Stránka 1 z 5

preventikva

Napsal: 13 srp 2013 20:22
od selkir
Dobrý den, chtěl bych poprosit o preventivku. Především bych byl rád, kdyby byl odstraněn problém, že při startu Chromu, mi krom stránky Google, naskočí i nějaký prapodivný search engine. Díky moc.

Re: preventikva

Napsal: 13 srp 2013 20:22
od selkir
Logfile of random's system information tool 1.09 (written by random/random)
Run by Vitek at 2013-08-13 21:18:46
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 404 GB (88%) free of 459 GB
Total RAM: 3887 MB (48% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:18:48, on 13.8.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16635)
Boot mode: Normal

Running processes:
c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\trend micro\Vitek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.searchesplace.info/?pi ... Z&unqvl=30
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.searchesplace.info/?pi ... Z&unqvl=30
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [estar] C:\System.Sav\Util\HideDOS.EXE C:\System.Sav\util\estartwk\twk764.bat
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://c:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {538793D5-659C-4639-A56C-A179AD87ED44} (VPNWeb Control) - vpnweb.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs:
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ActivIdentity Shared Store Service (ac.sharedstore) - ActivIdentity - C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: DEBridge - McAfee, Inc. - c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - McAfee, Inc. - c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: RoxMediaDB10 - Sonic Solutions - c:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: Cisco AnyConnect Secure Mobility Agent (vpnagent) - Cisco Systems, Inc. - C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10770 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
"c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe"
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
winlogon.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
"C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe"
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\system32\WLANExt.exe 27200640
\??\C:\windows\system32\conhost.exe "-68175362-1053175937-2083523541149891785618872578185213638-199127876-230385417
taskeng.exe {502046F0-E3A9-4EE7-81B5-BE00FE785169}
C:\windows\System32\spoolsv.exe
"C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
"C:\Program Files\ActivIdentity\ActivClient\acevents.exe"
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
"c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\servicing\TrustedInstaller.exe
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\windows\Explorer.EXE
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe" /hidden
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\ActivIdentity\ActivClient\acevents.exe"
"C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" -startup
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {D9C983DE-1762-4FCC-A391-C27012FCEEF5}
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Bluetooth®: Disabled
WLAN: Disabled</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_off.ico</IconPath><ID>755865175</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6132.0.1290255255\1512696499" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,20 --gpu-vendor-id=0x8086 --gpu-device-id=0x0046 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2119 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_2/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/ --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6132.3.1639425522\1215431126" /prefetch:673131151
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="6132.4.1518686483\507537689" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_2/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6132.6.1191546559\1845226941" /prefetch:673131151
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_2/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6132.7.1543219839\1720079008" /prefetch:673131151
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_2/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6132.10.2034194354\2102293435" /prefetch:673131151
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_2/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="6132.11.153935745\1851429645" /prefetch:673131151
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Vitek\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002Core.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002UA.job
C:\windows\tasks\HPCeeScheduleForVitek.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP ProtectTools Security Manager Extension - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll [2010-04-02 2132232]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-07-14 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-07-14 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2010-01-08 186904]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-04-05 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"acevents"=C:\Program Files\ActivIdentity\ActivClient\acevents.exe [2009-06-04 196648]
""= []
"accrdsub"=C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [2009-06-04 483880]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-04-26 161304]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-04-26 386584]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-04-26 413208]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe [2013-01-14 116648]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-08-28 3671904]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe [2013-01-14 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-06-28 2255184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\\Phone\Skype.exe [2013-07-25 20684656]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"estar"=C:\System.Sav\Util\HideDOS.EXE [2006-11-29 77824]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2010-03-04 111640]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-04-21 269824]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.com - open -

======List of files/folders created in the last 1 month======

2013-08-12 19:34:46 ----RD---- C:\Program Files (x86)\Skype
2013-08-12 19:21:57 ----D---- C:\Users\Vitek\AppData\Roaming\Skype
2013-08-11 14:06:16 ----A---- C:\windows\SYSWOW64\Access.dat
2013-08-11 14:00:01 ----D---- C:\Users\Vitek\AppData\Roaming\Tunngle
2013-08-11 14:00:00 ----A---- C:\windows\system32\drivers\tap0901t.sys
2013-08-11 11:04:04 ----D---- C:\Program Files (x86)\Pokemon PC
2013-08-11 10:53:54 ----D---- C:\ProgramData\StarApp
2013-08-11 10:53:21 ----D---- C:\ProgramData\saovvenusshaRe
2013-08-10 20:03:59 ----A---- C:\Program Files (x86)\1bomb.ini
2013-08-03 21:01:47 ----D---- C:\windows\SYSWOW64\Adobe
2013-07-28 20:31:07 ----D---- C:\Program Files (x86)\LibreOffice 4.0
2013-07-27 16:03:07 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-07-27 16:03:07 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-07-27 16:03:07 ----A---- C:\windows\system32\RdpGroupPolicyExtension.dll
2013-07-27 16:03:02 ----A---- C:\windows\system32\drivers\rdpvideominiport.sys
2013-07-27 16:03:01 ----A---- C:\windows\system32\drivers\TsUsbFlt.sys
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\wksprtPS.dll
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\tsgqec.dll
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\rdpendp_winip.dll
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\MsRdpWebAccess.dll
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\aaclient.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\wksprtPS.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\TsUsbGDCoInstaller.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\tsgqec.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\MsRdpWebAccess.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\aaclient.dll
2013-07-27 16:02:54 ----A---- C:\windows\SYSWOW64\mstsc.exe
2013-07-27 16:02:54 ----A---- C:\windows\system32\wksprt.exe
2013-07-27 16:02:54 ----A---- C:\windows\system32\TSWbPrxy.exe
2013-07-27 16:02:54 ----A---- C:\windows\system32\rdpudd.dll
2013-07-27 16:02:54 ----A---- C:\windows\system32\rdpendp_winip.dll
2013-07-27 16:02:54 ----A---- C:\windows\system32\mstsc.exe
2013-07-27 16:02:53 ----A---- C:\windows\SYSWOW64\mstscax.dll
2013-07-27 16:02:53 ----A---- C:\windows\system32\rdpcorets.dll
2013-07-27 16:02:52 ----A---- C:\windows\system32\mstscax.dll
2013-07-27 15:52:09 ----A---- C:\windows\system32\wwansvc.dll
2013-07-27 15:52:09 ----A---- C:\windows\system32\wwanprotdim.dll
2013-07-27 15:52:05 ----A---- C:\windows\system32\shell32.dll
2013-07-27 15:52:04 ----A---- C:\windows\system32\authui.dll
2013-07-27 15:52:03 ----A---- C:\windows\SYSWOW64\shell32.dll
2013-07-27 15:52:03 ----A---- C:\windows\system32\shdocvw.dll
2013-07-27 15:52:02 ----A---- C:\windows\system32\consent.exe
2013-07-27 15:52:01 ----A---- C:\windows\SYSWOW64\shdocvw.dll
2013-07-27 15:52:01 ----A---- C:\windows\SYSWOW64\authui.dll
2013-07-27 15:52:01 ----A---- C:\windows\system32\appinfo.dll
2013-07-27 15:51:53 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-07-27 15:51:52 ----A---- C:\windows\SYSWOW64\qdvd.dll
2013-07-27 15:51:52 ----A---- C:\windows\system32\qdvd.dll
2013-07-27 15:51:47 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-07-27 15:51:47 ----A---- C:\windows\system32\schannel.dll
2013-07-27 15:51:47 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-07-27 15:51:47 ----A---- C:\windows\system32\drivers\cng.sys
2013-07-27 15:51:46 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-07-27 15:51:46 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-07-27 15:51:46 ----A---- C:\windows\system32\lsasrv.dll
2013-07-27 15:51:39 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2013-07-27 15:51:39 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-07-27 15:51:39 ----A---- C:\windows\system32\cdd.dll
2013-07-27 15:51:37 ----A---- C:\windows\SYSWOW64\dhcpcsvc6.dll
2013-07-27 15:51:37 ----A---- C:\windows\SYSWOW64\dhcpcore6.dll
2013-07-27 15:51:37 ----A---- C:\windows\system32\dhcpcsvc6.dll
2013-07-27 15:51:37 ----A---- C:\windows\system32\dhcpcore6.dll
2013-07-27 15:51:32 ----A---- C:\windows\system32\drivers\ndis.sys
2013-07-27 15:51:31 ----A---- C:\windows\system32\drivers\RNDISMP.sys
2013-07-27 15:51:26 ----A---- C:\windows\SYSWOW64\ncsi.dll
2013-07-27 15:51:26 ----A---- C:\windows\system32\ncsi.dll
2013-07-27 15:51:24 ----A---- C:\windows\system32\netcorehc.dll
2013-07-27 15:51:22 ----A---- C:\windows\system32\nlasvc.dll
2013-07-27 15:51:22 ----A---- C:\windows\system32\iphlpsvc.dll
2013-07-27 15:51:21 ----A---- C:\windows\SYSWOW64\nlaapi.dll
2013-07-27 15:51:21 ----A---- C:\windows\SYSWOW64\netevent.dll
2013-07-27 15:51:21 ----A---- C:\windows\SYSWOW64\netcorehc.dll
2013-07-27 15:51:21 ----A---- C:\windows\system32\nlaapi.dll
2013-07-27 15:51:21 ----A---- C:\windows\system32\netevent.dll
2013-07-27 15:51:21 ----A---- C:\windows\system32\drivers\tcpipreg.sys
2013-07-27 15:49:02 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-07-27 15:49:02 ----A---- C:\windows\SYSWOW64\certutil.exe
2013-07-27 15:49:02 ----A---- C:\windows\system32\crypt32.dll
2013-07-27 15:49:02 ----A---- C:\windows\system32\certutil.exe
2013-07-27 15:49:01 ----A---- C:\windows\SYSWOW64\cryptsvc.dll
2013-07-27 15:49:01 ----A---- C:\windows\SYSWOW64\cryptnet.dll
2013-07-27 15:49:01 ----A---- C:\windows\SYSWOW64\certenc.dll
2013-07-27 15:49:01 ----A---- C:\windows\system32\cryptsvc.dll
2013-07-27 15:49:01 ----A---- C:\windows\system32\cryptnet.dll
2013-07-27 15:49:01 ----A---- C:\windows\system32\certenc.dll
2013-07-27 15:48:50 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2013-07-27 15:48:50 ----A---- C:\windows\system32\WindowsCodecs.dll
2013-07-27 15:48:37 ----A---- C:\windows\SYSWOW64\DWrite.dll
2013-07-27 15:48:37 ----A---- C:\windows\system32\DWrite.dll
2013-07-27 15:48:36 ----A---- C:\windows\SYSWOW64\d3d11.dll
2013-07-27 15:48:36 ----A---- C:\windows\system32\d3d11.dll
2013-07-27 15:48:22 ----A---- C:\windows\system32\OxpsConverter.exe
2013-07-27 15:48:20 ----A---- C:\windows\system32\win32k.sys
2013-07-27 15:48:16 ----A---- C:\windows\SYSWOW64\cryptdlg.dll
2013-07-27 15:48:16 ----A---- C:\windows\system32\cryptdlg.dll
2013-07-27 15:48:14 ----A---- C:\windows\SYSWOW64\qedit.dll
2013-07-27 15:48:14 ----A---- C:\windows\system32\qedit.dll
2013-07-27 15:48:13 ----A---- C:\windows\SYSWOW64\WMVDECOD.DLL
2013-07-27 15:48:13 ----A---- C:\windows\system32\WMVDECOD.DLL
2013-07-27 15:48:12 ----A---- C:\windows\SYSWOW64\win32spl.dll
2013-07-27 15:48:12 ----A---- C:\windows\system32\win32spl.dll
2013-07-14 14:27:49 ----A---- C:\windows\system32\IEUDINIT.EXE
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\url.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\occache.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-07-14 14:22:47 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\wininet.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\wextract.exe
2013-07-14 14:22:47 ----A---- C:\windows\system32\webcheck.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\vbscript.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\urlmon.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\url.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-07-14 14:22:47 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-07-14 14:22:47 ----A---- C:\windows\system32\msrating.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\msls31.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\mshtmled.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\msfeeds.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\licmgr10.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\jsproxy.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\inseng.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\iexpress.exe
2013-07-14 14:22:47 ----A---- C:\windows\system32\iesetup.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\iertutil.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\iernonce.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\iedkcs32.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\ieapfltr.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\ieapfltr.dat
2013-07-14 14:22:47 ----A---- C:\windows\system32\ie4uinit.exe
2013-07-14 14:22:47 ----A---- C:\windows\system32\icardie.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\elshyph.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\dxtrans.dll
2013-07-14 14:22:47 ----A---- C:\windows\system32\dxtmsft.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-07-14 14:22:46 ----A---- C:\windows\system32\pngfilt.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\occache.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\mshtmler.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\mshtml.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\mshta.exe
2013-07-14 14:22:46 ----A---- C:\windows\system32\msfeedssync.exe
2013-07-14 14:22:46 ----A---- C:\windows\system32\msfeedsbs.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\jscript9.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\jscript.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\imgutil.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\ieUnatt.exe
2013-07-14 14:22:46 ----A---- C:\windows\system32\ieui.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\iesysprep.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\iepeers.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\ieframe.dll
2013-07-14 14:22:46 ----A---- C:\windows\system32\IEAdvpack.dll
2013-07-14 14:21:44 ----A---- C:\windows\system32\taskhost.exe
2013-07-14 14:20:54 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-07-14 14:20:54 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-07-14 14:20:54 ----A---- C:\windows\SYSWOW64\XpsPrint.dll
2013-07-14 14:20:54 ----A---- C:\windows\SYSWOW64\XpsGdiConverter.dll
2013-07-14 14:20:54 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-07-14 14:20:54 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2013-07-14 14:20:54 ----A---- C:\windows\system32\XpsPrint.dll
2013-07-14 14:20:54 ----A---- C:\windows\system32\XpsGdiConverter.dll
2013-07-14 14:20:54 ----A---- C:\windows\system32\WMPhoto.dll
2013-07-14 14:20:54 ----A---- C:\windows\system32\msmpeg2vdec.dll
2013-07-14 14:20:54 ----A---- C:\windows\system32\dxgi.dll
2013-07-14 14:20:54 ----A---- C:\windows\system32\d3d10warp.dll
2013-07-14 14:20:54 ----A---- C:\windows\system32\d2d1.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\WindowsCodecsExt.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\UIAnimation.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\dxgi.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\d3d10level9.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\d3d10core.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\d3d10_1core.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\d3d10_1.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\d3d10.dll
2013-07-14 14:20:53 ----A---- C:\windows\SYSWOW64\d2d1.dll
2013-07-14 14:20:53 ----A---- C:\windows\system32\WindowsCodecsExt.dll
2013-07-14 14:20:53 ----A---- C:\windows\system32\UIAnimation.dll
2013-07-14 14:20:53 ----A---- C:\windows\system32\FntCache.dll
2013-07-14 14:20:53 ----A---- C:\windows\system32\d3d10level9.dll
2013-07-14 14:20:53 ----A---- C:\windows\system32\d3d10core.dll
2013-07-14 14:20:53 ----A---- C:\windows\system32\d3d10_1core.dll
2013-07-14 14:20:53 ----A---- C:\windows\system32\d3d10_1.dll
2013-07-14 14:20:53 ----A---- C:\windows\system32\d3d10.dll
2013-07-14 14:08:01 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-07-14 14:01:20 ----D---- C:\windows\system32\SPReview
2013-07-14 13:22:05 ----A---- C:\windows\SYSWOW64\mobsync.exe
2013-07-14 13:22:05 ----A---- C:\windows\system32\mprddm.dll
2013-07-14 13:22:05 ----A---- C:\windows\system32\mobsync.exe
2013-07-14 13:22:04 ----A---- C:\windows\SYSWOW64\MSAC3ENC.DLL
2013-07-14 13:22:04 ----A---- C:\windows\SYSWOW64\MMDevAPI.dll
2013-07-14 13:22:03 ----A---- C:\windows\SYSWOW64\mstask.dll
2013-07-14 13:22:03 ----A---- C:\windows\SYSWOW64\mscories.dll
2013-07-14 13:22:03 ----A---- C:\windows\SYSWOW64\KBDLT1.DLL
2013-07-14 13:22:03 ----A---- C:\windows\SYSWOW64\KBDINTEL.DLL
2013-07-14 13:22:03 ----A---- C:\windows\SYSWOW64\KBDCZ1.DLL
2013-07-14 13:22:03 ----A---- C:\windows\system32\msdri.dll
2013-07-14 13:22:03 ----A---- C:\windows\system32\KBDBLR.DLL
2013-07-14 13:22:03 ----A---- C:\windows\system32\drivers\msiscsi.sys
2013-07-14 13:22:02 ----A---- C:\windows\SYSWOW64\raschap.dll
2013-07-14 13:22:02 ----A---- C:\windows\SYSWOW64\provsvc.dll
2013-07-14 13:22:02 ----A---- C:\windows\SYSWOW64\MediaMetadataHandler.dll
2013-07-14 13:22:02 ----A---- C:\windows\SYSWOW64\lsmproxy.dll
2013-07-14 13:22:02 ----A---- C:\windows\SYSWOW64\logagent.exe
2013-07-14 13:22:02 ----A---- C:\windows\SYSWOW64\iTVData.dll
2013-07-14 13:22:02 ----A---- C:\windows\system32\itircl.dll
2013-07-14 13:22:02 ----A---- C:\windows\system32\inetmib1.dll
2013-07-14 13:22:02 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2013-07-14 13:22:01 ----A---- C:\windows\SYSWOW64\schtasks.exe
2013-07-14 13:22:01 ----A---- C:\windows\SYSWOW64\samcli.dll
2013-07-14 13:22:01 ----A---- C:\windows\SYSWOW64\Robocopy.exe
2013-07-14 13:22:01 ----A---- C:\windows\SYSWOW64\RMActivate.exe
2013-07-14 13:22:01 ----A---- C:\windows\SYSWOW64\rdprefdrvapi.dll
2013-07-14 13:22:01 ----A---- C:\windows\SYSWOW64\RacEngn.dll
2013-07-14 13:22:01 ----A---- C:\windows\SYSWOW64\propsys.dll
2013-07-14 13:22:01 ----A---- C:\windows\system32\sdcpl.dll
2013-07-14 13:22:01 ----A---- C:\windows\system32\Ribbons.scr
2013-07-14 13:22:01 ----A---- C:\windows\system32\RDPENCDD.dll
2013-07-14 13:22:01 ----A---- C:\windows\system32\rdpclip.exe
2013-07-14 13:22:01 ----A---- C:\windows\system32\printui.dll
2013-07-14 13:22:01 ----A---- C:\windows\system32\pnidui.dll
2013-07-14 13:22:01 ----A---- C:\windows\system32\pifmgr.dll
2013-07-14 13:22:01 ----A---- C:\windows\system32\drivers\scsiport.sys
2013-07-14 13:22:00 ----A---- C:\windows\SYSWOW64\ReAgent.dll
2013-07-14 13:22:00 ----A---- C:\windows\SYSWOW64\nlsbres.dll
2013-07-14 13:22:00 ----A---- C:\windows\SYSWOW64\netiougc.exe
2013-07-14 13:22:00 ----A---- C:\windows\SYSWOW64\netiohlp.dll
2013-07-14 13:22:00 ----A---- C:\windows\SYSWOW64\ncryptui.dll
2013-07-14 13:22:00 ----A---- C:\windows\system32\nslookup.exe
2013-07-14 13:22:00 ----A---- C:\windows\system32\netshell.dll
2013-07-14 13:22:00 ----A---- C:\windows\system32\netlogon.dll
2013-07-14 13:22:00 ----A---- C:\windows\system32\netjoin.dll
2013-07-14 13:22:00 ----A---- C:\windows\system32\MultiDigiMon.exe
2013-07-14 13:21:59 ----A---- C:\windows\SYSWOW64\perfmon.exe
2013-07-14 13:21:59 ----A---- C:\windows\SYSWOW64\pdhui.dll
2013-07-14 13:21:59 ----A---- C:\windows\SYSWOW64\olepro32.dll
2013-07-14 13:21:59 ----A---- C:\windows\SYSWOW64\ntlanman.dll
2013-07-14 13:21:59 ----A---- C:\windows\SYSWOW64\netcfgx.dll
2013-07-14 13:21:59 ----A---- C:\windows\system32\OobeFldr.dll
2013-07-14 13:21:59 ----A---- C:\windows\system32\CertPolEng.dll
2013-07-14 13:21:58 ----A---- C:\windows\SYSWOW64\cmd.exe
2013-07-14 13:21:58 ----A---- C:\windows\SYSWOW64\C_ISCII.DLL
2013-07-14 13:21:58 ----A---- C:\windows\system32\drivers\cdrom.sys
2013-07-14 13:21:58 ----A---- C:\windows\system32\certmgr.dll
2013-07-14 13:21:58 ----A---- C:\windows\system32\certcli.dll
2013-07-14 13:21:57 ----A---- C:\windows\SYSWOW64\cryptui.dll
2013-07-14 13:21:57 ----A---- C:\windows\system32\diagperf.dll
2013-07-14 13:21:57 ----A---- C:\windows\system32\dbghelp.dll
2013-07-14 13:21:57 ----A---- C:\windows\system32\dbgeng.dll
2013-07-14 13:21:57 ----A---- C:\windows\system32\d3d9.dll
2013-07-14 13:21:56 ----A---- C:\windows\system32\comdlg32.dll
2013-07-14 13:21:55 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-07-14 13:21:55 ----A---- C:\windows\SYSWOW64\activeds.dll
2013-07-14 13:21:55 ----A---- C:\windows\system32\bcdsrv.dll
2013-07-14 13:21:55 ----A---- C:\windows\system32\bcdedit.exe
2013-07-14 13:21:55 ----A---- C:\windows\system32\AuxiliaryDisplayServices.dll
2013-07-14 13:21:55 ----A---- C:\windows\system32\aepdu.dll
2013-07-14 13:21:55 ----A---- C:\windows\system32\aeinv.dll
2013-07-14 13:21:55 ----A---- C:\windows\system32\AdmTmpl.dll
2013-07-14 13:21:55 ----A---- C:\windows\system32\acppage.dll
2013-07-14 13:21:54 ----A---- C:\windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2013-07-14 13:21:54 ----A---- C:\windows\SYSWOW64\AudioSes.dll
2013-07-14 13:21:54 ----A---- C:\windows\SYSWOW64\asycfilt.dll
2013-07-14 13:21:54 ----A---- C:\windows\system32\drivers\HdAudio.sys
2013-07-14 13:21:54 ----A---- C:\windows\system32\drivers\hdaudbus.sys
2013-07-14 13:21:54 ----A---- C:\windows\system32\drivers\appid.sys
2013-07-14 13:21:53 ----A---- C:\windows\SYSWOW64\imapi2.dll
2013-07-14 13:21:53 ----A---- C:\windows\system32\imapi2fs.dll
2013-07-14 13:21:53 ----A---- C:\windows\system32\ftp.exe
2013-07-14 13:21:53 ----A---- C:\windows\system32\drivers\http.sys
2013-07-14 13:21:53 ----A---- C:\windows\system32\drivers\HpSAMD.sys
2013-07-14 13:21:52 ----A---- C:\windows\SYSWOW64\evr.dll
2013-07-14 13:21:52 ----A---- C:\windows\SYSWOW64\dskquoui.dll
2013-07-14 13:21:52 ----A---- C:\windows\SYSWOW64\diskpart.exe
2013-07-14 13:21:52 ----A---- C:\windows\system32\elsTrans.dll
2013-07-14 13:21:52 ----A---- C:\windows\system32\Display.dll
2013-07-14 13:21:51 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2013-07-14 13:21:51 ----A---- C:\windows\system32\SearchFolder.dll
2013-07-14 13:21:51 ----A---- C:\windows\system32\Faultrep.dll
2013-07-14 13:21:51 ----A---- C:\windows\system32\ExplorerFrame.dll
2013-07-14 13:21:50 ----A---- C:\windows\SYSWOW64\systemcpl.dll
2013-07-14 13:21:50 ----A---- C:\windows\system32\tscfgwmi.dll
2013-07-14 13:21:49 ----A---- C:\windows\SYSWOW64\themecpl.dll
2013-07-14 13:21:49 ----A---- C:\windows\SYSWOW64\tcpipcfg.dll
2013-07-14 13:21:49 ----A---- C:\windows\SYSWOW64\sppinst.dll
2013-07-14 13:21:49 ----A---- C:\windows\SYSWOW64\spp.dll
2013-07-14 13:21:49 ----A---- C:\windows\SYSWOW64\spbcd.dll
2013-07-14 13:21:49 ----A---- C:\windows\system32\thumbcache.dll
2013-07-14 13:21:49 ----A---- C:\windows\system32\taskschd.dll
2013-07-14 13:21:49 ----A---- C:\windows\system32\tabcal.exe
2013-07-14 13:21:49 ----A---- C:\windows\system32\sppsvc.exe
2013-07-14 13:21:49 ----A---- C:\windows\system32\spp.dll
2013-07-14 13:21:49 ----A---- C:\windows\system32\shwebsvc.dll
2013-07-14 13:21:48 ----A---- C:\windows\SYSWOW64\StructuredQuery.dll
2013-07-14 13:21:48 ----A---- C:\windows\SYSWOW64\srvcli.dll
2013-07-14 13:21:48 ----A---- C:\windows\SYSWOW64\shsetup.dll
2013-07-14 13:21:48 ----A---- C:\windows\SYSWOW64\shlwapi.dll
2013-07-14 13:21:48 ----A---- C:\windows\system32\sysmain.dll
2013-07-14 13:21:48 ----A---- C:\windows\system32\sysclass.dll
2013-07-14 13:21:47 ----A---- C:\windows\SYSWOW64\wmpsrcwp.dll
2013-07-14 13:21:47 ----A---- C:\windows\SYSWOW64\wmpmde.dll
2013-07-14 13:21:47 ----A---- C:\windows\system32\WMSPDMOD.DLL
2013-07-14 13:21:47 ----A---- C:\windows\system32\wmpeffects.dll
2013-07-14 13:21:47 ----A---- C:\windows\system32\wmdrmnet.dll
2013-07-14 13:21:47 ----A---- C:\windows\system32\wmdrmdev.dll
2013-07-14 13:21:47 ----A---- C:\windows\system32\WMADMOD.DLL
2013-07-14 13:21:47 ----A---- C:\windows\system32\wkssvc.dll
2013-07-14 13:21:47 ----A---- C:\windows\system32\srchadmin.dll
2013-07-14 13:21:47 ----A---- C:\windows\system32\sqmapi.dll
2013-07-14 13:21:47 ----A---- C:\windows\system32\drivers\winusb.sys
2013-07-14 13:21:46 ----A---- C:\windows\SYSWOW64\XpsRasterService.dll
2013-07-14 13:21:46 ----A---- C:\windows\SYSWOW64\wvc.dll
2013-07-14 13:21:46 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2013-07-14 13:21:46 ----A---- C:\windows\SYSWOW64\wuapp.exe
2013-07-14 13:21:46 ----A---- C:\windows\SYSWOW64\wtsapi32.dll
2013-07-14 13:21:46 ----A---- C:\windows\SYSWOW64\WPDSp.dll
2013-07-14 13:21:46 ----A---- C:\windows\system32\wwanconn.dll
2013-07-14 13:21:46 ----A---- C:\windows\system32\wsqmcons.exe
2013-07-14 13:21:46 ----A---- C:\windows\system32\wpdwcn.dll
2013-07-14 13:21:46 ----A---- C:\windows\system32\wpd_ci.dll
2013-07-14 13:21:46 ----A---- C:\windows\system32\winhttp.dll
2013-07-14 13:21:45 ----A---- C:\windows\twain_32.dll
2013-07-14 13:21:45 ----A---- C:\windows\SYSWOW64\untfs.dll
2013-07-14 13:21:45 ----A---- C:\windows\SYSWOW64\unlodctr.exe
2013-07-14 13:21:45 ----A---- C:\windows\SYSWOW64\tzutil.exe
2013-07-14 13:21:45 ----A---- C:\windows\system32\wsdchngr.dll
2013-07-14 13:21:45 ----A---- C:\windows\system32\ws2_32.dll
2013-07-14 13:21:45 ----A---- C:\windows\system32\VPCWizard.exe
2013-07-14 13:21:45 ----A---- C:\windows\system32\userinit.exe
2013-07-14 13:21:45 ----A---- C:\windows\system32\umrdp.dll
2013-07-14 13:21:45 ----A---- C:\windows\system32\umb.dll
2013-07-14 13:21:45 ----A---- C:\windows\system32\drivers\volsnap.sys
2013-07-14 13:21:44 ----A---- C:\windows\SYSWOW64\wiadefui.dll
2013-07-14 13:21:44 ----A---- C:\windows\system32\WerFaultSecure.exe
2013-07-14 13:21:44 ----A---- C:\windows\system32\VSSVC.exe
2013-07-14 13:21:44 ----A---- C:\windows\system32\vssapi.dll
2013-07-14 13:21:44 ----A---- C:\windows\system32\vss_ps.dll
2013-07-14 13:21:44 ----A---- C:\windows\system32\drivers\umbus.sys
2013-07-14 13:21:43 ----A---- C:\windows\SYSWOW64\wdc.dll
2013-07-14 13:21:43 ----A---- C:\windows\SYSWOW64\wavemsp.dll
2013-07-14 13:21:43 ----A---- C:\windows\SYSWOW64\shacct.dll
2013-07-14 13:21:43 ----A---- C:\windows\SYSWOW64\setupugc.exe
2013-07-14 13:21:43 ----A---- C:\windows\SYSWOW64\setupapi.dll
2013-07-14 13:21:43 ----A---- C:\windows\SYSWOW64\secproc.dll
2013-07-14 13:21:43 ----A---- C:\windows\SYSWOW64\mfc40u.dll
2013-07-14 13:21:43 ----A---- C:\windows\system32\mimefilt.dll
2013-07-14 13:21:43 ----A---- C:\windows\system32\mf.dll
2013-07-14 13:21:43 ----A---- C:\windows\system32\Mcx2Svc.dll
2013-07-14 13:21:42 ----A---- C:\windows\SYSWOW64\mscorier.dll
2013-07-14 13:21:42 ----A---- C:\windows\SYSWOW64\mprapi.dll
2013-07-14 13:21:42 ----A---- C:\windows\SYSWOW64\itircl.dll
2013-07-14 13:21:42 ----A---- C:\windows\system32\mscorier.dll
2013-07-14 13:21:42 ----A---- C:\windows\system32\MSAC3ENC.DLL
2013-07-14 13:21:42 ----A---- C:\windows\system32\mfps.dll
2013-07-14 13:21:42 ----A---- C:\windows\system32\MFPlay.dll
2013-07-14 13:21:42 ----A---- C:\windows\system32\mfds.dll
2013-07-14 13:21:41 ----A---- C:\windows\SYSWOW64\nshipsec.dll
2013-07-14 13:21:41 ----A---- C:\windows\SYSWOW64\logoncli.dll
2013-07-14 13:21:41 ----A---- C:\windows\SYSWOW64\logman.exe
2013-07-14 13:21:41 ----A---- C:\windows\SYSWOW64\KBDSF.DLL
2013-07-14 13:21:41 ----A---- C:\windows\system32\mblctr.exe
2013-07-14 13:21:41 ----A---- C:\windows\system32\luainstall.dll
2013-07-14 13:21:41 ----A---- C:\windows\system32\LogonUI.exe
2013-07-14 13:21:41 ----A---- C:\windows\system32\logoff.exe
2013-07-14 13:21:41 ----A---- C:\windows\system32\KBDUS.DLL
2013-07-14 13:21:41 ----A---- C:\windows\system32\KBDTUF.DLL
2013-07-14 13:21:41 ----A---- C:\windows\system32\KBDINBEN.DLL
2013-07-14 13:21:41 ----A---- C:\windows\system32\KBDGKL.DLL
2013-07-14 13:21:41 ----A---- C:\windows\system32\IPSECSVC.DLL
2013-07-14 13:21:40 ----A---- C:\windows\SYSWOW64\OnLineIDCpl.dll
2013-07-14 13:21:40 ----A---- C:\windows\SYSWOW64\ocsetup.exe
2013-07-14 13:21:40 ----A---- C:\windows\SYSWOW64\ocsetapi.dll
2013-07-14 13:21:40 ----A---- C:\windows\system32\OpcServices.dll
2013-07-14 13:21:40 ----A---- C:\windows\system32\OnLineIDCpl.dll
2013-07-14 13:21:40 ----A---- C:\windows\system32\ole32.dll
2013-07-14 13:21:40 ----A---- C:\windows\system32\netutils.dll
2013-07-14 13:21:39 ----A---- C:\windows\SYSWOW64\msinfo32.exe
2013-07-14 13:21:38 ----A---- C:\windows\SYSWOW64\NAPCRYPT.DLL
2013-07-14 13:21:38 ----A---- C:\windows\SYSWOW64\MuiUnattend.exe
2013-07-14 13:21:38 ----A---- C:\windows\SYSWOW64\msihnd.dll
2013-07-14 13:21:38 ----A---- C:\windows\system32\NAPCRYPT.DLL
2013-07-14 13:21:38 ----A---- C:\windows\system32\muifontsetup.dll
2013-07-14 13:21:38 ----A---- C:\windows\system32\msrle32.dll
2013-07-14 13:21:38 ----A---- C:\windows\system32\mspbda.dll
2013-07-14 13:21:38 ----A---- C:\windows\system32\msdrm.dll
2013-07-14 13:21:38 ----A---- C:\windows\system32\msdmo.dll
2013-07-14 13:21:38 ----A---- C:\windows\system32\drivers\ndproxy.sys
2013-07-14 13:21:38 ----A---- C:\windows\system32\drivers\msdsm.sys
2013-07-14 13:21:37 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-07-14 13:21:37 ----A---- C:\windows\system32\msvidc32.dll
2013-07-14 13:21:37 ----A---- C:\windows\system32\drivers\csc.sys
2013-07-14 13:21:37 ----A---- C:\windows\system32\CscMig.dll
2013-07-14 13:21:36 ----A---- C:\windows\SYSWOW64\drvstore.dll
2013-07-14 13:21:36 ----A---- C:\windows\SYSWOW64\dot3ui.dll
2013-07-14 13:21:36 ----A---- C:\windows\SYSWOW64\dot3cfg.dll
2013-07-14 13:21:36 ----A---- C:\windows\SYSWOW64\credui.dll
2013-07-14 13:21:36 ----A---- C:\windows\system32\choice.exe
2013-07-14 13:21:36 ----A---- C:\windows\system32\chgusr.exe
2013-07-14 13:21:36 ----A---- C:\windows\system32\dot3cfg.dll
2013-07-14 13:21:36 ----A---- C:\windows\system32\diskraid.exe
2013-07-14 13:21:35 ----A---- C:\windows\SYSWOW64\autochk.exe
2013-07-14 13:21:35 ----A---- C:\windows\SYSWOW64\accessibilitycpl.dll
2013-07-14 13:21:35 ----A---- C:\windows\system32\asycfilt.dll
2013-07-14 13:21:35 ----A---- C:\windows\system32\apphelp.dll
2013-07-14 13:21:35 ----A---- C:\windows\system32\ActionCenterCPL.dll
2013-07-14 13:21:34 ----A---- C:\windows\SYSWOW64\CertEnroll.dll
2013-07-14 13:21:34 ----A---- C:\windows\SYSWOW64\cabview.dll
2013-07-14 13:21:34 ----A---- C:\windows\SYSWOW64\Bubbles.scr
2013-07-14 13:21:34 ----A---- C:\windows\SYSWOW64\AdmTmpl.dll
2013-07-14 13:21:34 ----A---- C:\windows\system32\chgport.exe
2013-07-14 13:21:34 ----A---- C:\windows\system32\chglogon.exe
2013-07-14 13:21:34 ----A---- C:\windows\system32\change.exe
2013-07-14 13:21:34 ----A---- C:\windows\system32\cca.dll
2013-07-14 13:21:34 ----A---- C:\windows\system32\Bubbles.scr
2013-07-14 13:21:33 ----A---- C:\windows\SYSWOW64\gpprefcl.dll
2013-07-14 13:21:33 ----A---- C:\windows\system32\IcCoinstall.dll
2013-07-14 13:21:33 ----A---- C:\windows\system32\iasrad.dll
2013-07-14 13:21:33 ----A---- C:\windows\system32\iasacct.dll
2013-07-14 13:21:33 ----A---- C:\windows\system32\HotStartUserAgent.dll
2013-07-14 13:21:33 ----A---- C:\windows\system32\fveapi.dll
2013-07-14 13:21:33 ----A---- C:\windows\system32\drivers\hwpolicy.sys
2013-07-14 13:21:32 ----A---- C:\windows\SYSWOW64\imm32.dll
2013-07-14 13:21:32 ----A---- C:\windows\SYSWOW64\eapphost.dll
2013-07-14 13:21:32 ----A---- C:\windows\SYSWOW64\eappgnui.dll
2013-07-14 13:21:32 ----A---- C:\windows\SYSWOW64\eapp3hst.dll
2013-07-14 13:21:32 ----A---- C:\windows\SYSWOW64\DxpTaskSync.dll
2013-07-14 13:21:32 ----A---- C:\windows\SYSWOW64\dxdiagn.dll
2013-07-14 13:21:32 ----A---- C:\windows\system32\imapi2.dll
2013-07-14 13:21:32 ----A---- C:\windows\system32\DXPTaskRingtone.dll
2013-07-14 13:21:31 ----A---- C:\windows\SYSWOW64\fde.dll
2013-07-14 13:21:31 ----A---- C:\windows\SYSWOW64\efscore.dll
2013-07-14 13:21:31 ----A---- C:\windows\system32\fontext.dll
2013-07-14 13:21:31 ----A---- C:\windows\system32\DShowRdpFilter.dll
2013-07-14 13:21:30 ----A---- C:\windows\SYSWOW64\themeui.dll
2013-07-14 13:21:30 ----A---- C:\windows\SYSWOW64\elsTrans.dll
2013-07-14 13:21:30 ----A---- C:\windows\system32\tsmf.dll
2013-07-14 13:21:30 ----A---- C:\windows\system32\tskill.exe
2013-07-14 13:21:30 ----A---- C:\windows\system32\tsdiscon.exe
2013-07-14 13:21:30 ----A---- C:\windows\system32\tscon.exe
2013-07-14 13:21:30 ----A---- C:\windows\system32\TRAPI.dll
2013-07-14 13:21:29 ----A---- C:\windows\SYSWOW64\UIRibbonRes.dll
2013-07-14 13:21:29 ----A---- C:\windows\SYSWOW64\UIRibbon.dll
2013-07-14 13:21:29 ----A---- C:\windows\SYSWOW64\TRAPI.dll
2013-07-14 13:21:29 ----A---- C:\windows\system32\UIRibbonRes.dll
2013-07-14 13:21:29 ----A---- C:\windows\system32\UIRibbon.dll
2013-07-14 13:21:28 ----A---- C:\windows\SYSWOW64\t2embed.dll
2013-07-14 13:21:28 ----A---- C:\windows\SYSWOW64\SyncCenter.dll
2013-07-14 13:21:28 ----A---- C:\windows\system32\taskbarcpl.dll
2013-07-14 13:21:28 ----A---- C:\windows\system32\takeown.exe
2013-07-14 13:21:28 ----A---- C:\windows\system32\t2embed.dll
2013-07-14 13:21:28 ----A---- C:\windows\system32\syssetup.dll
2013-07-14 13:21:27 ----A---- C:\windows\SYSWOW64\WMVCORE.DLL
2013-07-14 13:21:27 ----A---- C:\windows\SYSWOW64\WMSPDMOD.DLL
2013-07-14 13:21:27 ----A---- C:\windows\SYSWOW64\taskschd.dll
2013-07-14 13:21:27 ----A---- C:\windows\SYSWOW64\taskeng.exe
2013-07-14 13:21:27 ----A---- C:\windows\system32\WMNetMgr.dll
2013-07-14 13:21:27 ----A---- C:\windows\system32\termsrv.dll
2013-07-14 13:21:27 ----A---- C:\windows\system32\taskmgr.exe
2013-07-14 13:21:26 ----A---- C:\windows\SYSWOW64\WMPEncEn.dll
2013-07-14 13:21:26 ----A---- C:\windows\SYSWOW64\wlanui.dll
2013-07-14 13:21:26 ----A---- C:\windows\SYSWOW64\winmm.dll
2013-07-14 13:21:26 ----A---- C:\windows\system32\XpsRasterService.dll
2013-07-14 13:21:26 ----A---- C:\windows\system32\wvc.dll
2013-07-14 13:21:26 ----A---- C:\windows\system32\wusa.exe
2013-07-14 13:21:26 ----A---- C:\windows\system32\WinSAT.exe
2013-07-14 13:21:25 ----A---- C:\windows\SYSWOW64\zipfldr.dll
2013-07-14 13:21:25 ----A---- C:\windows\SYSWOW64\wdscore.dll
2013-07-14 13:21:25 ----A---- C:\windows\SYSWOW64\usercpl.dll
2013-07-14 13:21:25 ----A---- C:\windows\SYSWOW64\user32.dll
2013-07-14 13:21:25 ----A---- C:\windows\SYSWOW64\upnp.dll
2013-07-14 13:21:25 ----A---- C:\windows\system32\wsnmp32.dll
2013-07-14 13:21:25 ----A---- C:\windows\system32\WPDShServiceObj.dll
2013-07-14 13:21:25 ----A---- C:\windows\system32\wpdshext.dll
2013-07-14 13:21:25 ----A---- C:\windows\system32\WMVSDECD.DLL
2013-07-14 13:21:25 ----A---- C:\windows\system32\wdc.dll
2013-07-14 13:21:25 ----A---- C:\windows\system32\UserAccountControlSettings.dll
2013-07-14 13:21:25 ----A---- C:\windows\system32\drivers\vhdmp.sys
2013-07-14 13:21:25 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-07-14 13:21:24 ----A---- C:\windows\SYSWOW64\wbemcomn.dll
2013-07-14 13:21:24 ----A---- C:\windows\system32\VPCSettings.exe
2013-07-14 13:21:24 ----A---- C:\windows\system32\vmictimeprovider.dll
2013-07-14 13:21:24 ----A---- C:\windows\system32\vmicsvc.exe
2013-07-14 13:21:24 ----A---- C:\windows\system32\vmicres.dll
2013-07-14 13:21:24 ----A---- C:\windows\system32\drivers\wanarp.sys
2013-07-14 13:21:23 ----A---- C:\windows\SYSWOW64\schedcli.dll
2013-07-14 13:21:23 ----A---- C:\windows\SYSWOW64\Ribbons.scr
2013-07-14 13:21:23 ----A---- C:\windows\SYSWOW64\relog.exe
2013-07-14 13:21:23 ----A---- C:\windows\system32\SyncCenter.dll
2013-07-14 13:21:23 ----A---- C:\windows\system32\schedsvc.dll
2013-07-14 13:21:23 ----A---- C:\windows\system32\scesrv.dll
2013-07-14 13:21:23 ----A---- C:\windows\system32\scansetting.dll
2013-07-14 13:21:23 ----A---- C:\windows\system32\rwinsta.exe
2013-07-14 13:21:23 ----A---- C:\windows\system32\runonce.exe
2013-07-14 13:21:23 ----A---- C:\windows\system32\rtutils.dll
2013-07-14 13:21:23 ----A---- C:\windows\system32\Robocopy.exe
2013-07-14 13:21:23 ----A---- C:\windows\system32\riched32.dll
2013-07-14 13:21:23 ----A---- C:\windows\system32\riched20.dll
2013-07-14 13:21:23 ----A---- C:\windows\system32\reset.exe
2013-07-14 13:21:23 ----A---- C:\windows\system32\regapi.dll
2013-07-14 13:21:22 ----A---- C:\windows\SYSWOW64\rastls.dll
2013-07-14 13:21:22 ----A---- C:\windows\SYSWOW64\rastapi.dll
2013-07-14 13:21:22 ----A---- C:\windows\SYSWOW64\qcap.dll
2013-07-14 13:21:22 ----A---- C:\windows\SYSWOW64\powercpl.dll
2013-07-14 13:21:22 ----A---- C:\windows\SYSWOW64\PortableDeviceSyncProvider.dll
2013-07-14 13:21:22 ----A---- C:\windows\SYSWOW64\pla.dll
2013-07-14 13:21:22 ----A---- C:\windows\SYSWOW64\PerfCenterCPL.dll
2013-07-14 13:21:22 ----A---- C:\windows\SYSWOW64\pdh.dll
2013-07-14 13:21:22 ----A---- C:\windows\system32\rdpdd.dll
2013-07-14 13:21:22 ----A---- C:\windows\system32\rasmans.dll
2013-07-14 13:21:22 ----A---- C:\windows\system32\perfmon.exe
2013-07-14 13:21:22 ----A---- C:\windows\system32\drivers\rdbss.sys
2013-07-14 13:21:22 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2013-07-14 13:21:21 ----A---- C:\windows\SYSWOW64\sppcomapi.dll
2013-07-14 13:21:21 ----A---- C:\windows\SYSWOW64\slwga.dll
2013-07-14 13:21:21 ----A---- C:\windows\system32\sppcomapi.dll
2013-07-14 13:21:21 ----A---- C:\windows\system32\spinstall.exe
2013-07-14 13:21:21 ----A---- C:\windows\system32\SmiEngine.dll
2013-07-14 13:21:21 ----A---- C:\windows\system32\slui.exe
2013-07-14 13:21:21 ----A---- C:\windows\system32\query.exe
2013-07-14 13:21:21 ----A---- C:\windows\system32\qprocess.exe
2013-07-14 13:21:21 ----A---- C:\windows\system32\qdv.dll
2013-07-14 13:21:21 ----A---- C:\windows\system32\qappsrv.exe
2013-07-14 13:21:21 ----A---- C:\windows\system32\PushPrinterConnections.exe
2013-07-14 13:21:20 ----A---- C:\windows\SYSWOW64\sud.dll
2013-07-14 13:21:20 ----A---- C:\windows\SYSWOW64\SessEnv.dll
2013-07-14 13:21:20 ----A---- C:\windows\system32\StructuredQuery.dll
2013-07-14 13:21:20 ----A---- C:\windows\system32\srrstr.dll
2013-07-14 13:21:20 ----A---- C:\windows\system32\spwizui.dll
2013-07-14 13:21:20 ----A---- C:\windows\system32\spreview.exe
2013-07-14 13:21:20 ----A---- C:\windows\system32\sppwinob.dll
2013-07-14 13:21:20 ----A---- C:\windows\system32\shunimpl.dll
2013-07-14 13:21:20 ----A---- C:\windows\system32\sharemediacpl.dll
2013-07-14 13:21:20 ----A---- C:\windows\system32\shadow.exe
2013-07-14 13:21:19 ----A---- C:\windows\SYSWOW64\setupcln.dll
2013-07-14 13:21:19 ----A---- C:\windows\SYSWOW64\KBDUGHR1.DLL
2013-07-14 13:21:19 ----A---- C:\windows\SYSWOW64\KBDTUF.DLL
2013-07-14 13:21:19 ----A---- C:\windows\SYSWOW64\KBDSG.DLL
2013-07-14 13:21:19 ----A---- C:\windows\system32\mcbuilder.exe
2013-07-14 13:21:19 ----A---- C:\windows\system32\manage-bde.exe
2013-07-14 13:21:19 ----A---- C:\windows\system32\lpksetup.exe
2013-07-14 13:21:19 ----A---- C:\windows\system32\logman.exe
2013-07-14 13:21:19 ----A---- C:\windows\system32\KMSVC.DLL
2013-07-14 13:21:19 ----A---- C:\windows\system32\KBDUGHR1.DLL
2013-07-14 13:21:19 ----A---- C:\windows\system32\KBDTAJIK.DLL
2013-07-14 13:21:19 ----A---- C:\windows\system32\KBDSG.DLL
2013-07-14 13:21:18 ----A---- C:\windows\SYSWOW64\migisol.dll
2013-07-14 13:21:18 ----A---- C:\windows\system32\MediaMetadataHandler.dll
2013-07-14 13:21:18 ----A---- C:\windows\system32\IPHLPAPI.DLL
2013-07-14 13:21:18 ----A---- C:\windows\system32\IKEEXT.DLL
2013-07-14 13:21:18 ----A---- C:\windows\system32\drivers\ipfltdrv.sys
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\odbcconf.dll
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\KBDPO.DLL
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\KBDMAORI.DLL
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\KBDINORI.DLL
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\KBDINKAN.DLL
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\KBDBLR.DLL
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\isoburn.exe
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\iscsium.dll
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\iscsicli.exe
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\ipsmsnap.dll
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\iprtrmgr.dll
2013-07-14 13:21:17 ----A---- C:\windows\SYSWOW64\imapi2fs.dll
2013-07-14 13:21:17 ----A---- C:\windows\system32\odbc32.dll
2013-07-14 13:21:17 ----A---- C:\windows\system32\KBDNEPR.DLL
2013-07-14 13:21:17 ----A---- C:\windows\system32\kbdlk41a.dll
2013-07-14 13:21:17 ----A---- C:\windows\system32\KBDINKAN.DLL
2013-07-14 13:21:17 ----A---- C:\windows\system32\KBDINHIN.DLL
2013-07-14 13:21:17 ----A---- C:\windows\system32\KBDBULG.DLL
2013-07-14 13:21:17 ----A---- C:\windows\system32\iTVData.dll
2013-07-14 13:21:17 ----A---- C:\windows\system32\iprtrmgr.dll
2013-07-14 13:21:17 ----A---- C:\windows\system32\drivers\kbdhid.sys
2013-07-14 13:21:16 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-07-14 13:21:16 ----A---- C:\windows\SYSWOW64\networkmap.dll
2013-07-14 13:21:16 ----A---- C:\windows\SYSWOW64\networkexplorer.dll
2013-07-14 13:21:16 ----A---- C:\windows\SYSWOW64\netshell.dll
2013-07-14 13:21:16 ----A---- C:\windows\SYSWOW64\netbtugc.exe
2013-07-14 13:21:16 ----A---- C:\windows\system32\nrpsrv.dll
2013-07-14 13:21:16 ----A---- C:\windows\system32\nlsbres.dll
2013-07-14 13:21:16 ----A---- C:\windows\system32\netid.dll
2013-07-14 13:21:16 ----A---- C:\windows\system32\drivers\netbt.sys
2013-07-14 13:21:15 ----A---- C:\windows\SYSWOW64\pnidui.dll
2013-07-14 13:21:15 ----A---- C:\windows\SYSWOW64\olethk32.dll
2013-07-14 13:21:15 ----A---- C:\windows\SYSWOW64\ole32.dll
2013-07-14 13:21:15 ----A---- C:\windows\system32\PortableDeviceSyncProvider.dll
2013-07-14 13:21:15 ----A---- C:\windows\system32\PortableDeviceStatus.dll
2013-07-14 13:21:15 ----A---- C:\windows\system32\PortableDeviceApi.dll
2013-07-14 13:21:15 ----A---- C:\windows\system32\PnPUnattend.exe
2013-07-14 13:21:14 ----A---- C:\windows\SYSWOW64\msdrm.dll
2013-07-14 13:21:14 ----A---- C:\windows\system32\PerfCenterCPL.dll
2013-07-14 13:21:14 ----A---- C:\windows\system32\mscoree.dll
2013-07-14 13:21:14 ----A---- C:\windows\system32\mscms.dll
2013-07-14 13:21:14 ----A---- C:\windows\system32\MPSSVC.dll
2013-07-14 13:21:13 ----A---- C:\windows\SYSWOW64\nci.dll
2013-07-14 13:21:13 ----A---- C:\windows\SYSWOW64\napdsnap.dll
2013-07-14 13:21:13 ----A---- C:\windows\SYSWOW64\muifontsetup.dll
2013-07-14 13:21:13 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-07-14 13:21:13 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2013-07-14 13:21:13 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2013-07-14 13:21:13 ----A---- C:\windows\SYSWOW64\msieftp.dll
2013-07-14 13:21:13 ----A---- C:\windows\system32\NAPHLPR.DLL
2013-07-14 13:21:13 ----A---- C:\windows\system32\napdsnap.dll
2013-07-14 13:21:13 ----A---- C:\windows\system32\Mystify.scr
2013-07-14 13:21:13 ----A---- C:\windows\system32\mswsock.dll
2013-07-14 13:21:13 ----A---- C:\windows\system32\msv1_0.dll
2013-07-14 13:21:13 ----A---- C:\windows\system32\mstask.dll
2013-07-14 13:21:13 ----A---- C:\windows\system32\msscp.dll
2013-07-14 13:21:13 ----A---- C:\windows\system32\msnetobj.dll
2013-07-14 13:21:13 ----A---- C:\windows\system32\msiexec.exe
2013-07-14 13:21:13 ----A---- C:\windows\system32\msftedit.dll
2013-07-14 13:21:13 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-07-14 13:21:13 ----A---- C:\windows\system32\drivers\mpio.sys
2013-07-14 13:21:12 ----A---- C:\windows\SYSWOW64\credssp.dll
2013-07-14 13:21:12 ----A---- C:\windows\SYSWOW64\CertPolEng.dll
2013-07-14 13:21:12 ----A---- C:\windows\SYSWOW64\calc.exe
2013-07-14 13:21:12 ----A---- C:\windows\system32\DevicePairingFolder.dll
2013-07-14 13:21:12 ----A---- C:\windows\system32\cryptui.dll
2013-07-14 13:21:12 ----A---- C:\windows\system32\clusapi.dll
2013-07-14 13:21:12 ----A---- C:\windows\system32\certprop.dll
2013-07-14 13:21:12 ----A---- C:\windows\system32\CertEnroll.dll
2013-07-14 13:21:12 ----A---- C:\windows\system32\cabview.dll
2013-07-14 13:21:12 ----A---- C:\windows\system32\browseui.dll
2013-07-14 13:21:11 ----A---- C:\windows\SYSWOW64\DevicePairingFolder.dll
2013-07-14 13:21:11 ----A---- C:\windows\SYSWOW64\appmgr.dll
2013-07-14 13:21:11 ----A---- C:\windows\SYSWOW64\apphelp.dll
2013-07-14 13:21:11 ----A---- C:\windows\SYSWOW64\acppage.dll
2013-07-14 13:21:11 ----A---- C:\windows\system32\drivers\dfsc.sys
2013-07-14 13:21:11 ----A---- C:\windows\system32\drivers\acpi.sys
2013-07-14 13:21:11 ----A---- C:\windows\system32\dhcpcore.dll
2013-07-14 13:21:11 ----A---- C:\windows\system32\cscobj.dll
2013-07-14 13:21:10 ----A---- C:\windows\SYSWOW64\batmeter.dll
2013-07-14 13:21:10 ----A---- C:\windows\SYSWOW64\ActionCenterCPL.dll
2013-07-14 13:21:10 ----A---- C:\windows\SYSWOW64\ActionCenter.dll
2013-07-14 13:21:10 ----A---- C:\windows\system32\BlbEvents.dll
2013-07-14 13:21:10 ----A---- C:\windows\system32\blackbox.dll
2013-07-14 13:21:10 ----A---- C:\windows\system32\biocpl.dll
2013-07-14 13:21:10 ----A---- C:\windows\system32\BFE.DLL
2013-07-14 13:21:10 ----A---- C:\windows\system32\bcryptprimitives.dll
2013-07-14 13:21:10 ----A---- C:\windows\system32\basecsp.dll
2013-07-14 13:21:10 ----A---- C:\windows\system32\AxInstSv.dll
2013-07-14 13:21:10 ----A---- C:\windows\bfsvc.exe
2013-07-14 13:21:09 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-07-14 13:21:09 ----A---- C:\windows\SYSWOW64\ftp.exe
2013-07-14 13:21:09 ----A---- C:\windows\SYSWOW64\FirewallControlPanel.dll
2013-07-14 13:21:09 ----A---- C:\windows\SYSWOW64\findstr.exe
2013-07-14 13:21:09 ----A---- C:\windows\system32\hgcpl.dll
2013-07-14 13:21:09 ----A---- C:\windows\system32\gdi32.dll
2013-07-14 13:21:09 ----A---- C:\windows\system32\FXSUNATD.exe
2013-07-14 13:21:09 ----A---- C:\windows\system32\FXSSVC.exe
2013-07-14 13:21:09 ----A---- C:\windows\system32\FXSMON.dll
2013-07-14 13:21:09 ----A---- C:\windows\system32\fphc.dll
2013-07-14 13:21:09 ----A---- C:\windows\system32\fms.dll
2013-07-14 13:21:09 ----A---- C:\windows\system32\FirewallControlPanel.dll
2013-07-14 13:21:09 ----A---- C:\windows\system32\AuxiliaryDisplayCpl.dll
2013-07-14 13:21:09 ----A---- C:\windows\system32\autochk.exe
2013-07-14 13:21:08 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2013-07-14 13:21:08 ----A---- C:\windows\SYSWOW64\DXPTaskRingtone.dll
2013-07-14 13:21:08 ----A---- C:\windows\SYSWOW64\dsauth.dll
2013-07-14 13:21:08 ----A---- C:\windows\SYSWOW64\dpx.dll
2013-07-14 13:21:08 ----A---- C:\windows\SYSWOW64\dnscmmc.dll
2013-07-14 13:21:08 ----A---- C:\windows\system32\hgprint.dll
2013-07-14 13:21:08 ----A---- C:\windows\system32\DXP.dll
2013-07-14 13:21:08 ----A---- C:\windows\system32\drmmgrtn.dll
2013-07-14 13:21:08 ----A---- C:\windows\system32\drivers\hidusb.sys
2013-07-14 13:21:08 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-07-14 13:21:08 ----A---- C:\windows\system32\dot3ui.dll
2013-07-14 13:21:08 ----A---- C:\windows\system32\diskpart.exe
2013-07-14 13:21:07 ----A---- C:\windows\SYSWOW64\fdeploy.dll
2013-07-14 13:21:07 ----A---- C:\windows\SYSWOW64\eudcedit.exe
2013-07-14 13:21:07 ----A---- C:\windows\system32\tlscsp.dll
2013-07-14 13:21:07 ----A---- C:\windows\system32\eudcedit.exe
2013-07-14 13:21:07 ----A---- C:\windows\system32\DxpTaskSync.dll
2013-07-14 13:21:06 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2013-07-14 13:21:06 ----A---- C:\windows\SYSWOW64\tcpmonui.dll
2013-07-14 13:21:06 ----A---- C:\windows\SYSWOW64\takeown.exe
2013-07-14 13:21:06 ----A---- C:\windows\system32\upnp.dll
2013-07-14 13:21:06 ----A---- C:\windows\system32\untfs.dll
2013-07-14 13:21:06 ----A---- C:\windows\system32\themecpl.dll
2013-07-14 13:21:06 ----A---- C:\windows\system32\drivers\USBCAMD2.sys
2013-07-14 13:21:06 ----A---- C:\windows\system32\drivers\tunnel.sys
2013-07-14 13:21:05 ----A---- C:\windows\SYSWOW64\unimdmat.dll
2013-07-14 13:21:05 ----A---- C:\windows\SYSWOW64\twext.dll
2013-07-14 13:21:05 ----A---- C:\windows\SYSWOW64\stobject.dll
2013-07-14 13:21:05 ----A---- C:\windows\system32\tzutil.exe
2013-07-14 13:21:05 ----A---- C:\windows\system32\twext.dll
2013-07-14 13:21:05 ----A---- C:\windows\system32\drivers\udfs.sys
2013-07-14 13:21:03 ----A---- C:\windows\SYSWOW64\wlanmsm.dll
2013-07-14 13:21:03 ----A---- C:\windows\SYSWOW64\WinSCard.dll
2013-07-14 13:21:03 ----A---- C:\windows\system32\wmpsrcwp.dll
2013-07-14 13:21:03 ----A---- C:\windows\system32\wlanmsm.dll
2013-07-14 13:21:03 ----A---- C:\windows\system32\wlangpui.dll
2013-07-14 13:21:03 ----A---- C:\windows\system32\wkscli.dll
2013-07-14 13:21:02 ----A---- C:\windows\SYSWOW64\wsnmp32.dll
2013-07-14 13:21:02 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2013-07-14 13:21:02 ----A---- C:\windows\system32\wmdrmsdk.dll
2013-07-14 13:21:02 ----A---- C:\windows\system32\winlogon.exe
2013-07-14 13:21:02 ----A---- C:\windows\system32\WindowsAnytimeUpgradeResults.exe
2013-07-14 13:21:01 ----A---- C:\windows\SYSWOW64\wusa.exe
2013-07-14 13:21:01 ----A---- C:\windows\SYSWOW64\WPDShServiceObj.dll
2013-07-14 13:21:01 ----A---- C:\windows\SYSWOW64\wpdshext.dll
2013-07-14 13:21:01 ----A---- C:\windows\SYSWOW64\WMVSDECD.DLL
2013-07-14 13:21:01 ----A---- C:\windows\system32\WsmSvc.dll
2013-07-14 13:21:01 ----A---- C:\windows\system32\WSDApi.dll
2013-07-14 13:21:01 ----A---- C:\windows\system32\WPDSp.dll
2013-07-14 13:21:01 ----A---- C:\windows\system32\VMWindow.exe
2013-07-14 13:21:01 ----A---- C:\windows\system32\vfwwdm32.dll
2013-07-14 13:21:01 ----A---- C:\windows\system32\drivers\volmgrx.sys
2013-07-14 13:21:00 ----A---- C:\windows\SYSWOW64\wer.dll
2013-07-14 13:21:00 ----A---- C:\windows\SYSWOW64\w32tm.exe
2013-07-14 13:21:00 ----A---- C:\windows\SYSWOW64\Vault.dll
2013-07-14 13:21:00 ----A---- C:\windows\SYSWOW64\userinit.exe
2013-07-14 13:21:00 ----A---- C:\windows\SYSWOW64\userenv.dll
2013-07-14 13:21:00 ----A---- C:\windows\system32\wevtsvc.dll
2013-07-14 13:21:00 ----A---- C:\windows\system32\vdsutil.dll
2013-07-14 13:21:00 ----A---- C:\windows\system32\vds.exe
2013-07-14 13:21:00 ----A---- C:\windows\system32\VAN.dll
2013-07-14 13:21:00 ----A---- C:\windows\system32\drivers\vpcusb.sys
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\wimserv.exe
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\wimgapi.dll
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\wiavideo.dll
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\webservices.dll
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\secproc_isv.dll

Re: preventikva

Napsal: 13 srp 2013 20:23
od selkir
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\remotepg.dll
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\ReAgentc.exe
2013-07-14 13:20:59 ----A---- C:\windows\SYSWOW64\rdpd3d.dll
2013-07-14 13:20:59 ----A---- C:\windows\system32\wiadefui.dll
2013-07-14 13:20:59 ----A---- C:\windows\system32\werconcpl.dll
2013-07-14 13:20:59 ----A---- C:\windows\system32\webservices.dll
2013-07-14 13:20:59 ----A---- C:\windows\system32\wcncsvc.dll
2013-07-14 13:20:59 ----A---- C:\windows\system32\wavemsp.dll
2013-07-14 13:20:59 ----A---- C:\windows\system32\secproc_ssp_isv.dll
2013-07-14 13:20:59 ----A---- C:\windows\system32\relog.exe
2013-07-14 13:20:59 ----A---- C:\windows\system32\rastls.dll
2013-07-14 13:20:59 ----A---- C:\windows\system32\drivers\scfilter.sys
2013-07-14 13:20:59 ----A---- C:\windows\system32\drivers\rdyboost.sys
2013-07-14 13:20:58 ----A---- C:\windows\SYSWOW64\scecli.dll
2013-07-14 13:20:58 ----A---- C:\windows\SYSWOW64\rpchttp.dll
2013-07-14 13:20:58 ----A---- C:\windows\SYSWOW64\RpcRtRemote.dll
2013-07-14 13:20:58 ----A---- C:\windows\SYSWOW64\RMActivate_isv.exe
2013-07-14 13:20:58 ----A---- C:\windows\SYSWOW64\QAGENT.DLL
2013-07-14 13:20:58 ----A---- C:\windows\SYSWOW64\prntvpt.dll
2013-07-14 13:20:58 ----A---- C:\windows\system32\scecli.dll
2013-07-14 13:20:58 ----A---- C:\windows\system32\rpcrt4.dll
2013-07-14 13:20:58 ----A---- C:\windows\system32\RMActivate_ssp_isv.exe
2013-07-14 13:20:58 ----A---- C:\windows\system32\QCLIPROV.DLL
2013-07-14 13:20:58 ----A---- C:\windows\system32\QAGENTRT.DLL
2013-07-14 13:20:58 ----A---- C:\windows\system32\QAGENT.DLL
2013-07-14 13:20:58 ----A---- C:\windows\system32\proquota.exe
2013-07-14 13:20:58 ----A---- C:\windows\system32\propsys.dll
2013-07-14 13:20:57 ----A---- C:\windows\SYSWOW64\SndVolSSO.dll
2013-07-14 13:20:57 ----A---- C:\windows\SYSWOW64\SndVol.exe
2013-07-14 13:20:57 ----A---- C:\windows\SYSWOW64\QUTIL.DLL
2013-07-14 13:20:57 ----A---- C:\windows\SYSWOW64\QCLIPROV.DLL
2013-07-14 13:20:57 ----A---- C:\windows\system32\sqlcese30.dll
2013-07-14 13:20:57 ----A---- C:\windows\system32\shsvcs.dll
2013-07-14 13:20:57 ----A---- C:\windows\system32\raschap.dll
2013-07-14 13:20:57 ----A---- C:\windows\system32\RacEngn.dll
2013-07-14 13:20:57 ----A---- C:\windows\system32\Query.dll
2013-07-14 13:20:57 ----A---- C:\windows\system32\qmgr.dll
2013-07-14 13:20:56 ----A---- C:\windows\system32\sppnp.dll
2013-07-14 13:20:56 ----A---- C:\windows\system32\spopk.dll
2013-07-14 13:20:55 ----A---- C:\windows\SYSWOW64\mprddm.dll
2013-07-14 13:20:55 ----A---- C:\windows\SYSWOW64\mfds.dll
2013-07-14 13:20:55 ----A---- C:\windows\SYSWOW64\mf.dll
2013-07-14 13:20:55 ----A---- C:\windows\SYSWOW64\mciavi32.dll
2013-07-14 13:20:55 ----A---- C:\windows\SYSWOW64\mcbuilder.exe
2013-07-14 13:20:55 ----A---- C:\windows\SYSWOW64\mapistub.dll
2013-07-14 13:20:54 ----A---- C:\windows\system32\mmcndmgr.dll
2013-07-14 13:20:53 ----A---- C:\windows\SYSWOW64\mmcndmgr.dll
2013-07-14 13:20:53 ----A---- C:\windows\SYSWOW64\mapi32.dll
2013-07-14 13:20:53 ----A---- C:\windows\SYSWOW64\KBDTURME.DLL
2013-07-14 13:20:53 ----A---- C:\windows\SYSWOW64\KBDTUQ.DLL
2013-07-14 13:20:53 ----A---- C:\windows\SYSWOW64\KBDNEPR.DLL
2013-07-14 13:20:53 ----A---- C:\windows\SYSWOW64\KBDGR1.DLL
2013-07-14 13:20:53 ----A---- C:\windows\SYSWOW64\KBDGEO.DLL
2013-07-14 13:20:53 ----A---- C:\windows\SYSWOW64\IPHLPAPI.DLL
2013-07-14 13:20:53 ----A---- C:\windows\system32\logoncli.dll
2013-07-14 13:20:53 ----A---- C:\windows\system32\KBDSF.DLL
2013-07-14 13:20:53 ----A---- C:\windows\system32\KBDPO.DLL
2013-07-14 13:20:53 ----A---- C:\windows\system32\KBDMON.DLL
2013-07-14 13:20:53 ----A---- C:\windows\system32\KBDINMAR.DLL
2013-07-14 13:20:53 ----A---- C:\windows\system32\KBDGEO.DLL
2013-07-14 13:20:53 ----A---- C:\windows\system32\iyuv_32.dll
2013-07-14 13:20:52 ----A---- C:\windows\SYSWOW64\nslookup.exe
2013-07-14 13:20:52 ----A---- C:\windows\system32\ntlanman.dll
2013-07-14 13:20:52 ----A---- C:\windows\system32\netplwiz.dll
2013-07-14 13:20:52 ----A---- C:\windows\system32\netfxperf.dll
2013-07-14 13:20:51 ----A---- C:\windows\SYSWOW64\PortableDeviceStatus.dll
2013-07-14 13:20:51 ----A---- C:\windows\SYSWOW64\pifmgr.dll
2013-07-14 13:20:51 ----A---- C:\windows\SYSWOW64\onexui.dll
2013-07-14 13:20:51 ----A---- C:\windows\SYSWOW64\onex.dll
2013-07-14 13:20:51 ----A---- C:\windows\SYSWOW64\odbc32.dll
2013-07-14 13:20:51 ----A---- C:\windows\SYSWOW64\netid.dll
2013-07-14 13:20:51 ----A---- C:\windows\SYSWOW64\msrle32.dll
2013-07-14 13:20:51 ----A---- C:\windows\system32\odbcconf.dll
2013-07-14 13:20:51 ----A---- C:\windows\system32\ocsetup.exe
2013-07-14 13:20:51 ----A---- C:\windows\system32\ocsetapi.dll
2013-07-14 13:20:51 ----A---- C:\windows\system32\msieftp.dll
2013-07-14 13:20:50 ----A---- C:\windows\SYSWOW64\mscoree.dll
2013-07-14 13:20:50 ----A---- C:\windows\SYSWOW64\msasn1.dll
2013-07-14 13:20:50 ----A---- C:\windows\system32\msasn1.dll
2013-07-14 13:20:49 ----A---- C:\windows\SYSWOW64\Mystify.scr
2013-07-14 13:20:49 ----A---- C:\windows\SYSWOW64\msvidc32.dll
2013-07-14 13:20:49 ----A---- C:\windows\SYSWOW64\msvfw32.dll
2013-07-14 13:20:49 ----A---- C:\windows\system32\net1.exe
2013-07-14 13:20:49 ----A---- C:\windows\system32\ncryptui.dll
2013-07-14 13:20:49 ----A---- C:\windows\system32\mydocs.dll
2013-07-14 13:20:49 ----A---- C:\windows\system32\msyuv.dll
2013-07-14 13:20:48 ----A---- C:\windows\SYSWOW64\comdlg32.dll
2013-07-14 13:20:48 ----A---- C:\windows\SYSWOW64\certcli.dll
2013-07-14 13:20:48 ----A---- C:\windows\system32\cmstp.exe
2013-07-14 13:20:47 ----A---- C:\windows\SYSWOW64\dhcpcore.dll
2013-07-14 13:20:47 ----A---- C:\windows\SYSWOW64\dfshim.dll
2013-07-14 13:20:47 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-07-14 13:20:47 ----A---- C:\windows\SYSWOW64\d3d9.dll
2013-07-14 13:20:47 ----A---- C:\windows\system32\drivers\CompositeBus.sys
2013-07-14 13:20:47 ----A---- C:\windows\system32\DeviceCenter.dll
2013-07-14 13:20:47 ----A---- C:\windows\system32\davclnt.dll
2013-07-14 13:20:46 ----A---- C:\windows\SYSWOW64\adsldp.dll
2013-07-14 13:20:46 ----A---- C:\windows\system32\drivers\1394ohci.sys
2013-07-14 13:20:46 ----A---- C:\windows\system32\bcdboot.exe
2013-07-14 13:20:46 ----A---- C:\windows\system32\actxprxy.dll
2013-07-14 13:20:46 ----A---- C:\windows\system32\ActionQueue.dll
2013-07-14 13:20:46 ----A---- C:\windows\system32\ActionCenter.dll
2013-07-14 13:20:46 ----A---- C:\windows\system32\accessibilitycpl.dll
2013-07-14 13:20:45 ----A---- C:\windows\SYSWOW64\basecsp.dll
2013-07-14 13:20:45 ----A---- C:\windows\SYSWOW64\avifil32.dll
2013-07-14 13:20:45 ----A---- C:\windows\SYSWOW64\AuthFWSnapin.dll
2013-07-14 13:20:45 ----A---- C:\windows\system32\cabinet.dll
2013-07-14 13:20:45 ----A---- C:\windows\system32\autoplay.dll
2013-07-14 13:20:45 ----A---- C:\windows\system32\autofmt.exe
2013-07-14 13:20:44 ----A---- C:\windows\SYSWOW64\iasrad.dll
2013-07-14 13:20:44 ----A---- C:\windows\SYSWOW64\iasacct.dll
2013-07-14 13:20:44 ----A---- C:\windows\SYSWOW64\httpapi.dll
2013-07-14 13:20:44 ----A---- C:\windows\system32\hal.dll
2013-07-14 13:20:44 ----A---- C:\windows\system32\gpsvc.dll
2013-07-14 13:20:43 ----A---- C:\windows\system32\inetpp.dll
2013-07-14 13:20:42 ----A---- C:\windows\SYSWOW64\framedynos.dll
2013-07-14 13:20:42 ----A---- C:\windows\SYSWOW64\framedyn.dll
2013-07-14 13:20:42 ----A---- C:\windows\SYSWOW64\Display.dll
2013-07-14 13:20:42 ----A---- C:\windows\system32\evr.dll
2013-07-14 13:20:42 ----A---- C:\windows\system32\efscore.dll
2013-07-14 13:20:42 ----A---- C:\windows\system32\dwmredir.dll
2013-07-14 13:20:42 ----A---- C:\windows\system32\dsauth.dll
2013-07-14 13:20:42 ----A---- C:\windows\system32\drvstore.dll
2013-07-14 13:20:42 ----A---- C:\windows\system32\dot3svc.dll
2013-07-14 13:20:42 ----A---- C:\windows\system32\dot3msm.dll
2013-07-14 13:20:42 ----A---- C:\windows\system32\dot3api.dll
2013-07-14 13:20:41 ----A---- C:\windows\SYSWOW64\PresentationHost.exe
2013-07-14 13:20:41 ----A---- C:\windows\SYSWOW64\fontext.dll
2013-07-14 13:20:41 ----A---- C:\windows\system32\fde.dll
2013-07-14 13:20:40 ----A---- C:\windows\system32\tcpipcfg.dll
2013-07-14 13:20:40 ----A---- C:\windows\system32\syncui.dll
2013-07-14 13:20:40 ----A---- C:\windows\system32\drivers\tdx.sys
2013-07-14 13:20:39 ----A---- C:\windows\SYSWOW64\tapisrv.dll
2013-07-14 13:20:39 ----A---- C:\windows\SYSWOW64\ssText3d.scr
2013-07-14 13:20:39 ----A---- C:\windows\SYSWOW64\srchadmin.dll
2013-07-14 13:20:39 ----A---- C:\windows\SYSWOW64\sppc.dll
2013-07-14 13:20:39 ----A---- C:\windows\system32\SndVolSSO.dll
2013-07-14 13:20:39 ----A---- C:\windows\system32\SndVol.exe
2013-07-14 13:20:38 ----A---- C:\windows\SYSWOW64\sqlsrv32.dll
2013-07-14 13:20:38 ----A---- C:\windows\SYSWOW64\sqlcese30.dll
2013-07-14 13:20:38 ----A---- C:\windows\SYSWOW64\spwizres.dll
2013-07-14 13:20:38 ----A---- C:\windows\SYSWOW64\spwizeng.dll
2013-07-14 13:20:38 ----A---- C:\windows\system32\srvcli.dll
2013-07-14 13:20:38 ----A---- C:\windows\system32\drivers\storvsc.sys
2013-07-14 13:20:37 ----A---- C:\windows\SYSWOW64\wscapi.dll
2013-07-14 13:20:37 ----A---- C:\windows\SYSWOW64\ws2_32.dll
2013-07-14 13:20:37 ----A---- C:\windows\SYSWOW64\wmpps.dll
2013-07-14 13:20:37 ----A---- C:\windows\SYSWOW64\wmpdxm.dll
2013-07-14 13:20:37 ----A---- C:\windows\SYSWOW64\WMADMOD.DLL
2013-07-14 13:20:37 ----A---- C:\windows\system32\wmpdxm.dll
2013-07-14 13:20:37 ----A---- C:\windows\system32\WinSCard.dll
2013-07-14 13:20:37 ----A---- C:\windows\system32\WebClnt.dll
2013-07-14 13:20:37 ----A---- C:\windows\system32\wdiasqmmodule.dll
2013-07-14 13:20:37 ----A---- C:\windows\system32\wbengine.exe
2013-07-14 13:20:36 ----A---- C:\windows\SYSWOW64\wmdrmnet.dll
2013-07-14 13:20:36 ----A---- C:\windows\SYSWOW64\wmdrmdev.dll
2013-07-14 13:20:36 ----A---- C:\windows\system32\vmstorfltres.dll
2013-07-14 13:20:36 ----A---- C:\windows\system32\tsbyuv.dll
2013-07-14 13:20:35 ----A---- C:\windows\SYSWOW64\uxlib.dll
2013-07-14 13:20:35 ----A---- C:\windows\system32\wbemcomn.dll
2013-07-14 13:20:35 ----A---- C:\windows\system32\vpnikeapi.dll
2013-07-14 13:20:35 ----A---- C:\windows\system32\vpnike.dll
2013-07-14 13:20:35 ----A---- C:\windows\system32\vpc.exe
2013-07-14 13:20:35 ----A---- C:\windows\system32\vmsal.exe
2013-07-14 13:20:35 ----A---- C:\windows\system32\Vault.dll
2013-07-14 13:20:35 ----A---- C:\windows\system32\drivers\vmstorfl.sys
2013-07-14 13:20:34 ----A---- C:\windows\SYSWOW64\utildll.dll
2013-07-14 13:20:34 ----A---- C:\windows\SYSWOW64\shsvcs.dll
2013-07-14 13:20:34 ----A---- C:\windows\system32\VmdCoinstall.dll
2013-07-14 13:20:34 ----A---- C:\windows\system32\secproc_ssp.dll
2013-07-14 13:20:33 ----A---- C:\windows\SYSWOW64\SearchFolder.dll
2013-07-14 13:20:33 ----A---- C:\windows\system32\schtasks.exe
2013-07-14 13:20:33 ----A---- C:\windows\system32\schedcli.dll
2013-07-14 13:20:33 ----A---- C:\windows\system32\drivers\sdbus.sys
2013-07-14 13:20:32 ----A---- C:\windows\SYSWOW64\riched32.dll
2013-07-14 13:20:32 ----A---- C:\windows\SYSWOW64\riched20.dll
2013-07-14 13:20:32 ----A---- C:\windows\SYSWOW64\QSVRMGMT.DLL
2013-07-14 13:20:32 ----A---- C:\windows\SYSWOW64\QSHVHOST.DLL
2013-07-14 13:20:32 ----A---- C:\windows\SYSWOW64\qdv.dll
2013-07-14 13:20:32 ----A---- C:\windows\SYSWOW64\qasf.dll
2013-07-14 13:20:32 ----A---- C:\windows\SYSWOW64\proquota.exe
2013-07-14 13:20:32 ----A---- C:\windows\SYSWOW64\prnfldr.dll
2013-07-14 13:20:32 ----A---- C:\windows\system32\RMActivate_ssp.exe
2013-07-14 13:20:32 ----A---- C:\windows\system32\QUTIL.DLL
2013-07-14 13:20:32 ----A---- C:\windows\system32\prncache.dll
2013-07-14 13:20:32 ----A---- C:\windows\system32\PresentationSettings.exe
2013-07-14 13:20:31 ----A---- C:\windows\SYSWOW64\shimgvw.dll
2013-07-14 13:20:31 ----A---- C:\windows\system32\shlwapi.dll
2013-07-14 13:20:31 ----A---- C:\windows\system32\shacct.dll
2013-07-14 13:20:31 ----A---- C:\windows\system32\setupapi.dll
2013-07-14 13:20:31 ----A---- C:\windows\system32\SensorsCpl.dll
2013-07-14 13:20:31 ----A---- C:\windows\system32\rpchttp.dll
2013-07-14 13:20:31 ----A---- C:\windows\system32\recovery.dll
2013-07-14 13:20:31 ----A---- C:\windows\system32\rdprefdrvapi.dll
2013-07-14 13:20:30 ----A---- C:\windows\SYSWOW64\mfc40.dll
2013-07-14 13:20:30 ----A---- C:\windows\SYSWOW64\mciqtz32.dll
2013-07-14 13:20:30 ----A---- C:\windows\system32\MdSched.exe
2013-07-14 13:20:30 ----A---- C:\windows\system32\mciqtz32.dll
2013-07-14 13:20:30 ----A---- C:\windows\system32\MCEWMDRMNDBootstrap.dll
2013-07-14 13:20:30 ----A---- C:\windows\system32\lsmproxy.dll
2013-07-14 13:20:29 ----A---- C:\windows\SYSWOW64\mimefilt.dll
2013-07-14 13:20:29 ----A---- C:\windows\system32\drivers\mountmgr.sys
2013-07-14 13:20:28 ----A---- C:\windows\SYSWOW64\input.dll
2013-07-14 13:20:28 ----A---- C:\windows\system32\iasrecst.dll
2013-07-14 13:20:28 ----A---- C:\windows\system32\httpapi.dll
2013-07-14 13:20:27 ----A---- C:\windows\SYSWOW64\mydocs.dll
2013-07-14 13:20:27 ----A---- C:\windows\SYSWOW64\localsec.dll
2013-07-14 13:20:27 ----A---- C:\windows\SYSWOW64\kbdlk41a.dll
2013-07-14 13:20:27 ----A---- C:\windows\SYSWOW64\KBDINBEN.DLL
2013-07-14 13:20:27 ----A---- C:\windows\SYSWOW64\KBDGKL.DLL
2013-07-14 13:20:27 ----A---- C:\windows\SYSWOW64\KBDBULG.DLL
2013-07-14 13:20:27 ----A---- C:\windows\SYSWOW64\KBDBASH.DLL
2013-07-14 13:20:27 ----A---- C:\windows\system32\NaturalLanguage6.dll
2013-07-14 13:20:27 ----A---- C:\windows\system32\ListSvc.dll
2013-07-14 13:20:27 ----A---- C:\windows\system32\KBDTURME.DLL
2013-07-14 13:20:27 ----A---- C:\windows\system32\KBDMAORI.DLL
2013-07-14 13:20:27 ----A---- C:\windows\system32\KBDINTAM.DLL
2013-07-14 13:20:27 ----A---- C:\windows\system32\KBDGR1.DLL
2013-07-14 13:20:27 ----A---- C:\windows\system32\KBDCZ1.DLL
2013-07-14 13:20:27 ----A---- C:\windows\system32\isoburn.exe
2013-07-14 13:20:27 ----A---- C:\windows\system32\iscsium.dll
2013-07-14 13:20:27 ----A---- C:\windows\system32\iscsicli.exe
2013-07-14 13:20:26 ----A---- C:\windows\SYSWOW64\netfxperf.dll
2013-07-14 13:20:26 ----A---- C:\windows\SYSWOW64\NAPHLPR.DLL
2013-07-14 13:20:26 ----A---- C:\windows\system32\netiohlp.dll
2013-07-14 13:20:26 ----A---- C:\windows\system32\netcfgx.dll
2013-07-14 13:20:26 ----A---- C:\windows\system32\netcenter.dll
2013-07-14 13:20:26 ----A---- C:\windows\system32\MSVidCtl.dll
2013-07-14 13:20:25 ----A---- C:\windows\SYSWOW64\ntprint.dll
2013-07-14 13:20:25 ----A---- C:\windows\SYSWOW64\netutils.dll
2013-07-14 13:20:25 ----A---- C:\windows\SYSWOW64\netplwiz.dll
2013-07-14 13:20:25 ----A---- C:\windows\SYSWOW64\netjoin.dll
2013-07-14 13:20:25 ----A---- C:\windows\SYSWOW64\mtxclu.dll
2013-07-14 13:20:25 ----A---- C:\windows\system32\ntprint.dll
2013-07-14 13:20:25 ----A---- C:\windows\system32\nltest.exe
2013-07-14 13:20:25 ----A---- C:\windows\system32\mtxclu.dll
2013-07-14 13:20:25 ----A---- C:\windows\system32\drivers\msahci.sys
2013-07-14 13:20:24 ----A---- C:\windows\SYSWOW64\msscp.dll
2013-07-14 13:20:24 ----A---- C:\windows\SYSWOW64\msnetobj.dll
2013-07-14 13:20:24 ----A---- C:\windows\SYSWOW64\msiexec.exe
2013-07-14 13:20:24 ----A---- C:\windows\system32\MSMPEG2ENC.DLL
2013-07-14 13:20:24 ----A---- C:\windows\system32\mprapi.dll
2013-07-14 13:20:23 ----A---- C:\windows\SYSWOW64\clusapi.dll
2013-07-14 13:20:23 ----A---- C:\windows\SYSWOW64\certmgr.dll
2013-07-14 13:20:23 ----A---- C:\windows\system32\msdtctm.dll
2013-07-14 13:20:23 ----A---- C:\windows\system32\drivers\Classpnp.sys
2013-07-14 13:20:23 ----A---- C:\windows\system32\BWUnpairElevated.dll
2013-07-14 13:20:23 ----A---- C:\windows\system32\bootres.dll
2013-07-14 13:20:22 ----A---- C:\windows\SYSWOW64\dbghelp.dll
2013-07-14 13:20:22 ----A---- C:\windows\SYSWOW64\dbgeng.dll
2013-07-14 13:20:22 ----A---- C:\windows\SYSWOW64\cscobj.dll
2013-07-14 13:20:22 ----A---- C:\windows\system32\defaultlocationcpl.dll
2013-07-14 13:20:21 ----AH---- C:\windows\system32\api-ms-win-core-ums-l1-1-0.dll
2013-07-14 13:20:21 ----A---- C:\windows\SYSWOW64\cmstp.exe
2013-07-14 13:20:21 ----A---- C:\windows\SYSWOW64\audiodev.dll
2013-07-14 13:20:21 ----A---- C:\windows\SYSWOW64\amstream.dll
2013-07-14 13:20:21 ----A---- C:\windows\system32\drivers\ataport.sys
2013-07-14 13:20:21 ----A---- C:\windows\system32\credui.dll
2013-07-14 13:20:21 ----A---- C:\windows\system32\cmd.exe
2013-07-14 13:20:21 ----A---- C:\windows\system32\amstream.dll
2013-07-14 13:20:21 ----A---- C:\windows\system32\aitagent.exe
2013-07-14 13:20:20 ----A---- C:\windows\SYSWOW64\blackbox.dll
2013-07-14 13:20:20 ----A---- C:\windows\SYSWOW64\bitsadmin.exe
2013-07-14 13:20:20 ----A---- C:\windows\SYSWOW64\AzSqlExt.dll
2013-07-14 13:20:20 ----A---- C:\windows\SYSWOW64\azroles.dll
2013-07-14 13:20:20 ----A---- C:\windows\SYSWOW64\autofmt.exe
2013-07-14 13:20:20 ----A---- C:\windows\system32\bitsperf.dll
2013-07-14 13:20:20 ----A---- C:\windows\system32\batmeter.dll
2013-07-14 13:20:20 ----A---- C:\windows\system32\azroles.dll
2013-07-14 13:20:20 ----A---- C:\windows\system32\autoconv.exe
2013-07-14 13:20:20 ----A---- C:\windows\system32\audiosrv.dll
2013-07-14 13:20:20 ----A---- C:\windows\system32\AudioSes.dll
2013-07-14 13:20:20 ----A---- C:\windows\system32\audiodg.exe
2013-07-14 13:20:19 ----A---- C:\windows\SYSWOW64\Faultrep.dll
2013-07-14 13:20:19 ----A---- C:\windows\SYSWOW64\dsuiext.dll
2013-07-14 13:20:19 ----A---- C:\windows\SYSWOW64\autoplay.dll
2013-07-14 13:20:19 ----A---- C:\windows\system32\fdProxy.dll
2013-07-14 13:20:19 ----A---- C:\windows\system32\eapphost.dll
2013-07-14 13:20:19 ----A---- C:\windows\system32\eappgnui.dll
2013-07-14 13:20:19 ----A---- C:\windows\system32\eapp3hst.dll
2013-07-14 13:20:19 ----A---- C:\windows\system32\dxmasf.dll
2013-07-14 13:20:19 ----A---- C:\windows\system32\dxdiagn.dll
2013-07-14 13:20:19 ----A---- C:\windows\system32\AzSqlExt.dll
2013-07-14 13:20:18 ----A---- C:\windows\SYSWOW64\fphc.dll
2013-07-14 13:20:18 ----A---- C:\windows\system32\hbaapi.dll
2013-07-14 13:20:18 ----A---- C:\windows\system32\framedynos.dll
2013-07-14 13:20:18 ----A---- C:\windows\system32\framedyn.dll
2013-07-14 13:20:17 ----A---- C:\windows\SYSWOW64\diskraid.exe
2013-07-14 13:20:17 ----A---- C:\windows\SYSWOW64\dfrgui.exe
2013-07-14 13:20:17 ----A---- C:\windows\SYSWOW64\DeviceCenter.dll
2013-07-14 13:20:17 ----A---- C:\windows\system32\djoin.exe
2013-07-14 13:20:17 ----A---- C:\windows\system32\dfshim.dll
2013-07-14 13:20:16 ----A---- C:\windows\SYSWOW64\DShowRdpFilter.dll
2013-07-14 13:20:16 ----A---- C:\windows\SYSWOW64\drmmgrtn.dll
2013-07-14 13:20:16 ----A---- C:\windows\SYSWOW64\dot3msm.dll
2013-07-14 13:20:16 ----A---- C:\windows\SYSWOW64\dot3api.dll
2013-07-14 13:20:16 ----A---- C:\windows\system32\dpx.dll
2013-07-14 13:20:16 ----A---- C:\windows\system32\dps.dll
2013-07-14 13:20:15 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2013-07-14 13:20:15 ----A---- C:\windows\SYSWOW64\tlscsp.dll
2013-07-14 13:20:15 ----A---- C:\windows\system32\unimdmat.dll
2013-07-14 13:20:15 ----A---- C:\windows\system32\taskeng.exe
2013-07-14 13:20:15 ----A---- C:\windows\system32\taskcomp.dll
2013-07-14 13:20:15 ----A---- C:\windows\system32\TabSvc.dll
2013-07-14 13:20:15 ----A---- C:\windows\system32\drivers\usbrpm.sys
2013-07-14 13:20:15 ----A---- C:\windows\system32\drivers\termdd.sys
2013-07-14 13:20:14 ----A---- C:\windows\SYSWOW64\tsmf.dll
2013-07-14 13:20:14 ----A---- C:\windows\SYSWOW64\sxs.dll
2013-07-14 13:20:14 ----A---- C:\windows\SYSWOW64\sscore.dll
2013-07-14 13:20:14 ----A---- C:\windows\system32\user32.dll
2013-07-14 13:20:14 ----A---- C:\windows\system32\ssText3d.scr
2013-07-14 13:20:14 ----A---- C:\windows\system32\spwmp.dll
2013-07-14 13:20:14 ----A---- C:\windows\system32\sppobjs.dll
2013-07-14 13:20:13 ----A---- C:\windows\SYSWOW64\syncui.dll
2013-07-14 13:20:13 ----A---- C:\windows\SYSWOW64\spopk.dll
2013-07-14 13:20:13 ----A---- C:\windows\system32\sud.dll
2013-07-14 13:20:12 ----A---- C:\windows\SYSWOW64\syssetup.dll
2013-07-14 13:20:11 ----A---- C:\windows\SYSWOW64\wmdrmsdk.dll
2013-07-14 13:20:11 ----A---- C:\windows\SYSWOW64\wlanpref.dll
2013-07-14 13:20:11 ----A---- C:\windows\SYSWOW64\wlangpui.dll
2013-07-14 13:20:11 ----A---- C:\windows\system32\WMVCORE.DLL
2013-07-14 13:20:11 ----A---- C:\windows\system32\wmpmde.dll
2013-07-14 13:20:11 ----A---- C:\windows\system32\wmploc.DLL
2013-07-14 13:20:11 ----A---- C:\windows\system32\wmp.dll
2013-07-14 13:20:11 ----A---- C:\windows\system32\wlanui.dll
2013-07-14 13:20:11 ----A---- C:\windows\system32\wlanpref.dll
2013-07-14 13:20:11 ----A---- C:\windows\system32\wisptis.exe
2013-07-14 13:20:11 ----A---- C:\windows\system32\winsta.dll
2013-07-14 13:20:10 ----A---- C:\windows\SYSWOW64\xpsservices.dll
2013-07-14 13:20:10 ----A---- C:\windows\SYSWOW64\WSDApi.dll
2013-07-14 13:20:10 ----A---- C:\windows\SYSWOW64\wpdwcn.dll
2013-07-14 13:20:10 ----A---- C:\windows\SYSWOW64\Wldap32.dll
2013-07-14 13:20:10 ----A---- C:\windows\system32\xpsservices.dll
2013-07-14 13:20:10 ----A---- C:\windows\system32\wshbth.dll
2013-07-14 13:20:10 ----A---- C:\windows\system32\Wldap32.dll
2013-07-14 13:20:09 ----A---- C:\windows\SYSWOW64\WerFaultSecure.exe
2013-07-14 13:20:09 ----A---- C:\windows\SYSWOW64\vmsal.exe
2013-07-14 13:20:09 ----A---- C:\windows\system32\WinSATAPI.dll
2013-07-14 13:20:09 ----A---- C:\windows\system32\VMCPropertyHandler.dll
2013-07-14 13:20:09 ----A---- C:\windows\system32\vmbusres.dll
2013-07-14 13:20:09 ----A---- C:\windows\system32\vmbuspipe.dll
2013-07-14 13:20:09 ----A---- C:\windows\system32\VmbusCoinstaller.dll
2013-07-14 13:20:09 ----A---- C:\windows\system32\vdsbas.dll
2013-07-14 13:20:09 ----A---- C:\windows\system32\drivers\winhv.sys
2013-07-14 13:20:09 ----A---- C:\windows\system32\drivers\volmgr.sys
2013-07-14 13:20:09 ----A---- C:\windows\system32\drivers\vmbus.sys
2013-07-14 13:20:08 ----A---- C:\windows\SYSWOW64\wcncsvc.dll
2013-07-14 13:20:08 ----A---- C:\windows\SYSWOW64\vpnikeapi.dll
2013-07-14 13:20:08 ----A---- C:\windows\SYSWOW64\rdpendp.dll
2013-07-14 13:20:08 ----A---- C:\windows\SYSWOW64\rasppp.dll
2013-07-14 13:20:08 ----A---- C:\windows\system32\WavDest.dll
2013-07-14 13:20:08 ----A---- C:\windows\system32\vpchbuspipe.dll
2013-07-14 13:20:08 ----A---- C:\windows\system32\rdpendp.dll
2013-07-14 13:20:08 ----A---- C:\windows\system32\rdpd3d.dll
2013-07-14 13:20:08 ----A---- C:\windows\system32\rasppp.dll
2013-07-14 13:20:08 ----A---- C:\windows\system32\drivers\vpchbus.sys
2013-07-14 13:20:08 ----A---- C:\windows\system32\drivers\vpcnfltr.sys
2013-07-14 13:20:08 ----A---- C:\windows\system32\drivers\raspptp.sys
2013-07-14 13:20:07 ----A---- C:\windows\SYSWOW64\resutils.dll
2013-07-14 13:20:07 ----A---- C:\windows\SYSWOW64\regapi.dll
2013-07-14 13:20:07 ----A---- C:\windows\SYSWOW64\rdpencom.dll
2013-07-14 13:20:07 ----A---- C:\windows\system32\remotepg.dll
2013-07-14 13:20:07 ----A---- C:\windows\system32\ReAgent.dll
2013-07-14 13:20:07 ----A---- C:\windows\system32\QSVRMGMT.DLL
2013-07-14 13:20:07 ----A---- C:\windows\system32\QSHVHOST.DLL
2013-07-14 13:20:07 ----A---- C:\windows\system32\qasf.dll
2013-07-14 13:20:07 ----A---- C:\windows\system32\puiobj.dll
2013-07-14 13:20:07 ----A---- C:\windows\system32\drivers\rdpdr.sys
2013-07-14 13:20:06 ----A---- C:\windows\SYSWOW64\PortableDeviceApi.dll
2013-07-14 13:20:06 ----A---- C:\windows\SYSWOW64\PkgMgr.exe
2013-07-14 13:20:06 ----A---- C:\windows\SYSWOW64\perfts.dll
2013-07-14 13:20:06 ----A---- C:\windows\SYSWOW64\OobeFldr.dll
2013-07-14 13:20:06 ----A---- C:\windows\system32\PresentationHost.exe
2013-07-14 13:20:06 ----A---- C:\windows\system32\powercpl.dll
2013-07-14 13:20:06 ----A---- C:\windows\system32\pla.dll
2013-07-14 13:20:06 ----A---- C:\windows\system32\PkgMgr.exe
2013-07-14 13:20:06 ----A---- C:\windows\system32\photowiz.dll
2013-07-14 13:20:06 ----A---- C:\windows\system32\drivers\pci.sys
2013-07-14 13:20:06 ----A---- C:\windows\system32\drivers\pacer.sys
2013-07-14 13:20:05 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-07-14 13:20:05 ----A---- C:\windows\SYSWOW64\prncache.dll
2013-07-14 13:20:05 ----A---- C:\windows\SYSWOW64\printui.dll
2013-07-14 13:20:05 ----A---- C:\windows\SYSWOW64\PresentationHostProxy.dll
2013-07-14 13:20:05 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-07-14 13:20:05 ----A---- C:\windows\system32\setupcl.exe
2013-07-14 13:20:05 ----A---- C:\windows\system32\SessEnv.dll
2013-07-14 13:20:05 ----A---- C:\windows\system32\provsvc.dll
2013-07-14 13:20:05 ----A---- C:\windows\system32\prnfldr.dll
2013-07-14 13:20:05 ----A---- C:\windows\system32\PrintIsolationProxy.dll
2013-07-14 13:20:05 ----A---- C:\windows\system32\PresentationHostProxy.dll
2013-07-14 13:20:05 ----A---- C:\windows\system32\pdh.dll
2013-07-14 13:20:04 ----A---- C:\windows\SYSWOW64\sisbkup.dll
2013-07-14 13:20:04 ----A---- C:\windows\SYSWOW64\shwebsvc.dll
2013-07-14 13:20:04 ----A---- C:\windows\SYSWOW64\shunimpl.dll
2013-07-14 13:20:04 ----A---- C:\windows\system32\shimgvw.dll
2013-07-14 13:20:04 ----A---- C:\windows\system32\shgina.dll
2013-07-14 13:20:03 ----A---- C:\windows\SYSWOW64\secproc_ssp_isv.dll
2013-07-14 13:20:03 ----A---- C:\windows\SYSWOW64\scansetting.dll
2013-07-14 13:20:03 ----A---- C:\windows\SYSWOW64\runonce.exe
2013-07-14 13:20:03 ----A---- C:\windows\SYSWOW64\rtutils.dll
2013-07-14 13:20:03 ----A---- C:\windows\SYSWOW64\RMActivate_ssp_isv.exe
2013-07-14 13:20:03 ----A---- C:\windows\system32\secproc.dll
2013-07-14 13:20:03 ----A---- C:\windows\system32\scrptadm.dll
2013-07-14 13:20:03 ----A---- C:\windows\system32\scavengeui.dll
2013-07-14 13:20:03 ----A---- C:\windows\system32\samsrv.dll
2013-07-14 13:20:03 ----A---- C:\windows\system32\samcli.dll
2013-07-14 13:20:03 ----A---- C:\windows\system32\RpcRtRemote.dll
2013-07-14 13:20:03 ----A---- C:\windows\system32\RMActivate.exe
2013-07-14 13:20:03 ----A---- C:\windows\system32\drivers\rmcast.sys
2013-07-14 13:20:02 ----A---- C:\windows\SYSWOW64\msftedit.dll
2013-07-14 13:20:02 ----A---- C:\windows\SYSWOW64\msdmo.dll
2013-07-14 13:20:02 ----A---- C:\windows\SYSWOW64\mscms.dll
2013-07-14 13:20:02 ----A---- C:\windows\system32\msconfig.exe
2013-07-14 13:20:01 ----A---- C:\windows\SYSWOW64\shgina.dll
2013-07-14 13:20:01 ----A---- C:\windows\system32\slwga.dll
2013-07-14 13:20:01 ----A---- C:\windows\system32\sisbkup.dll
2013-07-14 13:20:01 ----A---- C:\windows\system32\shsetup.dll
2013-07-14 13:20:01 ----A---- C:\windows\system32\sethc.exe
2013-07-14 13:20:01 ----A---- C:\windows\system32\drivers\sffp_sd.sys
2013-07-14 13:20:00 ----A---- C:\windows\SYSWOW64\wkscli.dll
2013-07-14 13:20:00 ----A---- C:\windows\SYSWOW64\winsta.dll
2013-07-14 13:20:00 ----A---- C:\windows\SYSWOW64\sethc.exe
2013-07-14 13:20:00 ----A---- C:\windows\SYSWOW64\SensorsCpl.dll
2013-07-14 13:20:00 ----A---- C:\windows\system32\wmicmiplugin.dll
2013-07-14 13:19:59 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-07-14 13:19:59 ----A---- C:\windows\SYSWOW64\WMNetMgr.dll
2013-07-14 13:19:59 ----A---- C:\windows\SYSWOW64\tsbyuv.dll
2013-07-14 13:19:58 ----A---- C:\windows\SYSWOW64\wmpshell.dll
2013-07-14 13:19:58 ----A---- C:\windows\SYSWOW64\wmpeffects.dll
2013-07-14 13:19:58 ----A---- C:\windows\SYSWOW64\WinSATAPI.dll
2013-07-14 13:19:58 ----A---- C:\windows\SYSWOW64\winhttp.dll
2013-07-14 13:19:58 ----A---- C:\windows\system32\wmpshell.dll
2013-07-14 13:19:57 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2013-07-14 13:19:57 ----A---- C:\windows\SYSWOW64\azroleui.dll
2013-07-14 13:19:57 ----A---- C:\windows\SYSWOW64\autoconv.exe
2013-07-14 13:19:57 ----A---- C:\windows\system32\wmpps.dll
2013-07-14 13:19:57 ----A---- C:\windows\system32\WMPEncEn.dll
2013-07-14 13:19:57 ----A---- C:\windows\system32\azroleui.dll
2013-07-14 13:19:56 ----A---- C:\windows\system32\TSpkg.dll
2013-07-14 13:19:56 ----A---- C:\windows\system32\AuthFWSnapin.dll
2013-07-14 13:19:55 ----A---- C:\windows\system32\sxs.dll
2013-07-14 13:19:55 ----A---- C:\windows\system32\stobject.dll
2013-07-14 13:19:55 ----A---- C:\windows\system32\sscore.dll
2013-07-14 13:19:55 ----A---- C:\windows\system32\drivers\tssecsrv.sys
2013-07-14 13:19:55 ----A---- C:\windows\system32\appmgr.dll
2013-07-14 13:19:54 ----A---- C:\windows\system32\spbcd.dll
2013-07-14 13:19:53 ----A---- C:\windows\SYSWOW64\taskcomp.dll
2013-07-14 13:19:53 ----A---- C:\windows\SYSWOW64\sqmapi.dll
2013-07-14 13:19:53 ----A---- C:\windows\SYSWOW64\spwmp.dll
2013-07-14 13:19:53 ----A---- C:\windows\system32\tapisrv.dll
2013-07-14 13:19:53 ----A---- C:\windows\system32\systemcpl.dll
2013-07-14 13:19:53 ----A---- C:\windows\system32\srvsvc.dll
2013-07-14 13:19:53 ----A---- C:\windows\system32\sqlsrv32.dll
2013-07-14 13:19:53 ----A---- C:\windows\system32\spwizres.dll
2013-07-14 13:19:53 ----A---- C:\windows\system32\spwizeng.dll
2013-07-14 13:19:53 ----A---- C:\windows\system32\sppc.dll
2013-07-14 13:19:52 ----A---- C:\windows\SYSWOW64\thumbcache.dll
2013-07-14 13:19:52 ----A---- C:\windows\SYSWOW64\termmgr.dll
2013-07-14 13:19:52 ----A---- C:\windows\SYSWOW64\taskmgr.exe
2013-07-14 13:19:52 ----A---- C:\windows\system32\themeui.dll
2013-07-14 13:19:52 ----A---- C:\windows\system32\termmgr.dll
2013-07-14 13:19:52 ----A---- C:\windows\system32\drivers\tdi.sys
2013-07-14 13:19:51 ----A---- C:\windows\SYSWOW64\PhotoScreensaver.scr
2013-07-14 13:19:51 ----A---- C:\windows\SYSWOW64\OpcServices.dll
2013-07-14 13:19:51 ----A---- C:\windows\system32\onexui.dll
2013-07-14 13:19:51 ----A---- C:\windows\system32\onex.dll
2013-07-14 13:19:50 ----A---- C:\windows\SYSWOW64\ppcsnap.dll
2013-07-14 13:19:50 ----A---- C:\windows\system32\prntvpt.dll
2013-07-14 13:19:50 ----A---- C:\windows\system32\PhotoScreensaver.scr
2013-07-14 13:19:50 ----A---- C:\windows\system32\nshipsec.dll
2013-07-14 13:19:49 ----A---- C:\windows\SYSWOW64\printmanagement.msc
2013-07-14 13:19:49 ----A---- C:\windows\SYSWOW64\pmcsnap.dll
2013-07-14 13:19:49 ----A---- C:\windows\SYSWOW64\photowiz.dll
2013-07-14 13:19:49 ----A---- C:\windows\SYSWOW64\netlogon.dll
2013-07-14 13:19:49 ----A---- C:\windows\system32\seclogon.dll
2013-07-14 13:19:49 ----A---- C:\windows\system32\sdrsvc.dll
2013-07-14 13:19:49 ----A---- C:\windows\system32\sdengin2.dll
2013-07-14 13:19:49 ----A---- C:\windows\system32\sdclt.exe
2013-07-14 13:19:49 ----A---- C:\windows\system32\networkexplorer.dll
2013-07-14 13:19:48 ----A---- C:\windows\system32\repair-bde.exe
2013-07-14 13:19:48 ----A---- C:\windows\system32\recdisc.exe
2013-07-14 13:19:48 ----A---- C:\windows\system32\networkmap.dll
2013-07-14 13:19:47 ----A---- C:\windows\SYSWOW64\scrptadm.dll
2013-07-14 13:19:47 ----A---- C:\windows\SYSWOW64\scesrv.dll
2013-07-14 13:19:47 ----A---- C:\windows\SYSWOW64\RMActivate_ssp.exe
2013-07-14 13:19:47 ----A---- C:\windows\system32\rpcss.dll
2013-07-14 13:19:47 ----A---- C:\windows\system32\RMActivate_isv.exe
2013-07-14 13:19:47 ----A---- C:\windows\system32\drivers\sbp2port.sys
2013-07-14 13:19:46 ----A---- C:\windows\SYSWOW64\wshbth.dll
2013-07-14 13:19:46 ----A---- C:\windows\SYSWOW64\Query.dll
2013-07-14 13:19:46 ----A---- C:\windows\SYSWOW64\PushPrinterConnections.exe
2013-07-14 13:19:46 ----A---- C:\windows\SYSWOW64\puiobj.dll
2013-07-14 13:19:46 ----A---- C:\windows\system32\wscapi.dll
2013-07-14 13:19:46 ----A---- C:\windows\system32\rdpencom.dll
2013-07-14 13:19:46 ----A---- C:\windows\system32\rdpcfgex.dll
2013-07-14 13:19:46 ----A---- C:\windows\system32\qcap.dll
2013-07-14 13:19:45 ----A---- C:\windows\SYSWOW64\wsdchngr.dll
2013-07-14 13:19:45 ----A---- C:\windows\system32\wpdbusenum.dll
2013-07-14 13:19:45 ----A---- C:\windows\system32\wpccpl.dll
2013-07-14 13:19:44 ----A---- C:\windows\SYSWOW64\wuapi.dll
2013-07-14 13:19:43 ----A---- C:\windows\SYSWOW64\wups.dll
2013-07-14 13:19:43 ----A---- C:\windows\SYSWOW64\wudriver.dll
2013-07-14 13:19:43 ----A---- C:\windows\SYSWOW64\wshirda.dll
2013-07-14 13:19:43 ----A---- C:\windows\system32\wshirda.dll
2013-07-14 13:19:42 ----A---- C:\windows\SYSWOW64\msutb.dll
2013-07-14 13:19:42 ----A---- C:\windows\SYSWOW64\MSMPEG2ENC.DLL
2013-07-14 13:19:42 ----A---- C:\windows\system32\drivers\msrpc.sys
2013-07-14 13:19:40 ----A---- C:\windows\SYSWOW64\secproc_ssp.dll
2013-07-14 13:19:40 ----A---- C:\windows\SYSWOW64\net1.exe
2013-07-14 13:19:40 ----A---- C:\windows\system32\secproc_isv.dll
2013-07-14 13:19:40 ----A---- C:\windows\system32\msinfo32.exe
2013-07-14 13:19:40 ----A---- C:\windows\system32\drivers\ndiswan.sys
2013-07-14 13:19:39 ----A---- C:\windows\SYSWOW64\netdiagfx.dll
2013-07-14 13:19:39 ----A---- C:\windows\SYSWOW64\netcenter.dll
2013-07-14 13:19:39 ----A---- C:\windows\SYSWOW64\msyuv.dll
2013-07-14 13:19:39 ----A---- C:\windows\SYSWOW64\MSVidCtl.dll
2013-07-14 13:19:39 ----A---- C:\windows\system32\netdiagfx.dll
2013-07-14 13:19:39 ----A---- C:\windows\system32\drivers\ndisuio.sys
2013-07-14 13:19:38 ----A---- C:\windows\SYSWOW64\NaturalLanguage6.dll
2013-07-14 13:19:38 ----A---- C:\windows\system32\nci.dll
2013-07-14 13:19:38 ----A---- C:\windows\system32\Narrator.exe
2013-07-14 13:19:36 ----A---- C:\windows\SYSWOW64\actxprxy.dll
2013-07-14 13:19:36 ----A---- C:\windows\system32\drivers\acpipmi.sys
2013-07-14 13:19:35 ----A---- C:\windows\system32\lsm.exe
2013-07-14 13:19:35 ----A---- C:\windows\system32\localsec.dll
2013-07-14 13:19:35 ----A---- C:\windows\system32\drivers\ks.sys
2013-07-14 13:19:34 ----A---- C:\windows\SYSWOW64\iyuv_32.dll
2013-07-14 13:19:34 ----A---- C:\windows\system32\ipsmsnap.dll
2013-07-14 13:19:33 ----A---- C:\windows\SYSWOW64\inetmib1.dll
2013-07-14 13:19:32 ----A---- C:\windows\SYSWOW64\KBDTAJIK.DLL
2013-07-14 13:19:32 ----A---- C:\windows\SYSWOW64\KBDMON.DLL
2013-07-14 13:19:32 ----A---- C:\windows\system32\KBDTUQ.DLL
2013-07-14 13:19:32 ----A---- C:\windows\system32\KBDLT1.DLL
2013-07-14 13:19:31 ----A---- C:\windows\SYSWOW64\vfwwdm32.dll
2013-07-14 13:19:31 ----A---- C:\windows\SYSWOW64\vdsbas.dll
2013-07-14 13:19:31 ----A---- C:\windows\SYSWOW64\KBDUS.DLL
2013-07-14 13:19:31 ----A---- C:\windows\SYSWOW64\KBDINTAM.DLL
2013-07-14 13:19:31 ----A---- C:\windows\SYSWOW64\KBDINMAR.DLL
2013-07-14 13:19:31 ----A---- C:\windows\SYSWOW64\KBDINHIN.DLL
2013-07-14 13:19:31 ----A---- C:\windows\system32\uxlib.dll
2013-07-14 13:19:31 ----A---- C:\windows\system32\KBDINTEL.DLL
2013-07-14 13:19:31 ----A---- C:\windows\system32\KBDINORI.DLL
2013-07-14 13:19:31 ----A---- C:\windows\system32\KBDBASH.DLL
2013-07-14 13:19:31 ----A---- C:\windows\system32\drivers\vms3cap.sys
2013-07-14 13:19:31 ----A---- C:\windows\system32\drivers\VMBusHID.sys
2013-07-14 13:19:30 ----A---- C:\windows\SYSWOW64\VAN.dll
2013-07-14 13:19:30 ----A---- C:\windows\system32\wiaservc.dll
2013-07-14 13:19:30 ----A---- C:\windows\system32\userenv.dll
2013-07-14 13:19:29 ----A---- C:\windows\SYSWOW64\vssapi.dll
2013-07-14 13:19:29 ----A---- C:\windows\SYSWOW64\MFPlay.dll
2013-07-14 13:19:29 ----A---- C:\windows\system32\wiavideo.dll
2013-07-14 13:19:29 ----A---- C:\windows\system32\mcupdate_GenuineIntel.dll
2013-07-14 13:19:29 ----A---- C:\windows\system32\mcmde.dll
2013-07-14 13:19:29 ----A---- C:\windows\system32\drivers\vpcvmm.sys
2013-07-14 13:19:28 ----A---- C:\windows\SYSWOW64\UserAccountControlSettings.dll
2013-07-14 13:19:28 ----A---- C:\windows\SYSWOW64\mfreadwrite.dll
2013-07-14 13:19:28 ----A---- C:\windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2013-07-14 13:19:28 ----A---- C:\windows\SYSWOW64\luainstall.dll
2013-07-14 13:19:28 ----A---- C:\windows\SYSWOW64\defaultlocationcpl.dll
2013-07-14 13:19:28 ----A---- C:\windows\system32\usercpl.dll
2013-07-14 13:19:28 ----A---- C:\windows\system32\TSWorkspace.dll
2013-07-14 13:19:28 ----A---- C:\windows\system32\mfreadwrite.dll
2013-07-14 13:19:28 ----A---- C:\windows\system32\mapistub.dll
2013-07-14 13:19:28 ----A---- C:\windows\system32\mapi32.dll
2013-07-14 13:19:28 ----A---- C:\windows\system32\DiagCpl.dll
2013-07-14 13:19:28 ----A---- C:\windows\system32\cscui.dll
2013-07-14 13:19:27 ----A---- C:\windows\SYSWOW64\dxmasf.dll
2013-07-14 13:19:27 ----A---- C:\windows\SYSWOW64\dwmcore.dll
2013-07-14 13:19:27 ----A---- C:\windows\system32\dsuiext.dll
2013-07-14 13:19:27 ----A---- C:\windows\system32\dskquoui.dll
2013-07-14 13:19:27 ----A---- C:\windows\system32\dfrgui.exe
2013-07-14 13:19:26 ----A---- C:\windows\SYSWOW64\cscapi.dll
2013-07-14 13:19:26 ----A---- C:\windows\SYSWOW64\cca.dll
2013-07-14 13:19:26 ----A---- C:\windows\SYSWOW64\cabinet.dll
2013-07-14 13:19:26 ----A---- C:\windows\SYSWOW64\browseui.dll
2013-07-14 13:19:26 ----A---- C:\windows\SYSWOW64\bitsperf.dll
2013-07-14 13:19:26 ----A---- C:\windows\system32\dwmcore.dll
2013-07-14 13:19:26 ----A---- C:\windows\system32\dnscmmc.dll
2013-07-14 13:19:26 ----A---- C:\windows\system32\cscapi.dll
2013-07-14 13:19:26 ----A---- C:\windows\system32\credssp.dll
2013-07-14 13:19:26 ----A---- C:\windows\system32\ci.dll
2013-07-14 13:19:26 ----A---- C:\windows\system32\C_ISCII.DLL
2013-07-14 13:19:26 ----A---- C:\windows\system32\bitsadmin.exe
2013-07-14 13:19:25 ----A---- C:\windows\SYSWOW64\hbaapi.dll
2013-07-14 13:19:25 ----A---- C:\windows\SYSWOW64\cscdll.dll
2013-07-14 13:19:25 ----A---- C:\windows\system32\gpprefcl.dll
2013-07-14 13:19:25 ----A---- C:\windows\system32\cscsvc.dll
2013-07-14 13:19:25 ----A---- C:\windows\system32\cscdll.dll
2013-07-14 13:19:25 ----A---- C:\windows\system32\comctl32.dll
2013-07-14 13:19:24 ----A---- C:\windows\SYSWOW64\ifsutil.dll
2013-07-14 13:19:24 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-07-14 13:19:24 ----A---- C:\windows\SYSWOW64\fms.dll
2013-07-14 13:19:24 ----A---- C:\windows\system32\zipfldr.dll
2013-07-14 13:19:24 ----A---- C:\windows\system32\FXSTIFF.dll
2013-07-14 13:19:24 ----A---- C:\windows\system32\FXSAPI.dll
2013-07-14 13:19:24 ----A---- C:\windows\system32\drivers\fltMgr.sys
2013-07-14 13:19:23 ----A---- C:\windows\SYSWOW64\iccvid.dll
2013-07-14 13:19:23 ----A---- C:\windows\SYSWOW64\iasrecst.dll
2013-07-14 13:19:23 ----A---- C:\windows\SYSWOW64\EhStorAPI.dll
2013-07-14 13:19:23 ----A---- C:\windows\system32\ifsutil.dll
2013-07-14 13:19:23 ----A---- C:\windows\system32\EhStorAPI.dll
2013-07-14 13:19:22 ----A---- C:\windows\system32\fixmapi.exe
2013-07-14 13:19:22 ----A---- C:\windows\system32\findstr.exe
2013-07-14 13:19:22 ----A---- C:\windows\system32\fdeploy.dll
2013-07-14 13:17:15 ----D---- C:\windows\system32\EventProviders
2013-07-14 12:16:17 ----D---- C:\Symbols
2013-07-14 11:58:20 ----D---- C:\windows\system32\MRT
2013-07-14 11:57:35 ----A---- C:\windows\SYSWOW64\javaws.exe
2013-07-14 11:57:30 ----A---- C:\windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-07-14 11:57:30 ----A---- C:\windows\SYSWOW64\javaw.exe
2013-07-14 11:57:30 ----A---- C:\windows\SYSWOW64\java.exe
2013-07-14 11:57:21 ----D---- C:\Program Files (x86)\Java

======List of files/folders modified in the last 1 month======

2013-08-13 21:18:47 ----D---- C:\Program Files\trend micro
2013-08-13 21:12:39 ----D---- C:\windows\Temp
2013-08-13 21:11:41 ----D---- C:\windows\system32\config
2013-08-13 21:11:38 ----A---- C:\windows\SYSWOW64\log.txt
2013-08-12 19:34:50 ----SHD---- C:\windows\Installer
2013-08-12 19:34:49 ----D---- C:\ProgramData\Skype
2013-08-12 19:34:46 ----RD---- C:\Program Files (x86)
2013-08-12 19:34:46 ----D---- C:\Program Files (x86)\Common Files
2013-08-11 22:46:52 ----RSD---- C:\windows\Fonts
2013-08-11 22:46:52 ----HD---- C:\ProgramData
2013-08-11 14:06:16 ----D---- C:\windows\SysWOW64
2013-08-11 14:02:10 ----D---- C:\Windows
2013-08-11 14:00:43 ----D---- C:\windows\system32\drivers
2013-08-11 14:00:43 ----D---- C:\windows\inf
2013-08-11 14:00:42 ----D---- C:\windows\system32\catroot
2013-08-11 14:00:40 ----SHD---- C:\System Volume Information
2013-08-11 14:00:40 ----D---- C:\windows\system32\DriverStore
2013-08-11 10:53:55 ----D---- C:\ProgramData\InstallMate
2013-08-10 21:51:44 ----D---- C:\windows\SYSWOW64\Macromed
2013-08-10 20:40:16 ----D---- C:\Program Files\CCleaner
2013-08-10 18:54:50 ----D---- C:\windows\system32\NDF
2013-08-03 21:01:56 ----D---- C:\windows\Prefetch
2013-08-03 21:01:53 ----D---- C:\windows\winsxs
2013-08-03 16:46:50 ----D---- C:\windows\Microsoft.NET
2013-08-03 16:46:25 ----RSD---- C:\windows\assembly
2013-08-02 22:26:59 ----D---- C:\windows\System32
2013-08-02 22:26:59 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-07-28 19:01:16 ----D---- C:\windows\system32\catroot2
2013-07-27 20:44:29 ----D---- C:\windows\rescache
2013-07-27 16:09:59 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-07-27 16:09:59 ----D---- C:\windows\system32\cs-CZ
2013-07-27 16:09:59 ----D---- C:\windows\AppPatch
2013-07-27 16:09:58 ----D---- C:\windows\SYSWOW64\wbem
2013-07-27 16:09:58 ----D---- C:\windows\SYSWOW64\en-US
2013-07-27 16:09:58 ----D---- C:\windows\system32\wbem
2013-07-27 16:09:58 ----D---- C:\windows\system32\en-US
2013-07-27 16:09:58 ----D---- C:\windows\system32\drivers\en-US
2013-07-27 16:09:58 ----D---- C:\windows\PolicyDefinitions
2013-07-27 16:09:58 ----D---- C:\Program Files\Windows Defender
2013-07-27 16:09:58 ----D---- C:\Program Files (x86)\Windows Defender
2013-07-27 16:09:57 ----D---- C:\windows\SYSWOW64\migration
2013-07-27 16:09:57 ----D---- C:\windows\system32\migration
2013-07-27 16:09:56 ----D---- C:\Program Files\Windows Journal
2013-07-27 15:52:21 ----D---- C:\windows\system32\Tasks
2013-07-14 21:44:11 ----D---- C:\Users\Vitek\AppData\Roaming\DAEMON Tools Lite
2013-07-14 21:44:11 ----D---- C:\Program Files (x86)\PDFCreator
2013-07-14 21:44:09 ----D---- C:\windows\Panther
2013-07-14 21:44:08 ----D---- C:\windows\Logs
2013-07-14 21:44:08 ----D---- C:\windows\debug
2013-07-14 14:34:32 ----SD---- C:\Users\Vitek\AppData\Roaming\Microsoft
2013-07-14 14:28:18 ----D---- C:\Program Files\Internet Explorer
2013-07-14 14:28:18 ----D---- C:\Program Files (x86)\Internet Explorer
2013-07-14 14:28:17 ----D---- C:\windows\SYSWOW64\sl-SI
2013-07-14 14:28:17 ----D---- C:\windows\SYSWOW64\sk-SK
2013-07-14 14:28:17 ----D---- C:\windows\SYSWOW64\hr-HR
2013-07-14 14:28:16 ----D---- C:\windows\system32\sl-SI
2013-07-14 14:28:16 ----D---- C:\windows\system32\sk-SK
2013-07-14 14:28:16 ----D---- C:\windows\system32\hr-HR
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\zh-TW
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\zh-HK
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\zh-CN
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\tr-TR
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\sv-SE
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\ru-RU
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\pt-PT
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\pt-BR
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\pl-PL
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\nl-NL
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\nb-NO
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\ko-KR
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\ja-JP
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\it-IT
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\hu-HU
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\fr-FR
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\fi-FI
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\es-ES
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\el-GR
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\de-DE
2013-07-14 14:28:15 ----D---- C:\windows\SYSWOW64\da-DK
2013-07-14 14:28:15 ----D---- C:\windows\system32\pt-PT
2013-07-14 14:28:15 ----D---- C:\windows\system32\pt-BR
2013-07-14 14:28:15 ----D---- C:\windows\system32\pl-PL
2013-07-14 14:28:15 ----D---- C:\windows\system32\ko-KR
2013-07-14 14:28:15 ----D---- C:\windows\system32\it-IT
2013-07-14 14:28:14 ----D---- C:\windows\system32\zh-TW
2013-07-14 14:28:14 ----D---- C:\windows\system32\zh-HK
2013-07-14 14:28:14 ----D---- C:\windows\system32\zh-CN
2013-07-14 14:28:14 ----D---- C:\windows\system32\tr-TR
2013-07-14 14:28:14 ----D---- C:\windows\system32\sv-SE
2013-07-14 14:28:14 ----D---- C:\windows\system32\ru-RU
2013-07-14 14:28:14 ----D---- C:\windows\system32\nl-NL
2013-07-14 14:28:14 ----D---- C:\windows\system32\nb-NO
2013-07-14 14:28:14 ----D---- C:\windows\system32\ja-JP
2013-07-14 14:28:14 ----D---- C:\windows\system32\hu-HU
2013-07-14 14:28:14 ----D---- C:\windows\system32\fr-FR
2013-07-14 14:28:14 ----D---- C:\windows\system32\fi-FI
2013-07-14 14:28:14 ----D---- C:\windows\system32\es-ES
2013-07-14 14:28:14 ----D---- C:\windows\system32\el-GR
2013-07-14 14:28:14 ----D---- C:\windows\system32\de-DE
2013-07-14 14:28:14 ----D---- C:\windows\system32\da-DK
2013-07-14 14:03:33 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-07-14 14:03:33 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-07-14 14:03:33 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-07-14 14:03:33 ----D---- C:\Program Files (x86)\Windows Media Player
2013-07-14 14:03:33 ----D---- C:\Program Files (x86)\Windows Mail
2013-07-14 14:03:30 ----D---- C:\Program Files\Windows Sidebar
2013-07-14 14:03:30 ----D---- C:\Program Files\Windows Mail
2013-07-14 14:03:29 ----D---- C:\windows\servicing
2013-07-14 14:03:29 ----D---- C:\windows\ehome
2013-07-14 14:03:29 ----D---- C:\Program Files\Windows Portable Devices
2013-07-14 14:03:29 ----D---- C:\Program Files\Windows Photo Viewer
2013-07-14 14:03:29 ----D---- C:\Program Files\Windows Media Player
2013-07-14 14:03:29 ----D---- C:\Program Files\DVD Maker
2013-07-14 14:03:29 ----D---- C:\Program Files\Common Files\System
2013-07-14 14:03:27 ----D---- C:\windows\SYSWOW64\Setup
2013-07-14 14:03:27 ----D---- C:\windows\SYSWOW64\oobe
2013-07-14 14:03:27 ----D---- C:\windows\SYSWOW64\he-IL
2013-07-14 14:03:27 ----D---- C:\windows\SYSWOW64\cs
2013-07-14 14:03:27 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2013-07-14 14:03:26 ----D---- C:\windows\SYSWOW64\th-TH
2013-07-14 14:03:26 ----D---- C:\windows\SYSWOW64\sppui
2013-07-14 14:03:26 ----D---- C:\windows\SYSWOW64\ro-RO
2013-07-14 14:03:26 ----D---- C:\windows\SYSWOW64\manifeststore
2013-07-14 14:03:25 ----D---- C:\windows\SYSWOW64\migwiz
2013-07-14 14:03:25 ----D---- C:\windows\SYSWOW64\Dism
2013-07-14 14:03:25 ----D---- C:\windows\SYSWOW64\ar-SA
2013-07-14 14:03:18 ----D---- C:\windows\system32\Setup
2013-07-14 14:03:18 ----D---- C:\windows\system32\oobe
2013-07-14 14:03:18 ----D---- C:\windows\system32\he-IL
2013-07-14 14:03:18 ----D---- C:\windows\system32\AdvancedInstallers
2013-07-14 14:03:17 ----D---- C:\windows\system32\manifeststore
2013-07-14 14:03:17 ----D---- C:\windows\system32\cs
2013-07-14 14:03:16 ----D---- C:\windows\system32\th-TH
2013-07-14 14:03:16 ----D---- C:\windows\system32\sppui
2013-07-14 14:03:16 ----D---- C:\windows\system32\ro-RO
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\tr-TR
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\th-TH
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\pt-PT
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\pt-BR
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\pl-PL
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\nl-NL
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\ko-KR
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\it-IT
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\hu-HU
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\he-IL
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\fr-FR
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\fi-FI
2013-07-14 14:03:16 ----D---- C:\windows\system32\drivers\el-GR
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\zh-TW
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\zh-CN
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\sv-SE
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\ru-RU
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\ro-RO
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\nb-NO
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\ja-JP
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\es-ES
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\de-DE
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\da-DK
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\cs-CZ
2013-07-14 14:03:15 ----D---- C:\windows\system32\drivers\ar-SA
2013-07-14 14:03:15 ----D---- C:\windows\system32\ar-SA
2013-07-14 14:03:14 ----D---- C:\windows\system32\migwiz
2013-07-14 14:03:14 ----D---- C:\windows\system32\Dism
2013-07-14 14:02:40 ----D---- C:\windows\system32\Boot
2013-07-14 13:54:51 ----A---- C:\windows\SYSWOW64\msclmd.dll
2013-07-14 13:54:51 ----A---- C:\windows\system32\msclmd.dll
2013-07-14 11:57:22 ----A---- C:\windows\SYSWOW64\npDeployJava1.dll
2013-07-14 11:57:22 ----A---- C:\windows\SYSWOW64\deployJava1.dll
2013-07-14 11:54:29 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\windows\system32\drivers\aswVmm.sys [2013-07-14 189936]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-01-08 409112]
R0 PxHlpa64;PxHlpa64; C:\windows\System32\Drivers\PxHlpa64.sys [2009-07-09 55280]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SafeBoot;SafeBoot; C:\windows\system32\drivers\SafeBoot.sys [2010-02-02 56648]
R0 SbAlg;SbAlg; C:\windows\system32\drivers\SbAlg.sys [2009-06-04 60160]
R0 SbFsLock;SbFsLock; C:\windows\system32\drivers\SbFsLock.sys [2010-02-02 15688]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2013-07-14 1030952]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2013-07-14 378944]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-21 283200]
R1 RsvLock;RsvLock; C:\windows\system32\drivers\RsvLock.sys [2010-02-02 58184]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R2 rimspci;rimspci; C:\windows\system32\DRIVERS\rimspe64.sys [2009-10-26 61952]
R2 risdpcie;risdpcie; C:\windows\system32\DRIVERS\risdpe64.sys [2009-10-28 79360]
R2 rixdpcie;rixdpcie; C:\windows\system32\DRIVERS\rixdpe64.sys [2009-12-11 55808]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 43320]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2010-01-21 1209856]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl664.sys [2012-10-13 3058168]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K; C:\windows\system32\DRIVERS\e1k62x64.sys [2010-01-07 295088]
R3 hamachi;Hamachi Network Interface; C:\windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2010-04-21 10326784]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2010-01-18 1803904]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
R3 WinUSB;WinUSB Service; C:\windows\system32\DRIVERS\WinUSB.sys [2010-11-20 41984]
S3 acsock;acsock; C:\windows\system32\DRIVERS\acsock64.sys [2012-06-07 107432]
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2009-10-21 40760]
S3 NETw5s64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\windows\system32\DRIVERS\NETw5s64.sys [2010-02-01 7675392]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 vpnva;Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64; C:\windows\system32\DRIVERS\vpnva64.sys [2012-06-07 27048]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ac.sharedstore;ActivIdentity Shared Store Service; C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe [2009-06-04 277032]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2010-01-21 16896]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2010-03-31 462088]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-06-28 2470736]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-04-05 103992]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-03-28 94264]
R2 HpFkCryptService;Drive Encryption Service; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [2010-02-02 281192]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2011-05-13 30520]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2010-01-08 354840]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2010-02-22 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-04 268824]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-07-25 162672]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-04 2320920]
R2 vpnagent;Cisco AnyConnect Secure Mobility Agent; C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe [2012-06-07 478712]
R3 DEBridge;DEBridge; c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe [2010-02-02 704512]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-03-28 799800]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2010-02-18 2045232]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-14 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 RoxMediaDB10;RoxMediaDB10; c:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2009-11-23 1120752]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2012-10-13 1255736]
S4 FLCDLOCK;HP ProtectTools Device Locking / Auditing; c:\Windows\SysWOW64\flcdlock.exe [2009-12-07 362040]
S4 HP ProtectTools Service;HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [2010-03-17 36864]
S4 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-09-09 86072]
S4 HPDayStarterService;HP DayStarter Service; c:\Program Files (x86)\Hewlett-Packard\HP QuickLook\HPDayStarterService.exe [2010-03-25 90112]
S4 HPFSService;File Sanitizer for HP ProtectTools; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2010-01-19 297984]

-----------------EOF-----------------

Re: preventikva

Napsal: 14 srp 2013 01:45
od Márty84
Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Prohledat a program zacne pracovat.
Az skonci, vyplivne na vas log (pokud ne, najdete ho zde C:\AdwCleaner[R?].txt ), ten mi sem zkopirujte.

Re: preventikva

Napsal: 14 srp 2013 18:54
od selkir
# AdwCleaner v3.000 - Report created14/08/2013at19:48:35
# Updated 13/08/2013 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Vitek - VITEK-HP
# Running from : C:\Users\Vitek\Downloads\adwcleaner.exe

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\InstallMate
Folder Deleted : C:\ProgramData\SoftSafe
Folder Deleted : C:\Users\Vitek\AppData\Roaming\pdfforge

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKLM\SOFTWARE\Classes\pdfforge.PDF.PDFText
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1D512261-7F39-3DEA-B9E6-44F1B58C5783}
Key Deleted : HKLM\SOFTWARE\Classes\pdfforge.X509.X509
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CE383B7-8DE1-3A87-A090-E01004C18D0D}
Key Deleted : HKLM\SOFTWARE\Classes\pdfforge.PDF.PDFLine
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2EDB5376-DAA6-3443-826C-3A7B64DBC9D1}
Key Deleted : HKLM\SOFTWARE\Classes\pdfforge.PDF.PDF
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{358C5262-FCCB-32F9-AE90-6A9276CD1A71}
Key Deleted : HKLM\SOFTWARE\Classes\pdfforge.Tools
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64F5B8EE-AC0D-3B21-9C1A-E3EF0DD966FC}
Key Deleted : HKLM\SOFTWARE\Classes\pdfforge.PDF.PDFEncryptor
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{65E0A140-B49D-332E-9678-A214CE10BBDF}
Key Deleted : HKLM\SOFTWARE\Classes\pdfforge.PDF.PDF.X509.Signing
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{916B50E2-28CA-3B5A-8503-D3B62193F207}
Key Deleted : HKLM\SOFTWARE\Classes\pdfforge.PDF.PDF.X509
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E2E4E38F-7318-3FB0-8A79-D2F9595430BB}
Key Deleted : HKLM\SOFTWARE\Classes\pdfforge.DllInfo
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F749CA8E-15C7-3D60-B935-5500537B29A8}
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\PIP
Key Deleted : HKCU\Software\AppDataLow\SProtector
Key Deleted : HKLM\Software\DeviceVM
Key Deleted : HKLM\Software\SProtector
Key Deleted : [x64] HKLM\SOFTWARE\DeviceVM
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16635

Setting Reset : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Reset : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v


[ File : C:\Users\Vitek\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Restored : urls_to_restore_on_startup

*************************

AdwCleaner[0].txt - [2740 octets] - [14/08/2013 19:48:35]

########## EOF - C:\AdwCleaner\AdwCleaner[0].txt - [2799 octets] ##########

Re: preventikva

Napsal: 15 srp 2013 01:32
od Márty84
:arrow: Udelejte !!!kompletni!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce

Re: preventikva

Napsal: 15 srp 2013 20:23
od selkir
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2013.08.15.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16660
Vitek :: VITEK-HP [administrátor]

15.8.2013 19:21:53
MBAM-log-2013-08-15 (21-23-06).txt

Typ: Kompletní kontrola (C:\|E:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 409145
Uplynulý čas: 46 minut, 21 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 13
C:\$Recycle.Bin\S-1-5-21-1372579906-2074874801-2762831214-1002\$RXHJ0HX.exe (PUP.Optional.Somoto) -> Nebyla provedena žádná instrukce.
C:\$Recycle.Bin\S-1-5-21-1372579906-2074874801-2762831214-1002\$RYAVP0K.exe (PUP.Optional.Installex) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\ProgramData\InstallMate\{2DE1AD7E-617D-40C8-A223-295FF6028F88}\Setup.exe.vir (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\ProgramData\InstallMate\{2DE1AD7E-617D-40C8-A223-295FF6028F88}\TsuDll.dll.vir (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\ProgramData\InstallMate\{E5A9449C-FBD4-4AFF-A814-B3F63E4A666A}\Setup.exe.vir (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\ProgramData\InstallMate\{E5A9449C-FBD4-4AFF-A814-B3F63E4A666A}\TsuDll.dll.vir (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\Broowsee22save\51596ffcb7dcb.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\saovvenusshaRe\520750ffdc4bd.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Users\Vitek\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\099IG9TD\520751000dba7[1].exe (PUP.Optional.SilentInstall.A) -> Nebyla provedena žádná instrukce.
C:\Users\Vitek\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RBDVCYM5\ezdownloader[1].exe (PUP.Optional.EZDownloader.A) -> Nebyla provedena žádná instrukce.
C:\Users\Vitek\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RBDVCYM5\search_defender_166[1].exe (PUP.Optional.SProtect.A) -> Nebyla provedena žádná instrukce.
C:\Users\Vitek\AppData\Local\Temp\appshat-distribution.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Vitek\AppData\Local\Temp\BabylonTB.exe (PUP.Optional.Babylon.A) -> Nebyla provedena žádná instrukce.

(konec)

Re: preventikva

Napsal: 16 srp 2013 03:21
od Márty84
:arrow: Vsechny nalezy nechte odstranit, pak MBAM odinstalujte.


:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu, kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte

Re: preventikva

Napsal: 16 srp 2013 18:37
od selkir
RogueKiller V8.6.5 [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Vitek [Práva správce]
Mód : Kontrola -- Datum : 08/16/2013 19:36:41
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Google Update ("C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe" /c [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-1372579906-2074874801-2762831214-1002\[...]\Run : Google Update ("C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe" /c [7]) -> NALEZENO
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 4 ¤¤¤
[V1][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002UA.job : C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe - /ua /installsource scheduler [7][x] -> NALEZENO
[V1][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002Core.job : C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe - /c [7] -> NALEZENO
[V2][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002Core : C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe - /c [7] -> NALEZENO
[V2][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002UA : C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe - /ua /installsource scheduler [7][x] -> NALEZENO

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: Hitachi HTS725050A9A364 +++++
--- User ---
[MBR] 7fe02687ea35eb35847adf4c409e6695
[BSP] 7af4d8a770239ced1c8ffb12e376bef2 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 300 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 616448 | Size: 459229 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 941117440 | Size: 15360 Mo
3 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 972574720 | Size: 2049 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_08162013_193641.txt >>

Re: preventikva

Napsal: 17 srp 2013 08:31
od Márty84
:arrow: Znovu spustte RogueKiller jako spravce (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.

Re: preventikva

Napsal: 17 srp 2013 09:51
od selkir
RogueKiller V8.6.5 [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Vitek [Práva správce]
Mód : Odebrat -- Datum : 08/17/2013 10:51:41
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP PATH] GoogleUpdate.exe -- C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Google Update ("C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe" /c [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-1372579906-2074874801-2762831214-1002\[...]\Run : Google Update ("C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe" /c [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NAHRAZENO (1)
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 4 ¤¤¤
[V1][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002UA.job : C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe - /ua /installsource scheduler [7][x] -> VYMAZÁNO
[V1][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002Core.job : C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe - /c [7] -> VYMAZÁNO
[V2][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002Core : C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe - /c [7] -> VYMAZÁNO
[V2][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-1372579906-2074874801-2762831214-1002UA : C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe - /ua /installsource scheduler [7][x] -> VYMAZÁNO

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: Hitachi HTS725050A9A364 +++++
--- User ---
[MBR] 7fe02687ea35eb35847adf4c409e6695
[BSP] 7af4d8a770239ced1c8ffb12e376bef2 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 300 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 616448 | Size: 459229 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 941117440 | Size: 15360 Mo
3 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 972574720 | Size: 2049 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_08172013_105141.txt >>
RKreport[0]_S_08162013_193641.txt;RKreport[0]_S_08172013_105054.txt

Re: preventikva

Napsal: 17 srp 2013 09:52
od selkir
RogueKiller V8.6.5 [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Vitek [Práva správce]
Mód : Oprava HOSTS -- Datum : 08/17/2013 10:52:08
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP PATH] GoogleUpdate.exe -- C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost


Dokončeno : << RKreport[0]_H_08172013_105208.txt >>
RKreport[0]_D_08172013_105141.txt;RKreport[0]_S_08162013_193641.txt;RKreport[0]_S_08172013_105054.txt

Re: preventikva

Napsal: 17 srp 2013 11:00
od Márty84
Dejte novy log z RSIT

Re: preventikva

Napsal: 17 srp 2013 11:23
od selkir
Logfile of random's system information tool 1.09 (written by random/random)
Run by Vitek at 2013-08-17 12:23:11
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 406 GB (88%) free of 459 GB
Total RAM: 3887 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:23:13, on 17.8.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16660)
Boot mode: Normal

Running processes:
c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Optimizer Pro\OptProStart.exe
C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Vitek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [estar] C:\System.Sav\Util\HideDOS.EXE C:\System.Sav\util\estartwk\twk764.bat
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Optimizer Pro] C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://c:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {538793D5-659C-4639-A56C-A179AD87ED44} (VPNWeb Control) - vpnweb.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\optimi~1\optpro~1.dll
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ActivIdentity Shared Store Service (ac.sharedstore) - ActivIdentity - C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: DEBridge - McAfee, Inc. - c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - McAfee, Inc. - c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: RoxMediaDB10 - Sonic Solutions - c:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: Cisco AnyConnect Secure Mobility Agent (vpnagent) - Cisco Systems, Inc. - C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10347 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
"c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe"
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
"C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe"
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 26475040
\??\C:\windows\system32\conhost.exe "-3975367131565039010-1254558382-2825353814154963231239942721-9375636582086545126
taskeng.exe {BAE721E3-0AF2-42E3-A344-2212F9D28B31}
C:\windows\System32\spoolsv.exe
"C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
"C:\Program Files\ActivIdentity\ActivClient\acevents.exe"
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\wbem\unsecapp.exe -Embedding
"c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\windows\servicing\TrustedInstaller.exe
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe" /hidden
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\ActivIdentity\ActivClient\acevents.exe"
"C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" -startup
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4652.0.2011351364\2130362899" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,20 --gpu-vendor-id=0x8086 --gpu-device-id=0x0046 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2119 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/ --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="4652.3.1389812620\1722653585" /prefetch:673131151
C:\windows\System32\svchost.exe -k LocalServicePeerNet
taskeng.exe {EFD88117-2572-4529-9BA7-D21491CA1248}
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Bluetooth®: Off
WLAN: On</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_on.ico</IconPath><ID>1638668026</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
C:\windows\system32\vssvc.exe
C:\windows\System32\svchost.exe -k swprv
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="4652.4.1269913081\431901177" /prefetch:673131151
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4652.5.676115283\497113066" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Optimizer Pro\OptProStart.exe"
"C:\Users\Vitek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/Compact2/OmniboxStopTimer/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="4652.8.630649230\501484279" /prefetch:673131151
C:\windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Vitek\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\HPCeeScheduleForVitek.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP ProtectTools Security Manager Extension - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll [2010-04-02 2132232]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-07-14 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-07-14 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2010-01-08 186904]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-04-05 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"acevents"=C:\Program Files\ActivIdentity\ActivClient\acevents.exe [2009-06-04 196648]
""= []
"accrdsub"=C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [2009-06-04 483880]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-04-26 161304]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-04-26 386584]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-04-26 413208]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-08-01 3673696]
"Optimizer Pro"=C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [2013-06-21 135672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Vitek\AppData\Local\Google\Update\GoogleUpdate.exe [2013-01-14 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-06-28 2255184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\\Phone\Skype.exe [2013-07-25 20684656]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"estar"=C:\System.Sav\Util\HideDOS.EXE [2006-11-29 77824]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2010-03-04 111640]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"daemontoolslite"= []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-04-21 269824]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.com - open -

======List of files/folders created in the last 1 month======

2013-08-17 12:20:46 ----D---- C:\Program Files (x86)\Optimizer Pro
2013-08-17 12:19:55 ----A---- C:\windows\system32\drivers\dtsoftbus01.sys
2013-08-17 12:19:49 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-08-15 19:12:42 ----D---- C:\Users\Vitek\AppData\Roaming\Malwarebytes
2013-08-15 19:12:31 ----D---- C:\ProgramData\Malwarebytes
2013-08-14 20:01:24 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-08-14 20:01:23 ----A---- C:\windows\system32\ieui.dll
2013-08-14 20:01:22 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-08-14 20:01:22 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-08-14 20:01:22 ----A---- C:\windows\system32\iesetup.dll
2013-08-14 20:01:22 ----A---- C:\windows\system32\iernonce.dll
2013-08-14 20:01:21 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-08-14 20:01:21 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-08-14 20:01:21 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-08-14 20:01:21 ----A---- C:\windows\system32\iesysprep.dll
2013-08-14 20:01:21 ----A---- C:\windows\system32\ie4uinit.exe
2013-08-14 20:01:20 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-08-14 20:01:19 ----A---- C:\windows\system32\iertutil.dll
2013-08-14 20:01:18 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-08-14 20:01:17 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-08-14 20:01:17 ----A---- C:\windows\system32\msfeeds.dll
2013-08-14 20:01:17 ----A---- C:\windows\system32\jscript.dll
2013-08-14 20:01:16 ----A---- C:\windows\system32\jscript9.dll
2013-08-14 20:01:15 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-08-14 20:01:15 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-08-14 20:01:14 ----A---- C:\windows\system32\urlmon.dll
2013-08-14 20:01:13 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-08-14 20:01:13 ----A---- C:\windows\system32\jsproxy.dll
2013-08-14 20:01:12 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-08-14 20:01:11 ----A---- C:\windows\system32\wininet.dll
2013-08-14 20:01:10 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-08-14 20:01:09 ----A---- C:\windows\system32\ieframe.dll
2013-08-14 20:01:08 ----A---- C:\windows\system32\mshtml.dll
2013-08-14 20:01:05 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-08-14 19:50:32 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-08-14 19:50:32 ----A---- C:\windows\system32\crypt32.dll
2013-08-14 19:50:31 ----A---- C:\windows\SYSWOW64\wintrust.dll
2013-08-14 19:50:31 ----A---- C:\windows\SYSWOW64\cryptsvc.dll
2013-08-14 19:50:31 ----A---- C:\windows\SYSWOW64\cryptnet.dll
2013-08-14 19:50:31 ----A---- C:\windows\system32\wintrust.dll
2013-08-14 19:50:31 ----A---- C:\windows\system32\cryptsvc.dll
2013-08-14 19:50:31 ----A---- C:\windows\system32\cryptnet.dll
2013-08-14 19:50:22 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-08-14 19:50:22 ----A---- C:\windows\system32\tzres.dll
2013-08-14 19:50:20 ----A---- C:\windows\system32\WMVDECOD.DLL
2013-08-14 19:50:19 ----A---- C:\windows\SYSWOW64\WMVDECOD.DLL
2013-08-14 19:50:19 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2013-08-14 19:50:19 ----A---- C:\windows\system32\rpcrt4.dll
2013-08-14 19:50:17 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-08-14 19:50:15 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-08-14 19:50:15 ----A---- C:\windows\system32\ntoskrnl.exe
2013-08-14 19:50:15 ----A---- C:\windows\system32\ntdll.dll
2013-08-14 19:50:14 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-08-14 19:50:14 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-08-14 19:50:14 ----A---- C:\windows\system32\wow64.dll
2013-08-14 19:50:13 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-08-14 19:50:13 ----A---- C:\windows\SYSWOW64\user.exe
2013-08-14 19:50:13 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-08-14 19:50:13 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-08-14 19:50:11 ----A---- C:\windows\system32\drivers\tssecsrv.sys
2013-08-14 19:50:11 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-08-14 19:47:39 ----D---- C:\AdwCleaner
2013-08-12 19:34:46 ----RD---- C:\Program Files (x86)\Skype
2013-08-12 19:21:57 ----D---- C:\Users\Vitek\AppData\Roaming\Skype
2013-08-11 14:06:16 ----A---- C:\windows\SYSWOW64\Access.dat
2013-08-11 14:00:00 ----A---- C:\windows\system32\drivers\tap0901t.sys
2013-08-11 11:04:04 ----D---- C:\Program Files (x86)\Pokemon PC
2013-08-11 10:53:54 ----D---- C:\ProgramData\StarApp
2013-08-10 20:03:59 ----A---- C:\Program Files (x86)\1bomb.ini
2013-08-03 21:01:47 ----D---- C:\windows\SYSWOW64\Adobe
2013-07-28 20:31:07 ----D---- C:\Program Files (x86)\LibreOffice 4.0
2013-07-27 16:03:07 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-07-27 16:03:07 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-07-27 16:03:07 ----A---- C:\windows\system32\RdpGroupPolicyExtension.dll
2013-07-27 16:03:02 ----A---- C:\windows\system32\drivers\rdpvideominiport.sys
2013-07-27 16:03:01 ----A---- C:\windows\system32\drivers\TsUsbFlt.sys
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\wksprtPS.dll
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\tsgqec.dll
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\rdpendp_winip.dll
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\MsRdpWebAccess.dll
2013-07-27 16:02:55 ----A---- C:\windows\SYSWOW64\aaclient.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\wksprtPS.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\TsUsbGDCoInstaller.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\tsgqec.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\MsRdpWebAccess.dll
2013-07-27 16:02:55 ----A---- C:\windows\system32\aaclient.dll
2013-07-27 16:02:54 ----A---- C:\windows\SYSWOW64\mstsc.exe
2013-07-27 16:02:54 ----A---- C:\windows\system32\wksprt.exe
2013-07-27 16:02:54 ----A---- C:\windows\system32\TSWbPrxy.exe
2013-07-27 16:02:54 ----A---- C:\windows\system32\rdpudd.dll
2013-07-27 16:02:54 ----A---- C:\windows\system32\rdpendp_winip.dll
2013-07-27 16:02:54 ----A---- C:\windows\system32\mstsc.exe
2013-07-27 16:02:53 ----A---- C:\windows\SYSWOW64\mstscax.dll
2013-07-27 16:02:53 ----A---- C:\windows\system32\rdpcorets.dll
2013-07-27 16:02:52 ----A---- C:\windows\system32\mstscax.dll
2013-07-27 15:52:09 ----A---- C:\windows\system32\wwansvc.dll
2013-07-27 15:52:09 ----A---- C:\windows\system32\wwanprotdim.dll
2013-07-27 15:52:05 ----A---- C:\windows\system32\shell32.dll
2013-07-27 15:52:04 ----A---- C:\windows\system32\authui.dll
2013-07-27 15:52:03 ----A---- C:\windows\SYSWOW64\shell32.dll
2013-07-27 15:52:03 ----A---- C:\windows\system32\shdocvw.dll
2013-07-27 15:52:02 ----A---- C:\windows\system32\consent.exe
2013-07-27 15:52:01 ----A---- C:\windows\SYSWOW64\shdocvw.dll
2013-07-27 15:52:01 ----A---- C:\windows\SYSWOW64\authui.dll
2013-07-27 15:52:01 ----A---- C:\windows\system32\appinfo.dll
2013-07-27 15:51:52 ----A---- C:\windows\SYSWOW64\qdvd.dll
2013-07-27 15:51:52 ----A---- C:\windows\system32\qdvd.dll
2013-07-27 15:51:47 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-07-27 15:51:47 ----A---- C:\windows\system32\schannel.dll
2013-07-27 15:51:47 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-07-27 15:51:47 ----A---- C:\windows\system32\drivers\cng.sys
2013-07-27 15:51:46 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-07-27 15:51:46 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-07-27 15:51:46 ----A---- C:\windows\system32\lsasrv.dll
2013-07-27 15:51:39 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2013-07-27 15:51:39 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-07-27 15:51:39 ----A---- C:\windows\system32\cdd.dll
2013-07-27 15:51:37 ----A---- C:\windows\SYSWOW64\dhcpcsvc6.dll
2013-07-27 15:51:37 ----A---- C:\windows\SYSWOW64\dhcpcore6.dll
2013-07-27 15:51:37 ----A---- C:\windows\system32\dhcpcsvc6.dll
2013-07-27 15:51:37 ----A---- C:\windows\system32\dhcpcore6.dll
2013-07-27 15:51:32 ----A---- C:\windows\system32\drivers\ndis.sys
2013-07-27 15:51:31 ----A---- C:\windows\system32\drivers\RNDISMP.sys
2013-07-27 15:51:26 ----A---- C:\windows\SYSWOW64\ncsi.dll
2013-07-27 15:51:26 ----A---- C:\windows\system32\ncsi.dll
2013-07-27 15:51:24 ----A---- C:\windows\system32\netcorehc.dll
2013-07-27 15:51:22 ----A---- C:\windows\system32\nlasvc.dll
2013-07-27 15:51:22 ----A---- C:\windows\system32\iphlpsvc.dll
2013-07-27 15:51:21 ----A---- C:\windows\SYSWOW64\nlaapi.dll
2013-07-27 15:51:21 ----A---- C:\windows\SYSWOW64\netevent.dll
2013-07-27 15:51:21 ----A---- C:\windows\SYSWOW64\netcorehc.dll
2013-07-27 15:51:21 ----A---- C:\windows\system32\nlaapi.dll
2013-07-27 15:51:21 ----A---- C:\windows\system32\netevent.dll
2013-07-27 15:51:21 ----A---- C:\windows\system32\drivers\tcpipreg.sys
2013-07-27 15:49:02 ----A---- C:\windows\SYSWOW64\certutil.exe
2013-07-27 15:49:02 ----A---- C:\windows\system32\certutil.exe
2013-07-27 15:49:01 ----A---- C:\windows\SYSWOW64\certenc.dll
2013-07-27 15:49:01 ----A---- C:\windows\system32\certenc.dll
2013-07-27 15:48:50 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2013-07-27 15:48:50 ----A---- C:\windows\system32\WindowsCodecs.dll
2013-07-27 15:48:37 ----A---- C:\windows\SYSWOW64\DWrite.dll
2013-07-27 15:48:37 ----A---- C:\windows\system32\DWrite.dll
2013-07-27 15:48:36 ----A---- C:\windows\SYSWOW64\d3d11.dll
2013-07-27 15:48:36 ----A---- C:\windows\system32\d3d11.dll
2013-07-27 15:48:22 ----A---- C:\windows\system32\OxpsConverter.exe
2013-07-27 15:48:20 ----A---- C:\windows\system32\win32k.sys
2013-07-27 15:48:16 ----A---- C:\windows\SYSWOW64\cryptdlg.dll
2013-07-27 15:48:16 ----A---- C:\windows\system32\cryptdlg.dll
2013-07-27 15:48:14 ----A---- C:\windows\SYSWOW64\qedit.dll
2013-07-27 15:48:14 ----A---- C:\windows\system32\qedit.dll
2013-07-27 15:48:12 ----A---- C:\windows\SYSWOW64\win32spl.dll
2013-07-27 15:48:12 ----A---- C:\windows\system32\win32spl.dll

======List of files/folders modified in the last 1 month======

2013-08-17 12:23:12 ----D---- C:\Program Files\trend micro
2013-08-17 12:22:04 ----D---- C:\windows\System32
2013-08-17 12:22:04 ----D---- C:\windows\inf
2013-08-17 12:22:04 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-08-17 12:20:52 ----D---- C:\windows\Temp
2013-08-17 12:20:46 ----RD---- C:\Program Files (x86)
2013-08-17 12:20:21 ----D---- C:\windows\system32\drivers
2013-08-17 12:20:21 ----D---- C:\windows\system32\catroot
2013-08-17 12:20:19 ----D---- C:\windows\system32\DriverStore
2013-08-17 12:20:13 ----SHD---- C:\System Volume Information
2013-08-17 12:16:26 ----D---- C:\windows\system32\config
2013-08-17 12:14:20 ----A---- C:\windows\SYSWOW64\log.txt
2013-08-17 10:51:41 ----D---- C:\windows\Tasks
2013-08-17 10:51:41 ----D---- C:\windows\system32\Tasks
2013-08-16 19:34:09 ----HD---- C:\ProgramData
2013-08-15 20:02:41 ----D---- C:\windows\Microsoft.NET
2013-08-15 20:02:40 ----RSD---- C:\windows\assembly
2013-08-14 20:07:55 ----D---- C:\windows\winsxs
2013-08-14 20:07:41 ----D---- C:\windows\Panther
2013-08-14 20:06:21 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-08-14 20:06:21 ----D---- C:\windows\SysWOW64
2013-08-14 20:06:21 ----D---- C:\windows\system32\cs-CZ
2013-08-14 20:06:21 ----D---- C:\windows\AppPatch
2013-08-14 20:06:21 ----D---- C:\Program Files\Internet Explorer
2013-08-14 20:06:21 ----D---- C:\Program Files (x86)\Internet Explorer
2013-08-14 20:01:37 ----D---- C:\windows\system32\catroot2
2013-08-14 20:00:58 ----SHD---- C:\windows\Installer
2013-08-14 19:55:47 ----D---- C:\windows\system32\MRT
2013-08-14 19:55:46 ----D---- C:\windows\debug
2013-08-14 19:55:42 ----A---- C:\windows\system32\MRT.exe
2013-08-12 19:34:49 ----D---- C:\ProgramData\Skype
2013-08-12 19:34:46 ----D---- C:\Program Files (x86)\Common Files
2013-08-11 22:46:52 ----RSD---- C:\windows\Fonts
2013-08-11 14:02:10 ----D---- C:\Windows
2013-08-10 21:51:44 ----D---- C:\windows\SYSWOW64\Macromed
2013-08-10 20:40:16 ----D---- C:\Program Files\CCleaner
2013-08-10 18:54:50 ----D---- C:\windows\system32\NDF
2013-08-03 21:01:56 ----D---- C:\windows\Prefetch
2013-07-27 20:44:29 ----D---- C:\windows\rescache
2013-07-27 16:09:58 ----D---- C:\windows\SYSWOW64\wbem
2013-07-27 16:09:58 ----D---- C:\windows\SYSWOW64\en-US
2013-07-27 16:09:58 ----D---- C:\windows\system32\wbem
2013-07-27 16:09:58 ----D---- C:\windows\system32\en-US
2013-07-27 16:09:58 ----D---- C:\windows\system32\drivers\en-US
2013-07-27 16:09:58 ----D---- C:\windows\PolicyDefinitions
2013-07-27 16:09:58 ----D---- C:\Program Files\Windows Defender
2013-07-27 16:09:58 ----D---- C:\Program Files (x86)\Windows Defender
2013-07-27 16:09:57 ----D---- C:\windows\SYSWOW64\migration
2013-07-27 16:09:57 ----D---- C:\windows\system32\migration
2013-07-27 16:09:56 ----D---- C:\Program Files\Windows Journal

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\windows\system32\drivers\aswVmm.sys [2013-07-14 189936]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-01-08 409112]
R0 PxHlpa64;PxHlpa64; C:\windows\System32\Drivers\PxHlpa64.sys [2009-07-09 55280]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SafeBoot;SafeBoot; C:\windows\system32\drivers\SafeBoot.sys [2010-02-02 56648]
R0 SbAlg;SbAlg; C:\windows\system32\drivers\SbAlg.sys [2009-06-04 60160]
R0 SbFsLock;SbFsLock; C:\windows\system32\drivers\SbFsLock.sys [2010-02-02 15688]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2013-07-14 1030952]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2013-07-14 378944]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\windows\system32\DRIVERS\dtsoftbus01.sys [2013-08-17 283064]
R1 RsvLock;RsvLock; C:\windows\system32\drivers\RsvLock.sys [2010-02-02 58184]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R2 rimspci;rimspci; C:\windows\system32\DRIVERS\rimspe64.sys [2009-10-26 61952]
R2 risdpcie;risdpcie; C:\windows\system32\DRIVERS\risdpe64.sys [2009-10-28 79360]
R2 rixdpcie;rixdpcie; C:\windows\system32\DRIVERS\rixdpe64.sys [2009-12-11 55808]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 43320]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2010-01-21 1209856]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\windows\system32\DRIVERS\bcmwl664.sys [2012-10-13 3058168]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K; C:\windows\system32\DRIVERS\e1k62x64.sys [2010-01-07 295088]
R3 hamachi;Hamachi Network Interface; C:\windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2010-04-21 10326784]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2010-01-18 1803904]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
R3 WinUSB;WinUSB Service; C:\windows\system32\DRIVERS\WinUSB.sys [2010-11-20 41984]
S3 acsock;acsock; C:\windows\system32\DRIVERS\acsock64.sys [2012-06-07 107432]
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2009-10-21 40760]
S3 NETw5s64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\windows\system32\DRIVERS\NETw5s64.sys [2010-02-01 7675392]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 vpnva;Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64; C:\windows\system32\DRIVERS\vpnva64.sys [2012-06-07 27048]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ac.sharedstore;ActivIdentity Shared Store Service; C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe [2009-06-04 277032]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2010-01-21 16896]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2010-03-31 462088]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-06-28 2470736]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-04-05 103992]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-03-28 94264]
R2 HpFkCryptService;Drive Encryption Service; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [2010-02-02 281192]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2011-05-13 30520]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2010-01-08 354840]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2010-02-22 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-04 268824]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-04 2320920]
R2 vpnagent;Cisco AnyConnect Secure Mobility Agent; C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe [2012-06-07 478712]
R3 DEBridge;DEBridge; c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe [2010-02-02 704512]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-03-28 799800]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-07-25 162672]
S2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2010-02-18 2045232]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-14 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 RoxMediaDB10;RoxMediaDB10; c:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2009-11-23 1120752]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2012-10-13 1255736]
S4 FLCDLOCK;HP ProtectTools Device Locking / Auditing; c:\Windows\SysWOW64\flcdlock.exe [2009-12-07 362040]
S4 HP ProtectTools Service;HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [2010-03-17 36864]
S4 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-09-09 86072]
S4 HPDayStarterService;HP DayStarter Service; c:\Program Files (x86)\Hewlett-Packard\HP QuickLook\HPDayStarterService.exe [2010-03-25 90112]
S4 HPFSService;File Sanitizer for HP ProtectTools; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2010-01-19 297984]

-----------------EOF-----------------

Re: preventikva

Napsal: 17 srp 2013 13:37
od Márty84
:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe a ulozte nejlepe na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]

:services
AdobeARMservice
SkypeUpdate
AdobeFlashPlayerUpdateSvc

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\HPCeeScheduleForVitek.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=-
"Optimizer Pro"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] /64
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=-
"SunJavaUpdateSched"=-
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"daemontoolslite"=-
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)



:???: Tohle stale trva? Pokud ano, o jaky engine se jedna?
selkir píše:...že při startu Chromu, mi krom stránky Google, naskočí i nějaký prapodivný search engine...