.sys
2013-03-24 12:13:29 12112 ----a-w- c:\windows\system32\drivers\aswNdis.sys
2013-03-23 20:50:37 -------- d-----w- c:\programdata\SystemExplorer
2013-03-23 20:50:33 -------- d-----w- c:\program files\System Explorer
2013-03-23 20:24:53 -------- d-----w- c:\users\wazzir\appdata\local\GHISLER
2013-03-23 20:24:38 305152 ----a-w- c:\windows\IsUninst.exe
2013-03-23 17:47:15 -------- d-----w- c:\users\wazzir\appdata\local\Google
2013-03-23 17:47:05 60656 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-03-23 17:47:01 765736 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-03-23 17:46:59 164736 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-03-23 17:46:58 49248 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-03-23 17:46:56 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-03-23 17:46:44 41664 ----a-w- c:\windows\avastSS.scr
2013-03-23 17:46:29 -------- d-----w- c:\program files\AVAST Software
2013-03-23 17:43:47 343456 ----a-w- c:\windows\system32\drivers\trufos.sys
2013-03-23 17:43:41 632064 ----a-w- c:\windows\system32\msvcr80.dll
2013-03-23 17:43:40 554240 ----a-w- c:\windows\system32\msvcp80.dll
2013-03-23 17:43:39 572928 ----a-w- c:\windows\system32\msvcp90.dll
2013-03-23 17:43:38 655872 ----a-w- c:\windows\system32\msvcr90.dll
2013-03-23 17:43:37 34048 ----a-w- c:\windows\system32\eEmpty.exe
2013-03-23 17:43:31 -------- d-----w- c:\program files\common files\MicroWorld
2013-03-23 17:43:18 -------- d-----w- c:\programdata\MicroWorld
2013-03-23 15:14:54 -------- d-----w- c:\program files\ESET
2013-03-23 13:46:58 229224 ----a-w- c:\windows\system32\drivers\VMM.sys
2013-03-23 13:35:34 -------- d-----w- c:\program files\Microsoft Virtual PC
2013-03-21 16:40:27 468056 ----a-w- C:\procdump.exe
2013-03-21 16:34:33 2820744 ----a-w- C:\SysInspector.exe
2013-03-21 16:34:19 -------- d-----w- c:\program files\Belarc
2013-03-19 12:12:27 72781824 ----a-w- C:\ess_nt32_csy.msi
2013-03-16 18:07:51 -------- d-----w- c:\programdata\SoftSafe
2013-03-16 18:06:01 -------- d-----w- c:\programdata\InstallMate
2013-03-15 02:03:38 -------- d-sh--w- c:\windows\system32\%APPDATA%
2013-03-13 05:15:40 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-03-13 05:15:39 15872 ----a-w- c:\windows\system32\drivers\usb8023x.sys
2013-03-08 05:48:39 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-06 15:21:26 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-03-04 13:11:36 -------- d-----w- C:\ESET
2013-03-01 20:09:19 -------- d-----w- c:\programdata\AVAST Software
2013-02-28 08:33:20 512 ----a-w- C:\PhysicalMBR.bin
2013-02-27 22:02:36 53966 ----a-w- c:\windows\system32\epfwdata.bin
2013-02-26 11:45:22 -------- d-----w- c:\programdata\[Manufacturer]
2013-02-26 11:44:19 -------- d-----w- c:\users\wazzir\appdata\roaming\4GF.CZ
2013-02-26 10:22:24 -------- d-----w- c:\program files\trend micro
2013-02-26 08:15:44 -------- d-sh--w- C:\$RECYCLE.BIN
.
==================== Find3M ====================
.
2013-03-23 12:41:59 139832 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2013-03-23 12:41:36 281768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2013-03-23 12:41:36 281768 ----a-w- c:\windows\system32\PnkBstrB.exe
2013-03-20 18:09:59 281768 ----a-w- c:\windows\system32\PnkBstrB.ex0
2013-03-13 18:30:33 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-06 15:21:17 861088 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-03-06 15:21:17 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-02-23 21:49:23 44544 ----a-w- c:\windows\system32\Gif89.dll
2013-02-13 00:26:34 42880 ----a-w- c:\windows\system32\xfcodec.dll
2013-02-12 04:48:31 474112 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-02-12 04:48:26 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-01-17 00:28:58 232336 ------w- c:\windows\system32\MpSigStub.exe
2013-01-13 21:17:03 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-01-13 21:17:02 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-01-13 21:16:42 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-01-13 21:12:46 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-01-13 21:11:21 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-01-13 21:11:08 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-01-13 21:11:07 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-01-13 21:11:07 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-01-13 21:11:07 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-01-13 20:31:00 1247744 ----a-w- c:\windows\system32\DWrite.dll
2013-01-13 20:30:34 906240 ----a-w- c:\windows\system32\FntCache.dll
2013-01-13 20:22:22 1988096 ----a-w- c:\windows\system32\d3d10warp.dll
2013-01-13 20:20:31 293376 ----a-w- c:\windows\system32\dxgi.dll
2013-01-13 20:09:00 249856 ----a-w- c:\windows\system32\d3d10_1core.dll
2013-01-13 20:08:43 220160 ----a-w- c:\windows\system32\d3d10core.dll
2013-01-13 20:08:35 1504768 ----a-w- c:\windows\system32\d3d11.dll
2013-01-13 19:54:01 604160 ----a-w- c:\windows\system32\d3d10level9.dll
2013-01-13 19:53:58 207872 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2013-01-13 19:53:14 187392 ----a-w- c:\windows\system32\UIAnimation.dll
2013-01-13 19:48:47 161792 ----a-w- c:\windows\system32\d3d10_1.dll
2013-01-13 19:46:25 1080832 ----a-w- c:\windows\system32\d3d10.dll
2013-01-13 19:43:21 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll
2013-01-13 19:37:57 3419136 ----a-w- c:\windows\system32\d2d1.dll
2013-01-13 19:02:06 417792 ----a-w- c:\windows\system32\WMPhoto.dll
2013-01-13 18:34:58 364544 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2013-01-13 17:26:42 1158144 ----a-w- c:\windows\system32\XpsPrint.dll
2013-01-11 16:11:56 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2013-01-11 16:10:05 22328 ----a-w- c:\users\wazzir\appdata\roaming\PnkBstrK.sys
2013-01-11 16:09:27 2250024 ----a-w- c:\windows\system32\pbsvc.exe
2013-01-10 08:25:20 46056 ----a-w- c:\windows\system32\drivers\EpfwLWF.sys
2013-01-05 05:00:15 3967848 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-01-05 05:00:11 3913064 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-01-04 06:11:21 2284544 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2013-01-04 04:50:52 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-01-04 03:00:29 2347008 ----a-w- c:\windows\system32\win32k.sys
2013-01-03 05:05:20 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-01-03 05:04:43 187752 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-12-29 20:59:38 24184 ----a-w- c:\windows\system32\speedfan.sys
.
============= FINISH: 18:17:28,81 ===============

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16521 BrowserJavaVersion: 10.17.2
Run by wazzir at 18:15:30 on 2013-03-27
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.2975.835 [GMT 1:00]
.
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\afwServ.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\system32\PnkBstrA.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\wazzir\AppData\Local\Facebook\Update\FacebookUpdate.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\System Explorer\SystemExplorer.exe
C:\Users\wazzir\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
C:\Program Files\System Explorer\service\SystemExplorerService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\WmiPrvSE.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
.
============== Pseudo HJT Report ===============
.
uStart Page = about:blank
uSearch Page = hxxp://www.google.com
mSearch Page = hxxp://www.google.com
mDefault_Search_URL = hxxp://www.google.com
mSearchAssistant = hxxp://www.google.com/ie
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [Facebook Update] "c:\users\wazzir\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [SystemExplorerAutoStart] "c:\program files\system explorer\SystemExplorer.exe" /TRAY
mRun: [RTHDVCPL] c:\program files\realtek\audio\hda\RtkNGUI.exe -s
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
StartupFolder: c:\users\wazzir\appdata\roaming\micros~1\windows\startm~1\programs\startup\facebo~1.lnk - c:\users\wazzir\appdata\local\facebook\messenger\2.1.4814.0\FacebookMessenger.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:221
uPolicies-Explorer: NoResolveTrack = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:153
mPolicies-Explorer: MemCheckBoxInRunDlg = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\mif5ba~1\office14\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\mif5ba~1\office12\EXCEL.EXE/3000
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D}\3484144514D49425 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D}\7697D6465787 : DHCPNameServer = 192.168.1.250
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D}\B657C647572716 : DHCPNameServer = 192.168.1.1
Handler: AutorunsDisabled - <Clsid value has no data>
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - c:\program files\belarc\advisor\system\BAVoilaX.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: igfxcui - igfxdev.dll
AppInit_DLLs=
SSODL: WebCheck - <orphaned>
SEH: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - <orphaned>
LSA: Notification Packages = scecli c:\program files\widcomm\bluetooth software\BtwProximityCP.dll
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\25.0.1364.172\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/ig
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\users\wazzir\appdata\local\facebook\messenger\2.1.4814.0\npFbDesktopPlugin.dll
FF - plugin: c:\users\wazzir\appdata\locallow\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\windows\system32\adobe\director\np32dsw_1200112.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
FF - ExtSQL: 2013-02-23 16:44; {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}; c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
FF - ExtSQL: 2013-03-08 20:00; firefox@mega.co.nz; c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\extensions\firefox@mega.co.nz.xpi
FF - ExtSQL: 2013-03-23 18:46; wrc@avast.com; c:\program files\avast software\avast\webrep\FF
FF - ExtSQL: 2013-03-25 07:26; bartap@philikon.de; c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\extensions\bartap@philikon.de.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 aswNdis;avast! Firewall NDIS Filter Service;c:\windows\system32\drivers\aswNdis.sys [2013-3-24 12112]
R0 aswNdis2;avast! Firewall Core Firewall Service;c:\windows\system32\drivers\aswNdis2.sys [2013-3-24 199384]
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-3-23 49248]
R0 iaStorA;iaStorA;c:\windows\system32\drivers\iaStorA.sys [2012-9-11 530752]
R0 iaStorF;iaStorF;c:\windows\system32\drivers\iaStorF.sys [2012-9-11 24896]
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [2009-2-3 63096]
R1 aswFW;avast! TDI Firewall Driver;c:\windows\system32\drivers\aswFW.sys [2013-3-24 101656]
R1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [2013-3-24 21576]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2013-3-23 765736]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2013-3-23 368176]
R1 VD_FileDisk;VD_FileDisk;c:\windows\system32\drivers\vd_filedisk.sys [2011-1-26 24680]
R2 AERTFilters;Andrea RT Filters Service;c:\program files\realtek\audio\hda\AERTSrv.exe [2012-6-23 87968]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2013-3-23 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-3-23 66336]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2013-3-23 45248]
R2 avast! Firewall;avast! Firewall;c:\program files\avast software\avast\afwServ.exe [2013-3-24 136912]
R2 HPWMISVC;HPWMISVC;c:\program files\hewlett-packard\hp quick launch\HPWMISVC.exe [2010-1-18 17920]
R2 IconMan_R;IconMan_R;c:\program files\realtek\realtek usb 2.0 card reader\RIconMan.exe [2012-12-4 1828496]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2012-9-11 682344]
R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2012-9-11 398184]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [2010-3-15 127488]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-6-23 21104]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\drivers\RtsUStor.sys [2012-12-4 190976]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2012-12-4 585872]
R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver;c:\windows\system32\drivers\rtl8192se.sys [2011-9-8 1117800]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [2012-8-31 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [2012-6-27 30312]
S3 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-3-23 164736]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 btwampfl;btwampfl Bluetooth filter driver;c:\windows\system32\drivers\btwampfl.sys [2012-10-18 504360]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2012-10-18 33832]
S3 Com4QLBEx;Com4QLBEx;c:\program files\hewlett-packard\hp quick launch buttons\Com4QLBEx.exe [2012-6-23 227896]
S3 pneteth;PdaNet Broadband;c:\windows\system32\drivers\pneteth.sys [2012-12-31 13440]
S3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [2013-1-1 15576]
S3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [2013-1-1 10200]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-11-27 14848]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2012-6-27 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2012-6-27 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2012-6-27 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [2012-6-27 114280]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-11-27 49664]
S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\razer\razer game booster\driver\WinRing0.sys [2012-11-13 14416]
S4 DAUpdaterSvc;Dragon Age: Prameny - aktualizace obsahu;d:\program files\dragon age\bin_ship\daupdatersvc.service.exe [2009-12-15 25832]
S4 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files\hewlett-packard\shared\HPDrvMntSvc.exe [2011-3-28 94264]
S4 IAStorDataMgrSvc;Úložná technologie Intel® Rapid;c:\program files\intel\intel(r) rapid storage technology\IAStorDataMgrSvc.exe [2012-9-21 7168]
.
=============== Created Last 30 ================
.
2013-03-27 15:49:42 7108640 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{80c2905e-923b-4374-b610-d34aaf08a238}\mpengine.dll
2013-03-25 17:08:33 -------- d-----w- c:\windows\system32\catroot2
2013-03-25 16:49:25 1536 ----a-w- c:\windows\system32\wbem\WMIObjectsMigration.bin
2013-03-25 16:45:02 -------- d-----w- C:\RegBackup
2013-03-25 16:35:45 -------- d-----w- c:\program files\Tweaking.com
2013-03-25 16:34:55 -------- d-----w- C:\Tweaking.com_Windows_Repair_Logs
2013-03-25 15:03:29 22288 ----a-w- c:\windows\system32\temp.004
2013-03-25 15:03:27 492304 ----a-w- c:\windows\system32\temp.001
2013-03-25 15:03:27 16896 ----a-w- c:\windows\system32\temp.003
2013-03-25 15:03:27 1347344 ----a-w- c:\windows\system32\MSVBVM50.DLL
2013-03-25 15:03:27 118544 ----a-w- c:\windows\system32\temp.000
2013-03-25 15:03:27 114960 ----a-w- c:\windows\system32\temp.002
2013-03-25 15:03:27 109056 ----a-w- c:\windows\system32\UNINSTAL.EXE
2013-03-25 15:03:27 -------- d-----w- c:\windows\system32\BACKUP
2013-03-25 15:03:09 935632 ----a-w- c:\windows\system32\Vb40016.dll
2013-03-25 15:03:09 722192 ----a-w- c:\windows\system32\Vb40032.dll
2013-03-25 15:02:58 935632 ----a-w- c:\windows\system\Vb40016.dll
2013-03-25 15:02:58 722192 ----a-w- c:\windows\system\Vb40032.dll
2013-03-24 15:55:04 -------- d-----w- c:\users\wazzir\appdata\roaming\Unity
2013-03-24 14:22:08 -------- d-----w- c:\users\wazzir\appdata\local\Unity
2013-03-24 12:13:42 199384 ----a-w- c:\windows\system32\drivers\aswNdis2.sys
2013-03-24 12:13:41 101656 ----a-w- c:\windows\system32\drivers\aswFW.sys
2013-03-24 12:13:40 21576 ----a-w- c:\windows\system32\drivers\aswKbd.sys
2013-03-24 12:13:29 12112 ----a-w- c:\windows\system32\drivers\aswNdis.sys
2013-03-23 20:50:37 -------- d-----w- c:\programdata\SystemExplorer
2013-03-23 20:50:33 -------- d-----w- c:\program files\System Explorer
2013-03-23 20:24:53 -------- d-----w- c:\users\wazzir\appdata\local\GHISLER
2013-03-23 20:24:38 305152 ----a-w- c:\windows\IsUninst.exe
2013-03-23 17:47:15 -------- d-----w- c:\users\wazzir\appdata\local\Google
2013-03-23 17:47:05 60656 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-03-23 17:47:01 765736 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-03-23 17:46:59 164736 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-03-23 17:46:58 49248 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-03-23 17:46:56 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-03-23 17:46:44 41664 ----a-w- c:\windows\avastSS.scr
2013-03-23 17:46:29 -------- d-----w- c:\program files\AVAST Software
2013-03-23 17:43:47 343456 ----a-w- c:\windows\system32\drivers\trufos.sys
2013-03-23 17:43:41 632064 ----a-w- c:\windows\system32\msvcr80.dll
2013-03-23 17:43:40 554240 ----a-w- c:\windows\system32\msvcp80.dll
2013-03-23 17:43:39 572928 ----a-w- c:\windows\system32\msvcp90.dll
2013-03-23 17:43:38 655872 ----a-w- c:\windows\system32\msvcr90.dll
2013-03-23 17:43:37 34048 ----a-w- c:\windows\system32\eEmpty.exe
2013-03-23 17:43:31 -------- d-----w- c:\program files\common files\MicroWorld
2013-03-23 17:43:18 -------- d-----w- c:\programdata\MicroWorld
2013-03-23 15:14:54 -------- d-----w- c:\program files\ESET
2013-03-23 13:46:58 229224 ----a-w- c:\windows\system32\drivers\VMM.sys
2013-03-23 13:35:34 -------- d-----w- c:\program files\Microsoft Virtual PC
2013-03-21 16:40:27 468056 ----a-w- C:\procdump.exe
2013-03-21 16:34:33 2820744 ----a-w- C:\SysInspector.exe
2013-03-21 16:34:19 -------- d-----w- c:\program files\Belarc
2013-03-19 12:12:27 72781824 ----a-w- C:\ess_nt32_csy.msi
2013-03-16 18:07:51 -------- d-----w- c:\programdata\SoftSafe
2013-03-16 18:06:01 -------- d-----w- c:\programdata\InstallMate
2013-03-15 02:03:38 -------- d-sh--w- c:\windows\system32\%APPDATA%
2013-03-13 05:15:40 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-03-13 05:15:39 15872 ----a-w- c:\windows\system32\drivers\usb8023x.sys
2013-03-08 05:48:39 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-06 15:21:26 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-03-04 13:11:36 -------- d-----w- C:\ESET
2013-03-01 20:09:19 -------- d-----w- c:\programdata\AVAST Software
2013-02-28 08:33:20 512 ----a-w- C:\PhysicalMBR.bin
2013-02-27 22:02:36 53966 ----a-w- c:\windows\system32\epfwdata.bin
2013-02-26 11:45:22 -------- d-----w- c:\programdata\[Manufacturer]
2013-02-26 11:44:19 -------- d-----w- c:\users\wazzir\appdata\roaming\4GF.CZ
2013-02-26 10:22:24 -------- d-----w- c:\program files\trend micro
2013-02-26 08:15:44 -------- d-sh--w- C:\$RECYCLE.BIN
.
==================== Find3M ====================
.
2013-03-23 12:41:59 139832 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2013-03-23 12:41:36 281768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2013-03-23 12:41:36 281768 ----a-w- c:\windows\system32\PnkBstrB.exe
2013-03-20 18:09:59 281768 ----a-w- c:\windows\system32\PnkBstrB.ex0
2013-03-13 18:30:33 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-06 15:21:17 861088 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-03-06 15:21:17 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-02-23 21:49:23 44544 ----a-w- c:\windows\system32\Gif89.dll
2013-02-13 00:26:34 42880 ----a-w- c:\windows\system32\xfcodec.dll
2013-02-12 04:48:31 474112 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-02-12 04:48:26 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-01-17 00:28:58 232336 ------w- c:\windows\system32\MpSigStub.exe
2013-01-13 21:17:03 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-01-13 21:17:02 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-01-13 21:16:42 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-01-13 21:12:46 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-01-13 21:11:21 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-01-13 21:11:08 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-01-13 21:11:07 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-01-13 21:11:07 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-01-13 21:11:07 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-01-13 20:31:00 1247744 ----a-w- c:\windows\system32\DWrite.dll
2013-01-13 20:30:34 906240 ----a-w- c:\windows\system32\FntCache.dll
2013-01-13 20:22:22 1988096 ----a-w- c:\windows\system32\d3d10warp.dll
2013-01-13 20:20:31 293376 ----a-w- c:\windows\system32\dxgi.dll
2013-01-13 20:09:00 249856 ----a-w- c:\windows\system32\d3d10_1core.dll
2013-01-13 20:08:43 220160 ----a-w- c:\windows\system32\d3d10core.dll
2013-01-13 20:08:35 1504768 ----a-w- c:\windows\system32\d3d11.dll
2013-01-13 19:54:01 604160 ----a-w- c:\windows\system32\d3d10level9.dll
2013-01-13 19:53:58 207872 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2013-01-13 19:53:14 187392 ----a-w- c:\windows\system32\UIAnimation.dll
2013-01-13 19:48:47 161792 ----a-w- c:\windows\system32\d3d10_1.dll
2013-01-13 19:46:25 1080832 ----a-w- c:\windows\system32\d3d10.dll
2013-01-13 19:43:21 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll
2013-01-13 19:37:57 3419136 ----a-w- c:\windows\system32\d2d1.dll
2013-01-13 19:02:06 417792 ----a-w- c:\windows\system32\WMPhoto.dll
2013-01-13 18:34:58 364544 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2013-01-13 17:26:42 1158144 ----a-w- c:\windows\system32\XpsPrint.dll
2013-01-11 16:11:56 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2013-01-11 16:10:05 22328 ----a-w- c:\users\wazzir\appdata\roaming\PnkBstrK.sys
2013-01-11 16:09:27 2250024 ----a-w- c:\windows\system32\pbsvc.exe
2013-01-10 08:25:20 46056 ----a-w- c:\windows\system32\drivers\EpfwLWF.sys
2013-01-05 05:00:15 3967848 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-01-05 05:00:11 3913064 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-01-04 06:11:21 2284544 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2013-01-04 04:50:52 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-01-04 03:00:29 2347008 ----a-w- c:\windows\system32\win32k.sys
2013-01-03 05:05:20 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-01-03 05:04:43 187752 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-12-29 20:59:38 24184 ----a-w- c:\windows\system32\speedfan.sys
.
============= FINISH: 18:17:28,81 ===============