Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivní prohlídku notebooku FRST + RSIT

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Prosím o preventivní prohlídku notebooku FRST + RSIT

#1 Příspěvek od Ervd »

Prosím o kontrolu logu. děkuji!


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-10-2013
Ran by Ervd (administrator) on ERVD-HP on 21-10-2013 16:53:13
Running from C:\Users\Ervd\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\windows\system32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe
(Hewlett-Packard Company) C:\windows\system32\Hpservice.exe
(AMD) C:\windows\system32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
(Brother Industries, Ltd.) C:\windows\system32\BrmfRsmg.exe
(Brother Industries, Ltd.) C:\windows\system32\BrmfRsmg.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
(ArcSoft, Inc.) C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\obexsrv.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
() C:\Program Files (x86)\HP HD Webcam [Fixed]\Monitor.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Opera Software) C:\Program Files (x86)\Opera\opera.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Macrovision Europe Ltd.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
(Dropbox, Inc.) C:\Users\Ervd\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(forum.viry.cz) C:\Users\Ervd\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [IME14 JPN Uninstall] - C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE [110896 2012-03-14] (Microsoft Corporation)
HKLM\...\Run: [IME14 KOR Uninstall] - C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE [110896 2012-03-14] (Microsoft Corporation)
HKLM\...\Run: [IME14 CHS Uninstall] - C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE [110896 2012-03-14] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3011824 2013-01-29] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1664000 2013-05-24] (IDT, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM-x32\...\Run: [NUSB3MON] - c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-14] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-26] (Intel Corporation)
HKLM-x32\...\Run: [HP HD Webcam [Fixed]_Monitor] - C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe [267128 2010-11-26] ()
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKLM-x32\...\Run: [QLBController] - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [333728 2012-06-20] (Hewlett-Packard Company)
HKLM-x32\...\Run: [HPConnectionManager] - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [184736 2012-09-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
Startup: C:\Users\Ervd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Ervd\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {A3E845F5-0CC7-40C2-99B4-4A2699570901} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd/In ... ect119.cab
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.100.250

Chrome:
=======
CHR Extension: (MagniPic) - C:\Users\Ervd\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbhhfnefnjpcnghkojnkjcomonolammf\1

==================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [143088 2013-05-08] (SUPERAntiSpyware.com)
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
R2 brmfrsmg; C:\Windows\system32\BrmfRsmg.exe [52736 2009-07-14] (Brother Industries, Ltd.)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [523680 2012-06-20] (Hewlett-Packard Company)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [502464 2010-11-11] (ArcSoft, Inc.)
S3 WinDefend; %ProgramFiles(x86)%\Windows Defender\mpsvc.dll [x]

==================== Drivers (Whitelisted) ====================

R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32192 2010-11-11] (ArcSoft, Inc.)
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] ()
S3 BrUsbScn; C:\Windows\System32\Drivers\BrUsbScn.sys [14336 2009-06-10] (Brother Industries Ltd.)
S3 BTMNET; C:\Windows\System32\DRIVERS\btmnet.sys [30208 2010-07-16] (Motorola, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-04-02] (DT Soft Ltd)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2611704 2011-01-12] (Sunplus Technology)
S3 trufos; C:\Windows\System32\drivers\trufos.sys [350160 2013-03-07] (BitDefender S.R.L.)
S3 NLNdisMP; system32\DRIVERS\nlndis.sys [x]
S3 NLNdisPT; system32\DRIVERS\nlndis.sys [x]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-21 16:52 - 2013-10-21 16:52 - 00000000 ____D C:\FRST
2013-10-21 16:51 - 2013-10-21 16:51 - 01954670 _____ (Farbar) C:\Users\Ervd\Desktop\FRST64.exe
2013-10-21 16:51 - 2013-10-21 16:51 - 00112128 _____ (forum.viry.cz) C:\Users\Ervd\Desktop\FRSTLauncher.exe
2013-10-21 16:48 - 2013-10-21 16:49 - 00000000 ____D C:\rsit
2013-10-21 11:44 - 2013-10-21 11:44 - 00001036 _____ C:\windows\PFRO.log
2013-10-18 19:48 - 2013-10-18 19:48 - 00000000 ____D C:\Users\Ervd\AppData\Local\calibre-cache
2013-10-18 19:47 - 2013-10-18 22:52 - 00000000 ____D C:\Users\Ervd\Documents\Calibre Library
2013-10-18 19:38 - 2013-10-18 19:48 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\calibre
2013-10-18 19:38 - 2013-10-18 19:38 - 00000960 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk
2013-10-18 19:38 - 2013-10-18 19:38 - 00000000 ____D C:\Users\Ervd\Documents\Calibre knihovna
2013-10-18 19:37 - 2013-10-18 19:38 - 00000000 ____D C:\Program Files (x86)\Calibre2
2013-10-18 18:58 - 2013-10-18 18:58 - 00000000 ____D C:\Users\Ervd\Desktop\Terry-Pratchett---knihy
2013-10-18 18:46 - 2013-10-18 18:57 - 198544224 _____ C:\Users\Ervd\Desktop\Terry-Pratchett---knihy.rar
2013-10-17 23:45 - 2013-10-17 23:45 - 00001343 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.lnk
2013-10-17 23:45 - 2013-10-17 23:45 - 00000000 ____D C:\Program Files (x86)\SecurityXploded
2013-10-17 23:38 - 2013-10-17 23:38 - 01890567 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.zip
2013-10-17 23:38 - 2013-10-17 23:38 - 00000000 ____D C:\Users\Ervd\Desktop\RouterPasswordKracker
2013-10-17 23:25 - 2013-10-17 23:25 - 00312744 _____ (Oracle Corporation) C:\windows\system32\javaws.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00189352 _____ (Oracle Corporation) C:\windows\system32\javaw.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00189352 _____ (Oracle Corporation) C:\windows\system32\java.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00108968 _____ (Oracle Corporation) C:\windows\system32\WindowsAccessBridge-64.dll
2013-10-17 23:23 - 2013-10-17 23:23 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-17 20:49 - 2013-10-21 15:51 - 00001236 _____ C:\windows\setupact.log
2013-10-17 20:49 - 2013-10-17 20:49 - 00000000 _____ C:\windows\setuperr.log
2013-10-17 18:27 - 2013-10-17 18:27 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced Port Scanner
2013-10-17 18:27 - 2013-10-17 18:27 - 00000000 ____D C:\Program Files (x86)\Advanced Port Scanner
2013-10-17 08:44 - 2013-10-17 20:37 - 00000587 _____ C:\Users\Ervd\Desktop\forward.ini
2013-10-17 08:43 - 2013-10-17 08:43 - 00001170 _____ C:\Users\Ervd\myip.txt
2013-10-17 08:37 - 2013-10-17 08:37 - 01048576 _____ (Spider IT) C:\Users\Ervd\Desktop\PortForward.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 19252224 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 15404544 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 14335488 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 03959296 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02876928 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2013-10-13 13:54 - 2013-10-13 13:54 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-10-13 13:54 - 2013-10-13 13:54 - 02647552 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2013-10-13 13:54 - 2013-10-13 13:54 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2013-10-13 13:54 - 2013-10-13 13:54 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2013-10-13 13:54 - 2013-10-13 13:54 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2013-10-13 13:54 - 2013-10-13 13:54 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2013-10-13 13:54 - 2013-10-13 13:54 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2013-10-13 13:54 - 2013-10-13 13:54 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2013-10-13 13:54 - 2013-10-13 13:54 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2013-10-13 13:54 - 2013-10-13 13:54 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2013-10-11 17:41 - 2013-10-11 17:41 - 00000871 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-10-10 20:36 - 2013-10-10 20:36 - 00003014 _____ C:\windows\System32\Tasks\SlimComputer Run
2013-10-09 23:45 - 2013-10-10 00:06 - 01597440 _____ C:\Users\Ervd\Desktop\ZM_1.xls
2013-10-09 23:12 - 2013-09-14 03:10 - 00497152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2013-10-09 23:12 - 2013-09-08 04:30 - 01903552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2013-10-09 23:12 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\windows\system32\mswsock.dll
2013-10-09 23:12 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mswsock.dll
2013-10-09 23:12 - 2013-08-29 04:17 - 05549504 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2013-10-09 23:12 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2013-10-09 23:12 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2013-10-09 23:12 - 2013-08-29 04:16 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2013-10-09 23:12 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2013-10-09 23:12 - 2013-08-29 03:51 - 03969472 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2013-10-09 23:12 - 2013-08-29 03:51 - 03914176 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2013-10-09 23:12 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2013-10-09 23:12 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2013-10-09 23:12 - 2013-08-29 03:50 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2013-10-09 23:12 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2013-10-09 23:12 - 2013-08-29 03:29 - 00033280 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbser.sys
2013-10-09 23:12 - 2013-08-29 02:49 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2013-10-09 23:12 - 2013-08-29 02:49 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2013-10-09 23:12 - 2013-08-29 02:49 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2013-10-09 23:12 - 2013-08-29 02:49 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2013-10-09 23:12 - 2013-08-28 03:21 - 03155968 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2013-10-09 23:12 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\windows\system32\scavengeui.dll
2013-10-09 23:12 - 2013-08-01 11:19 - 00984512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2013-10-09 23:12 - 2013-08-01 11:19 - 00265152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys
2013-10-09 23:12 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 23:12 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 23:12 - 2013-07-12 12:41 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbvideo.sys
2013-10-09 23:12 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbcir.sys
2013-10-09 23:12 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\WebClnt.dll
2013-10-09 23:12 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2013-10-09 23:12 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\windows\system32\davclnt.dll
2013-10-09 23:12 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\windows\SysWOW64\WebClnt.dll
2013-10-09 23:12 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\windows\SysWOW64\davclnt.dll
2013-10-09 23:12 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2013-10-09 23:12 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxdav.sys
2013-10-09 23:12 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2013-10-09 23:12 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2013-10-09 23:12 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys
2013-10-09 23:12 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2013-10-09 23:12 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2013-10-09 23:12 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2013-10-09 23:12 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2013-10-09 23:12 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2013-10-09 23:12 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2013-10-09 23:12 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2013-10-09 23:12 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2013-10-09 23:12 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2013-10-09 23:12 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2013-10-08 22:57 - 2013-10-08 22:57 - 00000000 ____D C:\Users\Ervd\Documents\flash zaloha
2013-10-08 21:34 - 2013-10-08 21:34 - 00001199 _____ C:\Users\Ervd\Desktop\Any Video Converter.lnk
2013-10-08 21:34 - 2013-10-08 21:34 - 00000000 ____D C:\Users\Ervd\Documents\Any Video Converter Professional
2013-10-08 21:33 - 2013-10-08 21:33 - 00000000 ____D C:\Program Files (x86)\AnvSoft
2013-10-07 09:18 - 2013-10-07 09:18 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\AC3Filter
2013-10-06 23:17 - 2013-10-06 23:17 - 00001122 _____ C:\Users\Public\Desktop\BS.Player FREE.lnk
2013-10-06 23:16 - 2013-10-06 23:20 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\BSplayer
2013-10-06 23:16 - 2013-10-06 23:16 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\BSplayer Pro
2013-10-06 23:16 - 2013-10-06 23:16 - 00000000 ____D C:\Program Files (x86)\Webteh
2013-10-06 20:35 - 2013-10-06 20:35 - 00001100 _____ C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2013-10-06 12:31 - 2013-10-06 12:31 - 00000000 ____D C:\Program Files (x86)\Sony Media Go Install
2013-10-03 21:19 - 2013-10-03 21:19 - 00000000 ____D C:\windows\pss
2013-10-03 08:51 - 2013-10-03 09:02 - 00000000 ____D C:\windows\SysWOW64\C2MP
2013-10-01 23:59 - 2013-10-02 01:12 - 1610612736 _____ C:\Users\Ervd\Documents\THE.SETTLERS.7.Razor1911.CZ.part1.rar
2013-09-29 14:25 - 2013-09-29 14:25 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-09-26 19:46 - 2013-09-26 20:57 - 00000021 _____ C:\Users\Ervd\Desktop\IP list.txt
2013-09-26 19:39 - 2013-09-26 22:53 - 00000000 __SHD C:\windows\SysWOW64\AI_RecycleBin
2013-09-26 17:14 - 2013-09-26 17:14 - 00255099 _____ C:\Users\Ervd\Desktop\AoM_AoT_UI_Mod_Pack.zip
2013-09-26 17:14 - 2013-09-26 17:14 - 00000000 ____D C:\Users\Ervd\Desktop\AoM_AoT_UI_Mod_Pack
2013-09-25 23:01 - 2013-09-25 23:01 - 00000015 ___RH C:\windows\system32\wintask_.dat
2013-09-25 22:59 - 2013-09-25 23:02 - 00000000 ____D C:\Users\Public\Desktop\PCLTSDK64_130
2013-09-25 22:59 - 2013-09-25 23:00 - 00000000 ____D C:\ProgramData\PageTech
2013-09-25 22:59 - 2013-09-25 23:00 - 00000000 ____D C:\Program Files\PAGETECH
2013-09-25 22:17 - 2013-09-25 22:17 - 00000000 _____ C:\Users\Ervd\AppData\Roaming\pdfconverter
2013-09-25 22:15 - 2013-09-25 22:15 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\File Scout
2013-09-25 22:15 - 2013-09-25 22:15 - 00000000 ____D C:\ProgramData\IBUpdaterService

==================== One Month Modified Files and Folders =======

2013-10-21 16:52 - 2013-10-21 16:52 - 00000000 ____D C:\FRST
2013-10-21 16:51 - 2013-10-21 16:51 - 01954670 _____ (Farbar) C:\Users\Ervd\Desktop\FRST64.exe
2013-10-21 16:51 - 2013-10-21 16:51 - 00112128 _____ (forum.viry.cz) C:\Users\Ervd\Desktop\FRSTLauncher.exe
2013-10-21 16:49 - 2013-10-21 16:48 - 00000000 ____D C:\rsit
2013-10-21 16:49 - 2012-08-01 17:34 - 00000000 ____D C:\Program Files\trend micro
2013-10-21 16:04 - 2012-06-09 19:43 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-10-21 15:59 - 2009-07-14 06:45 - 00028576 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-21 15:59 - 2009-07-14 06:45 - 00028576 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-21 15:55 - 2013-06-13 17:31 - 01065782 _____ C:\windows\WindowsUpdate.log
2013-10-21 15:54 - 2012-09-18 20:35 - 00000948 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-21 15:53 - 2012-09-08 12:39 - 00000000 ___RD C:\Users\Ervd\Dropbox
2013-10-21 15:53 - 2012-09-08 12:37 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\Dropbox
2013-10-21 15:52 - 2013-09-13 21:14 - 00004182 _____ C:\windows\System32\Tasks\avast! Emergency Update
2013-10-21 15:51 - 2013-10-17 20:49 - 00001236 _____ C:\windows\setupact.log
2013-10-21 15:51 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-10-21 15:05 - 2012-06-09 16:08 - 00000000 ____D C:\Users\Ervd
2013-10-21 12:48 - 2013-03-29 09:38 - 00000000 ____D C:\Program Files (x86)\Voobly
2013-10-21 11:44 - 2013-10-21 11:44 - 00001036 _____ C:\windows\PFRO.log
2013-10-20 21:35 - 2012-01-02 19:36 - 00669736 _____ C:\windows\system32\perfh005.dat
2013-10-20 21:35 - 2012-01-02 19:36 - 00141336 _____ C:\windows\system32\perfc005.dat
2013-10-20 21:35 - 2009-07-14 07:13 - 01585238 _____ C:\windows\system32\PerfStringBackup.INI
2013-10-20 19:32 - 2013-03-29 09:38 - 00000979 _____ C:\Users\Ervd\Desktop\Voobly.lnk
2013-10-20 15:32 - 2012-06-15 16:30 - 00000000 ____D C:\Users\Ervd\AppData\Local\CrashDumps
2013-10-19 10:55 - 2013-08-12 14:48 - 00000000 ____D C:\Program Files (x86)\QIP 2012
2013-10-18 22:52 - 2013-10-18 19:47 - 00000000 ____D C:\Users\Ervd\Documents\Calibre Library
2013-10-18 19:48 - 2013-10-18 19:48 - 00000000 ____D C:\Users\Ervd\AppData\Local\calibre-cache
2013-10-18 19:48 - 2013-10-18 19:38 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\calibre
2013-10-18 19:38 - 2013-10-18 19:38 - 00000960 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk
2013-10-18 19:38 - 2013-10-18 19:38 - 00000000 ____D C:\Users\Ervd\Documents\Calibre knihovna
2013-10-18 19:38 - 2013-10-18 19:37 - 00000000 ____D C:\Program Files (x86)\Calibre2
2013-10-18 18:58 - 2013-10-18 18:58 - 00000000 ____D C:\Users\Ervd\Desktop\Terry-Pratchett---knihy
2013-10-18 18:57 - 2013-10-18 18:46 - 198544224 _____ C:\Users\Ervd\Desktop\Terry-Pratchett---knihy.rar
2013-10-18 15:49 - 2012-06-18 11:46 - 00000052 _____ C:\windows\SysWOW64\DOErrors.log
2013-10-18 15:48 - 2012-06-29 15:24 - 00000000 _____ C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-10-17 23:45 - 2013-10-17 23:45 - 00001343 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.lnk
2013-10-17 23:45 - 2013-10-17 23:45 - 00000000 ____D C:\Program Files (x86)\SecurityXploded
2013-10-17 23:38 - 2013-10-17 23:38 - 01890567 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.zip
2013-10-17 23:38 - 2013-10-17 23:38 - 00000000 ____D C:\Users\Ervd\Desktop\RouterPasswordKracker
2013-10-17 23:25 - 2013-10-17 23:25 - 00312744 _____ (Oracle Corporation) C:\windows\system32\javaws.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00189352 _____ (Oracle Corporation) C:\windows\system32\javaw.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00189352 _____ (Oracle Corporation) C:\windows\system32\java.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00108968 _____ (Oracle Corporation) C:\windows\system32\WindowsAccessBridge-64.dll
2013-10-17 23:25 - 2013-09-19 08:16 - 00000000 ____D C:\ProgramData\Oracle
2013-10-17 23:23 - 2013-10-17 23:23 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-17 20:49 - 2013-10-17 20:49 - 00000000 _____ C:\windows\setuperr.log
2013-10-17 20:37 - 2013-10-17 08:44 - 00000587 _____ C:\Users\Ervd\Desktop\forward.ini
2013-10-17 18:27 - 2013-10-17 18:27 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced Port Scanner
2013-10-17 18:27 - 2013-10-17 18:27 - 00000000 ____D C:\Program Files (x86)\Advanced Port Scanner
2013-10-17 12:57 - 2012-12-18 01:26 - 00000000 ____D C:\Program Files (x86)\Sony
2013-10-17 09:32 - 2013-04-26 22:57 - 00003180 _____ C:\windows\System32\Tasks\HPCeeScheduleForErvd
2013-10-17 09:32 - 2013-04-26 22:57 - 00000328 _____ C:\windows\Tasks\HPCeeScheduleForErvd.job
2013-10-17 08:43 - 2013-10-17 08:43 - 00001170 _____ C:\Users\Ervd\myip.txt
2013-10-17 08:37 - 2013-10-17 08:37 - 01048576 _____ (Spider IT) C:\Users\Ervd\Desktop\PortForward.exe
2013-10-16 09:01 - 2012-09-18 20:35 - 00000944 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-15 23:49 - 2012-09-18 20:35 - 00003944 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-15 23:49 - 2012-09-18 20:35 - 00003694 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-15 21:52 - 2012-07-02 12:16 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\Might & Magic Heroes VI
2013-10-15 14:48 - 2012-08-11 08:50 - 00000000 ____D C:\Program Files (x86)\Steam
2013-10-15 14:47 - 2011-02-11 07:14 - 00000000 ____D C:\windows\Panther
2013-10-14 21:12 - 2012-07-11 13:01 - 00003216 _____ C:\windows\System32\Tasks\HPCeeScheduleForERVD-HP$
2013-10-14 21:12 - 2012-07-11 13:01 - 00000340 _____ C:\windows\Tasks\HPCeeScheduleForERVD-HP$.job
2013-10-13 14:09 - 2012-06-09 16:55 - 00001393 _____ C:\Users\Ervd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\sl-SI
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\sk-SK
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\hr-HR
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\sl-SI
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\sk-SK
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\hr-HR
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\PolicyDefinitions
2013-10-13 13:54 - 2013-10-13 13:54 - 19252224 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 15404544 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 14335488 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 03959296 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02876928 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2013-10-13 13:54 - 2013-10-13 13:54 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-10-13 13:54 - 2013-10-13 13:54 - 02647552 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2013-10-13 13:54 - 2013-10-13 13:54 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2013-10-13 13:54 - 2013-10-13 13:54 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2013-10-13 13:54 - 2013-10-13 13:54 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2013-10-13 13:54 - 2013-10-13 13:54 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2013-10-13 13:54 - 2013-10-13 13:54 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2013-10-13 13:54 - 2013-10-13 13:54 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2013-10-13 13:54 - 2013-10-13 13:54 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2013-10-13 13:54 - 2013-10-13 13:54 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2013-10-11 17:41 - 2013-10-11 17:41 - 00000871 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-10-10 20:38 - 2012-08-05 21:17 - 00000000 ____D C:\ProgramData\Nokia
2013-10-10 20:38 - 2012-06-26 19:54 - 00000000 ____D C:\Program Files (x86)\Nokia
2013-10-10 20:36 - 2013-10-10 20:36 - 00003014 _____ C:\windows\System32\Tasks\SlimComputer Run
2013-10-10 20:36 - 2012-06-09 18:53 - 00000000 ____D C:\Program Files (x86)\SlimComputer
2013-10-10 20:35 - 2012-06-09 18:53 - 00002469 _____ C:\Users\Public\Desktop\SlimComputer.lnk
2013-10-10 20:35 - 2012-06-09 18:01 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers
2013-10-10 03:43 - 2013-03-13 14:22 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-10 03:43 - 2013-03-13 14:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-10 03:43 - 2009-07-14 06:45 - 00445272 _____ C:\windows\system32\FNTCACHE.DAT
2013-10-10 03:25 - 2009-07-14 04:34 - 00000876 _____ C:\windows\win.ini
2013-10-10 03:18 - 2012-01-02 20:11 - 01564460 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2013-10-10 03:13 - 2013-08-15 03:04 - 00000000 ____D C:\windows\system32\MRT
2013-10-10 03:07 - 2012-06-09 18:29 - 80541720 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2013-10-10 00:06 - 2013-10-09 23:45 - 01597440 _____ C:\Users\Ervd\Desktop\ZM_1.xls
2013-10-10 00:06 - 2012-06-09 19:43 - 00003852 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2013-10-10 00:06 - 2012-06-09 19:42 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2013-10-10 00:06 - 2012-06-09 19:42 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 22:57 - 2013-10-08 22:57 - 00000000 ____D C:\Users\Ervd\Documents\flash zaloha
2013-10-08 21:48 - 2013-01-10 17:46 - 00000000 ____D C:\Users\Ervd\Documents\Any Video Converter
2013-10-08 21:34 - 2013-10-08 21:34 - 00001199 _____ C:\Users\Ervd\Desktop\Any Video Converter.lnk
2013-10-08 21:34 - 2013-10-08 21:34 - 00000000 ____D C:\Users\Ervd\Documents\Any Video Converter Professional
2013-10-08 21:33 - 2013-10-08 21:33 - 00000000 ____D C:\Program Files (x86)\AnvSoft
2013-10-07 09:18 - 2013-10-07 09:18 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\AC3Filter
2013-10-06 23:23 - 2012-06-09 16:52 - 00115688 _____ C:\Users\Ervd\AppData\Local\GDIPFONTCACHEV1.DAT
2013-10-06 23:20 - 2013-10-06 23:16 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\BSplayer
2013-10-06 23:17 - 2013-10-06 23:17 - 00001122 _____ C:\Users\Public\Desktop\BS.Player FREE.lnk
2013-10-06 23:16 - 2013-10-06 23:16 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\BSplayer Pro
2013-10-06 23:16 - 2013-10-06 23:16 - 00000000 ____D C:\Program Files (x86)\Webteh
2013-10-06 20:36 - 2013-08-08 18:55 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2013-10-06 20:35 - 2013-10-06 20:35 - 00001100 _____ C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2013-10-06 12:32 - 2013-06-26 19:54 - 00001885 _____ C:\Users\Public\Desktop\Media Go.lnk
2013-10-06 12:31 - 2013-10-06 12:31 - 00000000 ____D C:\Program Files (x86)\Sony Media Go Install
2013-10-03 21:19 - 2013-10-03 21:19 - 00000000 ____D C:\windows\pss
2013-10-03 09:02 - 2013-10-03 08:51 - 00000000 ____D C:\windows\SysWOW64\C2MP
2013-10-02 01:12 - 2013-10-01 23:59 - 1610612736 _____ C:\Users\Ervd\Documents\THE.SETTLERS.7.Razor1911.CZ.part1.rar
2013-09-29 14:25 - 2013-09-29 14:25 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-09-26 22:53 - 2013-09-26 19:39 - 00000000 __SHD C:\windows\SysWOW64\AI_RecycleBin
2013-09-26 20:57 - 2013-09-26 19:46 - 00000021 _____ C:\Users\Ervd\Desktop\IP list.txt
2013-09-26 18:31 - 2012-08-11 09:33 - 00000000 ____D C:\Users\Ervd\Documents\My Games
2013-09-26 17:14 - 2013-09-26 17:14 - 00255099 _____ C:\Users\Ervd\Desktop\AoM_AoT_UI_Mod_Pack.zip
2013-09-26 17:14 - 2013-09-26 17:14 - 00000000 ____D C:\Users\Ervd\Desktop\AoM_AoT_UI_Mod_Pack
2013-09-26 14:50 - 2012-12-18 01:26 - 00002026 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2013-09-26 14:50 - 2012-01-02 20:32 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-09-25 23:02 - 2013-09-25 22:59 - 00000000 ____D C:\Users\Public\Desktop\PCLTSDK64_130
2013-09-25 23:01 - 2013-09-25 23:01 - 00000015 ___RH C:\windows\system32\wintask_.dat
2013-09-25 23:00 - 2013-09-25 22:59 - 00000000 ____D C:\ProgramData\PageTech
2013-09-25 23:00 - 2013-09-25 22:59 - 00000000 ____D C:\Program Files\PAGETECH
2013-09-25 22:17 - 2013-09-25 22:17 - 00000000 _____ C:\Users\Ervd\AppData\Roaming\pdfconverter
2013-09-25 22:15 - 2013-09-25 22:15 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\File Scout
2013-09-25 22:15 - 2013-09-25 22:15 - 00000000 ____D C:\ProgramData\IBUpdaterService
2013-09-25 20:15 - 2012-10-02 19:53 - 00000000 ____D C:\Users\Ervd\Documents\FJFI
2013-09-24 16:11 - 2013-05-24 16:38 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-09-22 16:05 - 2012-06-09 19:41 - 00000000 ____D C:\Program Files (x86)\Opera
2013-09-22 15:51 - 2013-08-11 12:56 - 00000000 ____D C:\Program Files (x86)\Real
2013-09-22 15:51 - 2013-08-11 12:55 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\Real
2013-09-22 15:51 - 2013-08-11 12:54 - 00000000 ____D C:\ProgramData\Real
2013-09-22 15:50 - 2013-06-01 23:39 - 00000000 ____D C:\Program Files (x86)\The KMPlayer
2013-09-22 10:44 - 2013-09-19 08:01 - 00003336 _____ C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3347873718-463703722-4102279566-1001
2013-09-22 10:44 - 2013-09-04 20:10 - 00003200 _____ C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3347873718-463703722-4102279566-1001

Some content of TEMP:
====================
C:\Users\Ervd\AppData\Local\Temp\Installmanager.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-11 12:08




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:444.67 GB) (Free:149.31 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (HP_RECOVERY) (Fixed) (Total:15.8 GB) (Free:2.37 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:4.99 GB) (Free:2.11 GB) FAT32

Available physical RAM: 1812.06 MB
Total physical RAM: 4030.36 MB
Percentage of memory in use: 55%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: D0B5D163)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=445 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=16 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=5 GB) - (Type=0C)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForERVD-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForErvd.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Ervd\Desktop" je 3843 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BTMTrayAgent
rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe /hidden [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium
"C:\Program Files (x86)\QIP 2012\qip.exe" /autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar
C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TrayMenu.lnk
C:\Windows\SysWOW64\C2MP\TrayMenu.exe vlc.ico [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================
Naposledy upravil(a) Ervd dne 21 říj 2013 15:59, celkem upraveno 1 x.

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: Prosím o preventivní prohlídku notebooku

#2 Příspěvek od Ervd »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Ervd at 2013-10-21 16:58:18
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 153 GB (34%) free of 455 GB
Total RAM: 4030 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:58:21, on 21.10.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16720)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\HP HD Webcam [Fixed]\Monitor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Users\Ervd\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\trend micro\Ervd.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [NUSB3MON] "c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [HP HD Webcam [Fixed]_Monitor] C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - Startup: Dropbox.lnk = Ervd\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Rich Media Downloader - {A7DF592F-6E2A-45C4-9A87-4BD217D714ED} - (no file)
O9 - Extra button: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20614.www2.hp.com/ediags/gmd/In ... ect119.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Device Manager - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
O23 - Service: Bluetooth Media Service - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\audiosrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\obexsrv.exe
O23 - Service: Brother Resource manager service (brmfrsmg) - Unknown owner - C:\windows\system32\BrmfRsmg.exe (file missing)
O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12859 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
atieclxx
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"taskhost.exe"
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe"
C:\windows\system32\BrmfRsmg.exe -service
C:\windows\system32\BrmfRsmg.exe -process -overmain -load -open
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\IDT\WDM\sttray64.exe"
WLIDSvcM.exe 2860
"C:\Program Files\Motorola\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\HP HD Webcam [Fixed]\Monitor.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Opera\opera.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\wbem\wmiprvse.exe
"C:\Users\Ervd\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\windows\System32\svchost.exe -k LocalServicePeerNet
-Minimized
"C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
taskeng.exe {491E76F4-B427-4423-88ED-85ACE6256B52}
C:\windows\System32\svchost.exe -k swprv
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe8_ Global\UsGthrCtrlFltPipeMssGthrPipe8 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\Users\Ervd\Desktop\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\HPCeeScheduleForERVD-HP$.job
C:\windows\tasks\HPCeeScheduleForErvd.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-08-30 245592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-10-17 553384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-22 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-10-17 210856]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-17 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-08-30 201784]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-22 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-10-17 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-08-30 245592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-08-30 201784]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-09-01 167704]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-09-01 392472]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-09-01 416024]
"IME14 JPN Uninstall"=C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE [2012-03-14 110896]
"IME14 KOR Uninstall"=C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE [2012-03-14 110896]
"IME14 CHS Uninstall"=C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE [2012-03-14 110896]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-01-29 3011824]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-05-24 1664000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BTMTrayAgent]
C:\Program Files\Motorola\Bluetooth\btmshell.dll [2011-02-15 21709904]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant]
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2011-01-27 13880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium]
C:\Program Files (x86)\QIP 2012\qip.exe [2013-08-06 8502256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TrayMenu.lnk]
C:\Windows\SysWOW64\C2MP\TrayMenu.exe [2013-02-24 704008]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"=c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-10-14 343168]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-26 283160]
"HP HD Webcam [Fixed]_Monitor"=C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe [2010-11-26 267128]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-08-30 4858968]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2012-06-20 333728]
"HPConnectionManager"=C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2012-09-05 184736]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]

C:\Users\Ervd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Ervd\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-09-01 390144]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2013-10-21 16:52:51 ----D---- C:\FRST
2013-10-21 16:48:57 ----D---- C:\rsit
2013-10-18 19:38:26 ----D---- C:\Users\Ervd\AppData\Roaming\calibre
2013-10-18 19:37:44 ----D---- C:\Program Files (x86)\Calibre2
2013-10-17 23:45:26 ----D---- C:\Program Files (x86)\SecurityXploded
2013-10-17 23:25:48 ----A---- C:\windows\system32\javaws.exe
2013-10-17 23:25:42 ----A---- C:\windows\system32\WindowsAccessBridge-64.dll
2013-10-17 23:25:42 ----A---- C:\windows\system32\javaw.exe
2013-10-17 23:25:42 ----A---- C:\windows\system32\java.exe
2013-10-17 23:23:25 ----A---- C:\windows\SYSWOW64\javaws.exe
2013-10-17 23:23:17 ----A---- C:\windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-10-17 23:23:17 ----A---- C:\windows\SYSWOW64\javaw.exe
2013-10-17 23:23:17 ----A---- C:\windows\SYSWOW64\java.exe
2013-10-17 18:27:28 ----D---- C:\Program Files (x86)\Advanced Port Scanner
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\wextract.exe
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\webcheck.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\url.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\SetIEInstalledDate.exe
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\pngfilt.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\occache.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\msrating.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\msls31.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\mshtmler.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\mshta.exe
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\inseng.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\imgutil.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\iexpress.exe
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\iepeers.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\ieapfltr.dat
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\IEAdvpack.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\icardie.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\elshyph.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2013-10-13 13:54:20 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\wininet.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\wextract.exe
2013-10-13 13:54:20 ----A---- C:\windows\system32\webcheck.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\vbscript.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\urlmon.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\url.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\SetIEInstalledDate.exe
2013-10-13 13:54:20 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-10-13 13:54:20 ----A---- C:\windows\system32\pngfilt.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\occache.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2013-10-13 13:54:20 ----A---- C:\windows\system32\msrating.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\msls31.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\mshtmlmedia.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\mshtmler.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\mshtmled.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\mshtml.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\mshta.exe
2013-10-13 13:54:20 ----A---- C:\windows\system32\msfeedssync.exe
2013-10-13 13:54:20 ----A---- C:\windows\system32\msfeedsbs.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\msfeeds.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\licmgr10.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\jsproxy.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\jscript9.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\jscript.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\inseng.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\imgutil.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\iexpress.exe
2013-10-13 13:54:20 ----A---- C:\windows\system32\ieUnatt.exe
2013-10-13 13:54:20 ----A---- C:\windows\system32\ieui.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\iesysprep.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\iesetup.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\iertutil.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\iernonce.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\iepeers.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\ieframe.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\iedkcs32.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\ieapfltr.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\ieapfltr.dat
2013-10-13 13:54:20 ----A---- C:\windows\system32\IEAdvpack.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\ie4uinit.exe
2013-10-13 13:54:20 ----A---- C:\windows\system32\icardie.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\elshyph.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\dxtrans.dll
2013-10-13 13:54:20 ----A---- C:\windows\system32\dxtmsft.dll
2013-10-09 23:12:39 ----A---- C:\windows\SYSWOW64\comctl32.dll
2013-10-09 23:12:39 ----A---- C:\windows\system32\drivers\Wdf01000.sys
2013-10-09 23:12:39 ----A---- C:\windows\system32\comctl32.dll
2013-10-09 23:12:38 ----A---- C:\windows\SYSWOW64\lpk.dll
2013-10-09 23:12:38 ----A---- C:\windows\SYSWOW64\fontsub.dll
2013-10-09 23:12:38 ----A---- C:\windows\SYSWOW64\dciman32.dll
2013-10-09 23:12:38 ----A---- C:\windows\SYSWOW64\atmlib.dll
2013-10-09 23:12:38 ----A---- C:\windows\SYSWOW64\atmfd.dll
2013-10-09 23:12:38 ----A---- C:\windows\system32\lpk.dll
2013-10-09 23:12:38 ----A---- C:\windows\system32\fontsub.dll
2013-10-09 23:12:38 ----A---- C:\windows\system32\dciman32.dll
2013-10-09 23:12:38 ----A---- C:\windows\system32\atmlib.dll
2013-10-09 23:12:38 ----A---- C:\windows\system32\atmfd.dll
2013-10-09 23:12:37 ----A---- C:\windows\system32\drivers\usbvideo.sys
2013-10-09 23:12:37 ----A---- C:\windows\system32\drivers\usbser.sys
2013-10-09 23:12:37 ----A---- C:\windows\system32\drivers\usbcir.sys
2013-10-09 23:12:36 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2013-10-09 23:12:36 ----A---- C:\windows\system32\WebClnt.dll
2013-10-09 23:12:36 ----A---- C:\windows\system32\drivers\hidparse.sys
2013-10-09 23:12:36 ----A---- C:\windows\system32\drivers\hidclass.sys
2013-10-09 23:12:36 ----A---- C:\windows\system32\davclnt.dll
2013-10-09 23:12:35 ----A---- C:\windows\SYSWOW64\davclnt.dll
2013-10-09 23:12:35 ----A---- C:\windows\system32\mswsock.dll
2013-10-09 23:12:35 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-10-09 23:12:35 ----A---- C:\windows\system32\drivers\mrxdav.sys
2013-10-09 23:12:35 ----A---- C:\windows\system32\drivers\afd.sys
2013-10-09 23:12:34 ----A---- C:\windows\SYSWOW64\mswsock.dll
2013-10-09 23:12:34 ----A---- C:\windows\system32\win32k.sys
2013-10-09 23:12:29 ----A---- C:\windows\system32\ntoskrnl.exe
2013-10-09 23:12:28 ----A---- C:\windows\system32\advapi32.dll
2013-10-09 23:12:27 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-10-09 23:12:27 ----A---- C:\windows\system32\tdh.dll
2013-10-09 23:12:26 ----A---- C:\windows\SYSWOW64\tdh.dll
2013-10-09 23:12:26 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-10-09 23:12:24 ----A---- C:\windows\SYSWOW64\advapi32.dll
2013-10-09 23:12:24 ----A---- C:\windows\system32\ntdll.dll
2013-10-09 23:12:23 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-10-09 23:12:23 ----A---- C:\windows\system32\wow64.dll
2013-10-09 23:12:22 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-10-09 23:12:21 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-10-09 23:12:21 ----A---- C:\windows\SYSWOW64\user.exe
2013-10-09 23:12:21 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-10-09 23:12:21 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-10-09 23:12:15 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2013-10-09 23:12:15 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-10-09 23:12:14 ----A---- C:\windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 23:12:14 ----A---- C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 23:12:12 ----A---- C:\windows\system32\scavengeui.dll
2013-10-08 21:33:36 ----D---- C:\Program Files (x86)\AnvSoft
2013-10-07 09:18:45 ----D---- C:\Users\Ervd\AppData\Roaming\AC3Filter
2013-10-06 23:16:53 ----D---- C:\Users\Ervd\AppData\Roaming\BSplayer Pro
2013-10-06 23:16:53 ----D---- C:\Users\Ervd\AppData\Roaming\BSplayer
2013-10-06 23:16:52 ----D---- C:\Program Files (x86)\Webteh
2013-10-06 12:31:35 ----D---- C:\Program Files (x86)\Sony Media Go Install
2013-10-03 21:19:07 ----D---- C:\windows\pss
2013-10-03 08:51:06 ----D---- C:\windows\SYSWOW64\C2MP
2013-09-26 19:39:08 ----SHD---- C:\windows\SYSWOW64\AI_RecycleBin
2013-09-25 23:01:27 ----RH---- C:\windows\system32\wintask_.dat
2013-09-25 22:59:27 ----D---- C:\ProgramData\PageTech
2013-09-25 22:59:27 ----D---- C:\Program Files\PAGETECH
2013-09-25 22:15:20 ----D---- C:\ProgramData\IBUpdaterService
2013-09-25 22:15:19 ----D---- C:\Users\Ervd\AppData\Roaming\File Scout

======List of files/folders modified in the last 1 month======

2013-10-21 16:58:21 ----D---- C:\Program Files\trend micro
2013-10-21 16:54:12 ----D---- C:\Windows
2013-10-21 16:52:49 ----D---- C:\windows\Prefetch
2013-10-21 15:54:51 ----D---- C:\windows\temp
2013-10-21 15:54:48 ----A---- C:\windows\SYSWOW64\log.txt
2013-10-21 15:53:18 ----D---- C:\Users\Ervd\AppData\Roaming\Dropbox
2013-10-21 15:15:14 ----D---- C:\windows\system32\config
2013-10-21 12:48:19 ----D---- C:\Program Files (x86)\Voobly
2013-10-20 21:35:54 ----D---- C:\windows\System32
2013-10-20 21:35:54 ----D---- C:\windows\inf
2013-10-20 21:35:54 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-10-19 10:55:14 ----D---- C:\Program Files (x86)\QIP 2012
2013-10-18 19:38:21 ----SHD---- C:\windows\Installer
2013-10-18 19:37:44 ----RD---- C:\Program Files (x86)
2013-10-18 19:37:32 ----SHD---- C:\System Volume Information
2013-10-18 15:48:56 ----A---- C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-10-17 23:25:51 ----D---- C:\ProgramData\Oracle
2013-10-17 23:23:25 ----D---- C:\windows\SysWOW64
2013-10-17 12:58:04 ----RSD---- C:\windows\assembly
2013-10-17 12:57:56 ----D---- C:\Program Files (x86)\Sony
2013-10-15 21:52:37 ----D---- C:\Users\Ervd\AppData\Roaming\Might & Magic Heroes VI
2013-10-15 14:48:22 ----D---- C:\Program Files (x86)\Steam
2013-10-15 14:47:56 ----D---- C:\windows\Panther
2013-10-15 14:47:52 ----D---- C:\windows\Logs
2013-10-15 14:47:52 ----D---- C:\windows\debug
2013-10-13 14:09:00 ----D---- C:\windows\winsxs
2013-10-13 14:06:13 ----D---- C:\windows\SYSWOW64\sk-SK
2013-10-13 14:06:13 ----D---- C:\Program Files\Internet Explorer
2013-10-13 14:06:13 ----D---- C:\Program Files (x86)\Internet Explorer
2013-10-13 14:06:12 ----D---- C:\windows\SYSWOW64\hr-HR
2013-10-13 14:06:12 ----D---- C:\windows\system32\sk-SK
2013-10-13 14:06:11 ----D---- C:\windows\SYSWOW64\sl-SI
2013-10-13 14:06:11 ----D---- C:\windows\system32\sl-SI
2013-10-13 14:06:11 ----D---- C:\windows\system32\hr-HR
2013-10-13 14:06:10 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-10-13 14:06:09 ----D---- C:\windows\system32\cs-CZ
2013-10-13 14:06:05 ----D---- C:\windows\SYSWOW64\migration
2013-10-13 14:06:03 ----D---- C:\windows\SYSWOW64\en-US
2013-10-13 14:06:00 ----D---- C:\windows\PolicyDefinitions
2013-10-13 14:05:58 ----D---- C:\windows\system32\migration
2013-10-13 14:05:56 ----D---- C:\windows\system32\en-US
2013-10-13 14:02:27 ----D---- C:\windows\system32\catroot
2013-10-13 14:00:37 ----D---- C:\windows\system32\catroot2
2013-10-10 20:41:34 ----D---- C:\windows\Tasks
2013-10-10 20:41:34 ----D---- C:\windows\system32\Tasks
2013-10-10 20:40:20 ----DC---- C:\windows\system32\DRVSTORE
2013-10-10 20:40:20 ----D---- C:\windows\system32\DriverStore
2013-10-10 20:40:20 ----D---- C:\windows\system32\drivers
2013-10-10 20:38:35 ----D---- C:\ProgramData\Nokia
2013-10-10 20:38:35 ----D---- C:\Program Files (x86)\Nokia
2013-10-10 20:38:35 ----D---- C:\Program Files (x86)\Common Files
2013-10-10 20:36:38 ----D---- C:\Program Files (x86)\SlimComputer
2013-10-10 03:57:23 ----D---- C:\windows\Microsoft.NET
2013-10-10 03:43:30 ----D---- C:\Program Files\Microsoft Silverlight
2013-10-10 03:43:27 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-10-10 03:41:33 ----D---- C:\windows\AppPatch
2013-10-10 03:25:07 ----A---- C:\windows\win.ini
2013-10-10 03:18:25 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2013-10-10 03:13:17 ----D---- C:\windows\system32\MRT
2013-10-10 03:07:20 ----A---- C:\windows\system32\MRT.exe
2013-10-10 00:06:54 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-10-06 20:36:18 ----D---- C:\Program Files (x86)\OpenOffice 4
2013-10-06 20:35:17 ----RSD---- C:\windows\Fonts
2013-09-26 22:53:51 ----RD---- C:\Program Files
2013-09-26 22:53:50 ----D---- C:\ProgramData
2013-09-26 14:50:24 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-09-24 16:11:00 ----D---- C:\Program Files\SUPERAntiSpyware
2013-09-22 16:05:40 ----D---- C:\Program Files (x86)\Opera
2013-09-22 15:51:25 ----D---- C:\Users\Ervd\AppData\Roaming\Real
2013-09-22 15:51:22 ----D---- C:\Program Files (x86)\Real
2013-09-22 15:51:19 ----D---- C:\ProgramData\Real
2013-09-22 15:50:49 ----D---- C:\Program Files (x86)\The KMPlayer

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\windows\system32\drivers\aswRvrt.sys [2013-08-30 65336]
R0 aswVmm;aswVmm; C:\windows\system32\drivers\aswVmm.sys [2013-08-30 204880]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-13 439320]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 aswRdr;aswRdr; C:\windows\System32\Drivers\aswrdr2.sys [2013-08-30 72016]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2013-08-30 1030952]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2013-08-30 378944]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2013-08-30 64288]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\windows\system32\DRIVERS\dtsoftbus01.sys [2013-04-02 283200]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2013-08-30 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [2013-08-30 80816]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-10-14 10496000]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-10-14 326656]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2010-11-11 32192]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\drivers\HpqKbFiltr.sys [2010-12-03 25912]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-09-01 12306848]
R3 JMCR;JMCR; C:\windows\system32\DRIVERS\jmcr.sys [2013-05-24 175928]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2013-05-24 708200]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver; C:\windows\system32\DRIVERS\rtl8192Ce.sys [2011-07-19 1145448]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2011-01-12 2611704]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\windows\system32\DRIVERS\stwrt64.sys [2013-05-24 543744]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2013-01-29 468720]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 Bridge;@%SystemRoot%\system32\bridgeres.dll,-3; C:\windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BrUsbScn;Ovladač skeneru Brother MFC USB; C:\windows\System32\Drivers\BrUsbScn.sys [2009-06-10 14336]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2012-01-02 80384]
S3 BTMCOM;Bluetooth Serial Port; C:\windows\System32\Drivers\btmcom.sys [2010-06-30 52736]
S3 BTMNET;Motorola Bluetooth Network Adapter Service; C:\windows\system32\DRIVERS\btmnet.sys [2010-07-16 30208]
S3 BTMUSB;Motorola Bluetooth Radio Service; C:\windows\System32\Drivers\btmusb.sys [2011-02-08 486144]
S3 ggflt;SEMC USB Flash Driver Filter; C:\windows\system32\DRIVERS\ggflt.sys [2013-01-16 14448]
S3 ggsemc;SEMC USB Flash Driver; C:\windows\system32\DRIVERS\ggsemc.sys [2013-01-16 27760]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-09-01 12306848]
S3 NLNdisMP;NLNdisMP; C:\windows\system32\DRIVERS\nlndis.sys []
S3 NLNdisPT;NetLimiter Ndis Protocol Service; C:\windows\system32\DRIVERS\nlndis.sys []
S3 nmwcd;Nokia USB Phone Parent Driver; C:\windows\system32\drivers\ccdcmbx64.sys [2012-01-09 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\windows\system32\drivers\ccdcmbox64.sys [2012-01-09 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\windows\system32\drivers\nmwcdnsucx64.sys [2012-01-09 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\windows\system32\drivers\nmwcdnsux64.sys [2012-01-09 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfdx64.sys []
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 sdbus;sdbus; C:\windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 trufos;trufos; C:\windows\system32\drivers\trufos.sys [2013-03-07 350160]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 upperdev;upperdev; C:\windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-01-09 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 usbser;USB Modem Driver; C:\windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-01-09 9216]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2013-05-08 143088]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2013-05-24 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-10-14 204288]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-08-30 46808]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files\Motorola\Bluetooth\obexsrv.exe [2011-02-15 680016]
R2 brmfrsmg;Brother Resource manager service; C:\windows\system32\BrmfRsmg.exe [2009-07-14 52736]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-01-27 131128]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2012-09-06 197536]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [2012-06-20 523680]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2012-09-24 31040]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-26 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-01-17 326168]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-01-18 113264]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2013-05-24 323072]
R2 uArcCapture;ArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [2010-11-11 502464]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-01-17 2656280]
R3 Bluetooth Device Manager;Bluetooth Device Manager; C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe [2011-02-08 4151376]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-06-09 1028096]
R3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2012-09-05 1420192]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-09-06 1001376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-19 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-18 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-06-03 162408]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-10 257416]
S3 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-19 44376]
S3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files\Motorola\Bluetooth\audiosrv.exe [2011-02-28 1189968]
S3 DAUpdaterSvc;Dragon Age: Origins - Content Updater; C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [2009-12-15 25832]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-06-09 647680]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-18 116648]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2011-03-16 407336]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2012-06-09 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#3 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#4 Příspěvek od Ervd »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.7 (10.15.2013:3)
OS: Windows 7 Home Premium x64
Ran by Ervd on po 21.10.2013 at 22:08:38,39
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\privitizevpn_1_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\privitizevpn_1_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\privitizevpn_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\privitizevpn_rasmancs



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\ibupdaterservice"
Successfully deleted: [Folder] "C:\Users\Ervd\AppData\Roaming\file scout"
Successfully deleted: [Folder] "C:\Users\Ervd\AppData\Roaming\pdfforge"
Successfully deleted: [Folder] "C:\windows\syswow64\ai_recyclebin"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 21.10.2013 at 22:22:41,20
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#5 Příspěvek od Ervd »

# AdwCleaner v3.010 - Report created 21/10/2013 at 22:31:41
# Updated 20/10/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Ervd - ERVD-HP
# Running from : C:\Users\Ervd\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

File Deleted : C:\windows\System32\Tasks\Express FilesUpdate

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKCU\Software\OCS

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16720


-\\ Google Chrome v

[ File : C:\Users\Ervd\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R1].txt - [934 octets] - [21/10/2013 22:24:39]
AdwCleaner[S1].txt - [825 octets] - [21/10/2013 22:31:41]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [884 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#6 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#7 Příspěvek od Ervd »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-10-2013
Ran by Ervd (administrator) on ERVD-HP on 23-10-2013 23:04:52
Running from C:\Users\Ervd\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\windows\system32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe
(Hewlett-Packard Company) C:\windows\system32\Hpservice.exe
(AMD) C:\windows\system32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
(Brother Industries, Ltd.) C:\windows\system32\BrmfRsmg.exe
(Brother Industries, Ltd.) C:\windows\system32\BrmfRsmg.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Dropbox, Inc.) C:\Users\Ervd\AppData\Roaming\Dropbox\bin\Dropbox.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
(ArcSoft, Inc.) C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
() C:\Program Files (x86)\HP HD Webcam [Fixed]\Monitor.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\obexsrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Macrovision Europe Ltd.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Opera Software) C:\Program Files (x86)\Opera\Opera.exe
(forum.viry.cz) C:\Users\Ervd\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [IME14 JPN Uninstall] - C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE [110896 2012-03-14] (Microsoft Corporation)
HKLM\...\Run: [IME14 KOR Uninstall] - C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE [110896 2012-03-14] (Microsoft Corporation)
HKLM\...\Run: [IME14 CHS Uninstall] - C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE [110896 2012-03-14] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3011824 2013-01-29] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1664000 2013-05-24] (IDT, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM-x32\...\Run: [NUSB3MON] - c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-14] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-26] (Intel Corporation)
HKLM-x32\...\Run: [HP HD Webcam [Fixed]_Monitor] - C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe [267128 2010-11-26] ()
HKLM-x32\...\Run: [QLBController] - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [333728 2012-06-20] (Hewlett-Packard Company)
HKLM-x32\...\Run: [HPConnectionManager] - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [184736 2012-09-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3567800 2013-10-21] (AVAST Software)
Startup: C:\Users\Ervd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Ervd\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd/In ... ect119.cab
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.100.250

Chrome:
=======
CHR Extension: (MagniPic) - C:\Users\Ervd\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbhhfnefnjpcnghkojnkjcomonolammf\1

==================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [143088 2013-05-08] (SUPERAntiSpyware.com)
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-10-21] (AVAST Software)
R2 brmfrsmg; C:\Windows\system32\BrmfRsmg.exe [52736 2009-07-14] (Brother Industries, Ltd.)
S3 COMSysApp; C:\Windows\SysWow64\dllhost.exe [7168 2009-07-14] (Microsoft Corporation)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [523680 2012-06-20] (Hewlett-Packard Company)
S3 msiserver; C:\Windows\SysWow64\msiexec.exe [73216 2010-11-21] (Microsoft Corporation)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [502464 2010-11-11] (ArcSoft, Inc.)
R2 WSearch; C:\Windows\SysWow64\SearchIndexer.exe [427520 2012-01-02] (Microsoft Corporation)
S3 WinDefend; %ProgramFiles(x86)%\Windows Defender\mpsvc.dll [x]

==================== Drivers (Whitelisted) ====================

R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32192 2010-11-11] (ArcSoft, Inc.)
R2 aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [38984 2013-10-21] (AVAST Software)
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [84328 2013-10-21] (AVAST Software)
R1 aswRdr; C:\windows\system32\drivers\aswRdr2.sys [92544 2013-10-21] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-10-21] ()
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [1032416 2013-10-21] (AVAST Software)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [409832 2013-10-21] (AVAST Software)
R1 aswTdi; C:\windows\system32\drivers\aswTdi.sys [65264 2013-10-21] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2013-10-21] ()
S3 BrUsbScn; C:\Windows\System32\Drivers\BrUsbScn.sys [14336 2009-06-10] (Brother Industries Ltd.)
S3 BTMNET; C:\Windows\System32\DRIVERS\btmnet.sys [30208 2010-07-16] (Motorola, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-04-02] (DT Soft Ltd)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2611704 2011-01-12] (Sunplus Technology)
S3 trufos; C:\Windows\System32\drivers\trufos.sys [350160 2013-03-07] (BitDefender S.R.L.)
S3 NLNdisMP; system32\DRIVERS\nlndis.sys [x]
S3 NLNdisPT; system32\DRIVERS\nlndis.sys [x]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-23 23:03 - 2013-10-23 23:03 - 01955374 _____ (Farbar) C:\Users\Ervd\Desktop\FRST64.exe
2013-10-23 08:46 - 2013-10-23 22:56 - 00000112 _____ C:\windows\setupact.log
2013-10-23 08:46 - 2013-10-23 08:46 - 00000000 _____ C:\windows\setuperr.log
2013-10-21 23:48 - 2013-10-21 23:48 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\vlc
2013-10-21 22:33 - 2013-10-21 22:33 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\AVAST Software
2013-10-21 22:24 - 2013-10-21 22:31 - 00000000 ____D C:\AdwCleaner
2013-10-21 22:08 - 2013-10-21 22:08 - 00000000 ____D C:\windows\ERUNT
2013-10-21 21:24 - 2013-10-21 21:24 - 01060070 _____ C:\Users\Ervd\Desktop\adwcleaner.exe
2013-10-21 21:24 - 2013-10-21 21:24 - 01033335 _____ (Thisisu) C:\Users\Ervd\Desktop\JRT.exe
2013-10-21 16:52 - 2013-10-21 16:52 - 00000000 ____D C:\FRST
2013-10-21 16:51 - 2013-10-21 16:51 - 00112128 _____ (forum.viry.cz) C:\Users\Ervd\Desktop\FRSTLauncher.exe
2013-10-21 16:48 - 2013-10-21 16:49 - 00000000 ____D C:\rsit
2013-10-18 19:48 - 2013-10-18 19:48 - 00000000 ____D C:\Users\Ervd\AppData\Local\calibre-cache
2013-10-18 19:47 - 2013-10-18 22:52 - 00000000 ____D C:\Users\Ervd\Documents\Calibre Library
2013-10-18 19:38 - 2013-10-18 19:48 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\calibre
2013-10-18 19:38 - 2013-10-18 19:38 - 00000960 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk
2013-10-18 19:38 - 2013-10-18 19:38 - 00000000 ____D C:\Users\Ervd\Documents\Calibre knihovna
2013-10-18 19:37 - 2013-10-18 19:38 - 00000000 ____D C:\Program Files (x86)\Calibre2
2013-10-18 18:58 - 2013-10-18 18:58 - 00000000 ____D C:\Users\Ervd\Desktop\Terry-Pratchett---knihy
2013-10-18 18:46 - 2013-10-18 18:57 - 198544224 _____ C:\Users\Ervd\Desktop\Terry-Pratchett---knihy.rar
2013-10-17 23:45 - 2013-10-17 23:45 - 00001343 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.lnk
2013-10-17 23:45 - 2013-10-17 23:45 - 00000000 ____D C:\Program Files (x86)\SecurityXploded
2013-10-17 23:38 - 2013-10-17 23:38 - 01890567 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.zip
2013-10-17 23:38 - 2013-10-17 23:38 - 00000000 ____D C:\Users\Ervd\Desktop\RouterPasswordKracker
2013-10-17 23:25 - 2013-10-17 23:25 - 00312744 _____ (Oracle Corporation) C:\windows\system32\javaws.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00189352 _____ (Oracle Corporation) C:\windows\system32\javaw.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00189352 _____ (Oracle Corporation) C:\windows\system32\java.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00108968 _____ (Oracle Corporation) C:\windows\system32\WindowsAccessBridge-64.dll
2013-10-17 23:23 - 2013-10-17 23:23 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-17 18:27 - 2013-10-17 18:27 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced Port Scanner
2013-10-17 18:27 - 2013-10-17 18:27 - 00000000 ____D C:\Program Files (x86)\Advanced Port Scanner
2013-10-17 08:44 - 2013-10-17 20:37 - 00000587 _____ C:\Users\Ervd\Desktop\forward.ini
2013-10-17 08:43 - 2013-10-17 08:43 - 00001170 _____ C:\Users\Ervd\myip.txt
2013-10-17 08:37 - 2013-10-17 08:37 - 01048576 _____ (Spider IT) C:\Users\Ervd\Desktop\PortForward.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 19252224 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 15404544 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 14335488 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 03959296 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02876928 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2013-10-13 13:54 - 2013-10-13 13:54 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-10-13 13:54 - 2013-10-13 13:54 - 02647552 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2013-10-13 13:54 - 2013-10-13 13:54 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2013-10-13 13:54 - 2013-10-13 13:54 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2013-10-13 13:54 - 2013-10-13 13:54 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2013-10-13 13:54 - 2013-10-13 13:54 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2013-10-13 13:54 - 2013-10-13 13:54 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2013-10-13 13:54 - 2013-10-13 13:54 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2013-10-13 13:54 - 2013-10-13 13:54 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2013-10-13 13:54 - 2013-10-13 13:54 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2013-10-11 17:41 - 2013-10-11 17:41 - 00000871 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-10-10 20:36 - 2013-10-10 20:36 - 00003014 _____ C:\windows\System32\Tasks\SlimComputer Run
2013-10-09 23:45 - 2013-10-10 00:06 - 01597440 _____ C:\Users\Ervd\Desktop\ZM_1.xls
2013-10-09 23:12 - 2013-09-14 03:10 - 00497152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2013-10-09 23:12 - 2013-09-08 04:30 - 01903552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2013-10-09 23:12 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\windows\system32\mswsock.dll
2013-10-09 23:12 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mswsock.dll
2013-10-09 23:12 - 2013-08-29 04:17 - 05549504 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2013-10-09 23:12 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2013-10-09 23:12 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2013-10-09 23:12 - 2013-08-29 04:16 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2013-10-09 23:12 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2013-10-09 23:12 - 2013-08-29 03:51 - 03969472 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2013-10-09 23:12 - 2013-08-29 03:51 - 03914176 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2013-10-09 23:12 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2013-10-09 23:12 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2013-10-09 23:12 - 2013-08-29 03:50 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2013-10-09 23:12 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2013-10-09 23:12 - 2013-08-29 03:29 - 00033280 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbser.sys
2013-10-09 23:12 - 2013-08-29 02:49 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2013-10-09 23:12 - 2013-08-29 02:49 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2013-10-09 23:12 - 2013-08-29 02:49 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2013-10-09 23:12 - 2013-08-29 02:49 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2013-10-09 23:12 - 2013-08-28 03:21 - 03155968 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2013-10-09 23:12 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\windows\system32\scavengeui.dll
2013-10-09 23:12 - 2013-08-01 11:19 - 00984512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2013-10-09 23:12 - 2013-08-01 11:19 - 00265152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys
2013-10-09 23:12 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 23:12 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 23:12 - 2013-07-12 12:41 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbvideo.sys
2013-10-09 23:12 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbcir.sys
2013-10-09 23:12 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\WebClnt.dll
2013-10-09 23:12 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2013-10-09 23:12 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\windows\system32\davclnt.dll
2013-10-09 23:12 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\windows\SysWOW64\WebClnt.dll
2013-10-09 23:12 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\windows\SysWOW64\davclnt.dll
2013-10-09 23:12 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2013-10-09 23:12 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxdav.sys
2013-10-09 23:12 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2013-10-09 23:12 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2013-10-09 23:12 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys
2013-10-09 23:12 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2013-10-09 23:12 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2013-10-09 23:12 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2013-10-09 23:12 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2013-10-09 23:12 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2013-10-09 23:12 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2013-10-09 23:12 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2013-10-09 23:12 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2013-10-09 23:12 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2013-10-09 23:12 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2013-10-08 22:57 - 2013-10-08 22:57 - 00000000 ____D C:\Users\Ervd\Documents\flash zaloha
2013-10-08 21:34 - 2013-10-08 21:34 - 00001199 _____ C:\Users\Ervd\Desktop\Any Video Converter.lnk
2013-10-08 21:34 - 2013-10-08 21:34 - 00000000 ____D C:\Users\Ervd\Documents\Any Video Converter Professional
2013-10-08 21:33 - 2013-10-08 21:33 - 00000000 ____D C:\Program Files (x86)\AnvSoft
2013-10-07 09:18 - 2013-10-07 09:18 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\AC3Filter
2013-10-06 23:17 - 2013-10-06 23:17 - 00001122 _____ C:\Users\Public\Desktop\BS.Player FREE.lnk
2013-10-06 23:16 - 2013-10-06 23:20 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\BSplayer
2013-10-06 23:16 - 2013-10-06 23:16 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\BSplayer Pro
2013-10-06 23:16 - 2013-10-06 23:16 - 00000000 ____D C:\Program Files (x86)\Webteh
2013-10-06 20:35 - 2013-10-06 20:35 - 00001100 _____ C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2013-10-06 12:31 - 2013-10-06 12:31 - 00000000 ____D C:\Program Files (x86)\Sony Media Go Install
2013-10-03 21:19 - 2013-10-03 21:19 - 00000000 ____D C:\windows\pss
2013-10-03 08:51 - 2013-10-03 09:02 - 00000000 ____D C:\windows\SysWOW64\C2MP
2013-10-01 23:59 - 2013-10-02 01:12 - 1610612736 _____ C:\Users\Ervd\Documents\THE.SETTLERS.7.Razor1911.CZ.part1.rar
2013-09-29 14:25 - 2013-09-29 14:25 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-09-26 19:46 - 2013-09-26 20:57 - 00000021 _____ C:\Users\Ervd\Desktop\IP list.txt
2013-09-26 17:14 - 2013-09-26 17:14 - 00000000 ____D C:\Users\Ervd\Desktop\AoM_AoT_UI_Mod_Pack
2013-09-25 23:01 - 2013-09-25 23:01 - 00000015 ___RH C:\windows\system32\wintask_.dat
2013-09-25 22:59 - 2013-09-25 23:02 - 00000000 ____D C:\Users\Public\Desktop\PCLTSDK64_130
2013-09-25 22:59 - 2013-09-25 23:00 - 00000000 ____D C:\ProgramData\PageTech
2013-09-25 22:59 - 2013-09-25 23:00 - 00000000 ____D C:\Program Files\PAGETECH
2013-09-25 22:17 - 2013-09-25 22:17 - 00000000 _____ C:\Users\Ervd\AppData\Roaming\pdfconverter

==================== One Month Modified Files and Folders =======

2013-10-23 23:04 - 2012-06-09 19:43 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-10-23 23:04 - 2009-07-14 06:45 - 00028576 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-23 23:04 - 2009-07-14 06:45 - 00028576 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-23 23:03 - 2013-10-23 23:03 - 01955374 _____ (Farbar) C:\Users\Ervd\Desktop\FRST64.exe
2013-10-23 23:00 - 2013-06-13 17:31 - 01165901 _____ C:\windows\WindowsUpdate.log
2013-10-23 22:58 - 2013-09-13 21:14 - 00004182 _____ C:\windows\System32\Tasks\avast! Emergency Update
2013-10-23 22:57 - 2012-09-08 12:39 - 00000000 ___RD C:\Users\Ervd\Dropbox
2013-10-23 22:57 - 2012-09-08 12:37 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\Dropbox
2013-10-23 22:56 - 2013-10-23 08:46 - 00000112 _____ C:\windows\setupact.log
2013-10-23 22:56 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-10-23 09:09 - 2012-06-09 16:08 - 00000000 ____D C:\Users\Ervd
2013-10-23 09:09 - 2012-01-02 19:36 - 00669736 _____ C:\windows\system32\perfh005.dat
2013-10-23 09:09 - 2012-01-02 19:36 - 00141336 _____ C:\windows\system32\perfc005.dat
2013-10-23 09:09 - 2009-07-14 07:13 - 01585238 _____ C:\windows\system32\PerfStringBackup.INI
2013-10-23 08:54 - 2012-09-18 20:35 - 00000948 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-23 08:46 - 2013-10-23 08:46 - 00000000 _____ C:\windows\setuperr.log
2013-10-22 14:57 - 2013-03-29 09:38 - 00000000 ____D C:\Program Files (x86)\Voobly
2013-10-22 13:32 - 2012-06-15 16:30 - 00000000 ____D C:\Users\Ervd\AppData\Local\CrashDumps
2013-10-21 23:48 - 2013-10-21 23:48 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\vlc
2013-10-21 22:33 - 2013-10-21 22:33 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\AVAST Software
2013-10-21 22:31 - 2013-10-21 22:24 - 00000000 ____D C:\AdwCleaner
2013-10-21 22:08 - 2013-10-21 22:08 - 00000000 ____D C:\windows\ERUNT
2013-10-21 22:07 - 2013-05-12 13:40 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-10-21 22:06 - 2013-05-12 13:40 - 01032416 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2013-10-21 22:06 - 2013-05-12 13:40 - 00409832 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys
2013-10-21 22:06 - 2013-05-12 13:40 - 00334648 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2013-10-21 22:06 - 2013-05-12 13:40 - 00205320 _____ C:\windows\system32\Drivers\aswVmm.sys
2013-10-21 22:06 - 2013-05-12 13:40 - 00092544 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2013-10-21 22:06 - 2013-05-12 13:40 - 00084328 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2013-10-21 22:06 - 2013-05-12 13:40 - 00065776 _____ C:\windows\system32\Drivers\aswRvrt.sys
2013-10-21 22:06 - 2013-05-12 13:40 - 00065264 _____ (AVAST Software) C:\windows\system32\Drivers\aswTdi.sys
2013-10-21 22:06 - 2013-05-12 13:40 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2013-10-21 22:06 - 2013-05-12 13:40 - 00038984 _____ (AVAST Software) C:\windows\system32\Drivers\aswFsBlk.sys
2013-10-21 22:02 - 2013-03-07 00:53 - 00007605 _____ C:\Users\Ervd\AppData\Local\Resmon.ResmonCfg
2013-10-21 22:01 - 2013-05-12 13:38 - 00000000 ____D C:\ProgramData\AVAST Software
2013-10-21 22:00 - 2013-05-12 13:40 - 00000000 _____ C:\windows\SysWOW64\config.nt
2013-10-21 21:32 - 2013-04-26 22:57 - 00003180 _____ C:\windows\System32\Tasks\HPCeeScheduleForErvd
2013-10-21 21:32 - 2013-04-26 22:57 - 00000328 _____ C:\windows\Tasks\HPCeeScheduleForErvd.job
2013-10-21 21:24 - 2013-10-21 21:24 - 01060070 _____ C:\Users\Ervd\Desktop\adwcleaner.exe
2013-10-21 21:24 - 2013-10-21 21:24 - 01033335 _____ (Thisisu) C:\Users\Ervd\Desktop\JRT.exe
2013-10-21 16:58 - 2012-08-01 17:34 - 00000000 ____D C:\Program Files\trend micro
2013-10-21 16:58 - 2012-08-01 17:32 - 00935175 _____ C:\Users\Ervd\Desktop\RSITx64.exe
2013-10-21 16:52 - 2013-10-21 16:52 - 00000000 ____D C:\FRST
2013-10-21 16:51 - 2013-10-21 16:51 - 00112128 _____ (forum.viry.cz) C:\Users\Ervd\Desktop\FRSTLauncher.exe
2013-10-21 16:49 - 2013-10-21 16:48 - 00000000 ____D C:\rsit
2013-10-20 19:32 - 2013-03-29 09:38 - 00000979 _____ C:\Users\Ervd\Desktop\Voobly.lnk
2013-10-19 10:55 - 2013-08-12 14:48 - 00000000 ____D C:\Program Files (x86)\QIP 2012
2013-10-18 22:52 - 2013-10-18 19:47 - 00000000 ____D C:\Users\Ervd\Documents\Calibre Library
2013-10-18 19:48 - 2013-10-18 19:48 - 00000000 ____D C:\Users\Ervd\AppData\Local\calibre-cache
2013-10-18 19:48 - 2013-10-18 19:38 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\calibre
2013-10-18 19:38 - 2013-10-18 19:38 - 00000960 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk
2013-10-18 19:38 - 2013-10-18 19:38 - 00000000 ____D C:\Users\Ervd\Documents\Calibre knihovna
2013-10-18 19:38 - 2013-10-18 19:37 - 00000000 ____D C:\Program Files (x86)\Calibre2
2013-10-18 18:58 - 2013-10-18 18:58 - 00000000 ____D C:\Users\Ervd\Desktop\Terry-Pratchett---knihy
2013-10-18 18:57 - 2013-10-18 18:46 - 198544224 _____ C:\Users\Ervd\Desktop\Terry-Pratchett---knihy.rar
2013-10-18 15:49 - 2012-06-18 11:46 - 00000052 _____ C:\windows\SysWOW64\DOErrors.log
2013-10-18 15:48 - 2012-06-29 15:24 - 00000000 _____ C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-10-17 23:45 - 2013-10-17 23:45 - 00001343 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.lnk
2013-10-17 23:45 - 2013-10-17 23:45 - 00000000 ____D C:\Program Files (x86)\SecurityXploded
2013-10-17 23:38 - 2013-10-17 23:38 - 01890567 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.zip
2013-10-17 23:38 - 2013-10-17 23:38 - 00000000 ____D C:\Users\Ervd\Desktop\RouterPasswordKracker
2013-10-17 23:25 - 2013-10-17 23:25 - 00312744 _____ (Oracle Corporation) C:\windows\system32\javaws.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00189352 _____ (Oracle Corporation) C:\windows\system32\javaw.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00189352 _____ (Oracle Corporation) C:\windows\system32\java.exe
2013-10-17 23:25 - 2013-10-17 23:25 - 00108968 _____ (Oracle Corporation) C:\windows\system32\WindowsAccessBridge-64.dll
2013-10-17 23:25 - 2013-09-19 08:16 - 00000000 ____D C:\ProgramData\Oracle
2013-10-17 23:23 - 2013-10-17 23:23 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-17 20:37 - 2013-10-17 08:44 - 00000587 _____ C:\Users\Ervd\Desktop\forward.ini
2013-10-17 18:27 - 2013-10-17 18:27 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced Port Scanner
2013-10-17 18:27 - 2013-10-17 18:27 - 00000000 ____D C:\Program Files (x86)\Advanced Port Scanner
2013-10-17 12:57 - 2012-12-18 01:26 - 00000000 ____D C:\Program Files (x86)\Sony
2013-10-17 08:43 - 2013-10-17 08:43 - 00001170 _____ C:\Users\Ervd\myip.txt
2013-10-17 08:37 - 2013-10-17 08:37 - 01048576 _____ (Spider IT) C:\Users\Ervd\Desktop\PortForward.exe
2013-10-16 09:01 - 2012-09-18 20:35 - 00000944 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-15 23:49 - 2012-09-18 20:35 - 00003944 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-15 23:49 - 2012-09-18 20:35 - 00003694 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-15 21:52 - 2012-07-02 12:16 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\Might & Magic Heroes VI
2013-10-15 14:48 - 2012-08-11 08:50 - 00000000 ____D C:\Program Files (x86)\Steam
2013-10-15 14:47 - 2011-02-11 07:14 - 00000000 ____D C:\windows\Panther
2013-10-14 21:12 - 2012-07-11 13:01 - 00003216 _____ C:\windows\System32\Tasks\HPCeeScheduleForERVD-HP$
2013-10-14 21:12 - 2012-07-11 13:01 - 00000340 _____ C:\windows\Tasks\HPCeeScheduleForERVD-HP$.job
2013-10-13 14:09 - 2012-06-09 16:55 - 00001393 _____ C:\Users\Ervd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\sl-SI
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\sk-SK
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\hr-HR
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\sl-SI
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\sk-SK
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\hr-HR
2013-10-13 14:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\PolicyDefinitions
2013-10-13 13:54 - 2013-10-13 13:54 - 19252224 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 15404544 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 14335488 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 03959296 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02876928 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2013-10-13 13:54 - 2013-10-13 13:54 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-10-13 13:54 - 2013-10-13 13:54 - 02647552 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2013-10-13 13:54 - 2013-10-13 13:54 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2013-10-13 13:54 - 2013-10-13 13:54 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2013-10-13 13:54 - 2013-10-13 13:54 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2013-10-13 13:54 - 2013-10-13 13:54 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2013-10-13 13:54 - 2013-10-13 13:54 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2013-10-13 13:54 - 2013-10-13 13:54 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2013-10-13 13:54 - 2013-10-13 13:54 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2013-10-13 13:54 - 2013-10-13 13:54 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2013-10-13 13:54 - 2013-10-13 13:54 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2013-10-13 13:54 - 2013-10-13 13:54 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2013-10-11 17:41 - 2013-10-11 17:41 - 00000871 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-10-10 20:38 - 2012-08-05 21:17 - 00000000 ____D C:\ProgramData\Nokia
2013-10-10 20:38 - 2012-06-26 19:54 - 00000000 ____D C:\Program Files (x86)\Nokia
2013-10-10 20:36 - 2013-10-10 20:36 - 00003014 _____ C:\windows\System32\Tasks\SlimComputer Run
2013-10-10 20:36 - 2012-06-09 18:53 - 00000000 ____D C:\Program Files (x86)\SlimComputer
2013-10-10 20:35 - 2012-06-09 18:53 - 00002469 _____ C:\Users\Public\Desktop\SlimComputer.lnk
2013-10-10 20:35 - 2012-06-09 18:01 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers
2013-10-10 03:43 - 2013-03-13 14:22 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-10 03:43 - 2013-03-13 14:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-10 03:43 - 2009-07-14 06:45 - 00445272 _____ C:\windows\system32\FNTCACHE.DAT
2013-10-10 03:25 - 2009-07-14 04:34 - 00000876 _____ C:\windows\win.ini
2013-10-10 03:18 - 2012-01-02 20:11 - 01564460 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2013-10-10 03:13 - 2013-08-15 03:04 - 00000000 ____D C:\windows\system32\MRT
2013-10-10 03:07 - 2012-06-09 18:29 - 80541720 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2013-10-10 00:06 - 2013-10-09 23:45 - 01597440 _____ C:\Users\Ervd\Desktop\ZM_1.xls
2013-10-10 00:06 - 2012-06-09 19:43 - 00003852 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2013-10-10 00:06 - 2012-06-09 19:42 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2013-10-10 00:06 - 2012-06-09 19:42 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 22:57 - 2013-10-08 22:57 - 00000000 ____D C:\Users\Ervd\Documents\flash zaloha
2013-10-08 21:48 - 2013-01-10 17:46 - 00000000 ____D C:\Users\Ervd\Documents\Any Video Converter
2013-10-08 21:34 - 2013-10-08 21:34 - 00001199 _____ C:\Users\Ervd\Desktop\Any Video Converter.lnk
2013-10-08 21:34 - 2013-10-08 21:34 - 00000000 ____D C:\Users\Ervd\Documents\Any Video Converter Professional
2013-10-08 21:33 - 2013-10-08 21:33 - 00000000 ____D C:\Program Files (x86)\AnvSoft
2013-10-07 09:18 - 2013-10-07 09:18 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\AC3Filter
2013-10-06 23:23 - 2012-06-09 16:52 - 00115688 _____ C:\Users\Ervd\AppData\Local\GDIPFONTCACHEV1.DAT
2013-10-06 23:20 - 2013-10-06 23:16 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\BSplayer
2013-10-06 23:17 - 2013-10-06 23:17 - 00001122 _____ C:\Users\Public\Desktop\BS.Player FREE.lnk
2013-10-06 23:16 - 2013-10-06 23:16 - 00000000 ____D C:\Users\Ervd\AppData\Roaming\BSplayer Pro
2013-10-06 23:16 - 2013-10-06 23:16 - 00000000 ____D C:\Program Files (x86)\Webteh
2013-10-06 20:36 - 2013-08-08 18:55 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2013-10-06 20:35 - 2013-10-06 20:35 - 00001100 _____ C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2013-10-06 12:32 - 2013-06-26 19:54 - 00001885 _____ C:\Users\Public\Desktop\Media Go.lnk
2013-10-06 12:31 - 2013-10-06 12:31 - 00000000 ____D C:\Program Files (x86)\Sony Media Go Install
2013-10-03 21:19 - 2013-10-03 21:19 - 00000000 ____D C:\windows\pss
2013-10-03 09:02 - 2013-10-03 08:51 - 00000000 ____D C:\windows\SysWOW64\C2MP
2013-10-02 01:12 - 2013-10-01 23:59 - 1610612736 _____ C:\Users\Ervd\Documents\THE.SETTLERS.7.Razor1911.CZ.part1.rar
2013-09-29 14:25 - 2013-09-29 14:25 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-09-26 20:57 - 2013-09-26 19:46 - 00000021 _____ C:\Users\Ervd\Desktop\IP list.txt
2013-09-26 18:31 - 2012-08-11 09:33 - 00000000 ____D C:\Users\Ervd\Documents\My Games
2013-09-26 17:14 - 2013-09-26 17:14 - 00000000 ____D C:\Users\Ervd\Desktop\AoM_AoT_UI_Mod_Pack
2013-09-26 14:50 - 2012-12-18 01:26 - 00002026 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2013-09-26 14:50 - 2012-01-02 20:32 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-09-25 23:02 - 2013-09-25 22:59 - 00000000 ____D C:\Users\Public\Desktop\PCLTSDK64_130
2013-09-25 23:01 - 2013-09-25 23:01 - 00000015 ___RH C:\windows\system32\wintask_.dat
2013-09-25 23:00 - 2013-09-25 22:59 - 00000000 ____D C:\ProgramData\PageTech
2013-09-25 23:00 - 2013-09-25 22:59 - 00000000 ____D C:\Program Files\PAGETECH
2013-09-25 22:17 - 2013-09-25 22:17 - 00000000 _____ C:\Users\Ervd\AppData\Roaming\pdfconverter
2013-09-25 20:15 - 2012-10-02 19:53 - 00000000 ____D C:\Users\Ervd\Documents\FJFI
2013-09-24 16:11 - 2013-05-24 16:38 - 00000000 ____D C:\Program Files\SUPERAntiSpyware

Some content of TEMP:
====================
C:\Users\Ervd\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-21 17:33




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:444.67 GB) (Free:140.08 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (HP_RECOVERY) (Fixed) (Total:15.8 GB) (Free:2.37 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:4.99 GB) (Free:2.11 GB) FAT32

Available physical RAM: 2103.11 MB
Total physical RAM: 4030.36 MB
Percentage of memory in use: 47%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: D0B5D163)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=445 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=16 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=5 GB) - (Type=0C)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForERVD-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForErvd.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Ervd\Desktop" je 3845 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BTMTrayAgent
rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe /hidden [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium
"C:\Program Files (x86)\QIP 2012\qip.exe" /autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar
C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TrayMenu.lnk
C:\Windows\SysWOW64\C2MP\TrayMenu.exe vlc.ico [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001


==================== End Of Log ==============================
Přílohy
Addition.zip
(6.73 KiB) Staženo 128 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#8 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
    
    HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
    SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File
    
    S3 NLNdisMP; system32\DRIVERS\nlndis.sys [x]
    S3 NLNdisPT; system32\DRIVERS\nlndis.sys [x]
    S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [x]
    
    2013-10-17 23:38 - 2013-10-17 23:38 - 01890567 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.zip
    2013-10-17 23:38 - 2013-10-17 23:38 - 00000000 ____D C:\Users\Ervd\Desktop\RouterPasswordKracker
    
    Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\windows\Tasks\HPCeeScheduleForERVD-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    Task: C:\windows\Tasks\HPCeeScheduleForErvd.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TrayMenu.lnk" /f
    
    Hosts:
    
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#9 Příspěvek od Ervd »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 23-10-2013
Ran by Ervd at 2013-10-24 13:23:20 Run:1
Running from C:\Users\Ervd\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File

S3 NLNdisMP; system32\DRIVERS\nlndis.sys [x]
S3 NLNdisPT; system32\DRIVERS\nlndis.sys [x]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [x]

2013-10-17 23:38 - 2013-10-17 23:38 - 01890567 _____ C:\Users\Ervd\Desktop\RouterPasswordKracker.zip
2013-10-17 23:38 - 2013-10-17 23:38 - 00000000 ____D C:\Users\Ervd\Desktop\RouterPasswordKracker

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForERVD-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForErvd.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TrayMenu.lnk" /f

Hosts:

End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
HKCR\PROTOCOLS\Filter\text/xml => Key deleted successfully.
HKCR\CLSID\{807553E5-5146-11D5-A672-00B0D022E945} => Key not found.
NLNdisMP => Service deleted successfully.
NLNdisPT => Service deleted successfully.
pccsmcfd => Service deleted successfully.
C:\Users\Ervd\Desktop\RouterPasswordKracker.zip => Moved successfully.
C:\Users\Ervd\Desktop\RouterPasswordKracker => Moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForERVD-HP$.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForErvd.job => Moved successfully.

========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TrayMenu.lnk" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========

C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#10 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#11 Příspěvek od Ervd »

Děkuji za pomoc!

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o preventivní prohlídku notebooku FRST + RSIT

#12 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno