kontrola-DDS log
Napsal: 10 kvě 2013 19:54
Prosil bych o kontrolu logu, předem díky za váš čas.
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16476 BrowserJavaVersion: 10.17.2
Run by freekarol at 10:36:40 on 2013-05-10
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3552.1929 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: COMODO Defense+ *Enabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
.
============== Running Processes ===============
.
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\Program Files\MY PROGRAM FILES\Security\Firewall\COMODO\COMODO Internet Security\cmdagent.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\Program Files\IDT\WDM\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
C:\windows\system32\atieclxx.exe
C:\Program Files\MY PROGRAM FILES\Security\Sandbox\Sandboxie\SbieSvc.exe
C:\Program Files\MY PROGRAM FILES\Security\Antivir\AvastSvc.exe
C:\windows\system32\WLANExt.exe
C:\windows\System32\spoolsv.exe
c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\IDT\WDM\AESTSr64.exe
C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\MY PROGRAM FILES\Security\Firewall\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\IDT\WDM\sttray64.exe
C:\Users\Karol\MY DATA\Archive\1.Extensions\Software\Portable Programs\32\Portable Starts\asuite1512\asuite.exe
C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
C:\Program Files\MY PROGRAM FILES\Security\Antivir\AvastUI.exe
C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Antivir\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe
C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\windows\system32\wbem\unsecapp.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
C:\windows\system32\SearchIndexer.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\windows\system32\taskmgr.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
BHO: AutorunsDisabled - <orphaned>
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\MY PROGRAM FILES\Security\Antivir\aswWebRepIE.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: SimpleAdblock Class: {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files (x86)\Common Files\Simple Adblock\SimpleAdblock.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\MY PROGRAM FILES\Security\Antivir\aswWebRepIE.dll
mRun: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
mRun: [avast] "C:\Program Files\MY PROGRAM FILES\Security\Antivir\avastUI.exe" /nogui
StartupFolder: C:\Users\FREEKA~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ASUITE~1.LNK - C:\Users\Karol\MY DATA\Archive\1.Extensions\Software\Portable Programs\32\Portable Starts\asuite1512\asuite.exe
StartupFolder: C:\Users\FREEKA~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\TASKMG~1.LNK - C:\windows\System32\taskmgr.exe
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Download current page with FreshWebSuction - C:\Sandbox\Karol\DefaultBox\drive\C\Program Files (x86)\FreshWebmaster\FreshWebSuction\obiectx_all.htm
IE: Download using FreshWebSuction - C:\Sandbox\Karol\DefaultBox\drive\C\Program Files (x86)\FreshWebmaster\FreshWebSuction\obiectx.htm
IE: E&xportovat do aplikace Microsoft Excel - C:\PROGRA~1\MYPROG~1\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - C:\PROGRA~1\MYPROG~1\Office14\ONBttnIE.dll/105
IE: Sticky Password - C:\Program Files (x86)\Sticky Password\spIEBho.dll/616
IE: Stáhnout s Mipony - C:\Program Files (x86)\MY PROGRAM FILES (x86)\Downloaders\MiPony\Browser\IEContext.htm
IE: {7815BE26-237D-41A8-A98F-F7BD75F71086} - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{3E8772A4-7E3D-441F-927D-6096907C0B24} : DHCPNameServer = 192.168.1.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\Advisor\System\BAVoilaX.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= C:\Windows\SysWOW64\guard32.dll C:\windows\SysWOW64\guard32.dll
LSA: Notification Packages = DPPassFilter scecli
x64-BHO: AutorunsDisabled - <orphaned>
x64-BHO: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\MY PROGRAM FILES\Security\Antivir\aswWebRepIE64.dll
x64-BHO: {AA58ED58-01DD-4d91-8333-CF10577473F7} - <orphaned>
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\MY PROGRAM FILES\Microsoft Office\Office14\URLREDIR.DLL
x64-BHO: SimpleAdblock Class: {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files (x86)\Common Files\Simple Adblock\SimpleAdblockx64.dll
x64-TB: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\MY PROGRAM FILES\Security\Antivir\aswWebRepIE64.dll
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [COMODO Internet Security] "C:\Program Files\MY PROGRAM FILES\Security\Firewall\COMODO\COMODO Internet Security\cfp.exe" -h
x64-Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
x64-DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\freekarol\AppData\Roaming\Mozilla\Firefox\Profiles\wh6tcftn.default\
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\MY PROGRAM FILES (x86)\Codecs\Real Alternative\browser\plugins\nppl3260.dll
FF - plugin: C:\Program Files (x86)\MY PROGRAM FILES (x86)\Codecs\Real Alternative\browser\plugins\nprpjplug.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npFoxitReaderPlugin.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\nppl3260.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin2.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin3.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin4.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin5.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin6.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\nprpjplug.dll
FF - plugin: C:\Program Files (x86)\nplightshot\3.2.0.0\npLightshot.dll
FF - plugin: C:\Program Files (x86)\Sticky Password\npSPAutofill.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Program Files\MY PROGRAM FILES\Docs\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll
FF - plugin: C:\windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll
FF - plugin: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll
FF - plugin: C:\windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\windows\SysWOW64\npmproxy.dll
.
============= SERVICES / DRIVERS ===============
.
R0 amd_sata;amd_sata;C:\windows\System32\drivers\amd_sata.sys [2011-4-15 79488]
R0 amd_xata;amd_xata;C:\windows\System32\drivers\amd_xata.sys [2011-4-15 40064]
R0 aswRvrt;aswRvrt;C:\windows\System32\drivers\aswRvrt.sys [2013-3-21 65336]
R0 cumon;cumon;C:\windows\System32\drivers\cumon.sys [2012-8-17 205512]
R0 Evdd;Evdd;C:\windows\System32\drivers\evdd.sys [2012-8-17 19568]
R0 MfeEpePc;MfeEpePc;C:\windows\System32\drivers\MfeEpePc.sys [2011-5-25 158280]
R1 aswSnx;aswSnx;C:\windows\System32\drivers\aswSnx.sys [2012-7-3 1025808]
R1 aswSP;aswSP;C:\windows\System32\drivers\aswSP.sys [2012-7-3 377920]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;C:\windows\System32\drivers\cmdGuard.sys [2012-3-11 584056]
R1 cmdHlp;COMODO Internet Security Helper Driver;C:\windows\System32\drivers\cmdhlp.sys [2012-3-11 38144]
R1 ElRawDisk;ElRawDisk;C:\windows\System32\drivers\rsdrvx64.sys [2012-7-20 26024]
R1 SASDIFSV;SASDIFSV;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Spyware\SAS\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Spyware\SAS\saskutil64.sys [2011-7-12 12368]
R2 AESTFilters;Andrea ST Filters Service;C:\Program Files\IDT\WDM\AESTSr64.exe [2012-1-28 89600]
R2 AMD External Events Utility;AMD External Events Utility;C:\windows\System32\atiesrxx.exe [2011-10-25 204288]
R2 aswFsBlk;aswFsBlk;C:\windows\System32\drivers\aswFsBlk.sys [2012-7-3 33400]
R2 aswMonFlt;aswMonFlt;C:\windows\System32\drivers\aswMonFlt.sys [2012-7-3 80816]
R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-5-10 146592]
R2 AtherosSvc;AtherosSvc;C:\Program Files (x86)\Bluetooth Suite\AdminService.exe [2011-5-10 80032]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\MY PROGRAM FILES\Security\Antivir\AvastSvc.exe [2013-3-21 45248]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service;C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-5-22 103992]
R2 hpHotkeyMonitor;hpHotkeyMonitor;C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2011-5-14 317496]
R2 hpsrv;HP Service;C:\windows\System32\hpservice.exe [2011-5-5 30520]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Antivir\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-10-1 418376]
R2 PdiService;Portrait Displays SDK Service;C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-12-7 113264]
R2 RtlISMServ;RtlISMServ;C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe [2011-5-30 40960]
R2 uArcCapture;ArcCapture;C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe [2012-1-28 502464]
R3 amdhub30;AMD USB 3.0 Hub Driver;C:\windows\System32\drivers\amdhub30.sys [2011-3-18 87168]
R3 amdxhc;AMD USB 3.0 Host Controller Driver;C:\windows\System32\drivers\amdxhc.sys [2011-3-18 188544]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver;C:\windows\System32\drivers\ArcSoftVCapture.sys [2012-1-28 32192]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\windows\System32\drivers\AtihdW76.sys [2011-6-6 231440]
R3 BTATH_BUS;Atheros Bluetooth Bus;C:\windows\System32\drivers\btath_bus.sys [2011-5-10 29344]
R3 JMCR;JMCR;C:\windows\System32\drivers\jmcr.sys [2011-3-8 174680]
R3 MBAMProtector;MBAMProtector;C:\windows\System32\drivers\mbam.sys [2012-7-4 25928]
R3 RTL8167;Realtek 8167 NT Driver;C:\windows\System32\drivers\Rt64win7.sys [2011-12-8 406632]
R3 SbieDrv;SbieDrv;C:\Program Files\MY PROGRAM FILES\Security\Sandbox\Sandboxie\SbieDrv.sys [2012-12-16 202632]
R3 SPUVCbv;SPUVCb Driver Service;C:\windows\System32\drivers\SPUVCBv_x64.sys [2012-1-28 2614520]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-7-9 123856]
S2 MBAMService;MBAMService;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Antivir\Malwarebytes' Anti-Malware\mbamservice.exe [2012-7-4 701512]
S3 aswVmm;aswVmm;C:\windows\System32\drivers\aswVmm.sys [2013-3-21 178624]
S3 AthBTPort;Atheros Virtual Bluetooth Class;C:\windows\System32\drivers\btath_flt.sys [2011-5-10 36000]
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver;C:\windows\System32\drivers\btath_a2dp.sys [2011-5-10 298656]
S3 BTATH_HCRP;Bluetooth HCRP Server driver;C:\windows\System32\drivers\btath_hcrp.sys [2011-5-10 201376]
S3 BTATH_LWFLT;Bluetooth LWFLT Device;C:\windows\System32\drivers\btath_lwflt.sys [2011-5-10 55456]
S3 BTATH_RCP;Bluetooth AVRCP Device;C:\windows\System32\drivers\btath_rcp.sys [2011-5-10 154272]
S3 BtFilter;BtFilter;C:\windows\System32\drivers\btfilter.sys [2011-5-10 281760]
S3 DAMDrv;DAMDrv;C:\windows\System32\drivers\DAMDrv64.sys [2011-5-10 64312]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing;C:\Windows\SysWOW64\flcdlock.exe [2011-5-10 464440]
S3 HP Power Assistant Service;HP Power Assistant Service;C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-3-18 132152]
S3 hpCMSrv;HP Connection Manager 4 Service;C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2011-5-23 1098296]
S3 MsgPlusService;Messenger Plus! Service;C:\Program Files (x86)\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe [2012-8-11 119808]
S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\windows\System32\drivers\rdpvideominiport.sys [2012-11-29 19456]
S3 Revoflt;Revoflt;C:\windows\System32\drivers\revoflt.sys [2013-3-16 31800]
S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2012-11-29 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\windows\System32\drivers\TsUsbGD.sys [2012-11-29 30208]
S4 !SASCORE;SAS Core Service;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Spyware\SAS\SASCore64.exe [2012-7-11 140672]
S4 CPMService;COMODO Programs Manager Service;C:\Program Files\MY PROGRAM FILES\Uninstallers\Comodo Programs Manager\CPMservice.exe [2011-9-5 116032]
S4 HPAuto;HP Auto;C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [2011-2-17 682040]
S4 HPDayStarterService;HP DayStarter Service;C:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [2011-3-23 133688]
S4 HPFSService;File Sanitizer for HP ProtectTools;C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2011-5-10 320512]
S4 McAfee Endpoint Encryption Agent;McAfee Endpoint Encryption Agent;C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [2011-5-24 1318912]
S4 pdfcDispatcher;PDF Document Manager;C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-12-7 1128952]
S4 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-1-8 161536]
S4 vcsFPService;Validity VCS Fingerprint Service;C:\windows\System32\vcsFPService.exe [2011-3-24 3161904]
S4 XobniService;XobniService;C:\Program Files (x86)\Xobni\XobniService.exe [2011-3-7 62184]
.
=============== File Associations ===============
.
ShellExec: DigitalTheatre.exe: open="c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTStart.exe" "%1"
.
=============== Created Last 30 ================
.
2013-05-05 12:35:42 -------- d-----w- C:\Program Files (x86)\Belarc
2013-05-04 17:29:49 -------- d-----w- C:\Users\freekarol\AppData\Local\Giuseppe_Greco
2013-05-01 10:59:30 -------- d-----w- C:\Users\freekarol\AppData\Roaming\MyNotesKeeper
2013-04-24 08:24:59 1656680 ----a-w- C:\windows\System32\drivers\ntfs.sys
2013-04-14 18:35:21 -------- d-----w- C:\Users\freekarol\AppData\Roaming\VOS
2013-04-10 12:52:11 2382848 ----a-w- C:\windows\SysWow64\mshtml.tlb
2013-04-10 10:54:56 3153408 ----a-w- C:\windows\System32\win32k.sys
2013-04-10 10:54:52 223752 ----a-w- C:\windows\System32\drivers\fvevol.sys
2013-04-10 10:54:49 5550424 ----a-w- C:\windows\System32\ntoskrnl.exe
2013-04-10 10:54:47 3968856 ----a-w- C:\windows\SysWow64\ntkrnlpa.exe
2013-04-10 10:54:47 3913560 ----a-w- C:\windows\SysWow64\ntoskrnl.exe
2013-04-10 10:54:46 43520 ----a-w- C:\windows\System32\csrsrv.dll
2013-04-10 10:54:46 112640 ----a-w- C:\windows\System32\smss.exe
2013-04-10 10:54:45 6656 ----a-w- C:\windows\SysWow64\apisetschema.dll
.
==================== Find3M ====================
.
2013-04-19 08:20:19 691592 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe
2013-04-19 08:20:18 71048 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-04-04 12:50:32 25928 ----a-w- C:\windows\System32\drivers\mbam.sys
2013-03-21 16:04:41 95648 ----a-w- C:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-03-21 16:04:36 861088 ----a-w- C:\windows\SysWow64\npDeployJava1.dll
2013-03-21 16:04:36 782240 ----a-w- C:\windows\SysWow64\deployJava1.dll
2013-03-15 23:10:41 3584 ----a-w- C:\Users\freekarol\AppData\Roaming\RestartApp.exe
2013-03-15 18:14:26 237840 ----a-w- C:\windows\System32\drivers\VBoxDrv.sys
2013-03-15 18:14:04 131856 ----a-w- C:\windows\System32\drivers\VBoxNetAdp.sys
2013-03-15 18:13:06 146704 ----a-w- C:\windows\System32\drivers\VBoxNetFlt.sys
2013-03-15 18:13:06 120080 ----a-w- C:\windows\System32\drivers\VBoxUSBMon.sys
2013-03-15 18:13:04 204048 ----a-w- C:\windows\System32\VBoxNetFltNobj.dll
2013-03-06 23:33:21 70992 ----a-w- C:\windows\System32\drivers\aswRdr2.sys
2013-03-06 23:33:21 65336 ----a-w- C:\windows\System32\drivers\aswRvrt.sys
2013-03-06 23:33:21 178624 ----a-w- C:\windows\System32\drivers\aswVmm.sys
2013-03-06 23:33:21 1025808 ----a-w- C:\windows\System32\drivers\aswSnx.sys
2013-03-06 23:33:20 80816 ----a-w- C:\windows\System32\drivers\aswMonFlt.sys
2013-03-06 23:32:51 41664 ----a-w- C:\windows\avastSS.scr
2013-02-22 06:27:49 2312704 ----a-w- C:\windows\System32\jscript9.dll
2013-02-22 06:20:51 1392128 ----a-w- C:\windows\System32\wininet.dll
2013-02-22 06:19:37 1494528 ----a-w- C:\windows\System32\inetcpl.cpl
2013-02-22 06:15:48 173056 ----a-w- C:\windows\System32\ieUnatt.exe
2013-02-22 06:15:23 599040 ----a-w- C:\windows\System32\vbscript.dll
2013-02-22 06:12:41 2382848 ----a-w- C:\windows\System32\mshtml.tlb
2013-02-22 03:46:00 1800704 ----a-w- C:\windows\SysWow64\jscript9.dll
2013-02-22 03:38:00 1129472 ----a-w- C:\windows\SysWow64\wininet.dll
2013-02-22 03:37:50 1427968 ----a-w- C:\windows\SysWow64\inetcpl.cpl
2013-02-22 03:34:17 142848 ----a-w- C:\windows\SysWow64\ieUnatt.exe
2013-02-22 03:34:03 420864 ----a-w- C:\windows\SysWow64\vbscript.dll
2013-02-12 05:45:24 135168 ----a-w- C:\windows\apppatch\AppPatch64\AcXtrnal.dll
2013-02-12 05:45:22 350208 ----a-w- C:\windows\apppatch\AppPatch64\AcLayers.dll
2013-02-12 05:45:22 308736 ----a-w- C:\windows\apppatch\AppPatch64\AcGenral.dll
2013-02-12 05:45:22 111104 ----a-w- C:\windows\apppatch\AppPatch64\acspecfc.dll
2013-02-12 04:48:31 474112 ----a-w- C:\windows\apppatch\AcSpecfc.dll
2013-02-12 04:48:26 2176512 ----a-w- C:\windows\apppatch\AcGenral.dll
2013-02-12 04:12:05 19968 ----a-w- C:\windows\System32\drivers\usb8023.sys
.
============= FINISH: 10:37:37,45 ===============
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16476 BrowserJavaVersion: 10.17.2
Run by freekarol at 10:36:40 on 2013-05-10
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3552.1929 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: COMODO Defense+ *Enabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
.
============== Running Processes ===============
.
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\Program Files\MY PROGRAM FILES\Security\Firewall\COMODO\COMODO Internet Security\cmdagent.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\Program Files\IDT\WDM\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
C:\windows\system32\atieclxx.exe
C:\Program Files\MY PROGRAM FILES\Security\Sandbox\Sandboxie\SbieSvc.exe
C:\Program Files\MY PROGRAM FILES\Security\Antivir\AvastSvc.exe
C:\windows\system32\WLANExt.exe
C:\windows\System32\spoolsv.exe
c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\IDT\WDM\AESTSr64.exe
C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\MY PROGRAM FILES\Security\Firewall\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\IDT\WDM\sttray64.exe
C:\Users\Karol\MY DATA\Archive\1.Extensions\Software\Portable Programs\32\Portable Starts\asuite1512\asuite.exe
C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
C:\Program Files\MY PROGRAM FILES\Security\Antivir\AvastUI.exe
C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Antivir\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe
C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\windows\system32\wbem\unsecapp.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
C:\windows\system32\SearchIndexer.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\windows\system32\taskmgr.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
BHO: AutorunsDisabled - <orphaned>
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\MY PROGRAM FILES\Security\Antivir\aswWebRepIE.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: SimpleAdblock Class: {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files (x86)\Common Files\Simple Adblock\SimpleAdblock.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\MY PROGRAM FILES\Security\Antivir\aswWebRepIE.dll
mRun: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
mRun: [avast] "C:\Program Files\MY PROGRAM FILES\Security\Antivir\avastUI.exe" /nogui
StartupFolder: C:\Users\FREEKA~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ASUITE~1.LNK - C:\Users\Karol\MY DATA\Archive\1.Extensions\Software\Portable Programs\32\Portable Starts\asuite1512\asuite.exe
StartupFolder: C:\Users\FREEKA~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\TASKMG~1.LNK - C:\windows\System32\taskmgr.exe
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Download current page with FreshWebSuction - C:\Sandbox\Karol\DefaultBox\drive\C\Program Files (x86)\FreshWebmaster\FreshWebSuction\obiectx_all.htm
IE: Download using FreshWebSuction - C:\Sandbox\Karol\DefaultBox\drive\C\Program Files (x86)\FreshWebmaster\FreshWebSuction\obiectx.htm
IE: E&xportovat do aplikace Microsoft Excel - C:\PROGRA~1\MYPROG~1\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - C:\PROGRA~1\MYPROG~1\Office14\ONBttnIE.dll/105
IE: Sticky Password - C:\Program Files (x86)\Sticky Password\spIEBho.dll/616
IE: Stáhnout s Mipony - C:\Program Files (x86)\MY PROGRAM FILES (x86)\Downloaders\MiPony\Browser\IEContext.htm
IE: {7815BE26-237D-41A8-A98F-F7BD75F71086} - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{3E8772A4-7E3D-441F-927D-6096907C0B24} : DHCPNameServer = 192.168.1.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\Advisor\System\BAVoilaX.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= C:\Windows\SysWOW64\guard32.dll C:\windows\SysWOW64\guard32.dll
LSA: Notification Packages = DPPassFilter scecli
x64-BHO: AutorunsDisabled - <orphaned>
x64-BHO: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\MY PROGRAM FILES\Security\Antivir\aswWebRepIE64.dll
x64-BHO: {AA58ED58-01DD-4d91-8333-CF10577473F7} - <orphaned>
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\MY PROGRAM FILES\Microsoft Office\Office14\URLREDIR.DLL
x64-BHO: SimpleAdblock Class: {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files (x86)\Common Files\Simple Adblock\SimpleAdblockx64.dll
x64-TB: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\MY PROGRAM FILES\Security\Antivir\aswWebRepIE64.dll
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [COMODO Internet Security] "C:\Program Files\MY PROGRAM FILES\Security\Firewall\COMODO\COMODO Internet Security\cfp.exe" -h
x64-Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
x64-DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\freekarol\AppData\Roaming\Mozilla\Firefox\Profiles\wh6tcftn.default\
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\MY PROGRAM FILES (x86)\Codecs\Real Alternative\browser\plugins\nppl3260.dll
FF - plugin: C:\Program Files (x86)\MY PROGRAM FILES (x86)\Codecs\Real Alternative\browser\plugins\nprpjplug.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npFoxitReaderPlugin.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\nppl3260.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin2.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin3.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin4.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin5.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\npqtplugin6.dll
FF - plugin: C:\PROGRAM FILES (X86)\MY PROGRAM FILES (X86)\DOCS\FOXIT READER\plugins\nprpjplug.dll
FF - plugin: C:\Program Files (x86)\nplightshot\3.2.0.0\npLightshot.dll
FF - plugin: C:\Program Files (x86)\Sticky Password\npSPAutofill.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Program Files\MY PROGRAM FILES\Docs\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll
FF - plugin: C:\windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll
FF - plugin: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll
FF - plugin: C:\windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\windows\SysWOW64\npmproxy.dll
.
============= SERVICES / DRIVERS ===============
.
R0 amd_sata;amd_sata;C:\windows\System32\drivers\amd_sata.sys [2011-4-15 79488]
R0 amd_xata;amd_xata;C:\windows\System32\drivers\amd_xata.sys [2011-4-15 40064]
R0 aswRvrt;aswRvrt;C:\windows\System32\drivers\aswRvrt.sys [2013-3-21 65336]
R0 cumon;cumon;C:\windows\System32\drivers\cumon.sys [2012-8-17 205512]
R0 Evdd;Evdd;C:\windows\System32\drivers\evdd.sys [2012-8-17 19568]
R0 MfeEpePc;MfeEpePc;C:\windows\System32\drivers\MfeEpePc.sys [2011-5-25 158280]
R1 aswSnx;aswSnx;C:\windows\System32\drivers\aswSnx.sys [2012-7-3 1025808]
R1 aswSP;aswSP;C:\windows\System32\drivers\aswSP.sys [2012-7-3 377920]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;C:\windows\System32\drivers\cmdGuard.sys [2012-3-11 584056]
R1 cmdHlp;COMODO Internet Security Helper Driver;C:\windows\System32\drivers\cmdhlp.sys [2012-3-11 38144]
R1 ElRawDisk;ElRawDisk;C:\windows\System32\drivers\rsdrvx64.sys [2012-7-20 26024]
R1 SASDIFSV;SASDIFSV;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Spyware\SAS\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Spyware\SAS\saskutil64.sys [2011-7-12 12368]
R2 AESTFilters;Andrea ST Filters Service;C:\Program Files\IDT\WDM\AESTSr64.exe [2012-1-28 89600]
R2 AMD External Events Utility;AMD External Events Utility;C:\windows\System32\atiesrxx.exe [2011-10-25 204288]
R2 aswFsBlk;aswFsBlk;C:\windows\System32\drivers\aswFsBlk.sys [2012-7-3 33400]
R2 aswMonFlt;aswMonFlt;C:\windows\System32\drivers\aswMonFlt.sys [2012-7-3 80816]
R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-5-10 146592]
R2 AtherosSvc;AtherosSvc;C:\Program Files (x86)\Bluetooth Suite\AdminService.exe [2011-5-10 80032]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\MY PROGRAM FILES\Security\Antivir\AvastSvc.exe [2013-3-21 45248]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service;C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-5-22 103992]
R2 hpHotkeyMonitor;hpHotkeyMonitor;C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2011-5-14 317496]
R2 hpsrv;HP Service;C:\windows\System32\hpservice.exe [2011-5-5 30520]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Antivir\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-10-1 418376]
R2 PdiService;Portrait Displays SDK Service;C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-12-7 113264]
R2 RtlISMServ;RtlISMServ;C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe [2011-5-30 40960]
R2 uArcCapture;ArcCapture;C:\Windows\SysWOW64\ArcVCapRender\uArcCapture.exe [2012-1-28 502464]
R3 amdhub30;AMD USB 3.0 Hub Driver;C:\windows\System32\drivers\amdhub30.sys [2011-3-18 87168]
R3 amdxhc;AMD USB 3.0 Host Controller Driver;C:\windows\System32\drivers\amdxhc.sys [2011-3-18 188544]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver;C:\windows\System32\drivers\ArcSoftVCapture.sys [2012-1-28 32192]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\windows\System32\drivers\AtihdW76.sys [2011-6-6 231440]
R3 BTATH_BUS;Atheros Bluetooth Bus;C:\windows\System32\drivers\btath_bus.sys [2011-5-10 29344]
R3 JMCR;JMCR;C:\windows\System32\drivers\jmcr.sys [2011-3-8 174680]
R3 MBAMProtector;MBAMProtector;C:\windows\System32\drivers\mbam.sys [2012-7-4 25928]
R3 RTL8167;Realtek 8167 NT Driver;C:\windows\System32\drivers\Rt64win7.sys [2011-12-8 406632]
R3 SbieDrv;SbieDrv;C:\Program Files\MY PROGRAM FILES\Security\Sandbox\Sandboxie\SbieDrv.sys [2012-12-16 202632]
R3 SPUVCbv;SPUVCb Driver Service;C:\windows\System32\drivers\SPUVCBv_x64.sys [2012-1-28 2614520]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-7-9 123856]
S2 MBAMService;MBAMService;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Antivir\Malwarebytes' Anti-Malware\mbamservice.exe [2012-7-4 701512]
S3 aswVmm;aswVmm;C:\windows\System32\drivers\aswVmm.sys [2013-3-21 178624]
S3 AthBTPort;Atheros Virtual Bluetooth Class;C:\windows\System32\drivers\btath_flt.sys [2011-5-10 36000]
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver;C:\windows\System32\drivers\btath_a2dp.sys [2011-5-10 298656]
S3 BTATH_HCRP;Bluetooth HCRP Server driver;C:\windows\System32\drivers\btath_hcrp.sys [2011-5-10 201376]
S3 BTATH_LWFLT;Bluetooth LWFLT Device;C:\windows\System32\drivers\btath_lwflt.sys [2011-5-10 55456]
S3 BTATH_RCP;Bluetooth AVRCP Device;C:\windows\System32\drivers\btath_rcp.sys [2011-5-10 154272]
S3 BtFilter;BtFilter;C:\windows\System32\drivers\btfilter.sys [2011-5-10 281760]
S3 DAMDrv;DAMDrv;C:\windows\System32\drivers\DAMDrv64.sys [2011-5-10 64312]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing;C:\Windows\SysWOW64\flcdlock.exe [2011-5-10 464440]
S3 HP Power Assistant Service;HP Power Assistant Service;C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-3-18 132152]
S3 hpCMSrv;HP Connection Manager 4 Service;C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2011-5-23 1098296]
S3 MsgPlusService;Messenger Plus! Service;C:\Program Files (x86)\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe [2012-8-11 119808]
S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\windows\System32\drivers\rdpvideominiport.sys [2012-11-29 19456]
S3 Revoflt;Revoflt;C:\windows\System32\drivers\revoflt.sys [2013-3-16 31800]
S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2012-11-29 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\windows\System32\drivers\TsUsbGD.sys [2012-11-29 30208]
S4 !SASCORE;SAS Core Service;C:\Program Files (x86)\MY PROGRAM FILES (x86)\Security\Spyware\SAS\SASCore64.exe [2012-7-11 140672]
S4 CPMService;COMODO Programs Manager Service;C:\Program Files\MY PROGRAM FILES\Uninstallers\Comodo Programs Manager\CPMservice.exe [2011-9-5 116032]
S4 HPAuto;HP Auto;C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [2011-2-17 682040]
S4 HPDayStarterService;HP DayStarter Service;C:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [2011-3-23 133688]
S4 HPFSService;File Sanitizer for HP ProtectTools;C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2011-5-10 320512]
S4 McAfee Endpoint Encryption Agent;McAfee Endpoint Encryption Agent;C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [2011-5-24 1318912]
S4 pdfcDispatcher;PDF Document Manager;C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-12-7 1128952]
S4 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-1-8 161536]
S4 vcsFPService;Validity VCS Fingerprint Service;C:\windows\System32\vcsFPService.exe [2011-3-24 3161904]
S4 XobniService;XobniService;C:\Program Files (x86)\Xobni\XobniService.exe [2011-3-7 62184]
.
=============== File Associations ===============
.
ShellExec: DigitalTheatre.exe: open="c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTStart.exe" "%1"
.
=============== Created Last 30 ================
.
2013-05-05 12:35:42 -------- d-----w- C:\Program Files (x86)\Belarc
2013-05-04 17:29:49 -------- d-----w- C:\Users\freekarol\AppData\Local\Giuseppe_Greco
2013-05-01 10:59:30 -------- d-----w- C:\Users\freekarol\AppData\Roaming\MyNotesKeeper
2013-04-24 08:24:59 1656680 ----a-w- C:\windows\System32\drivers\ntfs.sys
2013-04-14 18:35:21 -------- d-----w- C:\Users\freekarol\AppData\Roaming\VOS
2013-04-10 12:52:11 2382848 ----a-w- C:\windows\SysWow64\mshtml.tlb
2013-04-10 10:54:56 3153408 ----a-w- C:\windows\System32\win32k.sys
2013-04-10 10:54:52 223752 ----a-w- C:\windows\System32\drivers\fvevol.sys
2013-04-10 10:54:49 5550424 ----a-w- C:\windows\System32\ntoskrnl.exe
2013-04-10 10:54:47 3968856 ----a-w- C:\windows\SysWow64\ntkrnlpa.exe
2013-04-10 10:54:47 3913560 ----a-w- C:\windows\SysWow64\ntoskrnl.exe
2013-04-10 10:54:46 43520 ----a-w- C:\windows\System32\csrsrv.dll
2013-04-10 10:54:46 112640 ----a-w- C:\windows\System32\smss.exe
2013-04-10 10:54:45 6656 ----a-w- C:\windows\SysWow64\apisetschema.dll
.
==================== Find3M ====================
.
2013-04-19 08:20:19 691592 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe
2013-04-19 08:20:18 71048 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-04-04 12:50:32 25928 ----a-w- C:\windows\System32\drivers\mbam.sys
2013-03-21 16:04:41 95648 ----a-w- C:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-03-21 16:04:36 861088 ----a-w- C:\windows\SysWow64\npDeployJava1.dll
2013-03-21 16:04:36 782240 ----a-w- C:\windows\SysWow64\deployJava1.dll
2013-03-15 23:10:41 3584 ----a-w- C:\Users\freekarol\AppData\Roaming\RestartApp.exe
2013-03-15 18:14:26 237840 ----a-w- C:\windows\System32\drivers\VBoxDrv.sys
2013-03-15 18:14:04 131856 ----a-w- C:\windows\System32\drivers\VBoxNetAdp.sys
2013-03-15 18:13:06 146704 ----a-w- C:\windows\System32\drivers\VBoxNetFlt.sys
2013-03-15 18:13:06 120080 ----a-w- C:\windows\System32\drivers\VBoxUSBMon.sys
2013-03-15 18:13:04 204048 ----a-w- C:\windows\System32\VBoxNetFltNobj.dll
2013-03-06 23:33:21 70992 ----a-w- C:\windows\System32\drivers\aswRdr2.sys
2013-03-06 23:33:21 65336 ----a-w- C:\windows\System32\drivers\aswRvrt.sys
2013-03-06 23:33:21 178624 ----a-w- C:\windows\System32\drivers\aswVmm.sys
2013-03-06 23:33:21 1025808 ----a-w- C:\windows\System32\drivers\aswSnx.sys
2013-03-06 23:33:20 80816 ----a-w- C:\windows\System32\drivers\aswMonFlt.sys
2013-03-06 23:32:51 41664 ----a-w- C:\windows\avastSS.scr
2013-02-22 06:27:49 2312704 ----a-w- C:\windows\System32\jscript9.dll
2013-02-22 06:20:51 1392128 ----a-w- C:\windows\System32\wininet.dll
2013-02-22 06:19:37 1494528 ----a-w- C:\windows\System32\inetcpl.cpl
2013-02-22 06:15:48 173056 ----a-w- C:\windows\System32\ieUnatt.exe
2013-02-22 06:15:23 599040 ----a-w- C:\windows\System32\vbscript.dll
2013-02-22 06:12:41 2382848 ----a-w- C:\windows\System32\mshtml.tlb
2013-02-22 03:46:00 1800704 ----a-w- C:\windows\SysWow64\jscript9.dll
2013-02-22 03:38:00 1129472 ----a-w- C:\windows\SysWow64\wininet.dll
2013-02-22 03:37:50 1427968 ----a-w- C:\windows\SysWow64\inetcpl.cpl
2013-02-22 03:34:17 142848 ----a-w- C:\windows\SysWow64\ieUnatt.exe
2013-02-22 03:34:03 420864 ----a-w- C:\windows\SysWow64\vbscript.dll
2013-02-12 05:45:24 135168 ----a-w- C:\windows\apppatch\AppPatch64\AcXtrnal.dll
2013-02-12 05:45:22 350208 ----a-w- C:\windows\apppatch\AppPatch64\AcLayers.dll
2013-02-12 05:45:22 308736 ----a-w- C:\windows\apppatch\AppPatch64\AcGenral.dll
2013-02-12 05:45:22 111104 ----a-w- C:\windows\apppatch\AppPatch64\acspecfc.dll
2013-02-12 04:48:31 474112 ----a-w- C:\windows\apppatch\AcSpecfc.dll
2013-02-12 04:48:26 2176512 ----a-w- C:\windows\apppatch\AcGenral.dll
2013-02-12 04:12:05 19968 ----a-w- C:\windows\System32\drivers\usb8023.sys
.
============= FINISH: 10:37:37,45 ===============