Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

preventivka - novonahodeny win 7

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
Uživatelský avatar
bondasko
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 174
Registrován: 18 čer 2012 16:37
Bydliště: Presov, Slovensko

preventivka - novonahodeny win 7

#1 Příspěvek od bondasko »

zdravim, poprosil by som o preventivku, vdaka ;)

Logfile of random's system information tool 1.09 (written by random/random)
Run by Doma at 2013-12-16 20:11:17
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 268 GB (87%) free of 307 GB
Total RAM: 3287 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:11:21, on 16. 12. 2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ACD Systems\ACDSee\14.0\ACDSeeInTouch2.exe
C:\Program Files (x86)\YoWindow\yowindow.exe
C:\Users\Doma\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Doma.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ACSW14EN] "C:\Program Files (x86)\ACD Systems\ACDSee\14.0\ACDSeeInTouch2.exe" /pid ACSW14EN
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Doma\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Doma\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Aktivátor Správce výběru OS Acronis (Správce výběru OS) - Unknown owner - C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9420 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe"
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-102fc45c-1d3c-4f55-8cf8-df02a3d052e1 -SystemEventPortName:HostProcess-320b8f77-e000-4c85-9f2b-8032b3488b2f -IoCancelEventPortName:HostProcess-12a8df4a-0514-4d82-a8f4-378f6c06919d -NonStateChangingEventPortName:HostProcess-8a6d7930-f053-40cf-94fa-06525bfdf640 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:3f51f805-2ea5-402b-be10-6f7f651f2ff6 -DeviceGroupId:WpdFsGroup
atieclxx
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\ACD Systems\ACDSee\14.0\ACDSeeInTouch2.exe" /pid ACSW14EN
"C:\Program Files (x86)\YoWindow\yowindow.exe" -mt
szndesktop.exe default start
"C:\Users\Doma\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "247405979-103017876820507358-795571766-724201254-4364743261783921200-120662328
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\msiexec.exe /V
C:\Windows\System32\svchost.exe -k swprv
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2500.0.1199928749\1988199840" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,3,12,22 --gpu-vendor-id=0x1002 --gpu-device-id=0x9904 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=12.102.0.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group7 pct:10f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --instant-process --disable-html-notifications --channel="2500.1.1185143750\1724986374" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group7 pct:10f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NetworkConnectivity/disable_network_stats/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --channel="2500.12.500824429\13973098" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group7 pct:10f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NetworkConnectivity/disable_network_stats/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --channel="2500.16.1334303894\192564954" /prefetch:673131151
C:\Windows\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
"C:\totalcmd\TOTALCMD64.EXE"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2500.18.1142668353\1589236410" --ppapi-flash-args --lang=sk --ignored=" --type=renderer " /prefetch:-632637702
"C:\Users\Doma\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Doma\AppData\Roaming\Mozilla\Firefox\Profiles\moafp7n7.default

prefs.js - "browser.startup.homepage" - "www.centrum.sk"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Users\Doma\AppData\Roaming\Mozilla\Firefox\Profiles\moafp7n7.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928}]
SteadyVideoBHO Class - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14 81024]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08 77424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928}]
SteadyVideoBHO Class - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14 69760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-16 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-16 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{25A3A431-30BB-47C8-AD6A-E1063801134F} - PDF Architect Toolbar - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2013-04-08 654384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-10-26 13213840]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 1266912]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Doma\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Doma\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-03-07 642656]
"ACSW14EN"=C:\Program Files (x86)\ACD Systems\ACDSee\14.0\ACDSeeInTouch2.exe [2011-09-20 1231472]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2013-05-08 41056]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.ACDV"=ACDV.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-12-16 20:11:17 ----D---- C:\rsit
2013-12-16 20:11:17 ----D---- C:\Program Files\trend micro
2013-12-16 20:05:12 ----D---- C:\ProgramData\Oracle
2013-12-16 20:05:00 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-12-16 20:04:56 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-12-16 20:04:56 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-12-16 20:04:56 ----A---- C:\Windows\SYSWOW64\java.exe
2013-12-16 20:04:48 ----D---- C:\Program Files (x86)\Java
2013-12-16 18:17:22 ----D---- C:\Program Files (x86)\Adobe
2013-12-16 18:09:59 ----D---- C:\Users\Doma\AppData\Roaming\TeamViewer
2013-12-16 18:05:25 ----D---- C:\Users\Doma\AppData\Roaming\Mozilla
2013-12-16 18:02:47 ----D---- C:\Users\Doma\AppData\Roaming\DVDFab
2013-12-16 17:54:07 ----D---- C:\ProgramData\dvdfab
2013-12-16 17:25:16 ----D---- C:\Program Files (x86)\PDF Architect
2013-12-16 17:18:06 ----D---- C:\Users\Doma\AppData\Roaming\PDF Architect
2013-12-16 17:16:13 ----D---- C:\Users\Doma\AppData\Roaming\MPC-HC
2013-12-16 17:15:11 ----D---- C:\Program Files\MPC-HC
2013-12-16 17:15:02 ----D---- C:\Users\Doma\AppData\Roaming\Media Player Classic
2013-12-16 16:33:14 ----D---- C:\Users\Doma\AppData\Roaming\vlc
2013-12-16 16:24:57 ----D---- C:\Users\Doma\AppData\Roaming\URSoft
2013-12-16 16:24:56 ----AD---- C:\ProgramData\TEMP
2013-12-16 16:24:48 ----D---- C:\Program Files (x86)\Your Uninstaller! 7
2013-12-16 16:24:29 ----D---- C:\Users\Doma\AppData\Roaming\Babylon
2013-12-16 16:24:29 ----D---- C:\ProgramData\Babylon
2013-12-16 16:22:30 ----D---- C:\Users\Doma\AppData\Roaming\WinRAR
2013-12-16 16:22:23 ----D---- C:\Program Files\WinRAR
2013-12-16 16:21:06 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-12-16 16:21:05 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-12-16 16:20:38 ----D---- C:\Users\Doma\AppData\Roaming\Winamp
2013-12-16 16:20:38 ----D---- C:\Program Files (x86)\Winamp
2013-12-16 16:15:55 ----D---- C:\Program Files (x86)\VideoLAN
2013-12-16 15:51:13 ----D---- C:\Program Files (x86)\TeamViewer
2013-12-16 15:50:36 ----D---- C:\Program Files\Speccy
2013-12-16 15:50:05 ----D---- C:\Users\Doma\AppData\Roaming\Skype
2013-12-16 15:50:01 ----RD---- C:\Program Files (x86)\Skype
2013-12-16 15:49:11 ----D---- C:\ProgramData\Skype
2013-12-16 15:48:38 ----D---- C:\Users\Doma\AppData\Roaming\pdfforge
2013-12-16 15:48:35 ----A---- C:\Windows\system32\pdfcmon.dll
2013-12-16 15:48:34 ----D---- C:\Program Files (x86)\PDFCreator
2013-12-16 15:48:34 ----A---- C:\Windows\SYSWOW64\MSMPIDE.DLL
2013-12-16 15:46:35 ----D---- C:\Program Files (x86)\MPC-HC
2013-12-16 15:46:07 ----D---- C:\ProgramData\Sun
2013-12-16 15:34:29 ----D---- C:\Program Files (x86)\Google
2013-12-16 15:33:25 ----D---- C:\ProgramData\Mozilla
2013-12-16 15:33:25 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-16 15:33:22 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-16 15:28:56 ----D---- C:\Program Files (x86)\DVDFab 8 Qt
2013-12-16 15:25:15 ----D---- C:\Users\Doma\AppData\Roaming\Macromedia
2013-12-16 15:25:14 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-16 15:25:12 ----D---- C:\Windows\SYSWOW64\Macromed
2013-12-16 15:25:09 ----D---- C:\Windows\system32\Macromed
2013-12-16 15:22:38 ----D---- C:\Users\Doma\AppData\Roaming\YoWindow
2013-12-16 15:22:37 ----D---- C:\ProgramData\YoWindow
2013-12-16 15:22:23 ----D---- C:\Program Files (x86)\YoWindow
2013-12-16 15:12:02 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-12-16 15:12:02 ----A---- C:\Windows\explorer.exe
2013-12-16 15:12:01 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-12-16 15:12:01 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-12-16 15:12:01 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-12-16 15:12:01 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-12-16 15:12:01 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-12-16 15:12:01 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-12-16 15:12:01 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-12-16 15:11:58 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2013-12-16 15:11:58 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-12-16 15:11:58 ----A---- C:\Windows\system32\fsutil.exe
2013-12-16 15:11:58 ----A---- C:\Windows\system32\esent.dll
2013-12-16 15:11:58 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-12-16 15:11:58 ----A---- C:\Windows\system32\drivers\storport.sys
2013-12-16 15:11:58 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-12-16 15:11:58 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-12-16 15:11:58 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2013-12-16 15:11:58 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-12-16 15:11:58 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-12-16 15:11:42 ----A---- C:\Windows\system32\spoolsv.exe
2013-12-16 15:11:42 ----A---- C:\Windows\splwow64.exe
2013-12-16 14:50:50 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-12-16 14:50:50 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-12-16 14:50:50 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-12-16 14:50:48 ----A---- C:\Windows\system32\drivers\TsUsbGD.sys
2013-12-16 14:50:48 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-12-16 14:50:47 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-12-16 14:50:45 ----A---- C:\Windows\system32\wksprtPS.dll
2013-12-16 14:50:45 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-12-16 14:50:44 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2013-12-16 14:50:44 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-12-16 14:50:44 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2013-12-16 14:50:44 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-12-16 14:50:44 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2013-12-16 14:50:44 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-12-16 14:50:44 ----A---- C:\Windows\system32\wksprt.exe
2013-12-16 14:50:44 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-12-16 14:50:44 ----A---- C:\Windows\system32\tsgqec.dll
2013-12-16 14:50:44 ----A---- C:\Windows\system32\rdpudd.dll
2013-12-16 14:50:44 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-12-16 14:50:44 ----A---- C:\Windows\system32\mstsc.exe
2013-12-16 14:50:44 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-12-16 14:50:44 ----A---- C:\Windows\system32\aaclient.dll
2013-12-16 14:50:43 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-12-16 14:50:43 ----A---- C:\Windows\system32\rdpcorets.dll
2013-12-16 14:50:43 ----A---- C:\Windows\system32\mstscax.dll
2013-12-16 14:49:49 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-12-16 14:49:49 ----A---- C:\Windows\system32\qdvd.dll
2013-12-16 14:44:49 ----D---- C:\Program Files (x86)\Microsoft Works
2013-12-16 14:44:39 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2013-12-16 14:44:23 ----D---- C:\Windows\PCHEALTH
2013-12-16 14:42:55 ----D---- C:\Program Files\Microsoft Office
2013-12-16 14:42:50 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-12-16 14:42:23 ----D---- C:\ProgramData\Microsoft Help
2013-12-16 14:42:23 ----D---- C:\Program Files (x86)\Microsoft Office
2013-12-16 14:41:56 ----RHD---- C:\MSOCache
2013-12-16 14:35:47 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-12-16 14:35:42 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-12-16 14:31:59 ----D---- C:\Program Files (x86)\Seznam.cz
2013-12-16 14:31:40 ----D---- C:\Users\Doma\AppData\Roaming\Seznam.cz
2013-12-16 14:31:03 ----D---- C:\Users\Doma\AppData\Roaming\DAEMON Tools Lite
2013-12-16 14:30:19 ----D---- C:\Program Files\Defraggler
2013-12-16 14:28:54 ----D---- C:\Users\Doma\AppData\Roaming\Nero
2013-12-16 14:05:34 ----D---- C:\Program Files (x86)\Nero
2013-12-16 14:05:12 ----D---- C:\ProgramData\Nero
2013-12-16 14:04:54 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2013-12-16 13:53:16 ----D---- C:\Users\Doma\AppData\Roaming\ACD Systems
2013-12-16 13:50:31 ----D---- C:\ProgramData\ACD Systems
2013-12-16 13:50:14 ----D---- C:\Program Files (x86)\ACD Systems
2013-12-16 13:41:31 ----D---- C:\Program Files\CCleaner
2013-12-16 13:38:34 ----D---- C:\ProgramData\Adobe
2013-12-16 13:37:06 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-12-16 13:36:28 ----A---- C:\Program Files (x86)\Vypinac.exe
2013-12-16 12:49:36 ----D---- C:\Windows\Acronis
2013-12-16 12:45:33 ----D---- C:\ProgramData\Acronis
2013-12-16 12:41:27 ----A---- C:\Windows\system32\drivers\snapman.sys
2013-12-16 12:41:20 ----A---- C:\Windows\system32\drivers\fltsrv.sys
2013-12-16 12:41:06 ----D---- C:\Program Files (x86)\Acronis
2013-12-16 12:37:22 ----D---- C:\Users\Doma\AppData\Roaming\GHISLER
2013-12-16 12:37:22 ----D---- C:\totalcmd
2013-12-15 20:37:44 ----D---- C:\Windows\SYSWOW64\Wat
2013-12-15 20:37:44 ----D---- C:\Windows\system32\Wat
2013-12-15 20:03:17 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-12-15 20:03:17 ----A---- C:\Windows\system32\wmploc.DLL
2013-12-15 20:03:16 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-12-15 20:03:15 ----A---- C:\Windows\system32\wmp.dll
2013-12-15 19:43:29 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-12-15 19:43:29 ----A---- C:\Windows\system32\jsproxy.dll
2013-12-15 19:43:29 ----A---- C:\Windows\system32\ieui.dll
2013-12-15 19:43:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-12-15 19:43:28 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-12-15 19:43:28 ----A---- C:\Windows\system32\ieUnatt.exe
2013-12-15 19:43:28 ----A---- C:\Windows\system32\iesetup.dll
2013-12-15 19:43:28 ----A---- C:\Windows\system32\iernonce.dll
2013-12-15 19:43:28 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-12-15 19:43:28 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-12-15 19:43:28 ----A---- C:\Windows\system32\ie4uinit.exe
2013-12-15 19:43:27 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2013-12-15 19:43:27 ----A---- C:\Windows\system32\mshtml.dll
2013-12-15 19:43:27 ----A---- C:\Windows\system32\jscript9diag.dll
2013-12-15 19:43:26 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-12-15 19:43:26 ----A---- C:\Windows\system32\ieapfltr.dll
2013-12-15 19:43:25 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-12-15 19:43:25 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-12-15 19:43:25 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-12-15 19:43:25 ----A---- C:\Windows\system32\wininet.dll
2013-12-15 19:43:25 ----A---- C:\Windows\system32\urlmon.dll
2013-12-15 19:43:25 ----A---- C:\Windows\system32\iertutil.dll
2013-12-15 19:43:24 ----A---- C:\Windows\system32\ieframe.dll
2013-12-15 19:43:23 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-12-15 19:43:23 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-12-15 19:43:22 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-12-15 19:43:22 ----A---- C:\Windows\system32\jscript9.dll
2013-12-15 19:31:06 ----A---- C:\Windows\system32\browserchoice.exe
2013-12-15 19:18:56 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-12-15 19:18:56 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-12-15 19:18:56 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-12-15 19:18:56 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-12-15 19:18:55 ----A---- C:\Windows\system32\WUDFx.dll
2013-12-15 19:18:55 ----A---- C:\Windows\system32\WUDFHost.exe
2013-12-15 19:18:55 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-12-15 19:11:46 ----D---- C:\Windows\system32\MRT
2013-12-15 19:11:45 ----A---- C:\Windows\system32\MRT.exe
2013-12-15 19:04:51 ----A---- C:\Windows\SYSWOW64\wmi.dll
2013-12-15 19:04:51 ----A---- C:\Windows\system32\wmi.dll
2013-12-15 19:04:51 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-12-15 18:58:38 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-12-15 18:58:38 ----A---- C:\Windows\system32\tzres.dll
2013-12-15 18:58:29 ----A---- C:\Windows\system32\consent.exe
2013-12-15 18:58:29 ----A---- C:\Windows\system32\appinfo.dll
2013-12-15 18:58:22 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2013-12-15 18:58:22 ----A---- C:\Windows\system32\ntshrui.dll
2013-12-15 18:58:07 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-12-15 18:58:07 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-12-15 18:58:07 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-12-15 18:58:07 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-12-15 18:58:03 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-12-15 18:58:03 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-12-15 18:58:03 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-12-15 18:58:03 ----A---- C:\Windows\system32\cryptsvc.dll
2013-12-15 18:58:03 ----A---- C:\Windows\system32\cryptnet.dll
2013-12-15 18:58:03 ----A---- C:\Windows\system32\crypt32.dll
2013-12-15 18:57:57 ----A---- C:\Windows\system32\wintrust.dll
2013-12-15 18:57:56 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-12-15 18:57:45 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2013-12-15 18:57:45 ----A---- C:\Windows\system32\sbe.dll
2013-12-15 18:57:45 ----A---- C:\Windows\system32\CPFilters.dll
2013-12-15 18:57:44 ----A---- C:\Windows\SYSWOW64\sbe.dll
2013-12-15 18:57:43 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-12-15 18:57:43 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-12-15 18:57:43 ----A---- C:\Windows\system32\tquery.dll
2013-12-15 18:57:43 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-12-15 18:57:43 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-12-15 18:57:43 ----A---- C:\Windows\system32\mssrch.dll
2013-12-15 18:57:42 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-12-15 18:57:42 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-12-15 18:57:42 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-12-15 18:57:42 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-12-15 18:57:42 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-12-15 18:57:42 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-12-15 18:57:42 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2013-12-15 18:57:42 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-12-15 18:57:42 ----A---- C:\Windows\system32\mssvp.dll
2013-12-15 18:57:42 ----A---- C:\Windows\system32\mssphtb.dll
2013-12-15 18:57:42 ----A---- C:\Windows\system32\mssph.dll
2013-12-15 18:57:42 ----A---- C:\Windows\system32\msscntrs.dll
2013-12-15 18:57:37 ----A---- C:\Windows\SYSWOW64\webio.dll
2013-12-15 18:57:37 ----A---- C:\Windows\system32\webio.dll
2013-12-15 18:57:36 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-15 18:57:36 ----A---- C:\Windows\system32\msieftp.dll
2013-12-15 18:57:34 ----A---- C:\Windows\SYSWOW64\quartz.dll
2013-12-15 18:57:34 ----A---- C:\Windows\system32\quartz.dll
2013-12-15 18:57:30 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-12-15 18:57:30 ----A---- C:\Windows\system32\poqexec.exe
2013-12-15 18:57:29 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-15 18:57:29 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-15 18:57:28 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-12-15 18:57:27 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-15 18:57:27 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-15 18:57:27 ----A---- C:\Windows\system32\win32k.sys
2013-12-15 18:57:26 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-12-15 18:57:26 ----A---- C:\Windows\system32\comctl32.dll
2013-12-15 18:57:25 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2013-12-15 18:57:25 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2013-12-15 18:57:25 ----A---- C:\Windows\system32\odbctrac.dll
2013-12-15 18:57:25 ----A---- C:\Windows\system32\odbccu32.dll
2013-12-15 18:57:25 ----A---- C:\Windows\system32\odbccr32.dll
2013-12-15 18:57:25 ----A---- C:\Windows\system32\odbccp32.dll
2013-12-15 18:57:24 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2013-12-15 18:57:24 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2013-12-15 18:57:24 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2013-12-15 18:57:23 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2013-12-15 18:57:23 ----A---- C:\Windows\system32\xmllite.dll
2013-12-15 18:57:20 ----A---- C:\Windows\system32\wwansvc.dll
2013-12-15 18:57:20 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-12-15 18:57:20 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-12-15 18:57:20 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-12-15 18:57:20 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-12-15 18:57:18 ----A---- C:\Windows\system32\drivers\afd.sys
2013-12-15 18:57:17 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-12-15 18:57:17 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-12-15 18:57:17 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-12-15 18:57:17 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-12-15 18:57:17 ----A---- C:\Windows\system32\sspisrv.dll
2013-12-15 18:57:17 ----A---- C:\Windows\system32\sspicli.dll
2013-12-15 18:57:17 ----A---- C:\Windows\system32\schannel.dll
2013-12-15 18:57:17 ----A---- C:\Windows\system32\secur32.dll
2013-12-15 18:57:17 ----A---- C:\Windows\system32\ncrypt.dll
2013-12-15 18:57:17 ----A---- C:\Windows\system32\lsass.exe
2013-12-15 18:57:17 ----A---- C:\Windows\system32\lsasrv.dll
2013-12-15 18:57:17 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-12-15 18:57:17 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-12-15 18:57:17 ----A---- C:\Windows\system32\drivers\cng.sys
2013-12-15 18:57:11 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-12-15 18:57:11 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-12-15 18:57:11 ----A---- C:\Windows\system32\credui.dll
2013-12-15 18:57:11 ----A---- C:\Windows\system32\authui.dll
2013-12-15 18:57:10 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-15 18:57:10 ----A---- C:\Windows\SYSWOW64\credui.dll
2013-12-15 18:57:06 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2013-12-15 18:57:06 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2013-12-15 18:57:06 ----A---- C:\Windows\system32\mfc42u.dll
2013-12-15 18:57:06 ----A---- C:\Windows\system32\mfc42.dll
2013-12-15 18:57:02 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-12-15 18:56:59 ----A---- C:\Windows\SYSWOW64\lpk.dll
2013-12-15 18:56:59 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-12-15 18:56:59 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2013-12-15 18:56:59 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-12-15 18:56:59 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-12-15 18:56:59 ----A---- C:\Windows\system32\lpk.dll
2013-12-15 18:56:59 ----A---- C:\Windows\system32\fontsub.dll
2013-12-15 18:56:59 ----A---- C:\Windows\system32\dciman32.dll
2013-12-15 18:56:59 ----A---- C:\Windows\system32\atmlib.dll
2013-12-15 18:56:59 ----A---- C:\Windows\system32\atmfd.dll
2013-12-15 18:56:58 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-15 18:56:58 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-12-15 18:56:47 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-12-15 18:56:47 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-12-15 18:56:47 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-12-15 18:56:47 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-12-15 18:56:47 ----A---- C:\Windows\system32\nlasvc.dll
2013-12-15 18:56:47 ----A---- C:\Windows\system32\nlaapi.dll
2013-12-15 18:56:47 ----A---- C:\Windows\system32\netevent.dll
2013-12-15 18:56:47 ----A---- C:\Windows\system32\netcorehc.dll
2013-12-15 18:56:47 ----A---- C:\Windows\system32\ncsi.dll
2013-12-15 18:56:47 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-12-15 18:56:47 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-12-15 18:56:07 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-12-15 18:56:07 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-12-15 18:56:07 ----A---- C:\Windows\system32\winsrv.dll
2013-12-15 18:56:07 ----A---- C:\Windows\system32\smss.exe
2013-12-15 18:56:07 ----A---- C:\Windows\system32\KernelBase.dll
2013-12-15 18:56:07 ----A---- C:\Windows\system32\kernel32.dll
2013-12-15 18:56:07 ----A---- C:\Windows\system32\csrsrv.dll
2013-12-15 18:56:07 ----A---- C:\Windows\system32\conhost.exe
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-12-15 18:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-12-15 18:56:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-12-15 18:56:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-12-15 18:56:05 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-12-15 18:56:05 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-12-15 18:56:05 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-12-15 18:56:05 ----A---- C:\Windows\system32\apisetschema.dll
2013-12-15 18:56:04 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-12-15 18:56:04 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-12-15 18:56:02 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-12-15 18:56:02 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-12-15 18:56:02 ----A---- C:\Windows\system32\Wpc.dll
2013-12-15 18:56:02 ----A---- C:\Windows\system32\gameux.dll
2013-12-15 18:55:53 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-12-15 18:55:53 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-12-15 18:55:53 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-12-15 18:55:53 ----A---- C:\Windows\system32\msxml6.dll
2013-12-15 18:55:53 ----A---- C:\Windows\system32\msxml3r.dll
2013-12-15 18:55:53 ----A---- C:\Windows\system32\msxml3.dll
2013-12-15 18:55:51 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-12-15 18:55:51 ----A---- C:\Windows\system32\certutil.exe
2013-12-15 18:55:50 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-12-15 18:55:50 ----A---- C:\Windows\system32\certenc.dll
2013-12-15 18:55:43 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-12-15 18:55:43 ----A---- C:\Windows\system32\rpcrt4.dll
2013-12-15 18:55:42 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-12-15 18:55:42 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-12-15 18:55:41 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-12-15 18:55:41 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-12-15 18:55:40 ----A---- C:\Windows\system32\Wdfres.dll
2013-12-15 18:55:40 ----A---- C:\Windows\system32\profsvc.dll
2013-12-15 18:55:40 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-12-15 18:55:40 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-12-15 18:55:39 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-12-15 18:55:39 ----A---- C:\Windows\system32\rdpwsx.dll
2013-12-15 18:55:39 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-12-15 18:55:38 ----A---- C:\Windows\system32\drivers\usbcir.sys
2013-12-15 18:55:37 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-12-15 18:55:37 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-12-15 18:52:08 ----A---- C:\Windows\system32\shell32.dll
2013-12-15 18:52:07 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-12-15 18:52:07 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-12-15 18:52:07 ----A---- C:\Windows\system32\shdocvw.dll
2013-12-15 18:52:04 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-12-15 18:52:04 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-12-15 18:51:57 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-12-15 18:51:55 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-12-15 18:51:55 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-12-15 18:51:55 ----A---- C:\Windows\system32\WebClnt.dll
2013-12-15 18:51:55 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-12-15 18:51:55 ----A---- C:\Windows\system32\davclnt.dll
2013-12-15 18:51:48 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-12-15 18:51:48 ----A---- C:\Windows\system32\cryptdlg.dll
2013-12-15 18:51:43 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2013-12-15 18:51:43 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2013-12-15 18:51:43 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-12-15 18:51:43 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-12-15 18:51:43 ----A---- C:\Windows\system32\dnsapi.dll
2013-12-15 18:51:42 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-12-15 18:51:42 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-12-15 18:51:42 ----A---- C:\Windows\system32\drivers\srv.sys
2013-12-15 18:51:40 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-12-15 18:51:40 ----A---- C:\Windows\system32\usp10.dll
2013-12-15 18:51:39 ----A---- C:\Windows\SYSWOW64\msi.dll
2013-12-15 18:51:39 ----A---- C:\Windows\system32\psisdecd.dll
2013-12-15 18:51:39 ----A---- C:\Windows\system32\msi.dll
2013-12-15 18:51:38 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2013-12-15 18:51:37 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-12-15 18:51:37 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-12-15 18:51:37 ----A---- C:\Windows\system32\dpnet.dll
2013-12-15 18:51:36 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-12-15 18:51:36 ----A---- C:\Windows\system32\qedit.dll
2013-12-15 18:51:34 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-12-15 18:51:33 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-12-15 18:51:33 ----A---- C:\Windows\system32\kerberos.dll
2013-12-15 18:51:31 ----A---- C:\Windows\SYSWOW64\srclient.dll
2013-12-15 18:51:31 ----A---- C:\Windows\system32\srcore.dll
2013-12-15 18:51:30 ----A---- C:\Windows\system32\winresume.exe
2013-12-15 18:51:30 ----A---- C:\Windows\system32\winload.exe
2013-12-15 18:51:30 ----A---- C:\Windows\system32\kdusb.dll
2013-12-15 18:51:30 ----A---- C:\Windows\system32\kdcom.dll
2013-12-15 18:51:30 ----A---- C:\Windows\system32\kd1394.dll
2013-12-15 18:51:29 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-12-15 18:51:27 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-12-15 18:51:27 ----A---- C:\Windows\system32\gdi32.dll
2013-12-15 18:51:26 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-12-15 18:51:26 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-12-15 18:51:26 ----A---- C:\Windows\system32\win32spl.dll
2013-12-15 18:51:26 ----A---- C:\Windows\system32\synceng.dll
2013-12-15 18:51:25 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2013-12-15 18:51:25 ----A---- C:\Windows\SYSWOW64\browcli.dll
2013-12-15 18:51:25 ----A---- C:\Windows\system32\netapi32.dll
2013-12-15 18:51:25 ----A---- C:\Windows\system32\browser.dll
2013-12-15 18:51:25 ----A---- C:\Windows\system32\browcli.dll
2013-12-15 18:51:24 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-15 18:51:24 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2013-12-15 18:51:24 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2013-12-15 18:51:24 ----A---- C:\Windows\SYSWOW64\devobj.dll
2013-12-15 18:51:24 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2013-12-15 18:51:24 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-12-15 18:51:24 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-12-15 18:51:23 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2013-12-15 18:51:23 ----A---- C:\Windows\system32\msvcrt.dll
2013-12-15 18:51:21 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-12-15 18:51:20 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2013-12-15 18:51:20 ----A---- C:\Windows\system32\prevhost.exe
2013-12-15 18:51:20 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-12-15 18:51:19 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2013-12-15 18:51:19 ----A---- C:\Windows\system32\inetcomm.dll
2013-12-15 18:51:18 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2013-12-15 18:51:18 ----A---- C:\Windows\system32\EncDec.dll
2013-12-15 18:51:17 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-12-15 18:51:16 ----A---- C:\Windows\system32\localspl.dll
2013-12-15 18:51:15 ----A---- C:\Windows\SYSWOW64\wscript.exe
2013-12-15 18:51:15 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-15 18:51:15 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-15 18:51:15 ----A---- C:\Windows\system32\wscript.exe
2013-12-15 18:51:15 ----A---- C:\Windows\system32\scrrun.dll
2013-12-15 18:51:15 ----A---- C:\Windows\system32\cscript.exe
2013-12-15 18:51:14 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-12-15 18:51:14 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2013-12-15 18:51:14 ----A---- C:\Windows\system32\oleaut32.dll
2013-12-15 18:51:14 ----A---- C:\Windows\system32\oleacc.dll
2013-12-15 18:51:13 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-12-15 18:51:13 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-12-15 18:51:13 ----A---- C:\Windows\system32\cdd.dll
2013-12-15 18:51:12 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-12-15 18:51:12 ----A---- C:\Windows\system32\DWrite.dll
2013-12-15 18:50:18 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2013-12-15 18:50:18 ----A---- C:\Windows\system32\cdosys.dll
2013-12-15 18:43:57 ----A---- C:\Windows\system32\scavengeui.dll
2013-12-15 18:43:56 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-12-15 18:43:56 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-12-15 18:43:56 ----A---- C:\Windows\system32\nshwfp.dll
2013-12-15 18:43:56 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-12-15 18:43:56 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-12-15 18:43:55 ----A---- C:\Windows\SYSWOW64\packager.dll
2013-12-15 18:43:55 ----A---- C:\Windows\system32\packager.dll
2013-12-15 18:43:10 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-12-15 18:43:10 ----A---- C:\Windows\system32\rdpcore.dll
2013-12-15 18:43:10 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-12-15 18:38:48 ----D---- C:\Users\Doma\AppData\Roaming\Adobe
2013-12-15 18:36:27 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-12-15 18:33:39 ----D---- C:\Program Files (x86)\Microsoft Security Client
2013-12-15 18:33:38 ----D---- C:\Program Files\Microsoft Security Client
2013-12-15 18:33:19 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-12-15 18:33:19 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\url.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-12-15 18:33:16 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\wextract.exe
2013-12-15 18:33:16 ----A---- C:\Windows\system32\webcheck.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\vbscript.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\url.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-12-15 18:33:16 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-15 18:33:16 ----A---- C:\Windows\system32\pngfilt.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\occache.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\msrating.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\msls31.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\mshtmler.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\mshtmled.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\mshta.exe
2013-12-15 18:33:16 ----A---- C:\Windows\system32\msfeedssync.exe
2013-12-15 18:33:16 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\msfeeds.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\licmgr10.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\jsIntl.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\jscript.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\inseng.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\imgutil.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\iexpress.exe
2013-12-15 18:33:16 ----A---- C:\Windows\system32\iesysprep.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\iepeers.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\iedkcs32.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\ieapfltr.dat
2013-12-15 18:33:16 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\icardie.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\elshyph.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\dxtrans.dll
2013-12-15 18:33:16 ----A---- C:\Windows\system32\dxtmsft.dll
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\user.exe
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\tdh.dll
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-12-15 18:32:44 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-12-15 18:32:44 ----A---- C:\Windows\system32\wow64win.dll
2013-12-15 18:32:44 ----A---- C:\Windows\system32\wow64cpu.dll
2013-12-15 18:32:44 ----A---- C:\Windows\system32\wow64.dll
2013-12-15 18:32:44 ----A---- C:\Windows\system32\tdh.dll
2013-12-15 18:32:44 ----A---- C:\Windows\system32\ntvdm64.dll
2013-12-15 18:32:44 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-12-15 18:32:44 ----A---- C:\Windows\system32\ntdll.dll
2013-12-15 18:32:44 ----A---- C:\Windows\system32\advapi32.dll
2013-12-15 18:32:28 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-12-15 18:32:28 ----A---- C:\Windows\system32\mswsock.dll
2013-12-15 18:32:28 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-12-15 18:32:28 ----A---- C:\Windows\system32\drivers\netio.sys
2013-12-15 18:32:28 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-12-15 18:32:18 ----A---- C:\Windows\system32\taskhost.exe
2013-12-15 18:31:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-12-15 18:31:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-12-15 18:31:10 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\XpsPrint.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\UIAnimation.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\FntCache.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\dxgi.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\d3d10warp.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\d3d10level9.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\d3d10core.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\d3d10_1.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\d3d10.dll
2013-12-15 18:31:10 ----A---- C:\Windows\system32\d2d1.dll
2013-12-15 18:30:13 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-12-15 18:30:13 ----A---- C:\Windows\system32\d3d11.dll
2013-12-15 18:17:45 ----D---- C:\Users\Doma\AppData\Roaming\ATI
2013-12-15 18:17:45 ----D---- C:\ProgramData\ATI
2013-12-15 18:11:33 ----A---- C:\Windows\system32\wups2.dll
2013-12-15 18:11:33 ----A---- C:\Windows\system32\wucltux.dll
2013-12-15 18:11:33 ----A---- C:\Windows\system32\wuaueng.dll
2013-12-15 18:11:33 ----A---- C:\Windows\system32\wuauclt.exe
2013-12-15 18:11:29 ----A---- C:\Windows\system32\wups.dll
2013-12-15 18:11:29 ----A---- C:\Windows\system32\wudriver.dll
2013-12-15 18:11:29 ----A---- C:\Windows\system32\wuapi.dll
2013-12-15 18:11:25 ----A---- C:\Windows\system32\wuwebv.dll
2013-12-15 18:11:25 ----A---- C:\Windows\system32\wuapp.exe
2013-12-15 18:11:12 ----D---- C:\Program Files\GIGABYTE
2013-12-15 18:11:12 ----D---- C:\Program Files (x86)\GIGABYTE
2013-12-15 18:11:12 ----A---- C:\Windows\system32\drivers\AppleCharger.sys
2013-12-15 18:11:12 ----A---- C:\Windows\system32\AppleChargerSrv.exe
2013-12-15 18:10:12 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-12-15 18:10:12 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-12-15 18:10:12 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-12-15 18:09:58 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-12-15 18:09:58 ----D---- C:\Program Files\Realtek
2013-12-15 18:09:47 ----A---- C:\Windows\system32\WavesGUILib64.dll
2013-12-15 18:09:47 ----A---- C:\Windows\system32\SRSWOW64.dll
2013-12-15 18:09:47 ----A---- C:\Windows\system32\SRSTSX64.dll
2013-12-15 18:09:47 ----A---- C:\Windows\system32\SRSTSH64.dll
2013-12-15 18:09:47 ----A---- C:\Windows\system32\SRSHP64.dll
2013-12-15 18:09:46 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2013-12-15 18:09:45 ----A---- C:\Windows\system32\RtPgEx64.dll
2013-12-15 18:09:45 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2013-12-15 18:09:45 ----A---- C:\Windows\system32\RtkCfg64.dll
2013-12-15 18:09:45 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-12-15 18:09:45 ----A---- C:\Windows\system32\RtkApi64.dll
2013-12-15 18:09:44 ----A---- C:\Windows\system32\RTEEP64A.dll
2013-12-15 18:09:44 ----A---- C:\Windows\system32\RTEEL64A.dll
2013-12-15 18:09:44 ----A---- C:\Windows\system32\RTEEG64A.dll
2013-12-15 18:09:44 ----A---- C:\Windows\system32\RTEED64A.dll
2013-12-15 18:09:44 ----A---- C:\Windows\system32\RTCOM64.dll
2013-12-15 18:09:44 ----A---- C:\Windows\system32\RP3DHT64.dll
2013-12-15 18:09:44 ----A---- C:\Windows\system32\RP3DAA64.dll
2013-12-15 18:09:44 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2013-12-15 18:09:44 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2013-12-15 18:09:43 ----A---- C:\Windows\system32\RCoInstII64.dll
2013-12-15 18:09:39 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2013-12-15 18:09:39 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2013-12-15 18:09:39 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-12-15 18:09:38 ----A---- C:\Windows\SYSWOW64\MBAPO32.dll
2013-12-15 18:09:38 ----A---- C:\Windows\system32\MBWrp64.dll
2013-12-15 18:09:38 ----A---- C:\Windows\system32\MBppld64.dll
2013-12-15 18:09:38 ----A---- C:\Windows\system32\MBPPCn64.dll
2013-12-15 18:09:38 ----A---- C:\Windows\system32\MBAPO64.dll
2013-12-15 18:09:36 ----A---- C:\Windows\system32\FMAPO64.dll
2013-12-15 18:09:34 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2013-12-15 18:09:32 ----HD---- C:\Program Files (x86)\Temp
2013-12-15 18:09:32 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-12-15 18:09:32 ----D---- C:\Program Files (x86)\Realtek
2013-12-15 18:09:32 ----A---- C:\Windows\system32\AERTAR64.dll
2013-12-15 18:09:32 ----A---- C:\Windows\system32\AERTAC64.dll
2013-12-15 18:09:31 ----R---- C:\Windows\RtlExUpd.dll
2013-12-15 18:09:07 ----D---- C:\Program Files\Common Files\ATI Technologies
2013-12-15 18:09:07 ----D---- C:\Program Files (x86)\AMD AVT
2013-12-15 18:09:04 ----D---- C:\Program Files\AMD
2013-12-15 18:09:04 ----D---- C:\Program Files (x86)\AMD
2013-12-15 18:08:30 ----D---- C:\ProgramData\AMD
2013-12-15 18:08:29 ----D---- C:\Program Files\ATI Technologies
2013-12-15 18:08:01 ----RA---- C:\Windows\system32\drivers\usbfilter.sys
2013-12-15 18:08:00 ----DC---- C:\Windows\system32\DRVSTORE
2013-12-15 18:07:54 ----A---- C:\Windows\system32\drivers\AtihdW76.sys
2013-12-15 18:07:54 ----A---- C:\Windows\system32\DelayAPO.dll
2013-12-15 18:07:41 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2013-12-15 18:07:41 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2013-12-15 18:07:41 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-12-15 18:07:41 ----A---- C:\Windows\SYSWOW64\ativvsvl.dat
2013-12-15 18:07:41 ----A---- C:\Windows\SYSWOW64\ativvsva.dat
2013-12-15 18:07:41 ----A---- C:\Windows\SYSWOW64\atipblag.dat
2013-12-15 18:07:41 ----A---- C:\Windows\SYSWOW64\amdocl_ld32.exe
2013-12-15 18:07:41 ----A---- C:\Windows\SYSWOW64\amdocl_as32.exe
2013-12-15 18:07:41 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2013-12-15 18:07:41 ----A---- C:\Windows\system32\OVDecode64.dll
2013-12-15 18:07:41 ----A---- C:\Windows\system32\OpenVideo64.dll
2013-12-15 18:07:41 ----A---- C:\Windows\system32\OpenCL.dll
2013-12-15 18:07:41 ----A---- C:\Windows\system32\coinst_12.102.dll
2013-12-15 18:07:41 ----A---- C:\Windows\system32\clinfo.exe
2013-12-15 18:07:41 ----A---- C:\Windows\system32\ativvsvl.dat
2013-12-15 18:07:41 ----A---- C:\Windows\system32\ativvsva.dat
2013-12-15 18:07:41 ----A---- C:\Windows\system32\ativvaxy_cik_nd.dat
2013-12-15 18:07:41 ----A---- C:\Windows\system32\ativvaxy_cik.dat
2013-12-15 18:07:41 ----A---- C:\Windows\system32\ativce02.dat
2013-12-15 18:07:41 ----A---- C:\Windows\system32\atipblag.dat
2013-12-15 18:07:41 ----A---- C:\Windows\system32\atidemgy.dll
2013-12-15 18:07:41 ----A---- C:\Windows\system32\amdocl_ld64.exe
2013-12-15 18:07:41 ----A---- C:\Windows\system32\amdocl_as64.exe
2013-12-15 18:07:40 ----A---- C:\Windows\system32\amdocl64.dll
2013-12-15 18:07:24 ----D---- C:\Program Files\ATI
2013-12-15 18:07:23 ----D---- C:\Program Files (x86)\ATI Technologies
2013-12-15 18:06:09 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-12-15 18:03:57 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-12-15 18:03:46 ----SHD---- C:\Windows\Installer
2013-12-15 18:02:13 ----A---- C:\Windows\GSetup.ini
2013-12-15 18:01:06 ----D---- C:\Users\Doma\AppData\Roaming\Identities
2013-12-15 18:00:58 ----D---- C:\Users\Doma\AppData\Roaming\Media Center Programs
2013-12-15 18:00:57 ----SD---- C:\Users\Doma\AppData\Roaming\Microsoft
2013-12-15 18:00:51 ----SHD---- C:\Recovery
2013-12-15 18:00:49 ----D---- C:\Windows\SoftwareDistribution
2013-12-15 17:55:38 ----D---- C:\Windows\Prefetch
2013-12-15 17:55:12 ----ASH---- C:\pagefile.sys
2013-12-15 17:55:11 ----SHD---- C:\System Volume Information
2013-12-15 17:55:11 ----ASH---- C:\hiberfil.sys
2013-12-15 17:54:31 ----D---- C:\Windows\Panther
2013-12-15 17:46:11 ----D---- C:\Merged Volume'Local Volume' (D)

======List of files/folders modified in the last 1 month======

2013-12-16 20:11:17 ----RD---- C:\Program Files
2013-12-16 20:10:33 ----D---- C:\Windows\Temp
2013-12-16 20:10:14 ----D---- C:\Windows\system32\config
2013-12-16 20:10:10 ----D---- C:\Windows\winsxs
2013-12-16 20:05:12 ----HD---- C:\ProgramData
2013-12-16 20:05:10 ----D---- C:\Program Files (x86)\Common Files
2013-12-16 20:05:00 ----D---- C:\Windows\SysWOW64
2013-12-16 20:04:48 ----RD---- C:\Program Files (x86)
2013-12-16 20:00:13 ----D---- C:\Windows\System32
2013-12-16 20:00:13 ----D---- C:\Windows\inf
2013-12-16 20:00:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-12-16 19:54:46 ----D---- C:\Windows\SYSWOW64\en-US
2013-12-16 19:54:46 ----D---- C:\Windows\system32\en-US
2013-12-16 19:54:46 ----D---- C:\Windows\system32\drivers
2013-12-16 19:54:46 ----D---- C:\Windows
2013-12-16 19:54:45 ----D---- C:\Windows\system32\DriverStore
2013-12-16 19:04:56 ----RSD---- C:\Windows\assembly
2013-12-16 19:03:55 ----A---- C:\Windows\win.ini
2013-12-16 18:59:49 ----D---- C:\Windows\Logs
2013-12-16 18:59:49 ----D---- C:\Windows\debug
2013-12-16 16:16:41 ----D---- C:\Windows\system32\Tasks
2013-12-16 16:16:01 ----RSD---- C:\Windows\Fonts
2013-12-16 15:46:56 ----D---- C:\Windows\system32\catroot2
2013-12-16 15:43:58 ----D---- C:\Windows\Tasks
2013-12-16 15:11:53 ----D---- C:\Windows\system32\catroot
2013-12-16 15:03:07 ----D---- C:\Windows\SYSWOW64\wbem
2013-12-16 15:03:07 ----D---- C:\Windows\SYSWOW64\sk-SK
2013-12-16 15:03:07 ----D---- C:\Windows\system32\wbem
2013-12-16 15:03:07 ----D---- C:\Windows\system32\sk-SK
2013-12-16 15:03:07 ----D---- C:\Windows\system32\drivers\en-US
2013-12-16 15:03:07 ----D---- C:\Windows\PolicyDefinitions
2013-12-16 14:44:44 ----D---- C:\Program Files (x86)\MSBuild
2013-12-16 14:44:38 ----D---- C:\Windows\ShellNew
2013-12-16 14:44:23 ----SD---- C:\ProgramData\Microsoft
2013-12-16 14:43:49 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-16 13:03:02 ----D---- C:\Windows\Microsoft.NET
2013-12-15 20:29:08 ----D---- C:\Program Files\Windows Media Player
2013-12-15 20:29:08 ----D---- C:\Program Files\Common Files\System
2013-12-15 20:29:08 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 20:29:07 ----D---- C:\Windows\ehome
2013-12-15 20:29:07 ----D---- C:\Windows\AppPatch
2013-12-15 20:29:07 ----D---- C:\Program Files\Internet Explorer
2013-12-15 20:29:07 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-15 20:29:04 ----D---- C:\Program Files\Windows Defender
2013-12-15 20:29:04 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-15 20:29:02 ----D---- C:\Windows\SYSWOW64\migration
2013-12-15 20:29:02 ----D---- C:\Windows\system32\migration
2013-12-15 20:28:59 ----D---- C:\Windows\system32\Boot
2013-12-15 20:28:58 ----D---- C:\Program Files\Windows Journal
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\it-IT
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-12-15 18:36:42 ----D---- C:\Windows\SYSWOW64\el-GR
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\es-ES
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\de-DE
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\da-DK
2013-12-15 18:36:41 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-12-15 18:36:41 ----D---- C:\Windows\system32\pt-BR
2013-12-15 18:36:41 ----D---- C:\Windows\system32\it-IT
2013-12-15 18:36:40 ----D---- C:\Windows\system32\zh-TW
2013-12-15 18:36:40 ----D---- C:\Windows\system32\zh-HK
2013-12-15 18:36:40 ----D---- C:\Windows\system32\zh-CN
2013-12-15 18:36:40 ----D---- C:\Windows\system32\tr-TR
2013-12-15 18:36:40 ----D---- C:\Windows\system32\sv-SE
2013-12-15 18:36:40 ----D---- C:\Windows\system32\ru-RU
2013-12-15 18:36:40 ----D---- C:\Windows\system32\pt-PT
2013-12-15 18:36:40 ----D---- C:\Windows\system32\pl-PL
2013-12-15 18:36:40 ----D---- C:\Windows\system32\nl-NL
2013-12-15 18:36:40 ----D---- C:\Windows\system32\nb-NO
2013-12-15 18:36:40 ----D---- C:\Windows\system32\ko-KR
2013-12-15 18:36:40 ----D---- C:\Windows\system32\ja-JP
2013-12-15 18:36:40 ----D---- C:\Windows\system32\hu-HU
2013-12-15 18:36:40 ----D---- C:\Windows\system32\fr-FR
2013-12-15 18:36:40 ----D---- C:\Windows\system32\fi-FI
2013-12-15 18:36:40 ----D---- C:\Windows\system32\es-ES
2013-12-15 18:36:40 ----D---- C:\Windows\system32\el-GR
2013-12-15 18:36:40 ----D---- C:\Windows\system32\de-DE
2013-12-15 18:36:40 ----D---- C:\Windows\system32\da-DK
2013-12-15 18:36:40 ----D---- C:\Windows\system32\cs-CZ
2013-12-15 18:09:07 ----D---- C:\Program Files\Common Files
2013-12-15 18:09:03 ----D---- C:\Windows\system32\CodeIntegrity
2013-12-15 18:03:28 ----D---- C:\Windows\system32\restore
2013-12-15 18:01:05 ----SHD---- C:\$Recycle.Bin
2013-12-15 18:00:57 ----RD---- C:\Users
2013-12-15 17:59:45 ----D---- C:\Windows\rescache
2013-12-15 17:58:09 ----D---- C:\Windows\system32\sysprep
2013-12-15 17:56:54 ----D---- C:\Windows\system32\drivers\UMDF
2013-11-19 11:21:41 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2013-12-16 132704]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 248240]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2013-12-16 310368]
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2012-10-25 22680]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-12-16 283064]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 134944]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-03-08 11644416]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-03-08 581120]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-02-14 96768]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-10-30 4201104]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-09-29 646248]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-03-08 241152]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-03-07 361984]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 23808]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2008-09-30 935208]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 Správce výběru OS;Aktivátor Správce výběru OS Acronis; C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe [2011-12-12 2156952]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2013-12-04 5316448]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 348376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-16 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-16 257416]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-16 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-16 119408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-12-15 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------
nepouzivam diakritiku a pomoc si vazim ;)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: preventivka - novonahodeny win 7

#2 Příspěvek od Rudy »

Zdravím!
Nevidím žádný antivir.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
bondasko
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 174
Registrován: 18 čer 2012 16:37
Bydliště: Presov, Slovensko

Re: preventivka - novonahodeny win 7

#3 Příspěvek od bondasko »

vdaka, lock
nepouzivam diakritiku a pomoc si vazim ;)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: preventivka - novonahodeny win 7

#4 Příspěvek od Rudy »

Hlavně, že tam máte všelijaké zbytečnosti (YoWindow). Brzy vám budou zpomalovat chod PC. Nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
bondasko
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 174
Registrován: 18 čer 2012 16:37
Bydliště: Presov, Slovensko

Re: preventivka - novonahodeny win 7

#5 Příspěvek od bondasko »

ok, yowindow zmazem, este je tam nejaka zbytocnost?
nepouzivam diakritiku a pomoc si vazim ;)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: preventivka - novonahodeny win 7

#6 Příspěvek od Rudy »

bondasko píše:ok, yowindow zmazem, este je tam nejaka zbytocnost?
Běžící ne.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
bondasko
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 174
Registrován: 18 čer 2012 16:37
Bydliště: Presov, Slovensko

Re: preventivka - novonahodeny win 7

#7 Příspěvek od bondasko »

PM povazuj za zbytocnu ;)

takze vsetko je v poriadku?
ak ano, este raz vdaka a lock
nepouzivam diakritiku a pomoc si vazim ;)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: preventivka - novonahodeny win 7

#8 Příspěvek od Rudy »

Jinak asi ano. Antivir ale nainstalujte, je to základní bezpečnostní prvek v PC. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno