Prosím o kontrolu logu DDS
Napsal: 29 říj 2013 18:09
Prosím o kontrolu logu z DDS, log z RSIT nebylo možné provést, Hijackthis hlásil chybu a odmítl pokračovat.
PC je zpomalený, vytížení procesoru je skoro stále na 100 procentech. Předem děkuji. Martin.
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16720 BrowserJavaVersion: 10.7.2
Run by KikinaJ at 18:01:27 on 2013-10-29
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.1790.1099 [GMT 1:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\TeamViewer\Version7\TeamViewer.exe
C:\Program Files\TeamViewer\Version7\tv_w32.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
c:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
.
============== Pseudo HJT Report ===============
.
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
uRun: [Facebook Update] "c:\users\kikinaj\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - c:\program files\icq7m\ICQ.exe
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
TCP: NameServer = 192.168.2.1 192.168.0.1
TCP: Interfaces\{8CD564AA-6760-44D1-A716-F31F3F6662B4} : DHCPNameServer = 192.168.2.1 192.168.0.1
TCP: Interfaces\{8CD564AA-6760-44D1-A716-F31F3F6662B4}\A534A575966696E4564777F627B6 : DHCPNameServer = 192.168.0.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\kikinaj\appdata\roaming\mozilla\firefox\profiles\rg90e3jv.default\
FF - prefs.js: browser.startup.homepage - seznam.cz
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\users\kikinaj\appdata\local\facebook\video\skype\npFacebookVideoCalling.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_9_900_117.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
.
---- FIREFOX POLICIES ----
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: content.notify.ontimer - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.switch.threshold - 750000
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2013-6-18 211560]
R2 AdvancedSystemCareService6;Advanced SystemCare Service 6;c:\program files\iobit\advanced systemcare 6\ASCService.exe [2012-12-19 464256]
R2 AMD FUEL Service;AMD FUEL Service;c:\program files\ati technologies\ati.ace\fuel\Fuel.Service.exe [2012-8-6 291840]
R2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2012-8-30 107392]
R2 TeamViewer7;TeamViewer 7;c:\program files\teamviewer\version7\TeamViewer_Service.exe [2012-9-29 2754984]
R3 amdiox86;AMD IO Driver;c:\windows\system32\drivers\amdiox86.sys [2012-9-29 37944]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\microsoft security client\NisSrv.exe [2013-8-12 295376]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2011-6-10 394856]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver;c:\program files\finalwire\aida64 extreme edition\kerneld.x32 [2012-9-29 31128]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2013-1-6 14848]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-5-13 121064]
S3 StorSvc;Služba úložiště;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2013-1-6 49664]
S3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\wat\WatAdminSvc.exe [2012-9-29 1343400]
.
=============== Created Last 30 ================
.
2013-10-29 17:00:54 7796464 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{ebd81909-5cd2-489b-8c9a-51411b615eb2}\mpengine.dll
2013-10-29 16:52:18 -------- d-----w- c:\program files\trend micro
2013-10-28 19:38:09 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-10-28 19:36:30 -------- d-----w- c:\program files\Spybot - Search & Destroy 2
2013-10-28 19:34:14 -------- d-----w- c:\users\kikinaj\appdata\roaming\Malwarebytes
2013-10-28 19:33:30 -------- d-----w- c:\programdata\Malwarebytes
2013-10-28 18:57:16 -------- d-----w- c:\programdata\Auslogics
2013-10-28 18:56:32 -------- d-----w- c:\program files\Auslogics
2013-10-28 18:55:30 -------- d-----w- c:\users\kikinaj\appdata\local\Programs
2013-10-28 18:53:12 -------- d-----w- c:\program files\CCleaner
2013-10-27 18:22:56 7796464 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2013-10-18 18:53:51 719224 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\{86586c85-a761-4fe1-af48-05695c5cb930}\gapaengine.dll
2013-10-10 18:03:11 530432 ----a-w- c:\windows\system32\comctl32.dll
2013-10-10 18:02:39 81920 ----a-w- c:\windows\system32\davclnt.dll
2013-10-10 18:02:39 205824 ----a-w- c:\windows\system32\WebClnt.dll
2013-10-10 18:02:39 115712 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2013-10-10 18:01:52 640512 ----a-w- c:\windows\system32\advapi32.dll
2013-10-10 18:01:51 619520 ----a-w- c:\windows\system32\tdh.dll
2013-10-10 18:01:51 3969472 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-10-10 18:01:51 3914176 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-10-10 18:01:51 1289096 ----a-w- c:\windows\system32\ntdll.dll
2013-10-10 18:01:15 434688 ----a-w- c:\windows\system32\scavengeui.dll
2013-10-10 18:00:07 86016 ----a-w- c:\windows\system32\drivers\usbcir.sys
2013-10-10 18:00:07 146816 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2013-10-10 17:59:37 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-10-10 17:59:09 55808 ----a-w- c:\windows\system32\drivers\hidclass.sys
2013-10-10 17:59:09 25728 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-10-10 17:58:38 76288 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-10-10 17:58:38 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-10-10 17:58:38 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2013-10-10 17:58:38 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-10-10 17:58:38 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2013-10-10 17:58:38 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2013-10-10 17:58:38 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2013-10-10 17:58:04 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-10-10 17:58:04 295424 ----a-w- c:\windows\system32\atmfd.dll
2013-10-10 17:58:04 26112 ----a-w- c:\windows\system32\lpk.dll
2013-10-10 17:58:03 70656 ----a-w- c:\windows\system32\fontsub.dll
2013-10-10 17:58:03 10240 ----a-w- c:\windows\system32\dciman32.dll
2013-10-10 17:56:20 729024 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-10-10 17:51:00 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 17:50:38 2348544 ----a-w- c:\windows\system32\win32k.sys
2013-10-10 17:50:18 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2013-10-10 17:50:18 1294272 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-10-10 17:50:17 231424 ----a-w- c:\windows\system32\mswsock.dll
.
==================== Find3M ====================
.
2013-10-10 17:57:22 1767936 ----a-w- c:\windows\system32\wininet.dll
2013-10-10 17:57:21 2706432 ----a-w- c:\windows\system32\mshtml.tlb
2013-10-10 17:57:19 61440 ----a-w- c:\windows\system32\iesetup.dll
2013-10-10 17:57:19 2876928 ----a-w- c:\windows\system32\jscript9.dll
2013-10-10 17:57:19 109056 ----a-w- c:\windows\system32\iesysprep.dll
2013-10-10 17:57:18 71680 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2013-10-09 11:21:48 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-09 11:21:48 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-08-05 01:56:47 133056 ----a-w- c:\windows\system32\drivers\ataport.sys
2013-08-02 01:50:36 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 01:49:19 293376 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 00:52:57 271360 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:43:05 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43:05 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43:05 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43:05 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
.
============= FINISH: 18:03:56,65 ===============
PC je zpomalený, vytížení procesoru je skoro stále na 100 procentech. Předem děkuji. Martin.
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16720 BrowserJavaVersion: 10.7.2
Run by KikinaJ at 18:01:27 on 2013-10-29
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.1790.1099 [GMT 1:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\TeamViewer\Version7\TeamViewer.exe
C:\Program Files\TeamViewer\Version7\tv_w32.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
c:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
.
============== Pseudo HJT Report ===============
.
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
uRun: [Facebook Update] "c:\users\kikinaj\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - c:\program files\icq7m\ICQ.exe
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
TCP: NameServer = 192.168.2.1 192.168.0.1
TCP: Interfaces\{8CD564AA-6760-44D1-A716-F31F3F6662B4} : DHCPNameServer = 192.168.2.1 192.168.0.1
TCP: Interfaces\{8CD564AA-6760-44D1-A716-F31F3F6662B4}\A534A575966696E4564777F627B6 : DHCPNameServer = 192.168.0.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\kikinaj\appdata\roaming\mozilla\firefox\profiles\rg90e3jv.default\
FF - prefs.js: browser.startup.homepage - seznam.cz
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\users\kikinaj\appdata\local\facebook\video\skype\npFacebookVideoCalling.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_9_900_117.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
.
---- FIREFOX POLICIES ----
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: content.notify.ontimer - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.switch.threshold - 750000
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2013-6-18 211560]
R2 AdvancedSystemCareService6;Advanced SystemCare Service 6;c:\program files\iobit\advanced systemcare 6\ASCService.exe [2012-12-19 464256]
R2 AMD FUEL Service;AMD FUEL Service;c:\program files\ati technologies\ati.ace\fuel\Fuel.Service.exe [2012-8-6 291840]
R2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2012-8-30 107392]
R2 TeamViewer7;TeamViewer 7;c:\program files\teamviewer\version7\TeamViewer_Service.exe [2012-9-29 2754984]
R3 amdiox86;AMD IO Driver;c:\windows\system32\drivers\amdiox86.sys [2012-9-29 37944]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\microsoft security client\NisSrv.exe [2013-8-12 295376]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2011-6-10 394856]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver;c:\program files\finalwire\aida64 extreme edition\kerneld.x32 [2012-9-29 31128]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2013-1-6 14848]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-5-13 121064]
S3 StorSvc;Služba úložiště;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2013-1-6 49664]
S3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\wat\WatAdminSvc.exe [2012-9-29 1343400]
.
=============== Created Last 30 ================
.
2013-10-29 17:00:54 7796464 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{ebd81909-5cd2-489b-8c9a-51411b615eb2}\mpengine.dll
2013-10-29 16:52:18 -------- d-----w- c:\program files\trend micro
2013-10-28 19:38:09 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-10-28 19:36:30 -------- d-----w- c:\program files\Spybot - Search & Destroy 2
2013-10-28 19:34:14 -------- d-----w- c:\users\kikinaj\appdata\roaming\Malwarebytes
2013-10-28 19:33:30 -------- d-----w- c:\programdata\Malwarebytes
2013-10-28 18:57:16 -------- d-----w- c:\programdata\Auslogics
2013-10-28 18:56:32 -------- d-----w- c:\program files\Auslogics
2013-10-28 18:55:30 -------- d-----w- c:\users\kikinaj\appdata\local\Programs
2013-10-28 18:53:12 -------- d-----w- c:\program files\CCleaner
2013-10-27 18:22:56 7796464 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2013-10-18 18:53:51 719224 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\{86586c85-a761-4fe1-af48-05695c5cb930}\gapaengine.dll
2013-10-10 18:03:11 530432 ----a-w- c:\windows\system32\comctl32.dll
2013-10-10 18:02:39 81920 ----a-w- c:\windows\system32\davclnt.dll
2013-10-10 18:02:39 205824 ----a-w- c:\windows\system32\WebClnt.dll
2013-10-10 18:02:39 115712 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2013-10-10 18:01:52 640512 ----a-w- c:\windows\system32\advapi32.dll
2013-10-10 18:01:51 619520 ----a-w- c:\windows\system32\tdh.dll
2013-10-10 18:01:51 3969472 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-10-10 18:01:51 3914176 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-10-10 18:01:51 1289096 ----a-w- c:\windows\system32\ntdll.dll
2013-10-10 18:01:15 434688 ----a-w- c:\windows\system32\scavengeui.dll
2013-10-10 18:00:07 86016 ----a-w- c:\windows\system32\drivers\usbcir.sys
2013-10-10 18:00:07 146816 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2013-10-10 17:59:37 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-10-10 17:59:09 55808 ----a-w- c:\windows\system32\drivers\hidclass.sys
2013-10-10 17:59:09 25728 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-10-10 17:58:38 76288 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-10-10 17:58:38 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-10-10 17:58:38 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2013-10-10 17:58:38 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-10-10 17:58:38 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2013-10-10 17:58:38 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2013-10-10 17:58:38 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2013-10-10 17:58:04 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-10-10 17:58:04 295424 ----a-w- c:\windows\system32\atmfd.dll
2013-10-10 17:58:04 26112 ----a-w- c:\windows\system32\lpk.dll
2013-10-10 17:58:03 70656 ----a-w- c:\windows\system32\fontsub.dll
2013-10-10 17:58:03 10240 ----a-w- c:\windows\system32\dciman32.dll
2013-10-10 17:56:20 729024 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-10-10 17:51:00 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 17:50:38 2348544 ----a-w- c:\windows\system32\win32k.sys
2013-10-10 17:50:18 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2013-10-10 17:50:18 1294272 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-10-10 17:50:17 231424 ----a-w- c:\windows\system32\mswsock.dll
.
==================== Find3M ====================
.
2013-10-10 17:57:22 1767936 ----a-w- c:\windows\system32\wininet.dll
2013-10-10 17:57:21 2706432 ----a-w- c:\windows\system32\mshtml.tlb
2013-10-10 17:57:19 61440 ----a-w- c:\windows\system32\iesetup.dll
2013-10-10 17:57:19 2876928 ----a-w- c:\windows\system32\jscript9.dll
2013-10-10 17:57:19 109056 ----a-w- c:\windows\system32\iesysprep.dll
2013-10-10 17:57:18 71680 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2013-10-09 11:21:48 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-09 11:21:48 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-08-05 01:56:47 133056 ----a-w- c:\windows\system32\drivers\ataport.sys
2013-08-02 01:50:36 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 01:49:19 293376 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 00:52:57 271360 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:43:05 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43:05 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43:05 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43:05 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
.
============= FINISH: 18:03:56,65 ===============