Prosím o pomoc s odvírovaním a opravou
Napsal: 27 čer 2013 12:53
Zdravím, kedže som v tomto úplny amatér, tak Vás prosím či sa tu nájde niekto kto by mi v tomto asistoval.
Tak priložím i log z RSIT ako tu už každý dáva. Za prípadnú pomoc ďakujem.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Tomáš at 2013-06-27 13:39:37
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 32 GB (13%) free of 250 GB
Total RAM: 4095 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:40:03, on 27. 6. 2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
C:\Program Files (x86)\AVG\AVG2013\avgui.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://syb.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.splashtop.com/asusexpress ... pe%3DWEB01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
R3 - URLSearchHook: uTorrentControl Toolbar - {e9df9360-97f8-4690-afe6-996c80790da4} - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 173.212.255.178 ad.garenanow.com
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocník pri prihlasovaní v sieti Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\bh\softonic.dll
O2 - BHO: uTorrentControl - {e9df9360-97f8-4690-afe6-996c80790da4} - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\softonicTlbr.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll
O3 - Toolbar: uTorrentControl Toolbar - {e9df9360-97f8-4690-afe6-996c80790da4} - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: (no name) - {98889811-442D-49dd-99D7-DC866BE87DBC} - (no file)
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RaidCall] C:\Program Files (x86)\RaidCall\raidcall.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
O4 - HKCU\..\Run: [GarenaPlus] "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: GameRanger.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: Pridať do blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Pridať do blogu v programe Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.2.0\ViProtocol.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2013\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater15.2.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.2.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13740 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG2013\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe /pipeName=7fa9175a-2560-4d71-a527-876d7a45182a /coreSdkOptions=4382 /logConfFile="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\temp\32e3dc2e-eb84-4b2b-8974-146a159d2725-178-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2013\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg2013" /tempPath="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\temp\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
winlogon.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE 0x2e4
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\AVG\AVG2013\avgfws.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.2.0\ToolbarUpdater.exe"
"C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe"
"C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe"
taskeng.exe {26AEA61F-4C98-4DFD-9903-E45F27B35D96}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\SysWOW64\rundll32.exe "C:\Program Files (x86)\Garena Plus\ggspawn.dll",rundll_entry -p 0
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe" -b
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgemca.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2bd90ef9-3587-4721-ad07-00e3788907e1 -SystemEventPortName:HostProcess-487a62b9-62f2-4ad6-a86c-0e5da310f335 -IoCancelEventPortName:HostProcess-327653a7-ee84-4575-b9d5-616446757aa3 -NonStateChangingEventPortName:HostProcess-b762554f-0d49-48be-9c30-e2b4f635dca3 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:299b34f0-d7ab-462e-9272-acd50e3ce0a7 -DeviceGroupId:WpdFsGroup
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
HydraDM64.exe -h:66028 "Maximalizovat na celou plochu" "Maximalizovat k rohům okna" "Obnovit pracovní plochu"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
"C:\Program Files (x86)\AVG Secure Search\vprot.exe"
"C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe /pipeName=72dc785d-159c-4c77-a9a9-7c70f67e137a /coreSdkOptions=4114 /logConfFile="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\temp\8623ce24-0a51-417c-a5f5-6c41ab522f49-e94-oopp.tmp" /loggerName=AVG.NS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2013\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg2013" /tempPath="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\temp\"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Garena Plus\ggcode.dll",rundll_entry -p 3448
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4980.9643300.264912896 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 4980 "\\.\pipe\gecko-crash-server-pipe.4980" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --proxy-stub-channel=Flash5220.650DBDE0.8911 --host-broker-channel=Flash5220.650DBDE0.11771 --host-pid=5220 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --channel=4684.0038F83C.400844065 --proxy-stub-channel=Flash5220.650DBDE0.8911 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" --host-npapi-version=27 --type=renderer
"C:\Users\Tomáš\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job
C:\Windows\tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\ROC_JAN2013_TB_rmv.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-05-14 6307960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-01-13 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-03-26 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-29 461216]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v sieti Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll [2013-05-21 1991344]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14 4531320]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-07-07 1152776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-29 170912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68}]
Softonic Helper Object - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\bh\softonic.dll [2012-01-11 241872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e9df9360-97f8-4690-afe6-996c80790da4}]
uTorrentControl Toolbar - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetPacks Browser Helper - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-01-15 1330480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo - C:\Program Files (x86)\Yontoo\YontooIEClient.dll [2012-03-27 792864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-07-07 1152776]
{5018CFD2-804D-4C99-9F81-25EAEA2769DE} - Softonic Toolbar - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\softonicTlbr.dll [2012-01-11 250064]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll [2013-05-21 1991344]
{e9df9360-97f8-4690-afe6-996c80790da4} - uTorrentControl Toolbar - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll [2011-05-09 176936]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetPacks Toolbar for Internet Explorer - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-01-15 1330480]
{98889811-442D-49dd-99D7-DC866BE87DBC}
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2013-06-07 1641896]
"uTorrent"=C:\Program Files (x86)\uTorrent\uTorrent.exe [2012-05-25 880496]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-06-03 19603048]
"HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2011-07-28 393216]
"GarenaPlus"=C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe [2013-05-09 9829680]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2010-05-24 2439072]
"BCU"=C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [2010-03-05 411864]
"vProt"=C:\Program Files (x86)\AVG Secure Search\vprot.exe [2013-05-21 1226928]
"SweetIM"=C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [2012-01-19 114992]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2013\avgui.exe [2012-12-11 3147384]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-12-19 642808]
"RaidCall"=C:\Program Files (x86)\RaidCall\raidcall.exe [2013-05-27 3428024]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-05-15 2255184]
C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
GameRanger.lnk - C:\Users\Tomáš\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2013-06-27 13:39:37 ----D---- C:\rsit
2013-06-27 13:39:37 ----D---- C:\Program Files\trend micro
2013-06-26 16:45:37 ----D---- C:\Program Files (x86)\Dungeon Defenders
2013-06-15 03:00:38 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-06-15 03:00:38 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-06-15 03:00:38 ----A---- C:\Windows\system32\urlmon.dll
2013-06-15 03:00:37 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-06-15 03:00:37 ----A---- C:\Windows\system32\ieui.dll
2013-06-15 03:00:37 ----A---- C:\Windows\system32\iertutil.dll
2013-06-15 03:00:36 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-06-15 03:00:36 ----A---- C:\Windows\system32\ieframe.dll
2013-06-15 03:00:34 ----A---- C:\Windows\system32\mshtml.dll
2013-06-15 03:00:32 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-06-13 03:01:30 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-06-13 03:01:30 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-06-13 03:01:30 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-06-13 03:01:30 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-06-13 03:01:30 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-06-13 03:01:30 ----A---- C:\Windows\system32\iesysprep.dll
2013-06-13 03:01:30 ----A---- C:\Windows\system32\iesetup.dll
2013-06-13 03:01:30 ----A---- C:\Windows\system32\iernonce.dll
2013-06-13 03:01:30 ----A---- C:\Windows\system32\ie4uinit.exe
2013-06-13 03:01:29 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-06-13 03:01:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-06-13 03:01:29 ----A---- C:\Windows\system32\msfeeds.dll
2013-06-13 03:01:29 ----A---- C:\Windows\system32\jscript.dll
2013-06-13 03:01:28 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-06-13 03:01:28 ----A---- C:\Windows\system32\jscript9.dll
2013-06-13 03:01:26 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-06-13 03:01:26 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-06-13 03:01:26 ----A---- C:\Windows\system32\jsproxy.dll
2013-06-13 03:01:25 ----A---- C:\Windows\system32\wininet.dll
2013-06-12 18:56:25 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-06-12 18:56:23 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-06-12 18:56:23 ----A---- C:\Windows\system32\win32spl.dll
2013-06-12 18:56:16 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-06-12 18:56:16 ----A---- C:\Windows\system32\cryptdlg.dll
2013-06-12 18:56:14 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-06-12 18:56:14 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-06-12 18:56:11 ----A---- C:\Windows\system32\cryptsvc.dll
2013-06-12 18:56:11 ----A---- C:\Windows\system32\cryptnet.dll
2013-06-12 18:56:11 ----A---- C:\Windows\system32\crypt32.dll
2013-06-12 18:56:11 ----A---- C:\Windows\system32\certutil.exe
2013-06-12 18:56:11 ----A---- C:\Windows\system32\certenc.dll
2013-06-12 18:56:03 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-06-12 18:56:03 ----A---- C:\Windows\system32\d3d11.dll
2013-06-07 16:14:11 ----D---- C:\ProgramData\RELOADED
2013-06-07 14:22:45 ----D---- C:\Program Files (x86)\Metro Last Light
2013-06-07 03:34:42 ----D---- C:\Users\Tomáš\AppData\Roaming\ParetoLogic
2013-06-07 03:34:42 ----D---- C:\Users\Tomáš\AppData\Roaming\DriverCure
2013-06-07 03:34:34 ----D---- C:\ProgramData\ParetoLogic
2013-05-26 15:27:21 ----D---- C:\Program Files (x86)\Amnesia - The Dark Descent
2013-05-22 13:14:31 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-05-22 02:04:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-05-15 11:37:17 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-05-15 11:37:17 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-05-15 11:37:17 ----A---- C:\Windows\system32\cdd.dll
2013-05-15 11:37:08 ----A---- C:\Windows\system32\shell32.dll
2013-05-15 11:37:07 ----A---- C:\Windows\system32\shdocvw.dll
2013-05-15 11:37:07 ----A---- C:\Windows\system32\authui.dll
2013-05-15 11:37:06 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-05-15 11:37:06 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-05-15 11:37:06 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-05-15 11:37:06 ----A---- C:\Windows\system32\consent.exe
2013-05-15 11:37:06 ----A---- C:\Windows\system32\appinfo.dll
2013-05-15 11:36:55 ----A---- C:\Windows\system32\wwansvc.dll
2013-05-15 11:36:55 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-05-15 11:36:54 ----A---- C:\Windows\system32\win32k.sys
2013-05-07 09:45:13 ----SHD---- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-05-03 15:34:27 ----D---- C:\Program Files (x86)\Gophoto.it
2013-05-03 15:34:09 ----D---- C:\Program Files (x86)\hdvidcodec.com
2013-04-24 13:40:25 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-22 14:37:47 ----D---- C:\Users\Tomáš\AppData\Roaming\raidcall
2013-04-22 14:37:41 ----D---- C:\Program Files (x86)\RaidCall
2013-04-17 20:38:32 ----D---- C:\GarenaMaster II - v2.16
2013-04-10 15:09:04 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-04-10 15:09:04 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-04-10 15:09:04 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-04-10 15:09:04 ----A---- C:\Windows\system32\tsgqec.dll
2013-04-10 15:09:04 ----A---- C:\Windows\system32\mstscax.dll
2013-04-10 15:09:04 ----A---- C:\Windows\system32\aaclient.dll
2013-04-10 15:08:55 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-04-10 15:08:53 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-04-10 15:08:52 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-04-10 15:08:52 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-04-10 15:08:51 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-04-10 15:08:51 ----A---- C:\Windows\system32\smss.exe
2013-04-10 15:08:51 ----A---- C:\Windows\system32\csrsrv.dll
2013-04-09 16:58:05 ----D---- C:\Program Files (x86)\DirectX
2013-04-08 17:02:53 ----D---- C:\ProgramData\SplitMediaLabs
2013-04-08 17:02:53 ----D---- C:\Program Files (x86)\SplitMediaLabs
2013-04-08 17:02:13 ----D---- C:\Users\Tomáš\AppData\Roaming\SplitMediaLabs
2013-03-30 04:02:22 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-03-30 04:02:22 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-03-30 04:02:22 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-03-30 04:02:22 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-03-30 04:02:22 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-03-30 04:02:22 ----A---- C:\Windows\system32\elshyph.dll
2013-03-30 04:02:21 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-03-30 04:02:21 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-03-30 04:02:21 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-03-30 04:02:21 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-03-30 04:02:18 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-03-30 04:02:18 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\url.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-03-30 04:02:16 ----A---- C:\Windows\system32\msrating.dll
2013-03-30 04:02:16 ----A---- C:\Windows\system32\msls31.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\url.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\iedkcs32.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\ieapfltr.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\icardie.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\dxtrans.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\dxtmsft.dll
2013-03-30 04:02:14 ----A---- C:\Windows\system32\webcheck.dll
2013-03-30 04:02:14 ----A---- C:\Windows\system32\mshtmled.dll
2013-03-30 04:02:14 ----A---- C:\Windows\system32\licmgr10.dll
2013-03-30 04:02:14 ----A---- C:\Windows\system32\inseng.dll
2013-03-30 04:02:13 ----A---- C:\Windows\system32\wextract.exe
2013-03-30 04:02:13 ----A---- C:\Windows\system32\vbscript.dll
2013-03-30 04:02:13 ----A---- C:\Windows\system32\iexpress.exe
2013-03-30 04:02:13 ----A---- C:\Windows\system32\ieUnatt.exe
2013-03-30 04:02:12 ----A---- C:\Windows\system32\pngfilt.dll
2013-03-30 04:02:12 ----A---- C:\Windows\system32\occache.dll
2013-03-30 04:02:12 ----A---- C:\Windows\system32\mshta.exe
2013-03-30 04:02:12 ----A---- C:\Windows\system32\imgutil.dll
2013-03-30 04:02:12 ----A---- C:\Windows\system32\iepeers.dll
2013-03-30 04:02:11 ----A---- C:\Windows\system32\msfeedssync.exe
2013-03-30 04:02:11 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-03-30 04:02:11 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-03-30 04:02:10 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-03-30 04:02:10 ----A---- C:\Windows\system32\mshtmler.dll
2013-03-29 11:11:38 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
======List of files/folders modified in the last 3 months======
2013-06-27 13:39:53 ----D---- C:\Windows\Temp
2013-06-27 13:39:37 ----RD---- C:\Program Files
2013-06-27 13:38:28 ----D---- C:\Program Files (x86)\Steam
2013-06-27 13:19:22 ----D---- C:\Users\Tomáš\AppData\Roaming\Skype
2013-06-27 13:05:57 ----RD---- C:\Program Files (x86)
2013-06-27 12:58:10 ----D---- C:\ProgramData\MFAData
2013-06-27 12:55:58 ----D---- C:\ProgramData\GarenaMessenger
2013-06-27 12:55:57 ----D---- C:\Users\Tomáš\AppData\Roaming\GarenaPlus
2013-06-27 12:52:27 ----D---- C:\Users\Tomáš\AppData\Roaming\uTorrent
2013-06-27 12:51:49 ----D---- C:\Windows\system32\Tasks
2013-06-27 12:50:38 ----D---- C:\Windows\system32\config
2013-06-27 12:39:53 ----D---- C:\Windows\Prefetch
2013-06-27 12:30:24 ----D---- C:\Windows\system32\LogFiles
2013-06-27 12:30:24 ----D---- C:\Windows\inf
2013-06-27 12:30:22 ----D---- C:\Windows
2013-06-27 12:30:02 ----D---- C:\Windows\System32
2013-06-27 04:18:42 ----D---- C:\Users\Tomáš\AppData\Roaming\DAEMON Tools Lite
2013-06-27 04:18:34 ----D---- C:\Windows\Logs
2013-06-26 18:03:42 ----SHD---- C:\System Volume Information
2013-06-26 18:03:24 ----SHD---- C:\Windows\Installer
2013-06-26 17:55:30 ----D---- C:\ProgramData\PMB Files
2013-06-26 13:25:52 ----D---- C:\Windows\system32\NDF
2013-06-25 22:36:00 ----D---- C:\Users\Tomáš\AppData\Roaming\Applian FLV and Media Player
2013-06-23 23:40:41 ----D---- C:\Windows\Panther
2013-06-23 23:40:41 ----D---- C:\Windows\debug
2013-06-23 23:39:17 ----D---- C:\Program Files\CCleaner
2013-06-15 03:17:58 ----D---- C:\Windows\winsxs
2013-06-15 03:16:31 ----D---- C:\Windows\SysWOW64
2013-06-15 03:16:31 ----D---- C:\Program Files\Internet Explorer
2013-06-15 03:16:31 ----D---- C:\Program Files (x86)\Internet Explorer
2013-06-15 03:00:53 ----D---- C:\Windows\system32\catroot2
2013-06-15 03:00:53 ----D---- C:\Windows\system32\catroot
2013-06-13 11:47:01 ----D---- C:\Windows\rescache
2013-06-13 03:23:23 ----D---- C:\Windows\system32\drivers
2013-06-13 03:23:22 ----D---- C:\Windows\SYSWOW64\sk-SK
2013-06-13 03:23:22 ----D---- C:\Windows\SYSWOW64\en-US
2013-06-13 03:23:22 ----D---- C:\Windows\system32\sk-SK
2013-06-13 03:23:22 ----D---- C:\Windows\system32\en-US
2013-06-13 03:02:04 ----A---- C:\Windows\system32\MRT.exe
2013-06-12 12:56:30 ----D---- C:\ProgramData\Skype
2013-06-12 12:56:28 ----RD---- C:\Program Files (x86)\Skype
2013-06-11 22:44:28 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-06-09 12:28:26 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-06-09 12:28:25 ----D---- C:\Program Files (x86)\EA GAMES
2013-06-08 02:33:15 ----D---- C:\Windows\Tasks
2013-06-08 02:33:14 ----D---- C:\Program Files (x86)\AVG Secure Search
2013-06-07 16:14:11 ----HD---- C:\ProgramData
2013-06-07 03:55:30 ----D---- C:\Users\Tomáš\AppData\Roaming\BrowserCompanion
2013-06-07 03:53:30 ----D---- C:\Program Files (x86)\Common Files
2013-06-04 21:18:16 ----RSD---- C:\Windows\Fonts
2013-05-29 22:19:57 ----D---- C:\Games
2013-05-23 10:25:35 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-05-21 17:41:51 ----D---- C:\Users\Tomáš\AppData\Roaming\TeamViewer
2013-05-21 17:41:23 ----D---- C:\Program Files (x86)\TeamViewer
2013-05-21 17:30:05 ----D---- C:\Program Files (x86)\Garena Plus
2013-05-17 03:56:16 ----RSD---- C:\Windows\assembly
2013-05-17 03:56:16 ----D---- C:\Windows\Microsoft.NET
2013-05-16 12:51:23 ----D---- C:\Windows\AppPatch
2013-05-16 11:15:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-05-16 01:02:53 ----D---- C:\Users\Tomáš\AppData\Roaming\vlc
2013-05-07 10:00:00 ----D---- C:\Program Files (x86)\Windows Live
2013-05-07 09:59:22 ----D---- C:\ProgramData\DriverGenius
2013-05-07 09:59:21 ----SHD---- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2013-05-07 09:46:07 ----D---- C:\ProgramData\TuneUp Software
2013-05-07 09:46:06 ----D---- C:\Users\Tomáš\AppData\Roaming\TuneUp Software
2013-05-01 22:33:57 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2013-05-01 22:33:09 ----D---- C:\Program Files (x86)\YourFileDownloader
2013-04-29 20:45:45 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2013-04-09 16:53:59 ----D---- C:\Users\Tomáš\AppData\Roaming\DivX
2013-04-07 13:16:06 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2013-04-06 16:00:02 ----D---- C:\Program Files (x86)\Origin
2013-03-30 04:21:32 ----D---- C:\Windows\SYSWOW64\migration
2013-03-30 04:21:31 ----D---- C:\Windows\system32\migration
2013-03-30 04:21:31 ----D---- C:\Windows\PolicyDefinitions
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\java.exe
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-03-29 11:11:33 ----D---- C:\Program Files (x86)\Java
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSHA;AVGIDSHA; C:\Windows\system32\DRIVERS\avgidsha.sys [2012-10-15 63328]
R0 Avgloga;AVG Logging Driver; C:\Windows\system32\DRIVERS\avgloga.sys [2012-09-21 225120]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2012-11-16 111968]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2012-09-14 40800]
R0 nvstor64;nvstor64; C:\Windows\system32\DRIVERS\nvstor64.sys [2010-04-08 244328]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-08-04 13440]
R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6a.sys [2012-09-04 50296]
R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdrivera.sys [2012-10-22 154464]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2012-10-02 185696]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2012-09-21 200032]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2013-05-21 45856]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-12-13 279616]
R2 AODDriver4.01;AODDriver4.01; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-12-19 11278336]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-12-19 552960]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-11-06 96256]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6264.sys [2010-08-12 350952]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2010-05-15 1327520]
S2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
S3 1394hub;1394 Enabled Hub; C:\Windows\syswow64\svchost.exe [2009-07-14 20992]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-05-13 36328]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Users\Tomáš\Desktop\programy\Garena\safedrv.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 146920]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-12-19 240640]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-12-19 361984]
R2 avgfws;AVG Firewall; C:\Program Files (x86)\AVG\AVG2013\avgfws.exe [2012-12-10 1342024]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [2012-11-16 5814904]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [2012-10-22 196664]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-06-15 249648]
R2 BCUService;Browser Configuration Utility Service; C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe [2010-03-05 235752]
R2 ForceWare Intelligent Application Manager (IAM);ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [2010-01-21 496232]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-05-15 2467664]
R2 nSvcIp;ForceWare IP service; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [2010-01-21 209000]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-05-20 76888]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-04-23 3574624]
R2 vToolbarUpdater15.2.0;vToolbarUpdater15.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.2.0\ToolbarUpdater.exe [2013-05-21 1015984]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-17 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-06-03 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-11 256904]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-07-07 195336]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-17 135664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-05-22 117144]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-06-07 543656]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-12-11 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Tak priložím i log z RSIT ako tu už každý dáva. Za prípadnú pomoc ďakujem.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Tomáš at 2013-06-27 13:39:37
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 32 GB (13%) free of 250 GB
Total RAM: 4095 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:40:03, on 27. 6. 2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
C:\Program Files (x86)\AVG\AVG2013\avgui.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://syb.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.splashtop.com/asusexpress ... pe%3DWEB01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
R3 - URLSearchHook: uTorrentControl Toolbar - {e9df9360-97f8-4690-afe6-996c80790da4} - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 173.212.255.178 ad.garenanow.com
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocník pri prihlasovaní v sieti Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\bh\softonic.dll
O2 - BHO: uTorrentControl - {e9df9360-97f8-4690-afe6-996c80790da4} - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\softonicTlbr.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll
O3 - Toolbar: uTorrentControl Toolbar - {e9df9360-97f8-4690-afe6-996c80790da4} - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: (no name) - {98889811-442D-49dd-99D7-DC866BE87DBC} - (no file)
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RaidCall] C:\Program Files (x86)\RaidCall\raidcall.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
O4 - HKCU\..\Run: [GarenaPlus] "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: GameRanger.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: Pridať do blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Pridať do blogu v programe Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.2.0\ViProtocol.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2013\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater15.2.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.2.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13740 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG2013\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe /pipeName=7fa9175a-2560-4d71-a527-876d7a45182a /coreSdkOptions=4382 /logConfFile="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\temp\32e3dc2e-eb84-4b2b-8974-146a159d2725-178-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2013\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg2013" /tempPath="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\temp\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
winlogon.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE 0x2e4
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\AVG\AVG2013\avgfws.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.2.0\ToolbarUpdater.exe"
"C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe"
"C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe"
taskeng.exe {26AEA61F-4C98-4DFD-9903-E45F27B35D96}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\SysWOW64\rundll32.exe "C:\Program Files (x86)\Garena Plus\ggspawn.dll",rundll_entry -p 0
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe" -b
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgemca.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2bd90ef9-3587-4721-ad07-00e3788907e1 -SystemEventPortName:HostProcess-487a62b9-62f2-4ad6-a86c-0e5da310f335 -IoCancelEventPortName:HostProcess-327653a7-ee84-4575-b9d5-616446757aa3 -NonStateChangingEventPortName:HostProcess-b762554f-0d49-48be-9c30-e2b4f635dca3 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:299b34f0-d7ab-462e-9272-acd50e3ce0a7 -DeviceGroupId:WpdFsGroup
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
HydraDM64.exe -h:66028 "Maximalizovat na celou plochu" "Maximalizovat k rohům okna" "Obnovit pracovní plochu"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
"C:\Program Files (x86)\AVG Secure Search\vprot.exe"
"C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe"
"C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe /pipeName=72dc785d-159c-4c77-a9a9-7c70f67e137a /coreSdkOptions=4114 /logConfFile="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\temp\8623ce24-0a51-417c-a5f5-6c41ab522f49-e94-oopp.tmp" /loggerName=AVG.NS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2013\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg2013" /tempPath="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2013\temp\"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Garena Plus\ggcode.dll",rundll_entry -p 3448
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4980.9643300.264912896 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 4980 "\\.\pipe\gecko-crash-server-pipe.4980" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --proxy-stub-channel=Flash5220.650DBDE0.8911 --host-broker-channel=Flash5220.650DBDE0.11771 --host-pid=5220 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --channel=4684.0038F83C.400844065 --proxy-stub-channel=Flash5220.650DBDE0.8911 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" --host-npapi-version=27 --type=renderer
"C:\Users\Tomáš\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job
C:\Windows\tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\ROC_JAN2013_TB_rmv.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-05-14 6307960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-01-13 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-03-26 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-29 461216]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v sieti Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll [2013-05-21 1991344]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14 4531320]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-07-07 1152776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-29 170912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68}]
Softonic Helper Object - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\bh\softonic.dll [2012-01-11 241872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e9df9360-97f8-4690-afe6-996c80790da4}]
uTorrentControl Toolbar - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetPacks Browser Helper - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-01-15 1330480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo - C:\Program Files (x86)\Yontoo\YontooIEClient.dll [2012-03-27 792864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-07-07 1152776]
{5018CFD2-804D-4C99-9F81-25EAEA2769DE} - Softonic Toolbar - C:\Program Files (x86)\Softonic\softonic\1.5.11.5\softonicTlbr.dll [2012-01-11 250064]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll [2013-05-21 1991344]
{e9df9360-97f8-4690-afe6-996c80790da4} - uTorrentControl Toolbar - C:\Program Files (x86)\uTorrentControl\prxtbuTor.dll [2011-05-09 176936]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetPacks Toolbar for Internet Explorer - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-01-15 1330480]
{98889811-442D-49dd-99D7-DC866BE87DBC}
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2013-06-07 1641896]
"uTorrent"=C:\Program Files (x86)\uTorrent\uTorrent.exe [2012-05-25 880496]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-06-03 19603048]
"HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2011-07-28 393216]
"GarenaPlus"=C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe [2013-05-09 9829680]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2010-05-24 2439072]
"BCU"=C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [2010-03-05 411864]
"vProt"=C:\Program Files (x86)\AVG Secure Search\vprot.exe [2013-05-21 1226928]
"SweetIM"=C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [2012-01-19 114992]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2013\avgui.exe [2012-12-11 3147384]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-12-19 642808]
"RaidCall"=C:\Program Files (x86)\RaidCall\raidcall.exe [2013-05-27 3428024]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-05-15 2255184]
C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
GameRanger.lnk - C:\Users\Tomáš\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2013-06-27 13:39:37 ----D---- C:\rsit
2013-06-27 13:39:37 ----D---- C:\Program Files\trend micro
2013-06-26 16:45:37 ----D---- C:\Program Files (x86)\Dungeon Defenders
2013-06-15 03:00:38 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-06-15 03:00:38 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-06-15 03:00:38 ----A---- C:\Windows\system32\urlmon.dll
2013-06-15 03:00:37 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-06-15 03:00:37 ----A---- C:\Windows\system32\ieui.dll
2013-06-15 03:00:37 ----A---- C:\Windows\system32\iertutil.dll
2013-06-15 03:00:36 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-06-15 03:00:36 ----A---- C:\Windows\system32\ieframe.dll
2013-06-15 03:00:34 ----A---- C:\Windows\system32\mshtml.dll
2013-06-15 03:00:32 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-06-13 03:01:30 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-06-13 03:01:30 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-06-13 03:01:30 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-06-13 03:01:30 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-06-13 03:01:30 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-06-13 03:01:30 ----A---- C:\Windows\system32\iesysprep.dll
2013-06-13 03:01:30 ----A---- C:\Windows\system32\iesetup.dll
2013-06-13 03:01:30 ----A---- C:\Windows\system32\iernonce.dll
2013-06-13 03:01:30 ----A---- C:\Windows\system32\ie4uinit.exe
2013-06-13 03:01:29 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-06-13 03:01:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-06-13 03:01:29 ----A---- C:\Windows\system32\msfeeds.dll
2013-06-13 03:01:29 ----A---- C:\Windows\system32\jscript.dll
2013-06-13 03:01:28 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-06-13 03:01:28 ----A---- C:\Windows\system32\jscript9.dll
2013-06-13 03:01:26 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-06-13 03:01:26 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-06-13 03:01:26 ----A---- C:\Windows\system32\jsproxy.dll
2013-06-13 03:01:25 ----A---- C:\Windows\system32\wininet.dll
2013-06-12 18:56:25 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-06-12 18:56:23 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-06-12 18:56:23 ----A---- C:\Windows\system32\win32spl.dll
2013-06-12 18:56:16 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-06-12 18:56:16 ----A---- C:\Windows\system32\cryptdlg.dll
2013-06-12 18:56:14 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-06-12 18:56:14 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-06-12 18:56:11 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-06-12 18:56:11 ----A---- C:\Windows\system32\cryptsvc.dll
2013-06-12 18:56:11 ----A---- C:\Windows\system32\cryptnet.dll
2013-06-12 18:56:11 ----A---- C:\Windows\system32\crypt32.dll
2013-06-12 18:56:11 ----A---- C:\Windows\system32\certutil.exe
2013-06-12 18:56:11 ----A---- C:\Windows\system32\certenc.dll
2013-06-12 18:56:03 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-06-12 18:56:03 ----A---- C:\Windows\system32\d3d11.dll
2013-06-07 16:14:11 ----D---- C:\ProgramData\RELOADED
2013-06-07 14:22:45 ----D---- C:\Program Files (x86)\Metro Last Light
2013-06-07 03:34:42 ----D---- C:\Users\Tomáš\AppData\Roaming\ParetoLogic
2013-06-07 03:34:42 ----D---- C:\Users\Tomáš\AppData\Roaming\DriverCure
2013-06-07 03:34:34 ----D---- C:\ProgramData\ParetoLogic
2013-05-26 15:27:21 ----D---- C:\Program Files (x86)\Amnesia - The Dark Descent
2013-05-22 13:14:31 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-05-22 02:04:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-05-15 11:37:17 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-05-15 11:37:17 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-05-15 11:37:17 ----A---- C:\Windows\system32\cdd.dll
2013-05-15 11:37:08 ----A---- C:\Windows\system32\shell32.dll
2013-05-15 11:37:07 ----A---- C:\Windows\system32\shdocvw.dll
2013-05-15 11:37:07 ----A---- C:\Windows\system32\authui.dll
2013-05-15 11:37:06 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-05-15 11:37:06 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-05-15 11:37:06 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-05-15 11:37:06 ----A---- C:\Windows\system32\consent.exe
2013-05-15 11:37:06 ----A---- C:\Windows\system32\appinfo.dll
2013-05-15 11:36:55 ----A---- C:\Windows\system32\wwansvc.dll
2013-05-15 11:36:55 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-05-15 11:36:54 ----A---- C:\Windows\system32\win32k.sys
2013-05-07 09:45:13 ----SHD---- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-05-03 15:34:27 ----D---- C:\Program Files (x86)\Gophoto.it
2013-05-03 15:34:09 ----D---- C:\Program Files (x86)\hdvidcodec.com
2013-04-24 13:40:25 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-22 14:37:47 ----D---- C:\Users\Tomáš\AppData\Roaming\raidcall
2013-04-22 14:37:41 ----D---- C:\Program Files (x86)\RaidCall
2013-04-17 20:38:32 ----D---- C:\GarenaMaster II - v2.16
2013-04-10 15:09:04 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-04-10 15:09:04 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-04-10 15:09:04 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-04-10 15:09:04 ----A---- C:\Windows\system32\tsgqec.dll
2013-04-10 15:09:04 ----A---- C:\Windows\system32\mstscax.dll
2013-04-10 15:09:04 ----A---- C:\Windows\system32\aaclient.dll
2013-04-10 15:08:55 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-04-10 15:08:53 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-04-10 15:08:52 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-04-10 15:08:52 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-04-10 15:08:51 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-04-10 15:08:51 ----A---- C:\Windows\system32\smss.exe
2013-04-10 15:08:51 ----A---- C:\Windows\system32\csrsrv.dll
2013-04-09 16:58:05 ----D---- C:\Program Files (x86)\DirectX
2013-04-08 17:02:53 ----D---- C:\ProgramData\SplitMediaLabs
2013-04-08 17:02:53 ----D---- C:\Program Files (x86)\SplitMediaLabs
2013-04-08 17:02:13 ----D---- C:\Users\Tomáš\AppData\Roaming\SplitMediaLabs
2013-03-30 04:02:22 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-03-30 04:02:22 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-03-30 04:02:22 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-03-30 04:02:22 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-03-30 04:02:22 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-03-30 04:02:22 ----A---- C:\Windows\system32\elshyph.dll
2013-03-30 04:02:21 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-03-30 04:02:21 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-03-30 04:02:21 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-03-30 04:02:21 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-03-30 04:02:20 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-03-30 04:02:19 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-03-30 04:02:18 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-03-30 04:02:18 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\url.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-03-30 04:02:17 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-03-30 04:02:16 ----A---- C:\Windows\system32\msrating.dll
2013-03-30 04:02:16 ----A---- C:\Windows\system32\msls31.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\url.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\iedkcs32.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\ieapfltr.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\icardie.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\dxtrans.dll
2013-03-30 04:02:15 ----A---- C:\Windows\system32\dxtmsft.dll
2013-03-30 04:02:14 ----A---- C:\Windows\system32\webcheck.dll
2013-03-30 04:02:14 ----A---- C:\Windows\system32\mshtmled.dll
2013-03-30 04:02:14 ----A---- C:\Windows\system32\licmgr10.dll
2013-03-30 04:02:14 ----A---- C:\Windows\system32\inseng.dll
2013-03-30 04:02:13 ----A---- C:\Windows\system32\wextract.exe
2013-03-30 04:02:13 ----A---- C:\Windows\system32\vbscript.dll
2013-03-30 04:02:13 ----A---- C:\Windows\system32\iexpress.exe
2013-03-30 04:02:13 ----A---- C:\Windows\system32\ieUnatt.exe
2013-03-30 04:02:12 ----A---- C:\Windows\system32\pngfilt.dll
2013-03-30 04:02:12 ----A---- C:\Windows\system32\occache.dll
2013-03-30 04:02:12 ----A---- C:\Windows\system32\mshta.exe
2013-03-30 04:02:12 ----A---- C:\Windows\system32\imgutil.dll
2013-03-30 04:02:12 ----A---- C:\Windows\system32\iepeers.dll
2013-03-30 04:02:11 ----A---- C:\Windows\system32\msfeedssync.exe
2013-03-30 04:02:11 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-03-30 04:02:11 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-03-30 04:02:10 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-03-30 04:02:10 ----A---- C:\Windows\system32\mshtmler.dll
2013-03-29 11:11:38 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
======List of files/folders modified in the last 3 months======
2013-06-27 13:39:53 ----D---- C:\Windows\Temp
2013-06-27 13:39:37 ----RD---- C:\Program Files
2013-06-27 13:38:28 ----D---- C:\Program Files (x86)\Steam
2013-06-27 13:19:22 ----D---- C:\Users\Tomáš\AppData\Roaming\Skype
2013-06-27 13:05:57 ----RD---- C:\Program Files (x86)
2013-06-27 12:58:10 ----D---- C:\ProgramData\MFAData
2013-06-27 12:55:58 ----D---- C:\ProgramData\GarenaMessenger
2013-06-27 12:55:57 ----D---- C:\Users\Tomáš\AppData\Roaming\GarenaPlus
2013-06-27 12:52:27 ----D---- C:\Users\Tomáš\AppData\Roaming\uTorrent
2013-06-27 12:51:49 ----D---- C:\Windows\system32\Tasks
2013-06-27 12:50:38 ----D---- C:\Windows\system32\config
2013-06-27 12:39:53 ----D---- C:\Windows\Prefetch
2013-06-27 12:30:24 ----D---- C:\Windows\system32\LogFiles
2013-06-27 12:30:24 ----D---- C:\Windows\inf
2013-06-27 12:30:22 ----D---- C:\Windows
2013-06-27 12:30:02 ----D---- C:\Windows\System32
2013-06-27 04:18:42 ----D---- C:\Users\Tomáš\AppData\Roaming\DAEMON Tools Lite
2013-06-27 04:18:34 ----D---- C:\Windows\Logs
2013-06-26 18:03:42 ----SHD---- C:\System Volume Information
2013-06-26 18:03:24 ----SHD---- C:\Windows\Installer
2013-06-26 17:55:30 ----D---- C:\ProgramData\PMB Files
2013-06-26 13:25:52 ----D---- C:\Windows\system32\NDF
2013-06-25 22:36:00 ----D---- C:\Users\Tomáš\AppData\Roaming\Applian FLV and Media Player
2013-06-23 23:40:41 ----D---- C:\Windows\Panther
2013-06-23 23:40:41 ----D---- C:\Windows\debug
2013-06-23 23:39:17 ----D---- C:\Program Files\CCleaner
2013-06-15 03:17:58 ----D---- C:\Windows\winsxs
2013-06-15 03:16:31 ----D---- C:\Windows\SysWOW64
2013-06-15 03:16:31 ----D---- C:\Program Files\Internet Explorer
2013-06-15 03:16:31 ----D---- C:\Program Files (x86)\Internet Explorer
2013-06-15 03:00:53 ----D---- C:\Windows\system32\catroot2
2013-06-15 03:00:53 ----D---- C:\Windows\system32\catroot
2013-06-13 11:47:01 ----D---- C:\Windows\rescache
2013-06-13 03:23:23 ----D---- C:\Windows\system32\drivers
2013-06-13 03:23:22 ----D---- C:\Windows\SYSWOW64\sk-SK
2013-06-13 03:23:22 ----D---- C:\Windows\SYSWOW64\en-US
2013-06-13 03:23:22 ----D---- C:\Windows\system32\sk-SK
2013-06-13 03:23:22 ----D---- C:\Windows\system32\en-US
2013-06-13 03:02:04 ----A---- C:\Windows\system32\MRT.exe
2013-06-12 12:56:30 ----D---- C:\ProgramData\Skype
2013-06-12 12:56:28 ----RD---- C:\Program Files (x86)\Skype
2013-06-11 22:44:28 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-06-09 12:28:26 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-06-09 12:28:25 ----D---- C:\Program Files (x86)\EA GAMES
2013-06-08 02:33:15 ----D---- C:\Windows\Tasks
2013-06-08 02:33:14 ----D---- C:\Program Files (x86)\AVG Secure Search
2013-06-07 16:14:11 ----HD---- C:\ProgramData
2013-06-07 03:55:30 ----D---- C:\Users\Tomáš\AppData\Roaming\BrowserCompanion
2013-06-07 03:53:30 ----D---- C:\Program Files (x86)\Common Files
2013-06-04 21:18:16 ----RSD---- C:\Windows\Fonts
2013-05-29 22:19:57 ----D---- C:\Games
2013-05-23 10:25:35 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-05-21 17:41:51 ----D---- C:\Users\Tomáš\AppData\Roaming\TeamViewer
2013-05-21 17:41:23 ----D---- C:\Program Files (x86)\TeamViewer
2013-05-21 17:30:05 ----D---- C:\Program Files (x86)\Garena Plus
2013-05-17 03:56:16 ----RSD---- C:\Windows\assembly
2013-05-17 03:56:16 ----D---- C:\Windows\Microsoft.NET
2013-05-16 12:51:23 ----D---- C:\Windows\AppPatch
2013-05-16 11:15:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-05-16 01:02:53 ----D---- C:\Users\Tomáš\AppData\Roaming\vlc
2013-05-07 10:00:00 ----D---- C:\Program Files (x86)\Windows Live
2013-05-07 09:59:22 ----D---- C:\ProgramData\DriverGenius
2013-05-07 09:59:21 ----SHD---- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2013-05-07 09:46:07 ----D---- C:\ProgramData\TuneUp Software
2013-05-07 09:46:06 ----D---- C:\Users\Tomáš\AppData\Roaming\TuneUp Software
2013-05-01 22:33:57 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2013-05-01 22:33:09 ----D---- C:\Program Files (x86)\YourFileDownloader
2013-04-29 20:45:45 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2013-04-09 16:53:59 ----D---- C:\Users\Tomáš\AppData\Roaming\DivX
2013-04-07 13:16:06 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2013-04-06 16:00:02 ----D---- C:\Program Files (x86)\Origin
2013-03-30 04:21:32 ----D---- C:\Windows\SYSWOW64\migration
2013-03-30 04:21:31 ----D---- C:\Windows\system32\migration
2013-03-30 04:21:31 ----D---- C:\Windows\PolicyDefinitions
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\java.exe
2013-03-29 11:11:34 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-03-29 11:11:33 ----D---- C:\Program Files (x86)\Java
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSHA;AVGIDSHA; C:\Windows\system32\DRIVERS\avgidsha.sys [2012-10-15 63328]
R0 Avgloga;AVG Logging Driver; C:\Windows\system32\DRIVERS\avgloga.sys [2012-09-21 225120]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2012-11-16 111968]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2012-09-14 40800]
R0 nvstor64;nvstor64; C:\Windows\system32\DRIVERS\nvstor64.sys [2010-04-08 244328]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-08-04 13440]
R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6a.sys [2012-09-04 50296]
R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdrivera.sys [2012-10-22 154464]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2012-10-02 185696]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2012-09-21 200032]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2013-05-21 45856]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-12-13 279616]
R2 AODDriver4.01;AODDriver4.01; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-12-19 11278336]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-12-19 552960]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-11-06 96256]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6264.sys [2010-08-12 350952]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2010-05-15 1327520]
S2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
S3 1394hub;1394 Enabled Hub; C:\Windows\syswow64\svchost.exe [2009-07-14 20992]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-05-13 36328]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Users\Tomáš\Desktop\programy\Garena\safedrv.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 146920]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-12-19 240640]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-12-19 361984]
R2 avgfws;AVG Firewall; C:\Program Files (x86)\AVG\AVG2013\avgfws.exe [2012-12-10 1342024]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [2012-11-16 5814904]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [2012-10-22 196664]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-06-15 249648]
R2 BCUService;Browser Configuration Utility Service; C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe [2010-03-05 235752]
R2 ForceWare Intelligent Application Manager (IAM);ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [2010-01-21 496232]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-05-15 2467664]
R2 nSvcIp;ForceWare IP service; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [2010-01-21 209000]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-05-20 76888]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-04-23 3574624]
R2 vToolbarUpdater15.2.0;vToolbarUpdater15.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.2.0\ToolbarUpdater.exe [2013-05-21 1015984]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-17 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-06-03 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-11 256904]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-07-07 195336]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-17 135664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-05-22 117144]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-06-07 543656]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-12-11 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------