Stránka 1 z 1

Aj policia aj ine

Napsal: 29 kvě 2013 07:15
od Juraj1973
Pozdravujem Vás, už dávno som nepotreboval vašu radu, no teraz po dlhšom čase by som vás chcel poprosiť o radu pre zúfalého kelegu.. mal tam niečo s políciou potom sa mu to podarilo nieklym dostať preč, no znovu sa to vrátilo do polohy, ke´d počítač mrzne "že sa nedokáže pripojiť na stránku" .. keď som skúšal dať PC do núdzového režimu, tak sa pri jeho nabiehaní vypínal, teraz sa mi to potorilo "repair" a posielam nižšie logy RSIT a a frst

Poprosím o pomoc a Ďakujem za váš čas a ochotu !!

ijackThis download failed

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe"
"C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2128
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\Explorer.EXE
adb fork-server server
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" /background
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" view=DOCKVIEW
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Users\Ján\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" -tray
"C:\Program Files (x86)\W3i\InstallIQUpdater\InstallIQUpdater.exe" /silent /autorun
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe" /Start
"C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe"
"C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe" /tray
"C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
C:\Windows\system32\wbem\wmiprvse.exe
{2EF44634-749B-495C-8A73-ADF52F8332D0}
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
{D34FF187-1F47-450F-8075-611E37444339}
taskeng.exe {0E707F32-16FA-40DB-9AC3-F33A4471EB05}
"c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe"
"c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe" -Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><ID>31621</ID><Title>HP Wireless Assistant</Title><Text>WLAN: Deaktivované
Bluetooth: Deaktivované</Text><IconPath>C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\images\wireless_off.ico</IconPath><Path>C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe</Path><Parameters>SHOWSTATUS</Parameters></Toast></hpNotification>"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
C:\Windows\system32\sppsvc.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-fa0225fb-e632-4ae4-a9f8-5231239afd7a -SystemEventPortName:HostProcess-2935e6ca-785a-40e0-851a-8150293ee945 -IoCancelEventPortName:HostProcess-e8440cf8-20a5-452c-99f0-6530166516ef -NonStateChangingEventPortName:HostProcess-09878886-9122-47e5-949c-df8bb38a10b4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:3633cb5e-b798-4c6a-a32b-144d402cd16b -DeviceGroupId:WpdFsGroup
"C:\Windows\system32\SearchFilterHost.exe" 0 504 508 516 65536 512
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Ján\Desktop\RSITx64.exe"
"C:\Windows\system32\rundll32.exe" "C:\Windows\system32\WININET.dll",DispatchAPICall 1

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Ján\AppData\Roaming\Mozilla\Firefox\Profiles\fb1lpfwo.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.msn.com/?pc=WLEM"
prefs.js - "extensions.enabledItems" - "{ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.7, ffxtlbr@Facemoods.com:1.2.0, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:5.3.0.7550, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.2.145, {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}:6.0.31, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=WLETDF&PC=WLEM&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.202 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nppl3260;version=12.0.1.669]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprjplug;version=12.0.1.669]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.669]
"Description"=RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.669]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.669]
"Description"=12.0.1.669
"Path"=c:\program files (x86)\real\realplayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App V2 Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.202 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_202.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}

C:\Program Files (x86)\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nppl3260.xpt
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsjsrealplayerplugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js

C:\Program Files (x86)\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
nppdf32.dll
nppl3260.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprjplug.dll
nprpjplug.dll
QuickTimePlugin.class

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml

C:\Users\Ján\AppData\Roaming\Mozilla\Firefox\Profiles\fb1lpfwo.default\extensions\
ffxtlbr@Facemoods.com

C:\Users\Ján\AppData\Roaming\Mozilla\Firefox\Profiles\fb1lpfwo.default\searchplugins\
bing.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2013-01-15 253584]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-09-06 43520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08 77424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-11-01 414416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-10-26 194432]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2012-03-14 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2012-03-08 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2013-01-15 192144]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-02-28 1089288]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2012-03-14 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2013-01-15 253584]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-02-28 1089288]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2013-01-15 192144]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-07-15 1815848]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2009-07-22 450048]
"SmartMenu"=C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [2009-07-21 610872]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-09-06 171520]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2011-01-12 2918656]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"HPADVISOR"=C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe [2009-07-15 1668664]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-06-10 39408]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]
"Facebook Update"=C:\Users\Ján\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-17 138096]
"NokiaSuite.exe"=C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [2012-12-21 1090040]
"InstallIQUpdater"=C:\Program Files (x86)\W3i\InstallIQUpdater\InstallIQUpdater.exe [2011-10-11 1179648]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-07-02 98304]
"HPCam_Menu"=c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [2009-02-25 218408]
"QlbCtrl.exe"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-06-24 320056]
"UpdatePRCShortCut"=C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2008-12-08 54576]
""= []
"TkBellExe"=c:\program files (x86)\real\realplayer\Update\realsched.exe [2011-11-01 273528]
"WirelessAssistant"=C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2010-03-23 500792]
"Kerio VPN Client"=C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe [2011-04-21 5291656]
"DivXUpdate"=C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2011-07-29 1259376]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2013-05-08 41056]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2009-11-10 417792]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2013-05-29 07:57:58 ----D---- C:\rsit
2013-05-29 07:57:58 ----D---- C:\Program Files\trend micro
2013-05-29 07:54:52 ----D---- C:\FRST
2013-05-29 07:23:29 ----A---- C:\Users\Ján\AppData\Roaming\skype.dat
2013-05-27 15:29:23 ----D---- C:\Windows\system32\SPReview
2013-05-25 18:04:19 ----A---- C:\Windows\WINCMD.INI
2013-05-24 10:19:01 ----A---- C:\ProgramData\as98213.txt
2013-05-24 10:18:46 ----A---- C:\ProgramData\je6zrijm.dat
2013-05-23 14:19:19 ----D---- C:\13bdd3815b8b8978b5e27878
2013-05-23 14:14:24 ----D---- C:\ProgramData\ESET
2013-05-23 14:14:24 ----D---- C:\Program Files\ESET
2013-05-14 09:21:54 ----SHD---- C:\$RECYCLE.BIN
2013-05-14 09:14:47 ----D---- C:\Windows\temp
2013-05-14 09:14:45 ----A---- C:\ComboFix.txt
2013-05-14 08:51:49 ----A---- C:\Windows\zip.exe
2013-05-14 08:51:49 ----A---- C:\Windows\SWSC.exe
2013-05-14 08:51:49 ----A---- C:\Windows\SWREG.exe
2013-05-14 08:51:49 ----A---- C:\Windows\sed.exe
2013-05-14 08:51:49 ----A---- C:\Windows\PEV.exe
2013-05-14 08:51:49 ----A---- C:\Windows\NIRCMD.exe
2013-05-14 08:51:49 ----A---- C:\Windows\MBR.exe
2013-05-14 08:51:49 ----A---- C:\Windows\grep.exe
2013-05-14 08:50:22 ----D---- C:\Qoobox
2013-05-14 08:49:46 ----D---- C:\Windows\erdnt

======List of files/folders modified in the last 1 month======

2013-05-29 17:47:18 ----D---- C:\Windows\Tasks
2013-05-29 17:47:18 ----D---- C:\Windows\system32\wfp
2013-05-29 17:47:18 ----D---- C:\Windows\system32\DriverStore
2013-05-29 17:47:18 ----D---- C:\Windows\system32\catroot2
2013-05-29 17:47:18 ----D---- C:\Program Files\Windows Defender
2013-05-29 17:47:17 ----D---- C:\Windows\system32\Tasks
2013-05-29 17:47:11 ----D---- C:\Windows\system32\drivers
2013-05-29 17:47:10 ----D---- C:\ProgramData\Real
2013-05-29 17:46:32 ----D---- C:\Windows\system32\wbem
2013-05-29 17:46:32 ----D---- C:\Windows\registration
2013-05-29 17:46:30 ----D---- C:\Windows\winsxs
2013-05-29 17:40:25 ----D---- C:\Windows\system32\LogFiles
2013-05-29 07:57:58 ----RD---- C:\Program Files
2013-05-29 07:57:54 ----D---- C:\Windows\Prefetch
2013-05-29 07:56:58 ----D---- C:\Windows\System32
2013-05-29 07:56:58 ----D---- C:\Windows\inf
2013-05-29 07:56:58 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-05-29 07:55:00 ----D---- C:\Windows
2013-05-29 07:52:42 ----SHD---- C:\System Volume Information
2013-05-29 07:49:23 ----D---- C:\ProgramData
2013-05-29 07:49:23 ----A---- C:\ProgramData\HPWALog.txt
2013-05-29 07:49:05 ----D---- C:\Windows\system32\config
2013-05-25 15:13:39 ----D---- C:\Users\Ján\AppData\Roaming\Skype
2013-05-25 15:13:39 ----D---- C:\Users\Ján\AppData\Roaming\DAEMON Tools Lite
2013-05-25 15:13:37 ----D---- C:\Windows\Panther
2013-05-25 15:13:37 ----D---- C:\Windows\ModemLogs
2013-05-25 15:13:37 ----D---- C:\Windows\Logs
2013-05-25 15:13:37 ----D---- C:\Windows\debug
2013-05-25 14:39:00 ----D---- C:\Windows\Minidump
2013-05-24 15:08:13 ----D---- C:\Windows\SysWOW64
2013-05-24 15:08:07 ----D---- C:\Windows\system32\CodeIntegrity
2013-05-24 15:08:07 ----D---- C:\Windows\AppCompat
2013-05-23 14:15:31 ----SHD---- C:\Windows\Installer
2013-05-23 14:15:12 ----D---- C:\Windows\system32\catroot
2013-05-16 10:37:00 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-16 07:09:10 ----A---- C:\Windows\system32\MRT.exe
2013-05-15 06:53:44 ----D---- C:\Program Files (x86)
2013-05-14 09:11:21 ----A---- C:\Windows\system.ini
2013-05-14 09:02:33 ----D---- C:\Windows\SYSWOW64\drivers
2013-05-14 09:02:33 ----D---- C:\Windows\AppPatch
2013-05-14 09:02:30 ----D---- C:\Program Files (x86)\Common Files
2013-05-14 07:45:51 ----D---- C:\Windows\system32\NDF
2013-05-02 02:06:08 ----A---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 30008]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-10-26 270912]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-12-21 141264]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-12-21 170640]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-12-21 125296]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 43320]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-09-22 1484800]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\Windows\system32\drivers\AtiHdmi.sys [2009-06-05 114192]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-02 6036480]
R3 enecir;ENE CIR Receiver; C:\Windows\system32\DRIVERS\enecir.sys [2009-06-29 70656]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 18432]
R3 kvnet;Kerio Virtual Network Adapter; C:\Windows\system32\DRIVERS\kvnet.sys [2010-10-25 37424]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-05-23 215040]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt64.sys [2009-07-22 487936]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-07-15 273456]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-03-09 36408]
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552448]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-17 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-07-17 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-07-17 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-17 21160]
S3 dc3d;MS Hardware Device Detection Driver; C:\Windows\system32\DRIVERS\dc3d.sys [2009-03-23 20992]
S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\Windows\system32\DRIVERS\ewusbnet.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-03-08 48488]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;HTC NDIS Protocol Driver; C:\Windows\system32\DRIVERS\htcnprot.sys [2012-09-25 36928]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys []
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys []
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-07-21 140712]
S3 massfilter;ZTE Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter.sys []
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2012-11-09 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2012-11-09 27136]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2012-11-09 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2009-10-10 109056]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-11-09 9216]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-11-09 9216]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
S3 WSDPrintDevice;WSD Print Support via UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe [2009-03-02 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-07-02 203264]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-01 864032]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2011-01-12 810144]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-06-10 136176]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-06-21 85560]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-03-28 94264]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2011-05-13 30520]
R2 HTCMonitorService;HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [2012-12-12 87368]
R2 KVPNCSvc;Kerio VPN Client Service; C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe [2011-04-21 1105544]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-01-21 247152]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-02-25 249648]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe [2009-07-22 240128]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-03-28 799800]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-12-19 732648]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-16 256904]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-02-28 183560]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2011-01-12 42360]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-03-08 1492840]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-06-10 136176]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-22 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-13 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

-----------------EOF-----------------

FRST

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-05-2013
Ran by Ján (administrator) on 29-05-2013 07:55:00
Running from C:\Users\Ján\Desktop
Windows 7 Home Premium (X64) OS Language: 041B
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================

(AMD) C:\Windows\system32\atiesrxx.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe
(Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
(Kerio Technologies Inc.) C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
() C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
() C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Google Inc.) C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
(Facebook Inc.) C:\Users\Ján\AppData\Local\Facebook\Update\FacebookUpdate.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Nokia) C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
(W3i, LLC) C:\Program Files (x86)\W3i\InstallIQUpdater\InstallIQUpdater.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Kerio Technologies Inc.) C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
(CyberLink) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
(CyberLink Corp.) c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
() C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Microsoft Corporation) \\?\C:\Windows\system32\wbem\WMIADAP.EXE
(Farbar) C:\Users\Ján\Desktop\FRST64.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [1815848 2009-07-15] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe [450048 2009-07-22] (IDT, Inc.)
HKLM\...\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe /background [610872 2009-07-21] ()
HKLM\...\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" [171520 2009-09-06] (Sun Microsystems, Inc.)
HKLM\...\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice [2918656 2011-01-12] (ESET)
HKCU\...\Run: [HPADVISOR] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW [1668664 2009-07-15] (Hewlett-Packard)
HKCU\...\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden [2363392 2009-06-17] (Hewlett-Packard Company)
HKCU\...\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [1475072 2009-07-14] (Microsoft Corporation)
HKCU\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [39408 2010-06-10] (Google Inc.)
HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [4910912 2011-08-02] (DT Soft Ltd)
HKCU\...\Run: [Facebook Update] "C:\Users\Ján\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2012-07-17] (Facebook Inc.)
HKCU\...\Run: [NokiaSuite.exe] C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray [1090040 2012-12-21] (Nokia)
HKCU\...\Run: [InstallIQUpdater] "C:\Program Files (x86)\W3i\InstallIQUpdater\InstallIQUpdater.exe" /silent /autorun [1179648 2011-10-11] (W3i, LLC)
HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [98304 2009-07-02] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HPCam_Menu] "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam" UpdateWithCreateOnce "Software\Hewlett-Packard\Media\Webcam" [218408 2009-02-25] (CyberLink Corp.)
HKLM-x32\...\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start [320056 2009-06-24] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [UpdatePRCShortCut] "C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Hewlett-Packard\Recovery" UpdateWithCreateOnce "Software\CyberLink\PowerRecover" [222504 2009-05-19] (CyberLink Corp.)
HKLM-x32\...\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [] [x]
HKLM-x32\...\Run: [TkBellExe] "c:\program files (x86)\real\realplayer\Update\realsched.exe" -osboot [273528 2011-11-01] (RealNetworks, Inc.)
HKLM-x32\...\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [500792 2010-03-23] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Kerio VPN Client] "C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe" /tray [5291656 2011-04-21] (Kerio Technologies Inc.)
HKLM-x32\...\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [1259376 2011-07-29] ()
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [41056 2013-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2012-01-18] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [417792 2009-11-10] (Apple Inc.)
HKU\Default\...\Run: [HPADVISOR] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN [1668664 2009-07-15] (Hewlett-Packard)
HKU\Default\...\Policies\system: [WallpaperStyle] 2
HKU\Default User\...\Run: [HPADVISOR] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN [1668664 2009-07-15] (Hewlett-Packard)
HKU\Default User\...\Policies\system: [WallpaperStyle] 2
Startup: C:\ProgramData\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Pomocník pri prihlasovaní v konte Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
PDF: HKLM-x32 {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicrosoftoffice.com/tri ... /wrc32.ocx
PDF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Ján\AppData\Roaming\Mozilla\Firefox\Profiles\fb1lpfwo.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.msn.com/?pc=WLEM
FF Keyword.URL: hxxp://www.bing.com/search?FORM=WLETDF&PC=WLEM&q=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_202.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll ()
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nokia.com/EnablerPlugin - C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin-x32: @real.com/nppl3260;version=12.0.1.669 - c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprjplug;version=12.0.1.669 - c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=12.0.1.669 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprphtml5videoshim;version=12.0.1.669 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpjplug;version=12.0.1.669 - c:\program files (x86)\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Facemoods - C:\Users\Ján\AppData\Roaming\Mozilla\Firefox\Profiles\fb1lpfwo.default\Extensions\ffxtlbr@Facemoods.com

Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\pdf.dll ()
CHR Plugin: (Google Gears 0.5.33.0) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\gears.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\gcswf32.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.230.5) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U23) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll No File
CHR Plugin: (DivX Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.dll No File
CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
CHR Plugin: (RealJukebox NS Plugin) - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer Version Plugin) - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
CHR Plugin: (WildTangent Games App Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll No File
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.51204.0\npctrl.dll No File
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Users\Ján\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.5_0
CHR Extension: (Skype Extension) - C:\Users\Ján\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.3.0.7550_0
CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\Ján\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0

==================== Services (Whitelisted) =================

R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation)
S3 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [42360 2011-01-12] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [810144 2011-01-12] (ESET)
R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2012-12-12] (Nero AG)
R2 KVPNCSvc; C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe [1105544 2011-04-21] (Kerio Technologies Inc.)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] ()
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-01-21] ()
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe [240128 2009-07-22] (IDT, Inc.)

==================== Drivers (Whitelisted) ====================

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [270912 2011-10-26] (DT Soft Ltd)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [170640 2010-12-21] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [141264 2010-12-21] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [125296 2010-12-21] (ESET)
R3 kvnet; C:\Windows\System32\DRIVERS\kvnet.sys [37424 2010-10-25] (Kerio Technologies Inc.)
S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [x]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x]
S3 massfilter; system32\drivers\massfilter.sys [x]
S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [x]
S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [x]
S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-05-29 07:54 - 2013-05-29 07:54 - 00000000 ____D C:\FRST
2013-05-29 07:54 - 2013-05-29 07:44 - 01915774 ____A (Farbar) C:\Users\Ján\Desktop\FRST64.exe
2013-05-29 07:53 - 2013-05-29 07:47 - 00935175 ____A C:\Users\Ján\Desktop\RSITx64.exe
2013-05-29 07:23 - 2013-05-29 07:22 - 00159744 ____A C:\Users\Ján\AppData\Roaming\skype.dat
2013-05-29 06:24 - 2013-05-29 06:25 - 00000000 ____D C:\Users\Ján\AppData\Local\{3C43F739-491E-49B6-970A-9941ECE7D8A0}
2013-05-28 05:45 - 2013-05-28 05:45 - 00000000 ____D C:\Users\Ján\AppData\Local\{28341A9F-54E1-4B32-9AF1-B261A3DEFCB4}
2013-05-27 15:29 - 2013-05-29 17:47 - 00000000 ____D C:\Windows\System32\SPReview
2013-05-27 05:59 - 2013-05-27 06:00 - 00000000 ____D C:\Users\Ján\AppData\Local\{D637ED4F-016C-437F-94C5-4B5C075C24D4}
2013-05-26 14:38 - 2013-05-26 14:38 - 00000000 ____D C:\Users\Ján\AppData\Local\{D94185F3-0481-4679-A19C-E9C0FBD9F09F}
2013-05-25 18:04 - 2013-05-25 18:22 - 00000932 ____A C:\Windows\WINCMD.INI
2013-05-25 15:42 - 2013-05-29 07:54 - 00002240 ____A C:\Windows\setupact.log
2013-05-25 15:42 - 2013-05-25 15:42 - 00000000 ____A C:\Windows\setuperr.log
2013-05-24 10:19 - 2013-05-24 14:57 - 00000000 ____A C:\ProgramData\as98213.txt
2013-05-24 10:18 - 2013-05-24 14:58 - 95023320 ___AT C:\ProgramData\mjirz6ej.pad
2013-05-24 10:18 - 2013-05-24 10:18 - 00159744 ____A C:\ProgramData\je6zrijm.dat
2013-05-24 07:43 - 2013-05-24 07:43 - 00000000 ____D C:\Users\Ján\AppData\Local\{44A40248-BC64-4FA6-970C-7E6B060A78D3}
2013-05-23 14:19 - 2013-05-24 15:08 - 00000000 ____D C:\13bdd3815b8b8978b5e27878
2013-05-23 14:14 - 2013-05-23 14:14 - 00000000 ____D C:\ProgramData\ESET
2013-05-23 14:14 - 2013-05-23 14:14 - 00000000 ____D C:\Program Files\ESET
2013-05-23 07:18 - 2013-05-23 07:18 - 00000000 ____D C:\Users\Ján\AppData\Local\{0ABB961C-20DC-480A-BE08-A3361FE88E46}
2013-05-22 09:46 - 2013-05-22 09:47 - 00000000 ____D C:\Users\Ján\AppData\Local\{9F38BC2F-FF52-4CC7-B9D9-BD377EF8BF3A}
2013-05-20 06:03 - 2013-05-20 06:03 - 00000000 ____D C:\Users\Ján\AppData\Local\{A829B11E-0AEA-465F-B157-8224EB30EB6F}
2013-05-17 08:07 - 2013-05-17 08:07 - 00000000 ____D C:\Users\Ján\AppData\Local\{84672261-E453-4D1F-BDD7-DE3E7BCA861A}
2013-05-16 07:08 - 2013-05-16 07:08 - 00000000 ____D C:\Users\Ján\AppData\Local\{BA3B532B-8D40-4C6D-942A-B1A0EFBA1751}
2013-05-15 06:02 - 2013-05-15 06:02 - 00000000 ____D C:\Users\Ján\AppData\Local\{04BE0D32-2F1B-4F94-B321-0D98C90353BE}
2013-05-14 09:14 - 2013-05-14 09:14 - 00024398 ____A C:\ComboFix.txt
2013-05-14 08:51 - 2011-06-26 08:45 - 00256000 ____A C:\Windows\PEV.exe
2013-05-14 08:51 - 2010-11-07 19:20 - 00208896 ____A C:\Windows\MBR.exe
2013-05-14 08:51 - 2009-04-20 06:56 - 00060416 ____A (NirSoft) C:\Windows\NIRCMD.exe
2013-05-14 08:51 - 2000-08-31 02:00 - 00518144 ____A (SteelWerX) C:\Windows\SWREG.exe
2013-05-14 08:51 - 2000-08-31 02:00 - 00406528 ____A (SteelWerX) C:\Windows\SWSC.exe
2013-05-14 08:51 - 2000-08-31 02:00 - 00098816 ____A C:\Windows\sed.exe
2013-05-14 08:51 - 2000-08-31 02:00 - 00080412 ____A C:\Windows\grep.exe
2013-05-14 08:51 - 2000-08-31 02:00 - 00068096 ____A C:\Windows\zip.exe
2013-05-14 08:50 - 2013-05-14 09:14 - 00000000 ____D C:\Qoobox
2013-05-14 08:49 - 2013-05-14 09:12 - 00000000 ____D C:\Windows\erdnt
2013-05-14 08:49 - 2013-05-13 07:56 - 05069265 ____R (Swearware) C:\Users\Ján\Desktop\ComboFix.exe
2013-05-14 08:20 - 2013-05-14 08:21 - 00000000 ____D C:\Users\Ján\Desktop\Zákazky
2013-05-14 06:59 - 2013-05-14 06:59 - 00000000 ____D C:\Users\Ján\AppData\Local\{A2AA75D5-EB25-43D1-B56F-E551C1E64C5D}
2013-05-10 07:23 - 2013-05-10 07:23 - 00000000 ____D C:\Users\Ján\AppData\Local\{51C9B6B2-CE09-466F-9889-E15D6211604B}
2013-05-09 06:47 - 2013-05-09 06:48 - 00000000 ____D C:\Users\Ján\AppData\Local\{C2263E17-EB56-438F-9CB6-CE98AEE48E45}
2013-05-06 07:16 - 2013-05-06 07:16 - 00000000 ____D C:\Users\Ján\AppData\Local\{AD118D6D-42E8-4648-BB8B-A012649E502D}
2013-05-02 13:26 - 2013-05-28 08:39 - 00052224 ____A C:\Users\Ján\Desktop\Evidiencia dochadzky Máj 2013.xls
2013-05-02 07:24 - 2013-05-02 07:24 - 00000000 ____D C:\Users\Ján\AppData\Local\{FBC1815F-BE8C-443D-AF30-A675133FFFE7}
2013-04-30 07:19 - 2013-04-30 07:19 - 00000000 ____D C:\Users\Ján\AppData\Local\{088A933D-FC7A-4216-B99F-22E02F0E420D}
2013-04-29 10:02 - 2013-04-29 10:02 - 00000000 ____D C:\Users\Ján\AppData\Local\{99CA9F46-F011-4E9A-8480-F933767CD976}

==================== One Month Modified Files and Folders =======

2013-05-29 17:47 - 2013-05-27 15:29 - 00000000 ____D C:\Windows\System32\SPReview
2013-05-29 17:47 - 2010-06-10 12:49 - 00000000 ____D C:\ProgramData\Real
2013-05-29 17:47 - 2009-12-31 00:00 - 00000000 ____D C:\users\Ján
2013-05-29 17:47 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-05-29 17:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2013-05-29 07:54 - 2013-05-29 07:54 - 00000000 ____D C:\FRST
2013-05-29 07:54 - 2013-05-25 15:42 - 00002240 ____A C:\Windows\setupact.log
2013-05-29 07:54 - 2009-11-15 01:19 - 01342881 ____A C:\Windows\WindowsUpdate.log
2013-05-29 07:49 - 2012-11-02 15:33 - 00000000 ____D C:\Users\Ján\AppData\Local\HTC MediaHub
2013-05-29 07:49 - 2010-06-10 12:55 - 00000932 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-05-29 07:48 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-05-29 07:47 - 2013-05-29 07:53 - 00935175 ____A C:\Users\Ján\Desktop\RSITx64.exe
2013-05-29 07:44 - 2013-05-29 07:54 - 01915774 ____A (Farbar) C:\Users\Ján\Desktop\FRST64.exe
2013-05-29 07:22 - 2013-05-29 07:23 - 00159744 ____A C:\Users\Ján\AppData\Roaming\skype.dat
2013-05-29 06:45 - 2011-01-29 23:04 - 00000000 ____D C:\Users\Ján\Desktop\S.P
2013-05-29 06:25 - 2013-05-29 06:24 - 00000000 ____D C:\Users\Ján\AppData\Local\{3C43F739-491E-49B6-970A-9941ECE7D8A0}
2013-05-28 16:55 - 2012-04-17 13:25 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-05-28 16:55 - 2010-06-10 12:55 - 00000936 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-05-28 08:59 - 2011-11-02 14:16 - 00000000 ____D C:\Users\Ján\Desktop\A103
2013-05-28 08:39 - 2013-05-02 13:26 - 00052224 ____A C:\Users\Ján\Desktop\Evidiencia dochadzky Máj 2013.xls
2013-05-28 05:47 - 2009-07-14 06:45 - 00023248 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-05-28 05:47 - 2009-07-14 06:45 - 00023248 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-05-28 05:45 - 2013-05-28 05:45 - 00000000 ____D C:\Users\Ján\AppData\Local\{28341A9F-54E1-4B32-9AF1-B261A3DEFCB4}
2013-05-27 19:36 - 2009-07-14 07:13 - 00732638 ____A C:\Windows\System32\PerfStringBackup.INI
2013-05-27 06:00 - 2013-05-27 05:59 - 00000000 ____D C:\Users\Ján\AppData\Local\{D637ED4F-016C-437F-94C5-4B5C075C24D4}
2013-05-27 05:59 - 2010-07-29 01:08 - 00002143 ____A C:\Users\Public\Desktop\Google Chrome.lnk
2013-05-26 14:38 - 2013-05-26 14:38 - 00000000 ____D C:\Users\Ján\AppData\Local\{D94185F3-0481-4679-A19C-E9C0FBD9F09F}
2013-05-26 14:07 - 2009-07-14 07:08 - 00032564 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2013-05-25 18:22 - 2013-05-25 18:04 - 00000932 ____A C:\Windows\WINCMD.INI
2013-05-25 15:42 - 2013-05-25 15:42 - 00000000 ____A C:\Windows\setuperr.log
2013-05-25 15:13 - 2011-10-26 08:22 - 00000000 ____D C:\Users\Ján\AppData\Roaming\DAEMON Tools Lite
2013-05-25 15:13 - 2011-03-30 11:29 - 00000000 ____D C:\Users\Ján\AppData\Roaming\Skype
2013-05-25 15:13 - 2009-07-25 08:11 - 00000000 ____D C:\Windows\Panther
2013-05-25 14:39 - 2012-04-19 12:27 - 00000000 ____D C:\Windows\Minidump
2013-05-24 19:15 - 2011-02-02 10:18 - 00007597 ____A C:\Users\Ján\AppData\Local\Resmon.ResmonCfg
2013-05-24 15:08 - 2013-05-23 14:19 - 00000000 ____D C:\13bdd3815b8b8978b5e27878
2013-05-24 15:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\AppCompat
2013-05-24 14:58 - 2013-05-24 10:18 - 95023320 ___AT C:\ProgramData\mjirz6ej.pad
2013-05-24 14:57 - 2013-05-24 10:19 - 00000000 ____A C:\ProgramData\as98213.txt
2013-05-24 10:18 - 2013-05-24 10:18 - 00159744 ____A C:\ProgramData\je6zrijm.dat
2013-05-24 07:43 - 2013-05-24 07:43 - 00000000 ____D C:\Users\Ján\AppData\Local\{44A40248-BC64-4FA6-970C-7E6B060A78D3}
2013-05-23 14:14 - 2013-05-23 14:14 - 00000000 ____D C:\ProgramData\ESET
2013-05-23 14:14 - 2013-05-23 14:14 - 00000000 ____D C:\Program Files\ESET
2013-05-23 07:18 - 2013-05-23 07:18 - 00000000 ____D C:\Users\Ján\AppData\Local\{0ABB961C-20DC-480A-BE08-A3361FE88E46}
2013-05-22 09:47 - 2013-05-22 09:46 - 00000000 ____D C:\Users\Ján\AppData\Local\{9F38BC2F-FF52-4CC7-B9D9-BD377EF8BF3A}
2013-05-20 06:03 - 2013-05-20 06:03 - 00000000 ____D C:\Users\Ján\AppData\Local\{A829B11E-0AEA-465F-B157-8224EB30EB6F}
2013-05-17 08:07 - 2013-05-17 08:07 - 00000000 ____D C:\Users\Ján\AppData\Local\{84672261-E453-4D1F-BDD7-DE3E7BCA861A}
2013-05-16 10:37 - 2012-04-17 13:25 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-05-16 10:37 - 2011-08-10 08:37 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-05-16 07:10 - 2012-01-16 16:38 - 00001974 ____A C:\Users\Public\Desktop\Adobe Reader 9.lnk
2013-05-16 07:09 - 2011-01-31 18:30 - 75016696 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-05-16 07:08 - 2013-05-16 07:08 - 00000000 ____D C:\Users\Ján\AppData\Local\{BA3B532B-8D40-4C6D-942A-B1A0EFBA1751}
2013-05-15 14:08 - 2011-02-11 14:53 - 00000000 ____D C:\Users\Ján\Desktop\ZÁKONY
2013-05-15 06:02 - 2013-05-15 06:02 - 00000000 ____D C:\Users\Ján\AppData\Local\{04BE0D32-2F1B-4F94-B321-0D98C90353BE}
2013-05-14 13:45 - 2012-12-18 09:56 - 00000000 ____D C:\Users\Ján\Desktop\LOT 19 Stefan
2013-05-14 09:14 - 2013-05-14 09:14 - 00024398 ____A C:\ComboFix.txt
2013-05-14 09:14 - 2013-05-14 08:50 - 00000000 ____D C:\Qoobox
2013-05-14 09:14 - 2009-07-14 05:20 - 00000000 __RHD C:\users\Default
2013-05-14 09:12 - 2013-05-14 08:49 - 00000000 ____D C:\Windows\erdnt
2013-05-14 09:11 - 2009-07-14 04:34 - 00000215 ____A C:\Windows\system.ini
2013-05-14 08:21 - 2013-05-14 08:20 - 00000000 ____D C:\Users\Ján\Desktop\Zákazky
2013-05-14 07:45 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\NDF
2013-05-14 06:59 - 2013-05-14 06:59 - 00000000 ____D C:\Users\Ján\AppData\Local\{A2AA75D5-EB25-43D1-B56F-E551C1E64C5D}
2013-05-13 07:56 - 2013-05-14 08:49 - 05069265 ____R (Swearware) C:\Users\Ján\Desktop\ComboFix.exe
2013-05-10 07:23 - 2013-05-10 07:23 - 00000000 ____D C:\Users\Ján\AppData\Local\{51C9B6B2-CE09-466F-9889-E15D6211604B}
2013-05-09 06:48 - 2013-05-09 06:47 - 00000000 ____D C:\Users\Ján\AppData\Local\{C2263E17-EB56-438F-9CB6-CE98AEE48E45}
2013-05-06 07:16 - 2013-05-06 07:16 - 00000000 ____D C:\Users\Ján\AppData\Local\{AD118D6D-42E8-4648-BB8B-A012649E502D}
2013-05-02 07:24 - 2013-05-02 07:24 - 00000000 ____D C:\Users\Ján\AppData\Local\{FBC1815F-BE8C-443D-AF30-A675133FFFE7}
2013-05-02 02:06 - 2010-06-09 21:35 - 00278800 ____A (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
2013-04-30 13:06 - 2011-01-17 16:20 - 00000000 ____D C:\Users\Ján\Desktop\Dokumenty UNI-MONT
2013-04-30 07:19 - 2013-04-30 07:19 - 00000000 ____D C:\Users\Ján\AppData\Local\{088A933D-FC7A-4216-B99F-22E02F0E420D}
2013-04-29 10:02 - 2013-04-29 10:02 - 00000000 ____D C:\Users\Ján\AppData\Local\{99CA9F46-F011-4E9A-8480-F933767CD976}

ZeroAccess:
C:\$Recycle.Bin\S-1-5-21-3213654130-4287658460-3239053185-1000\$e8f510070b85606dfe37ac6e8b13c3ef

ZeroAccess:
C:\$Recycle.Bin\S-1-5-18\$e8f510070b85606dfe37ac6e8b13c3ef

Other Malware:
===========
C:\Users\Ján\AppData\Roaming\skype.dat
C:\ProgramData\je6zrijm.dat
C:\ProgramData\mjirz6ej.pad

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


Last Boot: 2013-05-24 08:31

==================== End Of Log ============================

Re: Aj policia aj ine

Napsal: 29 kvě 2013 08:03
od JaRon
ahoj,
1. pouzi Avenger - jeho script:
Files to delete:
C:\Users\Ján\AppData\Roaming\skype.dat
C:\ProgramData\je6zrijm.dat
C:\ProgramData\mjirz6ej.pad


2. vloz log z TDSSKiller

Re: Aj policia aj ine

Napsal: 29 kvě 2013 08:41
od Juraj1973
Error invalid script u vestkych troch

:(

9:34:23.0513 1344 ComputerName: JÁN-PC
09:34:23.0514 1344 UserName: Ján
09:34:23.0514 1344 Windows directory: C:\Windows
09:34:23.0514 1344 System windows directory: C:\Windows
09:34:23.0514 1344 Running under WOW64
09:34:23.0514 1344 Processor architecture: Intel x64
09:34:23.0514 1344 Number of processors: 2
09:34:23.0514 1344 Page size: 0x1000
09:34:23.0514 1344 Boot type: Normal boot
09:34:23.0514 1344 ============================================================
09:34:25.0627 1344 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
09:34:25.0639 1344 Drive \Device\Harddisk1\DR2 - Size: 0x1DD800000 (7.46 Gb), SectorSize: 0x200, Cylinders: 0x3CD, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
09:34:25.0646 1344 ============================================================
09:34:25.0646 1344 \Device\Harddisk0\DR0:
09:34:25.0646 1344 MBR partitions:
09:34:25.0647 1344 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
09:34:25.0647 1344 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x23941800
09:34:25.0647 1344 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x239A5800, BlocksNum 0x1A55000
09:34:25.0647 1344 \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x253FA800, BlocksNum 0x33AB0
09:34:25.0647 1344 \Device\Harddisk1\DR2:
09:34:25.0648 1344 MBR partitions:
09:34:25.0648 1344 \Device\Harddisk1\DR2\Partition1: MBR, Type 0xB, StartLBA 0x1F80, BlocksNum 0xEEA080
09:34:25.0648 1344 ============================================================
09:34:25.0681 1344 C: <-> \Device\Harddisk0\DR0\Partition2
09:34:25.0796 1344 D: <-> \Device\Harddisk0\DR0\Partition3
09:34:25.0797 1344 ============================================================
09:34:25.0797 1344 Initialize success
09:34:25.0797 1344 ============================================================
09:34:30.0273 4864 ============================================================
09:34:30.0273 4864 Scan started
09:34:30.0273 4864 Mode: Manual;
09:34:30.0273 4864 ============================================================
09:34:32.0641 4864 ================ Scan system memory ========================
09:34:32.0641 4864 System memory - ok
09:34:32.0642 4864 ================ Scan services =============================
09:34:33.0178 4864 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
09:34:33.0237 4864 1394ohci - ok
09:34:33.0271 4864 [ 5C368F4B04ED2A923E6AFCA2D37BAFF5 ] Accelerometer C:\Windows\system32\DRIVERS\Accelerometer.sys
09:34:33.0276 4864 Accelerometer - ok
09:34:33.0313 4864 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
09:34:33.0337 4864 ACPI - ok
09:34:33.0358 4864 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
09:34:33.0359 4864 AcpiPmi - ok
09:34:33.0483 4864 [ F040037B149FD0F5A5044AE563390FA7 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
09:34:33.0495 4864 AdobeFlashPlayerUpdateSvc - ok
09:34:33.0536 4864 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
09:34:33.0635 4864 adp94xx - ok
09:34:33.0676 4864 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
09:34:33.0773 4864 adpahci - ok
09:34:33.0796 4864 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
09:34:33.0803 4864 adpu320 - ok
09:34:33.0833 4864 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
09:34:33.0836 4864 AeLookupSvc - ok
09:34:33.0924 4864 [ A6FB9DB8F1A86861D955FD6975977AE0 ] AESTFilters C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe
09:34:33.0928 4864 AESTFilters - ok
09:34:33.0981 4864 [ DB9D6C6B2CD95A9CA414D045B627422E ] AFD C:\Windows\system32\drivers\afd.sys
09:34:34.0043 4864 AFD - ok
09:34:34.0186 4864 [ 98022774D9930ECBB292E70DB7601DF6 ] AgereSoftModem C:\Windows\system32\DRIVERS\agrsm64.sys
09:34:34.0249 4864 AgereSoftModem - ok
09:34:34.0274 4864 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
09:34:34.0322 4864 agp440 - ok
09:34:34.0356 4864 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
09:34:34.0359 4864 ALG - ok
09:34:34.0390 4864 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
09:34:34.0431 4864 aliide - ok
09:34:34.0476 4864 [ D0D8877969011D1B0ED9C3C55A9A9108 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
09:34:34.0482 4864 AMD External Events Utility - ok
09:34:34.0499 4864 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys
09:34:34.0542 4864 amdide - ok
09:34:34.0568 4864 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
09:34:34.0611 4864 AmdK8 - ok
09:34:34.0627 4864 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
09:34:34.0630 4864 AmdPPM - ok
09:34:34.0652 4864 [ 7A4B413614C055935567CF88A9734D38 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys
09:34:34.0656 4864 amdsata - ok
09:34:34.0676 4864 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
09:34:34.0683 4864 amdsbs - ok
09:34:34.0713 4864 [ B4AD0CACBAB298671DD6F6EF7E20679D ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys
09:34:34.0718 4864 amdxata - ok
09:34:34.0763 4864 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys
09:34:34.0840 4864 AppID - ok
09:34:34.0868 4864 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
09:34:34.0870 4864 AppIDSvc - ok
09:34:34.0885 4864 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll
09:34:34.0889 4864 Appinfo - ok
09:34:34.0929 4864 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
09:34:34.0932 4864 arc - ok
09:34:34.0948 4864 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
09:34:34.0953 4864 arcsas - ok
09:34:34.0973 4864 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
09:34:34.0997 4864 AsyncMac - ok
09:34:35.0004 4864 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys
09:34:35.0005 4864 atapi - ok
09:34:35.0070 4864 [ 38562A6A9CB10844759EAF2B01A7FCD3 ] athr C:\Windows\system32\DRIVERS\athrx.sys
09:34:35.0131 4864 athr - ok
09:34:35.0178 4864 [ 38467FF83C2B4265D51F418812A91E3C ] AtiHdmiService C:\Windows\system32\drivers\AtiHdmi.sys
09:34:35.0183 4864 AtiHdmiService - ok
09:34:35.0338 4864 [ C5758BF1DFD762A5B17041FF061B7750 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
09:34:35.0486 4864 atikmdag - ok
09:34:35.0510 4864 [ 7C5D273E29DCC5505469B299C6F29163 ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
09:34:35.0513 4864 AtiPcie - ok
09:34:35.0555 4864 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
09:34:35.0573 4864 AudioEndpointBuilder - ok
09:34:35.0597 4864 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll
09:34:35.0601 4864 AudioSrv - ok
09:34:35.0626 4864 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll
09:34:35.0628 4864 AxInstSV - ok
09:34:35.0659 4864 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
09:34:35.0667 4864 b06bdrv - ok
09:34:35.0691 4864 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
09:34:35.0717 4864 b57nd60a - ok
09:34:35.0811 4864 [ 825F81A6F7DD073509DB101F0BA6DC59 ] BBSvc C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE
09:34:35.0817 4864 BBSvc - ok
09:34:35.0840 4864 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
09:34:35.0845 4864 BDESVC - ok
09:34:35.0860 4864 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
09:34:35.0863 4864 Beep - ok
09:34:35.0912 4864 [ 4992C609A6315671463E30F6512BC022 ] BFE C:\Windows\System32\bfe.dll
09:34:35.0939 4864 BFE - ok
09:34:35.0983 4864 [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS C:\Windows\system32\qmgr.dll
09:34:36.0017 4864 BITS - ok
09:34:36.0039 4864 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
09:34:36.0074 4864 blbdrive - ok
09:34:36.0111 4864 [ 19D20159708E152267E53B66677A4995 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
09:34:36.0158 4864 bowser - ok
09:34:36.0183 4864 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
09:34:36.0184 4864 BrFiltLo - ok
09:34:36.0200 4864 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
09:34:36.0202 4864 BrFiltUp - ok
09:34:36.0217 4864 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
09:34:36.0242 4864 BridgeMP - ok
09:34:36.0269 4864 [ 6B054C67AAA87843504E8E3C09102009 ] Browser C:\Windows\System32\browser.dll
09:34:36.0274 4864 Browser - ok
09:34:36.0308 4864 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
09:34:36.0347 4864 Brserid - ok
09:34:36.0372 4864 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
09:34:36.0397 4864 BrSerWdm - ok
09:34:36.0422 4864 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
09:34:36.0446 4864 BrUsbMdm - ok
09:34:36.0460 4864 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
09:34:36.0462 4864 BrUsbSer - ok
09:34:36.0503 4864 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
09:34:36.0541 4864 BthEnum - ok
09:34:36.0564 4864 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
09:34:36.0608 4864 BTHMODEM - ok
09:34:36.0634 4864 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
09:34:36.0639 4864 BthPan - ok
09:34:36.0680 4864 [ D59773C7FDD3D795D6FE402EEEA8D71E ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
09:34:36.0740 4864 BTHPORT - ok
09:34:36.0776 4864 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
09:34:36.0779 4864 bthserv - ok
09:34:36.0817 4864 [ 8504842634DD144C075B6B0C982CCEC4 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
09:34:36.0862 4864 BTHUSB - ok
09:34:36.0903 4864 [ 6BCFDC2B5B7F66D484486D4BD4B39A6B ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
09:34:36.0912 4864 btwaudio - ok
09:34:36.0960 4864 [ 82DC8B7C626E526681C1BEBED2BC3FF9 ] btwavdt C:\Windows\system32\DRIVERS\btwavdt.sys
09:34:37.0006 4864 btwavdt - ok
09:34:37.0079 4864 [ D65AA164ACD0F6706DBCFBBCC9731584 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
09:34:37.0096 4864 btwdins - ok
09:34:37.0109 4864 [ 6149301DC3F81D6F9667A3FBAC410975 ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
09:34:37.0135 4864 btwl2cap - ok
09:34:37.0163 4864 [ 28E105AD3B79F440BF94780F507BF66A ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
09:34:37.0166 4864 btwrchid - ok
09:34:37.0204 4864 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
09:34:37.0209 4864 cdfs - ok
09:34:37.0250 4864 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
09:34:37.0306 4864 cdrom - ok
09:34:37.0345 4864 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll
09:34:37.0350 4864 CertPropSvc - ok
09:34:37.0377 4864 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
09:34:37.0381 4864 circlass - ok
09:34:37.0403 4864 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
09:34:37.0502 4864 CLFS - ok
09:34:37.0562 4864 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
09:34:37.0572 4864 clr_optimization_v2.0.50727_32 - ok
09:34:37.0616 4864 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
09:34:37.0621 4864 clr_optimization_v2.0.50727_64 - ok
09:34:37.0702 4864 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
09:34:37.0712 4864 clr_optimization_v4.0.30319_32 - ok
09:34:37.0770 4864 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
09:34:37.0778 4864 clr_optimization_v4.0.30319_64 - ok
09:34:37.0808 4864 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
09:34:37.0839 4864 CmBatt - ok
09:34:37.0856 4864 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
09:34:37.0906 4864 cmdide - ok
09:34:37.0958 4864 [ CA7720B73446FDDEC5C69519C1174C98 ] CNG C:\Windows\system32\Drivers\cng.sys
09:34:38.0020 4864 CNG - ok
09:34:38.0068 4864 [ F9A79C5B27037821112C50A9C8FB367A ] Com4QLBEx C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
09:34:38.0075 4864 Com4QLBEx - ok
09:34:38.0086 4864 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
09:34:38.0111 4864 Compbatt - ok
09:34:38.0134 4864 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
09:34:38.0137 4864 CompositeBus - ok
09:34:38.0148 4864 COMSysApp - ok
09:34:38.0169 4864 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
09:34:38.0171 4864 crcdisk - ok
09:34:38.0217 4864 [ BAF19B633933A9FB4883D27D66C39E9A ] CryptSvc C:\Windows\system32\cryptsvc.dll
09:34:38.0225 4864 CryptSvc - ok
09:34:38.0267 4864 [ 4E95F8736EC2285BA8981C8CA67DE3B8 ] dc3d C:\Windows\system32\DRIVERS\dc3d.sys
09:34:38.0309 4864 dc3d - ok
09:34:38.0361 4864 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll
09:34:38.0386 4864 DcomLaunch - ok
09:34:38.0419 4864 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
09:34:38.0430 4864 defragsvc - ok
09:34:38.0474 4864 [ 9C253CE7311CA60FC11C774692A13208 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
09:34:38.0482 4864 DfsC - ok
09:34:38.0510 4864 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll
09:34:38.0527 4864 Dhcp - ok
09:34:38.0557 4864 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
09:34:38.0616 4864 discache - ok
09:34:38.0653 4864 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
09:34:38.0686 4864 Disk - ok
09:34:38.0720 4864 [ 85CF424C74A1D5EC33533E1DBFF9920A ] Dnscache C:\Windows\System32\dnsrslvr.dll
09:34:38.0727 4864 Dnscache - ok
09:34:38.0751 4864 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll
09:34:38.0762 4864 dot3svc - ok
09:34:38.0784 4864 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll
09:34:38.0791 4864 DPS - ok
09:34:38.0816 4864 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
09:34:38.0859 4864 drmkaud - ok
09:34:38.0901 4864 [ D3D64CF7B2BCEAA34A270F45A3FFFB36 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
09:34:38.0927 4864 dtsoftbus01 - ok
09:34:38.0981 4864 [ 1633B9ABF52784A1331476397A48CBEF ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
09:34:39.0016 4864 DXGKrnl - ok
09:34:39.0090 4864 [ ACA3FE4F18A945B7BF2618A79F6F670B ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
09:34:39.0152 4864 eamonm - ok
09:34:39.0175 4864 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
09:34:39.0182 4864 EapHost - ok
09:34:39.0294 4864 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
09:34:39.0393 4864 ebdrv - ok
09:34:39.0429 4864 [ 156F6159457D0AA7E59B62681B56EB90 ] EFS C:\Windows\System32\lsass.exe
09:34:39.0432 4864 EFS - ok
09:34:39.0499 4864 [ 6672438BDCBFD87250D22112D458294D ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
09:34:39.0590 4864 ehdrv - ok
09:34:39.0655 4864 [ 47C071994C3F649F23D9CD075AC9304A ] ehRecvr C:\Windows\ehome\ehRecvr.exe
09:34:39.0683 4864 ehRecvr - ok
09:34:39.0707 4864 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
09:34:39.0713 4864 ehSched - ok
09:34:39.0762 4864 [ DEB2B067745D92FF17A5068DFD2360BC ] EhttpSrv C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
09:34:39.0766 4864 EhttpSrv - ok
09:34:39.0814 4864 [ 191D8ECCC40F05B52FAC0513F35BA01D ] ekrn C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
09:34:39.0827 4864 ekrn - ok
09:34:39.0860 4864 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
09:34:39.0880 4864 elxstor - ok
09:34:39.0917 4864 [ 524C79054636D2E5751169005006460B ] enecir C:\Windows\system32\DRIVERS\enecir.sys
09:34:39.0924 4864 enecir - ok
09:34:39.0943 4864 [ 954FADE8E59F159B0A71D0CFCC99A76E ] epfwwfpr C:\Windows\system32\DRIVERS\epfwwfpr.sys
09:34:39.0948 4864 epfwwfpr - ok
09:34:39.0979 4864 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
09:34:39.0981 4864 ErrDev - ok
09:34:40.0031 4864 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
09:34:40.0050 4864 EventSystem - ok
09:34:40.0069 4864 ewusbnet - ok
09:34:40.0103 4864 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
09:34:40.0193 4864 exfat - ok
09:34:40.0213 4864 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
09:34:40.0271 4864 fastfat - ok
09:34:40.0302 4864 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe
09:34:40.0332 4864 Fax - ok
09:34:40.0359 4864 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
09:34:40.0450 4864 fdc - ok
09:34:40.0466 4864 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
09:34:40.0471 4864 fdPHost - ok
09:34:40.0487 4864 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
09:34:40.0491 4864 FDResPub - ok
09:34:40.0512 4864 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
09:34:40.0562 4864 FileInfo - ok
09:34:40.0579 4864 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
09:34:40.0638 4864 Filetrace - ok
09:34:40.0660 4864 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
09:34:40.0665 4864 flpydisk - ok
09:34:40.0695 4864 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
09:34:40.0753 4864 FltMgr - ok
09:34:40.0825 4864 [ CB5E4B9C319E3C6BB363EB7E58A4A051 ] FontCache C:\Windows\system32\FntCache.dll
09:34:40.0869 4864 FontCache - ok
09:34:40.0912 4864 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
09:34:40.0919 4864 FontCache3.0.0.0 - ok
09:34:40.0941 4864 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
09:34:40.0985 4864 FsDepends - ok
09:34:41.0020 4864 [ 07DA62C960DDCCC2D35836AEAB4FC578 ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
09:34:41.0066 4864 fssfltr - ok
09:34:41.0151 4864 [ 28DDEEEC44E988657B732CF404D504CB ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
09:34:41.0204 4864 fsssvc - ok
09:34:41.0242 4864 [ D3E3F93D67821A2DB2B3D9FAC2DC2064 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
09:34:41.0285 4864 Fs_Rec - ok
09:34:41.0332 4864 [ 1F44F8559E61A8306ECC67BB1E168B7C ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
09:34:41.0384 4864 fvevol - ok
09:34:41.0416 4864 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
09:34:41.0520 4864 gagp30kx - ok
09:34:41.0585 4864 [ C403C5DB49A0F9AAF4F2128EDC0106D8 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
09:34:41.0591 4864 GamesAppService - ok
09:34:41.0643 4864 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll
09:34:41.0672 4864 gpsvc - ok
09:34:41.0753 4864 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
09:34:41.0758 4864 gupdate - ok
09:34:41.0798 4864 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
09:34:41.0801 4864 gupdatem - ok
09:34:41.0830 4864 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
09:34:41.0846 4864 gusvc - ok
09:34:41.0881 4864 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
09:34:41.0886 4864 hcw85cir - ok
09:34:41.0921 4864 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
09:34:41.0941 4864 HdAudAddService - ok
09:34:41.0976 4864 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
09:34:41.0984 4864 HDAudBus - ok
09:34:42.0002 4864 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
09:34:42.0078 4864 HidBatt - ok
09:34:42.0104 4864 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
09:34:42.0133 4864 HidBth - ok
09:34:42.0152 4864 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
09:34:42.0154 4864 HidIr - ok
09:34:42.0181 4864 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
09:34:42.0185 4864 hidserv - ok
09:34:42.0220 4864 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
09:34:42.0246 4864 HidUsb - ok
09:34:42.0276 4864 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll
09:34:42.0279 4864 hkmsvc - ok
09:34:42.0308 4864 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
09:34:42.0315 4864 HomeGroupListener - ok
09:34:42.0343 4864 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
09:34:42.0349 4864 HomeGroupProvider - ok
09:34:42.0402 4864 [ 170233B8D743EFE35F462A5D516B93E3 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
09:34:42.0404 4864 HP Support Assistant Service - ok
09:34:42.0437 4864 [ BCC4A8B2E2E902F52E7F2E7D8E125765 ] HPDrvMntSvc.exe C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
09:34:42.0439 4864 HPDrvMntSvc.exe - ok
09:34:42.0462 4864 [ 4E0BEC0F78096FFD6D3314B497FC49D3 ] hpdskflt C:\Windows\system32\DRIVERS\hpdskflt.sys
09:34:42.0464 4864 hpdskflt - ok
09:34:42.0480 4864 [ 9AF482D058BE59CC28BCE52E7C4B747C ] HpqKbFiltr C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
09:34:42.0483 4864 HpqKbFiltr - ok
09:34:42.0518 4864 [ EC9739A46F1F83C6E52A7A4697F44A65 ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
09:34:42.0536 4864 hpqwmiex - ok
09:34:42.0554 4864 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
09:34:42.0595 4864 HpSAMD - ok
09:34:42.0634 4864 [ FC7C13B5A9E9BE23B7AE72BBC7FDB278 ] hpsrv C:\Windows\system32\Hpservice.exe
09:34:42.0637 4864 hpsrv - ok
09:34:42.0668 4864 [ F47CEC45FB85791D4AB237563AD0FA8F ] HTCAND64 C:\Windows\system32\Drivers\ANDROIDUSB.sys
09:34:42.0716 4864 HTCAND64 - ok
09:34:42.0794 4864 [ 5C8BC8A28798FD010E7ABC4E0D588CAA ] HTCMonitorService C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
09:34:42.0799 4864 HTCMonitorService - ok
09:34:42.0815 4864 [ B8B1B284362E1D8135112573395D5DA5 ] htcnprot C:\Windows\system32\DRIVERS\htcnprot.sys
09:34:42.0819 4864 htcnprot - ok
09:34:42.0858 4864 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys
09:34:42.0917 4864 HTTP - ok
09:34:42.0941 4864 hwdatacard - ok
09:34:42.0959 4864 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
09:34:42.0984 4864 hwpolicy - ok
09:34:43.0009 4864 hwusbdev - ok
09:34:43.0047 4864 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
09:34:43.0066 4864 i8042prt - ok
09:34:43.0160 4864 [ D83EFB6FD45DF9D55E9A1AFC63640D50 ] iaStorV C:\Windows\system32\DRIVERS\iaStorV.sys
09:34:43.0241 4864 iaStorV - ok
09:34:43.0318 4864 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
09:34:43.0319 4864 IDriverT - ok
09:34:43.0373 4864 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
09:34:43.0399 4864 idsvc - ok
09:34:43.0534 4864 [ A87261EF1546325B559374F5689CF5BC ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
09:34:43.0669 4864 igfx - ok
09:34:43.0687 4864 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
09:34:43.0691 4864 iirsp - ok
09:34:43.0779 4864 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll
09:34:43.0826 4864 IKEEXT - ok
09:34:43.0855 4864 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
09:34:43.0859 4864 intelide - ok
09:34:43.0884 4864 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
09:34:43.0903 4864 intelppm - ok
09:34:43.0931 4864 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
09:34:43.0935 4864 IPBusEnum - ok
09:34:43.0958 4864 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
09:34:43.0960 4864 IpFilterDriver - ok
09:34:43.0982 4864 [ F8E058D17363EC580E4B7232778B6CB5 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
09:34:43.0992 4864 iphlpsvc - ok
09:34:44.0006 4864 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
09:34:44.0007 4864 IPMIDRV - ok
09:34:44.0026 4864 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
09:34:44.0047 4864 IPNAT - ok
09:34:44.0068 4864 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
09:34:44.0070 4864 IRENUM - ok
09:34:44.0084 4864 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
09:34:44.0085 4864 isapnp - ok
09:34:44.0103 4864 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
09:34:44.0128 4864 iScsiPrt - ok
09:34:44.0166 4864 [ F8844B00C10E386C704C610E95A9847D ] JMCR C:\Windows\system32\DRIVERS\jmcr.sys
09:34:44.0250 4864 JMCR - ok
09:34:44.0271 4864 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
09:34:44.0277 4864 kbdclass - ok
09:34:44.0306 4864 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
09:34:44.0307 4864 kbdhid - ok
09:34:44.0322 4864 [ 156F6159457D0AA7E59B62681B56EB90 ] KeyIso C:\Windows\system32\lsass.exe
09:34:44.0325 4864 KeyIso - ok
09:34:44.0367 4864 [ 4F4B5FDE429416877DE7143044582EB5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
09:34:44.0374 4864 KSecDD - ok
09:34:44.0402 4864 [ 6F40465A44ECDC1731BEFAFEC5BDD03C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
09:34:44.0410 4864 KSecPkg - ok
09:34:44.0435 4864 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
09:34:44.0470 4864 ksthunk - ok
09:34:44.0499 4864 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
09:34:44.0510 4864 KtmRm - ok
09:34:44.0556 4864 [ D50260FAD3BE96EA03E3F497E3B7813B ] kvnet C:\Windows\system32\DRIVERS\kvnet.sys
09:34:44.0562 4864 kvnet - ok
09:34:44.0636 4864 [ F1BF81D11671187D1D2B350BAA3B9425 ] KVPNCSvc C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe
09:34:44.0660 4864 KVPNCSvc - ok
09:34:44.0708 4864 [ 81F1D04D4D0E433099365127375FD501 ] LanmanServer C:\Windows\System32\srvsvc.dll
09:34:44.0719 4864 LanmanServer - ok
09:34:44.0751 4864 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
09:34:44.0760 4864 LanmanWorkstation - ok
09:34:44.0818 4864 [ 83D8BE94E1CBCBE2EA8372DB1A95A159 ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
09:34:44.0825 4864 LightScribeService - ok
09:34:44.0844 4864 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
09:34:44.0890 4864 lltdio - ok
09:34:44.0919 4864 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
09:34:44.0932 4864 lltdsvc - ok
09:34:44.0973 4864 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
09:34:44.0980 4864 lmhosts - ok
09:34:45.0014 4864 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
09:34:45.0019 4864 LSI_FC - ok
09:34:45.0043 4864 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
09:34:45.0089 4864 LSI_SAS - ok
09:34:45.0104 4864 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
09:34:45.0137 4864 LSI_SAS2 - ok
09:34:45.0163 4864 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
09:34:45.0195 4864 LSI_SCSI - ok
09:34:45.0211 4864 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
09:34:45.0215 4864 luafv - ok
09:34:45.0228 4864 massfilter - ok
09:34:45.0259 4864 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
09:34:45.0264 4864 Mcx2Svc - ok
09:34:45.0276 4864 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
09:34:45.0332 4864 megasas - ok
09:34:45.0360 4864 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
09:34:45.0366 4864 MegaSR - ok
09:34:45.0382 4864 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
09:34:45.0385 4864 MMCSS - ok
09:34:45.0406 4864 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
09:34:45.0408 4864 Modem - ok
09:34:45.0438 4864 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
09:34:45.0489 4864 monitor - ok
09:34:45.0509 4864 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
09:34:45.0513 4864 mouclass - ok
09:34:45.0540 4864 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
09:34:45.0542 4864 mouhid - ok
09:34:45.0561 4864 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
09:34:45.0594 4864 mountmgr - ok
09:34:45.0609 4864 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys
09:34:45.0615 4864 mpio - ok
09:34:45.0630 4864 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
09:34:45.0657 4864 mpsdrv - ok
09:34:45.0686 4864 [ AECAB449567D1846DAD63ECE49E893E3 ] MpsSvc C:\Windows\system32\mpssvc.dll
09:34:45.0711 4864 MpsSvc - ok
09:34:45.0728 4864 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
09:34:45.0732 4864 MRxDAV - ok
09:34:45.0772 4864 [ 040D62A9D8AD28922632137ACDD984F2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
09:34:45.0805 4864 mrxsmb - ok
09:34:45.0845 4864 [ F0067552F8F9B33D7C59403AB808A3CB ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
09:34:45.0852 4864 mrxsmb10 - ok
09:34:45.0878 4864 [ 3C142D31DE9F2F193218A53FE2632051 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
09:34:45.0924 4864 mrxsmb20 - ok
09:34:45.0952 4864 [ 5C37497276E3B3A5488B23A326A754B7 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
09:34:46.0002 4864 msahci - ok
09:34:46.0017 4864 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
09:34:46.0021 4864 msdsm - ok
09:34:46.0038 4864 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
09:34:46.0045 4864 MSDTC - ok
09:34:46.0080 4864 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
09:34:46.0081 4864 Msfs - ok
09:34:46.0102 4864 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
09:34:46.0104 4864 mshidkmdf - ok
09:34:46.0113 4864 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
09:34:46.0138 4864 msisadrv - ok
09:34:46.0166 4864 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
09:34:46.0172 4864 MSiSCSI - ok
09:34:46.0178 4864 msiserver - ok
09:34:46.0193 4864 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
09:34:46.0195 4864 MSKSSRV - ok
09:34:46.0214 4864 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
09:34:46.0216 4864 MSPCLOCK - ok
09:34:46.0234 4864 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
09:34:46.0259 4864 MSPQM - ok
09:34:46.0281 4864 [ 89CB141AA8616D8C6A4610FA26C60964 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
09:34:46.0288 4864 MsRPC - ok
09:34:46.0303 4864 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
09:34:46.0307 4864 mssmbios - ok
09:34:46.0325 4864 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
09:34:46.0327 4864 MSTEE - ok
09:34:46.0356 4864 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
09:34:46.0357 4864 MTConfig - ok
09:34:46.0381 4864 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
09:34:46.0422 4864 Mup - ok
09:34:46.0456 4864 [ 4987E079A4530FA737A128BE54B63B12 ] napagent C:\Windows\system32\qagentRT.dll
09:34:46.0473 4864 napagent - ok
09:34:46.0502 4864 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
09:34:46.0560 4864 NativeWifiP - ok
09:34:46.0594 4864 [ CAD515DBD07D082BB317D9928CE8962C ] NDIS C:\Windows\system32\drivers\ndis.sys
09:34:46.0652 4864 NDIS - ok
09:34:46.0668 4864 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
09:34:46.0694 4864 NdisCap - ok
09:34:46.0719 4864 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
09:34:46.0721 4864 NdisTapi - ok
09:34:46.0751 4864 [ F105BA1E22BF1F2EE8F005D4305E4BEC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
09:34:46.0754 4864 Ndisuio - ok
09:34:46.0769 4864 [ 557DFAB9CA1FCB036AC77564C010DAD3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
09:34:46.0801 4864 NdisWan - ok
09:34:46.0827 4864 [ 659B74FB74B86228D6338D643CD3E3CF ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
09:34:46.0855 4864 NDProxy - ok
09:34:46.0866 4864 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
09:34:46.0891 4864 NetBIOS - ok
09:34:46.0909 4864 [ 9162B273A44AB9DCE5B44362731D062A ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
09:34:46.0916 4864 NetBT - ok
09:34:46.0929 4864 [ 156F6159457D0AA7E59B62681B56EB90 ] Netlogon C:\Windows\system32\lsass.exe
09:34:46.0931 4864 Netlogon - ok
09:34:46.0959 4864 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
09:34:46.0970 4864 Netman - ok
09:34:46.0987 4864 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
09:34:47.0004 4864 netprofm - ok
09:34:47.0032 4864 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
09:34:47.0040 4864 NetTcpPortSharing - ok
09:34:47.0205 4864 [ 64428DFDAF6E88366CB51F45A79C5F69 ] netw5v64 C:\Windows\system32\DRIVERS\netw5v64.sys
09:34:47.0367 4864 netw5v64 - ok
09:34:47.0399 4864 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
09:34:47.0455 4864 nfrd960 - ok
09:34:47.0474 4864 [ D9A0CE66046D6EFA0C61BAA885CBA0A8 ] NlaSvc C:\Windows\System32\nlasvc.dll
09:34:47.0482 4864 NlaSvc - ok
09:34:47.0515 4864 [ 4903177FC90E77ABEB19021451E9475E ] nmwcd C:\Windows\system32\drivers\ccdcmbx64.sys
09:34:47.0539 4864 nmwcd - ok
09:34:47.0565 4864 [ E6844A4C97E5409BBE24BB4ED000320D ] nmwcdc C:\Windows\system32\drivers\ccdcmbox64.sys
09:34:47.0590 4864 nmwcdc - ok
09:34:47.0624 4864 [ A0E7F80157AF77B1CEAA8ADD3A3E7D85 ] nmwcdnsux64 C:\Windows\system32\drivers\nmwcdnsux64.sys
09:34:47.0629 4864 nmwcdnsux64 - ok
09:34:47.0646 4864 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
09:34:47.0671 4864 Npfs - ok
09:34:47.0695 4864 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
09:34:47.0698 4864 nsi - ok
09:34:47.0711 4864 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
09:34:47.0736 4864 nsiproxy - ok
09:34:47.0817 4864 [ 9A6089B056EA1B83B36424FC9D0A300E ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
09:34:47.0869 4864 Ntfs - ok
09:34:47.0884 4864 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
09:34:47.0926 4864 Null - ok
09:34:47.0956 4864 [ 3E38712941E9BB4DDBEE00AFFE3FED3D ] nvraid C:\Windows\system32\DRIVERS\nvraid.sys
09:34:47.0964 4864 nvraid - ok
09:34:47.0980 4864 [ 477DC4D6DEB99BE37084C9AC6D013DA1 ] nvstor C:\Windows\system32\DRIVERS\nvstor.sys
09:34:47.0985 4864 nvstor - ok
09:34:48.0009 4864 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
09:34:48.0056 4864 nv_agp - ok
09:34:48.0136 4864 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
09:34:48.0162 4864 odserv - ok
09:34:48.0179 4864 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
09:34:48.0221 4864 ohci1394 - ok
09:34:48.0268 4864 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
09:34:48.0276 4864 ose - ok
09:34:48.0315 4864 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
09:34:48.0332 4864 p2pimsvc - ok
09:34:48.0361 4864 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
09:34:48.0387 4864 p2psvc - ok
09:34:48.0421 4864 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
09:34:48.0459 4864 Parport - ok
09:34:48.0490 4864 [ 90061B1ACFE8CCAA5345750FFE08D8B8 ] partmgr C:\Windows\system32\drivers\partmgr.sys
09:34:48.0523 4864 partmgr - ok
09:34:48.0562 4864 [ 3CAE2BBC86FCF7F94C9696994AF30386 ] PassThru Service C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
09:34:48.0564 4864 PassThru Service - ok
09:34:48.0585 4864 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
09:34:48.0589 4864 PcaSvc - ok
09:34:48.0651 4864 [ 3FDE033DFB0D07F8B7D5C9A3044AA121 ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
09:34:48.0653 4864 pccsmcfd - ok
09:34:48.0678 4864 [ F36F6504009F2FB0DFD1B17A116AD74B ] pci C:\Windows\system32\DRIVERS\pci.sys
09:34:48.0684 4864 pci - ok
09:34:48.0697 4864 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\DRIVERS\pciide.sys
09:34:48.0746 4864 pciide - ok
09:34:48.0771 4864 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
09:34:48.0827 4864 pcmcia - ok
09:34:48.0850 4864 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
09:34:48.0899 4864 pcw - ok
09:34:48.0931 4864 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
09:34:48.0999 4864 PEAUTH - ok
09:34:49.0074 4864 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
09:34:49.0079 4864 PerfHost - ok
09:34:49.0141 4864 [ 557E9A86F65F0DE18C9B6751DFE9D3F1 ] pla C:\Windows\system32\pla.dll
09:34:49.0175 4864 pla - ok
09:34:49.0224 4864 [ 98B1721B8718164293B9701B98C52D77 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
09:34:49.0241 4864 PlugPlay - ok
09:34:49.0253 4864 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
09:34:49.0257 4864 PNRPAutoReg - ok
09:34:49.0279 4864 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
09:34:49.0283 4864 PNRPsvc - ok
09:34:49.0314 4864 [ 166EB40D1F5B47E615DE3D0FFFE5F243 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
09:34:49.0334 4864 PolicyAgent - ok
09:34:49.0372 4864 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
09:34:49.0381 4864 Power - ok
09:34:49.0407 4864 [ 27CC19E81BA5E3403C48302127BDA717 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
09:34:49.0447 4864 PptpMiniport - ok
09:34:49.0472 4864 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
09:34:49.0496 4864 Processor - ok
09:34:49.0531 4864 [ 97293447431311C06703368AD0F6C4BE ] ProfSvc C:\Windows\system32\profsvc.dll
09:34:49.0540 4864 ProfSvc - ok
09:34:49.0554 4864 [ 156F6159457D0AA7E59B62681B56EB90 ] ProtectedStorage C:\Windows\system32\lsass.exe
09:34:49.0557 4864 ProtectedStorage - ok
09:34:49.0593 4864 [ EE992183BD8EAEFD9973F352E587A299 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
09:34:49.0631 4864 Psched - ok
09:34:49.0682 4864 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
09:34:49.0733 4864 ql2300 - ok
09:34:49.0748 4864 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
09:34:49.0762 4864 ql40xx - ok
09:34:49.0796 4864 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
09:34:49.0813 4864 QWAVE - ok
09:34:49.0832 4864 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
09:34:49.0878 4864 QWAVEdrv - ok
09:34:49.0898 4864 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
09:34:49.0941 4864 RasAcd - ok
09:34:49.0982 4864 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
09:34:49.0986 4864 RasAgileVpn - ok
09:34:50.0008 4864 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
09:34:50.0017 4864 RasAuto - ok
09:34:50.0042 4864 [ 87A6E852A22991580D6D39ADC4790463 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
09:34:50.0068 4864 Rasl2tp - ok
09:34:50.0101 4864 [ 47394ED3D16D053F5906EFE5AB51CC83 ] RasMan C:\Windows\System32\rasmans.dll
09:34:50.0111 4864 RasMan - ok
09:34:50.0123 4864 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
09:34:50.0126 4864 RasPppoe - ok
09:34:50.0150 4864 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
09:34:50.0176 4864 RasSstp - ok
09:34:50.0200 4864 [ 3BAC8142102C15D59A87757C1D41DCE5 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
09:34:50.0210 4864 rdbss - ok
09:34:50.0237 4864 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
09:34:50.0238 4864 rdpbus - ok
09:34:50.0255 4864 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
09:34:50.0257 4864 RDPCDD - ok
09:34:50.0285 4864 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
09:34:50.0287 4864 RDPENCDD - ok
09:34:50.0306 4864 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
09:34:50.0308 4864 RDPREFMP - ok
09:34:50.0338 4864 [ 447DE7E3DEA39D422C1504F245B668B1 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
09:34:50.0369 4864 RDPWD - ok
09:34:50.0393 4864 [ 634B9A2181D98F15941236886164EC8B ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
09:34:50.0434 4864 rdyboost - ok
09:34:50.0464 4864 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
09:34:50.0470 4864 RemoteAccess - ok
09:34:50.0495 4864 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
09:34:50.0502 4864 RemoteRegistry - ok
09:34:50.0530 4864 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
09:34:50.0563 4864 RFCOMM - ok
09:34:50.0618 4864 [ 498EB62A160674E793FA40FD65390625 ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
09:34:50.0629 4864 RichVideo - ok
09:34:50.0653 4864 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
09:34:50.0662 4864 RpcEptMapper - ok
09:34:50.0680 4864 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
09:34:50.0686 4864 RpcLocator - ok
09:34:50.0721 4864 [ 7266972E86890E2B30C0C322E906B027 ] RpcSs C:\Windows\system32\rpcss.dll
09:34:50.0733 4864 RpcSs - ok
09:34:50.0757 4864 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
09:34:50.0801 4864 rspndr - ok
09:34:50.0843 4864 [ B49DC435AE3695BAC5623DD94B05732D ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
09:34:50.0849 4864 RTL8167 - ok
09:34:50.0865 4864 [ 156F6159457D0AA7E59B62681B56EB90 ] SamSs C:\Windows\system32\lsass.exe
09:34:50.0869 4864 SamSs - ok
09:34:50.0894 4864 [ E3BBB89983DAF5622C1D50CF49F28227 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
09:34:50.0953 4864 sbp2port - ok
09:34:50.0979 4864 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
09:34:50.0991 4864 SCardSvr - ok
09:34:51.0006 4864 [ C94DA20C7E3BA1DCA269BC8460D98387 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
09:34:51.0037 4864 scfilter - ok
09:34:51.0107 4864 [ 624D0F5FF99428BB90A5B8A4123E918E ] Schedule C:\Windows\system32\schedsvc.dll
09:34:51.0159 4864 Schedule - ok
09:34:51.0190 4864 [ 312E2F82AF11E79906898AC3E3D58A1F ] SCPolicySvc C:\Windows\System32\certprop.dll
09:34:51.0192 4864 SCPolicySvc - ok
09:34:51.0235 4864 [ 2C8D162EFAF73ABD36D8BCBB6340CAE7 ] sdbus C:\Windows\system32\drivers\sdbus.sys
09:34:51.0240 4864 sdbus - ok
09:34:51.0265 4864 [ 765A27C3279CE11D14CB9E4F5869FCA5 ] SDRSVC C:\Windows\System32\SDRSVC.dll
09:34:51.0274 4864 SDRSVC - ok
09:34:51.0355 4864 [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
09:34:51.0366 4864 SeaPort - ok
09:34:51.0385 4864 [ 463B386EBC70F98DA5DFF85F7E654346 ] seclogon C:\Windows\system32\seclogon.dll
09:34:51.0391 4864 seclogon - ok
09:34:51.0406 4864 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
09:34:51.0413 4864 SENS - ok
09:34:51.0443 4864 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
09:34:51.0449 4864 SensrSvc - ok
09:34:51.0477 4864 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
09:34:51.0518 4864 Serenum - ok
09:34:51.0535 4864 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
09:34:51.0536 4864 Serial - ok
09:34:51.0550 4864 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
09:34:51.0575 4864 sermouse - ok
09:34:51.0673 4864 [ 289E853881E688286AD24299FCC485D8 ] ServiceLayer C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
09:34:51.0698 4864 ServiceLayer - ok
09:34:51.0731 4864 [ C3BC61CE47FF6F4E88AB8A3B429A36AF ] SessionEnv C:\Windows\system32\sessenv.dll
09:34:51.0736 4864 SessionEnv - ok
09:34:51.0772 4864 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
09:34:51.0809 4864 sffdisk - ok
09:34:51.0828 4864 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
09:34:51.0870 4864 sffp_mmc - ok
09:34:51.0885 4864 [ 178298F767FE638C9FEDCBDEF58BB5E4 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
09:34:51.0889 4864 sffp_sd - ok
09:34:51.0917 4864 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
09:34:51.0919 4864 sfloppy - ok
09:34:51.0952 4864 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
09:34:51.0969 4864 SharedAccess - ok
09:34:52.0007 4864 [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF ] ShellHWDetection C:\Windows\System32\shsvcs.dll
09:34:52.0030 4864 ShellHWDetection - ok
09:34:52.0052 4864 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
09:34:52.0054 4864 SiSRaid2 - ok
09:34:52.0076 4864 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
09:34:52.0109 4864 SiSRaid4 - ok
09:34:52.0191 4864 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
09:34:52.0240 4864 SkypeUpdate - ok
09:34:52.0268 4864 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
09:34:52.0275 4864 Smb - ok
09:34:52.0319 4864 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
09:34:52.0325 4864 SNMPTRAP - ok
09:34:52.0342 4864 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
09:34:52.0385 4864 spldr - ok
09:34:52.0433 4864 [ 567977DC43CC13C4C35ED7084C0B84D5 ] Spooler C:\Windows\System32\spoolsv.exe
09:34:52.0459 4864 Spooler - ok
09:34:52.0567 4864 [ 913D843498553A1BC8F8DBAD6358E49F ] sppsvc C:\Windows\system32\sppsvc.exe
09:34:52.0670 4864 sppsvc - ok
09:34:52.0694 4864 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
09:34:52.0700 4864 sppuinotify - ok
09:34:52.0744 4864 [ 2408C0366D96BCDF63E8F1C78E4A29C5 ] srv C:\Windows\system32\DRIVERS\srv.sys
09:34:52.0769 4864 srv - ok
09:34:52.0799 4864 [ 76548F7B818881B47D8D1AE1BE9C11F8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
09:34:52.0852 4864 srv2 - ok
09:34:52.0883 4864 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL6.SYS
09:34:52.0891 4864 SrvHsfHDA - ok
09:34:52.0935 4864 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV6.SYS
09:34:53.0002 4864 SrvHsfV92 - ok
09:34:53.0053 4864 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
09:34:53.0093 4864 SrvHsfWinac - ok
09:34:53.0110 4864 [ 0AF6E19D39C70844C5CAA8FB0183C36E ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
09:34:53.0115 4864 srvnet - ok
09:34:53.0141 4864 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
09:34:53.0147 4864 SSDPSRV - ok
09:34:53.0165 4864 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
09:34:53.0168 4864 SstpSvc - ok
09:34:53.0253 4864 [ 810199DCC3BDC38304D7D649992EA7BC ] STacSV C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe
09:34:53.0259 4864 STacSV - ok
09:34:53.0288 4864 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
09:34:53.0294 4864 stexstor - ok
09:34:53.0343 4864 [ ED1722F43CE61409EF68340402D6267D ] STHDA C:\Windows\system32\DRIVERS\stwrt64.sys
09:34:53.0367 4864 STHDA - ok
09:34:53.0423 4864 [ 52D0E33B681BD0F33FDC08812FEE4F7D ] stisvc C:\Windows\System32\wiaservc.dll
09:34:53.0449 4864 stisvc - ok
09:34:53.0475 4864 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
09:34:53.0525 4864 swenum - ok
09:34:53.0564 4864 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
09:34:53.0590 4864 swprv - ok
09:34:53.0635 4864 [ 929C9FA0B18AD2EBC8340591C4BF00FF ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
09:34:53.0689 4864 SynTP - ok
09:34:53.0745 4864 [ 3C1284516A62078FB68F768DE4F1A7BE ] SysMain C:\Windows\system32\sysmain.dll
09:34:53.0802 4864 SysMain - ok
09:34:53.0825 4864 [ 238935C3CF2854886DC7CBB2A0E2CC66 ] TabletInputService C:\Windows\System32\TabSvc.dll
09:34:53.0832 4864 TabletInputService - ok
09:34:53.0857 4864 [ 884264AC597B690C5707C89723BB8E7B ] TapiSrv C:\Windows\System32\tapisrv.dll
09:34:53.0869 4864 TapiSrv - ok
09:34:53.0889 4864 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
09:34:53.0897 4864 TBS - ok
09:34:53.0981 4864 [ 5CFB7AB8F9524D1A1E14369DE63B83CC ] Tcpip C:\Windows\system32\drivers\tcpip.sys
09:34:54.0043 4864 Tcpip - ok
09:34:54.0111 4864 [ 5CFB7AB8F9524D1A1E14369DE63B83CC ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
09:34:54.0128 4864 TCPIP6 - ok
09:34:54.0158 4864 [ 76D078AF6F587B162D50210F761EB9ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
09:34:54.0160 4864 tcpipreg - ok
09:34:54.0184 4864 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
09:34:54.0208 4864 TDPIPE - ok
09:34:54.0238 4864 [ 7518F7BCFD4B308ABC9192BACAF6C970 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
09:34:54.0262 4864 TDTCP - ok
09:34:54.0277 4864 [ 079125C4B17B01FCAEEBCE0BCB290C0F ] tdx C:\Windows\system32\DRIVERS\tdx.sys
09:34:54.0368 4864 tdx - ok
09:34:54.0390 4864 [ C448651339196C0E869A355171875522 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
09:34:54.0393 4864 TermDD - ok
09:34:54.0423 4864 [ 0F05EC2887BFE197AD82A13287D2F404 ] TermService C:\Windows\System32\termsrv.dll
09:34:54.0445 4864 TermService - ok
09:34:54.0459 4864 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
09:34:54.0463 4864 Themes - ok
09:34:54.0483 4864 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
09:34:54.0486 4864 THREADORDER - ok
09:34:54.0500 4864 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
09:34:54.0505 4864 TrkWks - ok
09:34:54.0557 4864 [ 840F7FB849F5887A49BA18C13B2DA920 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
09:34:54.0561 4864 TrustedInstaller - ok
09:34:54.0586 4864 [ 61B96C26131E37B24E93327A0BD1FB95 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
09:34:54.0592 4864 tssecsrv - ok
09:34:54.0625 4864 [ 3836171A2CDF3AF8EF10856DB9835A70 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
09:34:54.0675 4864 tunnel - ok
09:34:54.0708 4864 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
09:34:54.0765 4864 uagp35 - ok
09:34:54.0789 4864 [ D47BAEAD86C65D4F4069D7CE0A4EDCEB ] udfs C:\Windows\system32\DRIVERS\udfs.sys
09:34:54.0810 4864 udfs - ok
09:34:54.0834 4864 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
09:34:54.0839 4864 UI0Detect - ok
09:34:54.0870 4864 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
09:34:54.0917 4864 uliagpkx - ok
09:34:54.0940 4864 [ EAB6C35E62B1B0DB0D1B48B671D3A117 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
09:34:54.0984 4864 umbus - ok
09:34:55.0005 4864 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
09:34:55.0030 4864 UmPass - ok
09:34:55.0051 4864 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
09:34:55.0059 4864 upnphost - ok
09:34:55.0100 4864 [ 907F50B8695DAA65A9445D27AD306E65 ] upperdev C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
09:34:55.0118 4864 upperdev - ok
09:34:55.0140 4864 [ 7B6A127C93EE590E4D79A5F2A76FE46F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
09:34:55.0143 4864 usbccgp - ok
09:34:55.0167 4864 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
09:34:55.0172 4864 usbcir - ok
09:34:55.0188 4864 [ 92969BA5AC44E229C55A332864F79677 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
09:34:55.0207 4864 usbehci - ok
09:34:55.0231 4864 [ 44D9C773FEBFF10593B50DDFC2D6BC27 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
09:34:55.0235 4864 usbfilter - ok
09:34:55.0264 4864 [ E7DF1CFD28CA86B35EF5ADD0735CEEF3 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
09:34:55.0288 4864 usbhub - ok
09:34:55.0302 4864 [ F1BB1E55F1E7A65C5839CCC7B36D773E ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
09:34:55.0321 4864 usbohci - ok
09:34:55.0357 4864 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
09:34:55.0376 4864 usbprint - ok
09:34:55.0396 4864 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
09:34:55.0399 4864 usbscan - ok
09:34:55.0434 4864 [ 0F0C72A657C622286013788B886968AD ] usbser C:\Windows\system32\drivers\usbser.sys
09:34:55.0459 4864 usbser - ok
09:34:55.0496 4864 [ 3F7498527B48657091C355F683BEB0DD ] UsbserFilt C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
09:34:55.0532 4864 UsbserFilt - ok
09:34:55.0558 4864 [ 080D3820DA6C046BE82FC8B45A893E83 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
09:34:55.0563 4864 USBSTOR - ok
09:34:55.0579 4864 [ BC3070350A491D84B518D7CCA9ABD36F ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
09:34:55.0583 4864 usbuhci - ok
09:34:55.0617 4864 [ 7CB8C573C6E4A2714402CC0A36EAB4FE ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
09:34:55.0666 4864 usbvideo - ok
09:34:55.0687 4864 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
09:34:55.0695 4864 UxSms - ok
09:34:55.0708 4864 [ 156F6159457D0AA7E59B62681B56EB90 ] VaultSvc C:\Windows\system32\lsass.exe
09:34:55.0712 4864 VaultSvc - ok
09:34:55.0739 4864 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
09:34:55.0830 4864 vdrvroot - ok
09:34:55.0865 4864 [ 44D73E0BBC1D3C8981304BA15135C2F2 ] vds C:\Windows\System32\vds.exe
09:34:55.0892 4864 vds - ok
09:34:55.0917 4864 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
09:34:55.0921 4864 vga - ok
09:34:55.0942 4864 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
09:34:55.0983 4864 VgaSave - ok
09:34:56.0015 4864 [ C82E748660F62A242B2DFAC1442F22A4 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
09:34:56.0020 4864 vhdmp - ok
09:34:56.0034 4864 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\DRIVERS\viaide.sys
09:34:56.0068 4864 viaide - ok
09:34:56.0078 4864 [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
09:34:56.0081 4864 volmgr - ok
09:34:56.0102 4864 [ 99B0CBB569CA79ACAED8C91461D765FB ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
09:34:56.0109 4864 volmgrx - ok
09:34:56.0145 4864 [ 9E425AC5C9A5A973273D169F43B4F5E1 ] volsnap C:\Windows\system32\drivers\volsnap.sys
09:34:56.0203 4864 volsnap - ok
09:34:56.0219 4864 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
09:34:56.0224 4864 vsmraid - ok
09:34:56.0270 4864 [ 787898BF9FB6D7BD87A36E2D95C899BA ] VSS C:\Windows\system32\vssvc.exe
09:34:56.0313 4864 VSS - ok
09:34:56.0329 4864 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
09:34:56.0355 4864 vwifibus - ok
09:34:56.0378 4864 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
09:34:56.0380 4864 vwififlt - ok
09:34:56.0402 4864 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
09:34:56.0412 4864 W32Time - ok
09:34:56.0438 4864 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
09:34:56.0440 4864 WacomPen - ok
09:34:56.0472 4864 [ 47CA49400643EFFD3F1C9A27E1D69324 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
09:34:56.0499 4864 WANARP - ok
09:34:56.0513 4864 [ 47CA49400643EFFD3F1C9A27E1D69324 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
09:34:56.0515 4864 Wanarpv6 - ok
09:34:56.0576 4864 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
09:34:56.0610 4864 WatAdminSvc - ok
09:34:56.0654 4864 [ 5AB1BB85BD8B5089CC5D64200DEDAE68 ] wbengine C:\Windows\system32\wbengine.exe
09:34:56.0691 4864 wbengine - ok
09:34:56.0715 4864 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
09:34:56.0722 4864 WbioSrvc - ok
09:34:56.0754 4864 [ DD1BAE8EBFC653824D29CCF8C9054D68 ] wcncsvc C:\Windows\System32\wcncsvc.dll
09:34:56.0765 4864 wcncsvc - ok
09:34:56.0787 4864 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
09:34:56.0793 4864 WcsPlugInService - ok
09:34:56.0814 4864 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
09:34:56.0820 4864 Wd - ok
09:34:56.0874 4864 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
09:34:56.0937 4864 Wdf01000 - ok
09:34:56.0973 4864 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
09:34:56.0981 4864 WdiServiceHost - ok
09:34:56.0990 4864 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
09:34:56.0998 4864 WdiSystemHost - ok
09:34:57.0032 4864 [ 733006127F235BE7C35354EBEE7B9A7B ] WebClient C:\Windows\System32\webclnt.dll
09:34:57.0050 4864 WebClient - ok
09:34:57.0075 4864 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
09:34:57.0082 4864 Wecsvc - ok
09:34:57.0103 4864 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
09:34:57.0108 4864 wercplsupport - ok
09:34:57.0131 4864 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
09:34:57.0135 4864 WerSvc - ok
09:34:57.0164 4864 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
09:34:57.0188 4864 WfpLwf - ok
09:34:57.0205 4864 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
09:34:57.0230 4864 WIMMount - ok
09:34:57.0250 4864 WinDefend - ok
09:34:57.0258 4864 WinHttpAutoProxySvc - ok
09:34:57.0315 4864 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
09:34:57.0324 4864 Winmgmt - ok
09:34:57.0392 4864 [ 41FBB751936B387F9179E7F03A74FE29 ] WinRM C:\Windows\system32\WsmSvc.dll
09:34:57.0470 4864 WinRM - ok
09:34:57.0533 4864 [ 817EAFF5D38674EDD7713B9DFB8E9791 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
09:34:57.0562 4864 WinUsb - ok
09:34:57.0603 4864 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
09:34:57.0638 4864 Wlansvc - ok
09:34:57.0700 4864 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
09:34:57.0703 4864 wlcrasvc - ok
09:34:57.0826 4864 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
09:34:57.0899 4864 wlidsvc - ok
09:34:57.0914 4864 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
09:34:57.0939 4864 WmiAcpi - ok
09:34:57.0964 4864 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
09:34:57.0969 4864 wmiApSrv - ok
09:34:57.0987 4864 WMPNetworkSvc - ok
09:34:58.0007 4864 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
09:34:58.0011 4864 WPCSvc - ok
09:34:58.0025 4864 [ 2E57DDF2880A7E52E76F41C7E96D327B ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
09:34:58.0030 4864 WPDBusEnum - ok
09:34:58.0057 4864 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
09:34:58.0081 4864 ws2ifsl - ok
09:34:58.0115 4864 [ 8F9F3969933C02DA96EB0F84576DB43E ] wscsvc C:\Windows\system32\wscsvc.dll
09:34:58.0120 4864 wscsvc - ok
09:34:58.0151 4864 [ 8D918B1DB190A4D9B1753A66FA8C96E8 ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys
09:34:58.0175 4864 WSDPrintDevice - ok
09:34:58.0181 4864 WSearch - ok
09:34:58.0277 4864 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
09:34:58.0355 4864 wuauserv - ok
09:34:58.0391 4864 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
09:34:58.0395 4864 WudfPf - ok
09:34:58.0418 4864 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
09:34:58.0422 4864 WUDFRd - ok
09:34:58.0458 4864 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
09:34:58.0462 4864 wudfsvc - ok
09:34:58.0478 4864 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
09:34:58.0486 4864 WwanSvc - ok
09:34:58.0521 4864 [ B3EEACF62445E24FBB2CD4B0FB4DB026 ] yukonw7 C:\Windows\system32\DRIVERS\yk62x64.sys
09:34:58.0529 4864 yukonw7 - ok
09:34:58.0544 4864 ZTEusbmdm6k - ok
09:34:58.0557 4864 ZTEusbnmea - ok
09:34:58.0566 4864 ZTEusbser6k - ok
09:34:58.0594 4864 ================ Scan global ===============================
09:34:58.0610 4864 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
09:34:58.0649 4864 [ 3FB74FF230B5D240A57AE1C4A3D0459D ] C:\Windows\system32\winsrv.dll
09:34:58.0665 4864 [ 3FB74FF230B5D240A57AE1C4A3D0459D ] C:\Windows\system32\winsrv.dll
09:34:58.0691 4864 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
09:34:58.0710 4864 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
09:34:58.0715 4864 [Global] - ok
09:34:58.0716 4864 ================ Scan MBR ==================================
09:34:58.0730 4864 [ 17168B438B5F641F5760AC91E302B7D0 ] \Device\Harddisk0\DR0
09:34:59.0052 4864 \Device\Harddisk0\DR0 - ok
09:34:59.0061 4864 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR2
09:34:59.0073 4864 \Device\Harddisk1\DR2 - ok
09:34:59.0075 4864 ================ Scan VBR ==================================
09:34:59.0080 4864 [ C827A22432AF6ECE85098359F73E3868 ] \Device\Harddisk0\DR0\Partition1
09:34:59.0084 4864 \Device\Harddisk0\DR0\Partition1 - ok
09:34:59.0094 4864 [ 39939AC9645BC24DCA38DA70F0FD5404 ] \Device\Harddisk0\DR0\Partition2
09:34:59.0098 4864 \Device\Harddisk0\DR0\Partition2 - ok
09:34:59.0124 4864 [ C0F3800C898913E34F898C317A585D47 ] \Device\Harddisk0\DR0\Partition3
09:34:59.0128 4864 \Device\Harddisk0\DR0\Partition3 - ok
09:34:59.0141 4864 [ 448271C6FDA886812C96AEE0CA69B454 ] \Device\Harddisk0\DR0\Partition4
09:34:59.0144 4864 \Device\Harddisk0\DR0\Partition4 - ok
09:34:59.0153 4864 [ BF616CBCF4EFB5812E6E716CCD839D67 ] \Device\Harddisk1\DR2\Partition1
09:34:59.0156 4864 \Device\Harddisk1\DR2\Partition1 - ok
09:34:59.0159 4864 ============================================================
09:34:59.0159 4864 Scan finished
09:34:59.0159 4864 ============================================================
09:34:59.0184 3280 Detected object count: 0
09:34:59.0184 3280 Actual detected object count: 0

Re: Aj policia aj ine

Napsal: 29 kvě 2013 09:21
od JaRon
prescanuj PC s MBAM - kompletna kontrola

Re: Aj policia aj ine

Napsal: 29 kvě 2013 09:40
od Juraj1973
Juraj1973 píše:Error invalid script u vestkych troch

:(
len tak pre istotu zachytil si to na začiatku môjho posledného príspevku že cez avenger som nepochodil ?

mbam beží

Re: Aj policia aj ine

Napsal: 29 kvě 2013 11:13
od Juraj1973
našlo mi ten skybe dat ... odstrániť ?

Re: Aj policia aj ine

Napsal: 29 kvě 2013 11:20
od JaRon
jasne daj odstranit :)
+ restart
potom pouzi CFScript

Kód: Vybrat vše

File::
C:\Users\Ján\AppData\Roaming\skype.dat
C:\ProgramData\je6zrijm.dat
C:\ProgramData\mjirz6ej.pad



navod nepisem, vidim, ze mas dost prispevkov - ak bude treba dam

Re: Aj policia aj ine

Napsal: 29 kvě 2013 12:44
od Juraj1973
teraz trochu nerozumiem avengerom to nefunguje CFScript je nejaky iny program alebo ?

Re: Aj policia aj ine

Napsal: 29 kvě 2013 12:49
od Juraj1973
Juraj1973 píše:teraz trochu nerozumiem avengerom to nefunguje CFScript je nejaky iny program alebo ?
Sorry , no dávno som tu už nebol.. už ma osvietilo :-D

Re: Aj policia aj ine

Napsal: 29 kvě 2013 13:17
od Juraj1973
cez avenger mi ten CFscript nesiel tak som ho potom vlozil do combofixu, nieco aj zmazalo, len log sa mi stratil a neviem ho tam najst .. čo ďalej ?

Re: Aj policia aj ine

Napsal: 29 kvě 2013 13:35
od JaRon
spust ComboFix bez scriptu - potrebujem vidiet nejaky cerstvy log :James008:

Re: Aj policia aj ine

Napsal: 29 kvě 2013 14:12
od Juraj1973
ComboFix 13-05-29.01 - Ján . 05. 2013 14:50:31.3.2 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.421.1051.18.3068.1598 [GMT 2:00]
Running from: c:\users\Ján\Desktop\ComboFix.exe
AV: ESET NOD32 Antivirus 4.2 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 4.2 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
---- Previous Run -------
.
c:\programdata\mjirz6ej.pad
.
.
((((((((((((((((((((((((( Files Created from 2013-04-28 to 2013-05-29 )))))))))))))))))))))))))))))))
.
.
2013-05-29 13:00 . 2013-05-29 13:00 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-05-29 12:43 . 2013-05-29 12:43 -------- d-----w- c:\users\Ján\AppData\Local\{F9EE3C39-E890-425E-8043-67E963883E28}
2013-05-29 12:40 . 2013-05-29 12:40 -------- d-----w- c:\users\Ján\AppData\Local\{1C54CFAE-C6BD-477C-BB0A-D3277EE800ED}
2013-05-29 12:16 . 2013-05-29 12:16 -------- d-----w- c:\windows\system32\SPReview
2013-05-29 08:30 . 2013-05-29 08:30 -------- d-----w- c:\users\Ján\AppData\Roaming\Malwarebytes
2013-05-29 08:30 . 2013-05-29 08:30 -------- d-----w- c:\programdata\Malwarebytes
2013-05-29 08:30 . 2013-05-29 08:30 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2013-05-29 08:30 . 2013-04-04 12:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-05-29 08:29 . 2013-05-29 08:29 -------- d-----w- c:\users\Ján\AppData\Local\Programs
2013-05-29 06:52 . 2013-05-29 06:52 76232 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{313CECA9-44B3-4019-B6B3-AE980535BD66}\offreg.dll
2013-05-29 05:57 . 2013-05-29 05:58 -------- d-----w- C:\rsit
2013-05-29 05:57 . 2013-05-29 05:57 -------- d-----w- c:\program files\trend micro
2013-05-29 05:54 . 2013-05-29 05:54 -------- d-----w- C:\FRST
2013-05-29 05:49 . 2013-05-13 06:37 9460464 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{313CECA9-44B3-4019-B6B3-AE980535BD66}\mpengine.dll
2013-05-29 04:24 . 2013-05-29 04:25 -------- d-----w- c:\users\Ján\AppData\Local\{3C43F739-491E-49B6-970A-9941ECE7D8A0}
2013-05-28 03:45 . 2013-05-28 03:45 -------- d-----w- c:\users\Ján\AppData\Local\{28341A9F-54E1-4B32-9AF1-B261A3DEFCB4}
2013-05-27 03:59 . 2013-05-27 04:00 -------- d-----w- c:\users\Ján\AppData\Local\{D637ED4F-016C-437F-94C5-4B5C075C24D4}
2013-05-26 12:38 . 2013-05-26 12:38 -------- d-----w- c:\users\Ján\AppData\Local\{D94185F3-0481-4679-A19C-E9C0FBD9F09F}
2013-05-24 05:43 . 2013-05-24 05:43 -------- d-----w- c:\users\Ján\AppData\Local\{44A40248-BC64-4FA6-970C-7E6B060A78D3}
2013-05-23 12:19 . 2013-05-24 13:08 -------- d-----w- C:\13bdd3815b8b8978b5e27878
2013-05-23 12:14 . 2013-05-23 12:14 -------- d-----w- c:\program files\ESET
2013-05-23 05:18 . 2013-05-23 05:18 -------- d-----w- c:\users\Ján\AppData\Local\{0ABB961C-20DC-480A-BE08-A3361FE88E46}
2013-05-22 07:46 . 2013-05-22 07:47 -------- d-----w- c:\users\Ján\AppData\Local\{9F38BC2F-FF52-4CC7-B9D9-BD377EF8BF3A}
2013-05-20 04:03 . 2013-05-20 04:03 -------- d-----w- c:\users\Ján\AppData\Local\{A829B11E-0AEA-465F-B157-8224EB30EB6F}
2013-05-17 06:07 . 2013-05-17 06:07 -------- d-----w- c:\users\Ján\AppData\Local\{84672261-E453-4D1F-BDD7-DE3E7BCA861A}
2013-05-16 05:08 . 2013-05-16 05:08 -------- d-----w- c:\users\Ján\AppData\Local\{BA3B532B-8D40-4C6D-942A-B1A0EFBA1751}
2013-05-15 04:02 . 2013-05-15 04:02 -------- d-----w- c:\users\Ján\AppData\Local\{04BE0D32-2F1B-4F94-B321-0D98C90353BE}
2013-05-14 04:59 . 2013-05-14 04:59 -------- d-----w- c:\users\Ján\AppData\Local\{A2AA75D5-EB25-43D1-B56F-E551C1E64C5D}
2013-05-10 05:23 . 2013-05-10 05:23 -------- d-----w- c:\users\Ján\AppData\Local\{51C9B6B2-CE09-466F-9889-E15D6211604B}
2013-05-09 04:47 . 2013-05-09 04:48 -------- d-----w- c:\users\Ján\AppData\Local\{C2263E17-EB56-438F-9CB6-CE98AEE48E45}
2013-05-08 01:12 . 2013-05-08 01:12 106088 ----a-w- c:\program files (x86)\Mozilla Firefox\plugins\nppdf32.dll
2013-05-08 01:12 . 2013-05-08 01:12 106088 ----a-w- c:\program files (x86)\Internet Explorer\PLUGINS\nppdf32.dll
2013-05-06 05:16 . 2013-05-06 05:16 -------- d-----w- c:\users\Ján\AppData\Local\{AD118D6D-42E8-4648-BB8B-A012649E502D}
2013-05-02 05:24 . 2013-05-02 05:24 -------- d-----w- c:\users\Ján\AppData\Local\{FBC1815F-BE8C-443D-AF30-A675133FFFE7}
2013-04-30 05:19 . 2013-04-30 05:19 -------- d-----w- c:\users\Ján\AppData\Local\{088A933D-FC7A-4216-B99F-22E02F0E420D}
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-05-16 08:37 . 2012-04-17 11:25 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-05-16 08:37 . 2011-08-10 06:37 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-05-16 05:09 . 2011-01-31 16:30 75016696 ----a-w- c:\windows\system32\MRT.exe
2013-05-10 05:20 . 2010-06-24 10:33 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-05-02 00:06 . 2010-06-09 19:35 278800 ----a-w- c:\windows\system32\MpSigStub.exe
2013-04-12 14:36 . 2013-04-24 10:13 1653096 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-03-19 06:19 . 2013-04-10 04:40 5497688 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-03-19 05:54 . 2013-04-10 04:40 43520 ----a-w- c:\windows\system32\csrsrv.dll
2013-03-19 05:06 . 2013-04-10 04:40 3902312 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2013-03-19 05:06 . 2013-04-10 04:40 3958120 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2013-03-19 04:53 . 2013-04-10 04:40 6656 ----a-w- c:\windows\SysWow64\apisetschema.dll
2013-03-19 03:19 . 2013-04-10 04:40 112640 ----a-w- c:\windows\system32\smss.exe
2013-03-01 03:32 . 2013-04-10 04:40 3150848 ----a-w- c:\windows\system32\win32k.sys
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HPADVISOR"="c:\program files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe" [2009-07-15 1668664]
"LightScribe Control Panel"="c:\program files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-06-17 2363392]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-06-10 39408]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-08-02 4910912]
"Facebook Update"="c:\users\Ján\AppData\Local\Facebook\Update\FacebookUpdate.exe" [2012-07-17 138096]
"NokiaSuite.exe"="c:\program files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" [2012-12-21 1090040]
"InstallIQUpdater"="c:\program files (x86)\W3i\InstallIQUpdater\InstallIQUpdater.exe" [2011-10-11 1179648]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-07-02 98304]
"HPCam_Menu"="c:\program files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" [2009-02-25 218408]
"QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-06-24 320056]
"UpdatePRCShortCut"="c:\program files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
"HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576]
"TkBellExe"="c:\program files (x86)\real\realplayer\Update\realsched.exe" [2011-11-01 273528]
"WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2010-03-23 500792]
"Kerio VPN Client"="c:\program files (x86)\Kerio\VPN Client\kvpncgui.exe" [2011-04-21 5291656]
"DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" [2011-07-28 1259376]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2013-05-08 41056]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2009-11-10 417792]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SPReview"="c:\windows\System32\SPReview\SPReview.exe" [BU]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2009-7-1 1079584]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system]
"WallpaperStyle"= 2
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer2"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-02-28 183560]
R3 dc3d;MS Hardware Device Detection Driver;c:\windows\system32\DRIVERS\dc3d.sys [2009-03-23 20992]
R3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\DRIVERS\ewusbnet.sys [x]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
R3 HTCAND64;HTC Device Driver;c:\windows\system32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
R3 htcnprot;HTC NDIS Protocol Driver;c:\windows\system32\DRIVERS\htcnprot.sys [2012-09-25 36928]
R3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\DRIVERS\ewusbdev.sys [x]
R3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [2009-07-21 140712]
R3 massfilter;ZTE Mass Storage Filter Driver;c:\windows\system32\drivers\massfilter.sys [x]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
R3 nmwcdnsux64;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsux64.sys [2012-11-09 171008]
R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2010-06-13 1255736]
R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [2009-06-10 389120]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2011-10-26 270912]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2010-12-21 141264]
S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe [2009-03-02 89600]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-07-02 203264]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2010-12-21 170640]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2011-01-12 810144]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2010-12-21 125296]
S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-06-21 85560]
S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-03-28 94264]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe [2011-05-13 30520]
S2 HTCMonitorService;HTCMonitorService;c:\program files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [2012-12-12 87368]
S2 KVPNCSvc;Kerio VPN Client Service;c:\program files (x86)\Kerio\VPN Client\kvpncsvc.exe [2011-04-21 1105544]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S2 PassThru Service;Internet Pass-Through Service;c:\program files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-07-17 35104]
S3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408]
S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [2009-06-29 70656]
S3 kvnet;Kerio Virtual Network Adapter;c:\windows\system32\DRIVERS\kvnet.sys [2010-10-25 37424]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 25928]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-05-23 215040]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2009-03-09 36408]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2009-06-17 11:11 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-05-27 03:59 1165776 ----a-w- c:\program files (x86)\Google\Chrome\Application\27.0.1453.94\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2013-05-29 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-17 08:37]
.
2013-05-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-06-10 10:55]
.
2013-05-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-06-10 10:55]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2009-07-22 450048]
"SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2009-07-21 610872]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-09-06 171520]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2011-01-12 2918656]
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.sk/
uLocal Page = c:\windows\system32\blank.htm
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_SK&c=94&bd=Pavilion&pf=cnnb
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_SK&c=94&bd=Pavilion&pf=cnnb
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovať do programu Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\Ján\AppData\Roaming\Mozilla\Firefox\Profiles\fb1lpfwo.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=WLETDF&PC=WLEM&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.msn.com/?pc=WLEM
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?FORM=WLETDF&PC=WLEM&q=
FF - prefs.js: network.proxy.type - 0
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\program files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
FF - Ext: Skype extension: {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - c:\program files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - c:\program files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
FF - Ext: Facemoods: ffxtlbr@Facemoods.com - %profile%\extensions\ffxtlbr@Facemoods.com
FF - Ext: RealPlayer Browser Record Plugin: {ABDE892B-13A8-4d1b-88E6-365A6E755758} - c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF - Ext: DivX Plus Web Player HTML5 <video>: {23fcfd51-4958-4f00-80a3-ae97e717ed8b} - c:\program files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
.
- - - - ORPHANS REMOVED - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_202_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_202_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_202_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_202_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_202.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_202.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_202.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_202.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2013-05-29 15:04:38
ComboFix-quarantined-files.txt 2013-05-29 13:04
ComboFix2.txt 2013-05-14 07:14
.
Pre-Run: 239 754 600 448 bytes free
Post-Run: 239 447 572 480 bytes free
.
- - End Of File - - 2CF6AA0984FA5D798727CDACE7DE2770
:all_coholic:

Re: Aj policia aj ine

Napsal: 29 kvě 2013 14:18
od JaRon
vycisti este PC s ADWCleanerom - volba delete
a napis, ci su nejake problemy s PC :???:

Re: Aj policia aj ine

Napsal: 29 kvě 2013 15:17
od Juraj1973
mal nejaké divné nastavenie pre wifi a nevedelo sa to rozbehnúť, tak som tam niečo zmenil a teraz to šlape, keby niečo, dám vedieť ĎAKUJEM ZA ČAS A OCHOTU !!!! :thumbsup: :thumbsup: :thumbsup:

LOG # AdwCleaner v2.301 - Log vytvorený 29/05/2013 o 15:58:48
# Aktualizované 16/05/2013 Xplode
# Operaený systém : Windows 7 Home Premium (64 bits)
# Uživateľ : Ján - JÁN-PC
# Spustený systém : Normálny
# Spustené z : C:\Users\Ján\Desktop\kontrolne programi\adwcleaner(1).exe
# Voľba [Vymaza?]


***** [Služby] *****


***** [Súbory / Adresáre] *****

Adresár Vymazané : C:\Program Files (x86)\Free Offers from Freeze.com
Adresár Vymazané : C:\ProgramData\IBUpdaterService
Adresár Vymazané : C:\Users\Ján\AppData\Local\PackageAware
Adresár Vymazané : C:\Users\Ján\AppData\LocalLow\facemoods.com
Adresár Vymazané : C:\Users\Ján\AppData\Roaming\Mozilla\Firefox\Profiles\fb1lpfwo.default\extensions\ffxtlbr@Facemoods.com
Súbor Vymazané : C:\Program Files (x86)\Mozilla Firefox\.autoreg

***** [Registre] *****

Kľúe Vymazané : HKCU\Software\YahooPartnerToolbar
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Kľúe Vymazané : HKLM\Software\Freeze.com
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASAPI32
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASMANCS
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{64182481-4F71-486B-A045-B233BD0DA8FC}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{76C45B18-A29E-43EA-AAF8-AF55C2E1AE17}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7CD74AFF-3433-4E34-92E2-D98DFDB30754}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{96EF404C-24C7-43D0-9096-4CCC8BB7CCAC}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{97720195-206A-42AE-8E65-260B9BA5589F}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{97D69524-BB57-4185-9C7F-5F05593B771A}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{986F7A5A-9676-47E1-8642-F41F8C3FCF82}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B18788A4-92BD-440E-A4D1-380C36531119}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DDE2C74F-58CC-4D71-8CE1-09DEBB8CFB78}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}
Kľúe Vymazané : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ihflimipbcaljfnojhhknppphnnciiif
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}

***** [Internetové prehliadaee] *****

-\\ Internet Explorer v9.0.8112.16476

[OK] Registre sú eisté.

-\\ Mozilla Firefox v3.6.13 (sk)

Súbor : C:\Users\Ján\AppData\Roaming\Mozilla\Firefox\Profiles\fb1lpfwo.default\prefs.js

Vymazané : user_pref("extensions.facemoods.aflt", "_#wti9");
Vymazané : user_pref("extensions.facemoods.firstRun", false);
Vymazané : user_pref("extensions.facemoods.lastActv", "29");

-\\ Google Chrome v27.0.1453.94

Súbor : C:\Users\Ján\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] Súbor je eistý.

*************************

AdwCleaner[R1].txt - [3711 octets] - [29/05/2013 15:50:37]
AdwCleaner[S1].txt - [3682 octets] - [29/05/2013 15:58:48] :thumbsup:

Re: Aj policia aj ine

Napsal: 30 kvě 2013 06:10
od JaRon
rado sa stalo :)