RSIT - podozrenie na keylogger + Myinfotopia plugin (adware)
Napsal: 14 led 2014 14:47
Dobrý deň, ako je jasné z popisu témy, mám tieto závažné problémy. Mám obavu používať PC tak, ako by som chcel, kvôli tomu podozreniu na keylogger. Hoci je už možno preč, nie som si istý. Nejaké veci mi našiel MBAM a odstránil som ich. Hádžem sem log RSIT a aj výpis tých súborov z MBAM. Pri otázke či je win legálny, tak áno, je to OEM verzia. Stretol som sa s takou otázkou už pri riešení podobných problémov. Za váš čas vopred ďakujem. 
Logfile of random's system information tool 1.09 (written by random/random)
Run by Maros at 2014-01-14 14:45:10
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 115 GB (48%) free of 238 GB
Total RAM: 4094 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:45:13, on 14. 1. 2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Program Files (x86)\Bloody4\Bloody4\Bloody4.exe
C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Program Files (x86)\Gaming Keyboard\Monitor.EXE
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Gaming Keyboard\OSD.exe
C:\Windows\twunk_32.exe
C:\Windows\twunk_32.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Maros.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O3 - Toolbar: (no name) - {D5D47440-0750-463D-BAEF-A47D02414806} - (no file)
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Gaming Keyboard] "C:\Program Files (x86)\Gaming Keyboard\Monitor.EXE"
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Bloody2] "C:\Program Files (x86)\Bloody4\Bloody4\Bloody4.exe" Minimum
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - Startup: HpM3Util.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\NLSSRV32.EXE
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 x64 (PSI_SVC_2_x64) - arvato digital services llc - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9399 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\NLSSRV32.EXE
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Windows\system32\rundll32.exe" Shell32.dll,Control_RunDLL mmsys.cpl
"C:\Windows\RAVCpl64.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe" /TUStart /pid:2344
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\System32\alg.exe
"C:\Program Files (x86)\Bloody4\Bloody4\Bloody4.exe" Minimum
WLIDSvcM.exe 2400
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Users\Maros\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HpM3Util.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ded261c5-b1d7-4ea4-b73a-ec3ac5f20539 -SystemEventPortName:HostProcess-633d3529-fda7-4818-91ad-21cfa88827fb -IoCancelEventPortName:HostProcess-4de8f29f-d024-484f-be4d-8003fcce0c5a -NonStateChangingEventPortName:HostProcess-42edc34c-acbb-426c-9446-dcd6c918a214 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d6b1c976-b4be-41a5-b778-2e6f0623ca47 -DeviceGroupId:WpdFsGroup
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Gaming Keyboard\Monitor.EXE"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\Gaming Keyboard\OSD.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\twunk_32.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-11477727671853279295130964601516728803351079938808-2054908665-11188056681543285233
"C:\Windows\twunk_32.exe"
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1128.0.2098300886\652407510" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,3,12,22,26 --gpu-vendor-id=0x10de --gpu-device-id=0x0dc4 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3221 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_16/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --instant-process --disable-html-notifications --channel="1128.1.852960024\371141511" /prefetch:673131151
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_16/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --channel="1128.3.1465755199\1025578813" /prefetch:673131151
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NetworkConnectivity/disable_network_stats/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_16/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --channel="1128.13.1296344633\2039328489" /prefetch:673131151
"C:\Program Files\Microsoft Security Client\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey E7609A99-F26C-71F9-D1D0-33E9CE198BD4 -Reinvoke
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Maros\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3607238900-2339944577-2827055329-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3607238900-2339944577-2827055329-1000UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Maros\AppData\Roaming\Mozilla\Firefox\Profiles\265lgu85.default
prefs.js - "browser.startup.homepage" - "http://www.google.sk/"
prefs.js - "extensions.enabledItems" - "Cetrumcz@igeared:1.203.023.002, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nullsoft.com/winampDetector;version=1]
"Description"=Winamp Detector
"Path"=C:\Program Files (x86)\Winamp Detect\npwachk.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
nppdf32.dll
nppdf32.SKY
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
Cetrumcz_igeared.xml
mall-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2013-09-05 422280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2013-09-05 422280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-09-12 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-09-05 330632]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-09-12 157672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-09-05 330632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2013-09-05 422280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{D5D47440-0750-463D-BAEF-A47D02414806}
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-09-05 330632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Windows\RAVCpl64.exe [2008-07-03 6430208]
"Skytel"=C:\Windows\Skytel.exe [2008-06-25 1826816]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 1266912]
"Monitor"=C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2013-12-10 1100248]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Program Files (x86)\uTorrent\uTorrent.exe [2013-05-02 802136]
"Bloody2"=C:\Program Files (x86)\Bloody4\Bloody4\Bloody4.exe [2013-08-16 11854848]
"ISUSPM"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-10 218032]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Gaming Keyboard"=C:\Program Files (x86)\Gaming Keyboard\Monitor.EXE [2012-02-14 184320]
C:\Users\Maros\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
HpM3Util.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsv64.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2014-01-14 14:33:07 ----A---- C:\Windows\system32\drivers\hitmanpro37.sys
2014-01-14 14:27:08 ----D---- C:\ProgramData\HitmanPro
2014-01-14 14:15:49 ----D---- C:\Windows\ERUNT
2014-01-14 14:09:25 ----D---- C:\AdwCleaner
2014-01-12 13:50:22 ----D---- C:\rsit
2014-01-12 11:52:40 ----D---- C:\Program Files\CCleaner
2014-01-09 21:14:09 ----D---- C:\Users\Maros\AppData\Roaming\vlc
2014-01-09 20:59:28 ----D---- C:\Program Files (x86)\VideoLAN
2014-01-07 20:07:51 ----A---- C:\Windows\system32\nvhdap64.dll
2014-01-07 20:07:51 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2014-01-07 20:07:51 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\nvopencl.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\nvoglv64.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\nvoglshim64.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\nvinitx.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\NvIFR64.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\NvFBC64.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-01-07 20:07:45 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-01-07 20:07:45 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2014-01-07 20:07:45 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-01-07 20:07:45 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-01-07 20:07:45 ----A---- C:\Windows\system32\nvcuvid.dll
2014-01-07 20:07:45 ----A---- C:\Windows\system32\nvcuvenc.dll
2014-01-07 20:07:45 ----A---- C:\Windows\system32\nvcuda.dll
2014-01-07 20:07:38 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-01-07 20:07:38 ----A---- C:\Windows\system32\nvcompiler.dll
2014-01-07 19:35:47 ----A---- C:\Windows\system32\nvdispgenco6433221.dll
2014-01-07 19:35:46 ----A---- C:\Windows\system32\nvdispco6433221.dll
2014-01-05 14:02:16 ----D---- C:\Program Files (x86)\Deadpool
2014-01-03 12:23:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-01-03 12:23:04 ----A---- C:\Windows\system32\ieui.dll
2014-01-03 12:23:03 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-01-03 12:23:03 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-01-03 12:23:03 ----A---- C:\Windows\system32\jsproxy.dll
2014-01-03 12:23:03 ----A---- C:\Windows\system32\ieUnatt.exe
2014-01-03 12:23:03 ----A---- C:\Windows\system32\iesetup.dll
2014-01-03 12:23:03 ----A---- C:\Windows\system32\iernonce.dll
2014-01-03 12:23:03 ----A---- C:\Windows\system32\ie4uinit.exe
2014-01-03 12:23:02 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-01-03 12:23:02 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-01-03 12:23:01 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-01-03 12:23:01 ----A---- C:\Windows\system32\mshtml.dll
2014-01-03 12:23:01 ----A---- C:\Windows\system32\jscript9diag.dll
2014-01-03 12:23:01 ----A---- C:\Windows\system32\ieapfltr.dll
2014-01-03 12:23:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-01-03 12:23:00 ----A---- C:\Windows\system32\iertutil.dll
2014-01-03 12:22:59 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-01-03 12:22:59 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-01-03 12:22:58 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-01-03 12:22:58 ----A---- C:\Windows\system32\wininet.dll
2014-01-03 12:22:58 ----A---- C:\Windows\system32\urlmon.dll
2014-01-03 12:22:57 ----A---- C:\Windows\system32\ieframe.dll
2014-01-03 12:22:55 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-01-03 12:22:54 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-01-03 12:22:53 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-01-03 12:22:53 ----A---- C:\Windows\system32\jscript9.dll
2014-01-03 12:17:58 ----D---- C:\ProgramData\DownSauvoe
2014-01-03 12:17:57 ----D---- C:\ProgramData\dlfhleokgkpbdoafcdocdoebojmeoeli
2014-01-03 12:16:13 ----D---- C:\ProgramData\e1b4cec55f7fdea1
2014-01-03 12:16:08 ----D---- C:\ProgramData\DaiscountaExtensi
2013-12-31 00:50:31 ----D---- C:\Program Files (x86)\KONAMI
2013-12-30 22:44:53 ----D---- C:\Windows\Migration
2013-12-30 22:41:54 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-12-30 22:33:17 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-12-30 22:33:17 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-30 22:33:11 ----A---- C:\Windows\system32\elshyph.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\url.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-12-30 22:33:07 ----A---- C:\Windows\system32\jsIntl.dll
2013-12-30 22:33:06 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-30 22:33:06 ----A---- C:\Windows\system32\msrating.dll
2013-12-30 22:33:06 ----A---- C:\Windows\system32\msls31.dll
2013-12-30 22:33:06 ----A---- C:\Windows\system32\msfeedssync.exe
2013-12-30 22:33:06 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-12-30 22:33:06 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-12-30 22:33:05 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-12-30 22:33:05 ----A---- C:\Windows\system32\mshtmler.dll
2013-12-30 22:33:05 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-30 22:33:05 ----A---- C:\Windows\system32\iesysprep.dll
2013-12-30 22:33:05 ----A---- C:\Windows\system32\dxtrans.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\url.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\iedkcs32.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\ieapfltr.dat
2013-12-30 22:33:04 ----A---- C:\Windows\system32\icardie.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\dxtmsft.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\wextract.exe
2013-12-30 22:33:03 ----A---- C:\Windows\system32\webcheck.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\vbscript.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\pngfilt.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\occache.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\mshtmled.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\mshta.exe
2013-12-30 22:33:03 ----A---- C:\Windows\system32\msfeeds.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\licmgr10.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\inseng.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\iexpress.exe
2013-12-30 22:33:02 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-12-30 22:33:02 ----A---- C:\Windows\system32\jscript.dll
2013-12-30 22:33:02 ----A---- C:\Windows\system32\imgutil.dll
2013-12-30 22:33:02 ----A---- C:\Windows\system32\iepeers.dll
2013-12-30 22:12:53 ----A---- C:\Windows\system32\wmploc.DLL
2013-12-30 22:12:51 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-12-30 22:12:50 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-12-30 22:12:48 ----A---- C:\Windows\system32\wmp.dll
2013-12-30 22:02:39 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-30 22:02:39 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-30 22:00:40 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-12-30 22:00:40 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-12-30 13:54:11 ----D---- C:\Windows\system32\MRT
2013-12-30 13:41:49 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-12-30 13:41:49 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-12-30 13:41:49 ----A---- C:\Windows\system32\UIAnimation.dll
2013-12-30 13:41:49 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-12-30 13:41:31 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-12-30 13:41:31 ----A---- C:\Windows\system32\d3d10_1.dll
2013-12-30 13:41:30 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-12-30 13:41:30 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-12-30 13:41:30 ----A---- C:\Windows\system32\d3d10warp.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-12-30 13:41:29 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-12-30 13:41:29 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-12-30 13:41:29 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-12-30 13:41:29 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-12-30 13:41:29 ----A---- C:\Windows\system32\dxgi.dll
2013-12-30 13:41:29 ----A---- C:\Windows\system32\d3d10level9.dll
2013-12-30 13:41:28 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-12-30 13:41:28 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-12-30 13:41:28 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-12-30 13:41:28 ----A---- C:\Windows\system32\d3d10core.dll
2013-12-30 13:41:28 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-12-30 13:41:28 ----A---- C:\Windows\system32\d3d10.dll
2013-12-30 13:41:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-12-30 13:41:27 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-12-30 13:41:27 ----A---- C:\Windows\system32\XpsPrint.dll
2013-12-30 13:41:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-12-30 13:41:27 ----A---- C:\Windows\system32\FntCache.dll
2013-12-30 13:41:27 ----A---- C:\Windows\system32\DWrite.dll
2013-12-30 13:41:26 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-12-30 13:41:26 ----A---- C:\Windows\system32\d2d1.dll
2013-12-30 13:35:31 ----A---- C:\Windows\system32\consent.exe
2013-12-30 13:35:31 ----A---- C:\Windows\system32\appinfo.dll
2013-12-30 13:34:46 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-12-30 13:34:46 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-12-30 13:34:46 ----A---- C:\Windows\system32\cryptsvc.dll
2013-12-30 13:34:46 ----A---- C:\Windows\system32\cryptnet.dll
2013-12-30 13:34:46 ----A---- C:\Windows\system32\crypt32.dll
2013-12-30 13:34:45 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-12-30 13:34:25 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-12-30 13:34:25 ----A---- C:\Windows\system32\d3d11.dll
2013-12-30 13:34:21 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-30 13:34:21 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-12-30 13:34:21 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-12-30 13:34:21 ----A---- C:\Windows\system32\credui.dll
2013-12-30 13:34:21 ----A---- C:\Windows\system32\authui.dll
2013-12-30 13:34:20 ----A---- C:\Windows\SYSWOW64\credui.dll
2013-12-30 13:34:05 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-12-30 13:34:05 ----A---- C:\Windows\system32\tzres.dll
2013-12-30 13:33:38 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-12-30 13:33:38 ----A---- C:\Windows\system32\certutil.exe
2013-12-30 13:33:36 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-12-30 13:33:36 ----A---- C:\Windows\system32\certenc.dll
2013-12-30 13:32:37 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-12-30 13:32:36 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-12-30 13:32:36 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-12-30 13:32:36 ----A---- C:\Windows\system32\advapi32.dll
2013-12-30 13:32:35 ----A---- C:\Windows\SYSWOW64\tdh.dll
2013-12-30 13:32:35 ----A---- C:\Windows\system32\tdh.dll
2013-12-30 13:32:35 ----A---- C:\Windows\system32\ntdll.dll
2013-12-30 13:32:34 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-12-30 13:32:34 ----A---- C:\Windows\system32\wow64.dll
2013-12-30 13:32:33 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-12-30 13:32:33 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-12-30 13:32:33 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-12-30 13:32:32 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-12-30 13:32:32 ----A---- C:\Windows\SYSWOW64\user.exe
2013-12-30 13:32:32 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-12-30 13:32:28 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-12-30 13:32:27 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-12-30 13:32:27 ----A---- C:\Windows\system32\mswsock.dll
2013-12-30 13:32:22 ----A---- C:\Windows\system32\KernelBase.dll
2013-12-30 13:32:21 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-12-30 13:32:21 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-12-30 13:32:21 ----A---- C:\Windows\system32\winsrv.dll
2013-12-30 13:32:21 ----A---- C:\Windows\system32\smss.exe
2013-12-30 13:32:21 ----A---- C:\Windows\system32\kernel32.dll
2013-12-30 13:32:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-12-30 13:32:20 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-12-30 13:32:20 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-12-30 13:32:20 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-12-30 13:32:20 ----A---- C:\Windows\system32\csrsrv.dll
2013-12-30 13:32:20 ----A---- C:\Windows\system32\conhost.exe
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-12-30 13:32:16 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-12-30 13:32:16 ----A---- C:\Windows\system32\apisetschema.dll
2013-12-30 13:32:11 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-12-30 13:32:10 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-12-30 13:32:09 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-12-30 13:32:07 ----A---- C:\Windows\system32\schannel.dll
2013-12-30 13:32:06 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-12-30 13:32:06 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-12-30 13:32:06 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-12-30 13:32:06 ----A---- C:\Windows\system32\sspicli.dll
2013-12-30 13:32:06 ----A---- C:\Windows\system32\ncrypt.dll
2013-12-30 13:32:06 ----A---- C:\Windows\system32\lsass.exe
2013-12-30 13:32:06 ----A---- C:\Windows\system32\lsasrv.dll
2013-12-30 13:32:06 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-12-30 13:32:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-12-30 13:32:06 ----A---- C:\Windows\system32\drivers\cng.sys
2013-12-30 13:32:05 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-12-30 13:32:05 ----A---- C:\Windows\system32\sspisrv.dll
2013-12-30 13:32:05 ----A---- C:\Windows\system32\secur32.dll
2013-12-30 13:31:48 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-12-30 13:31:48 ----A---- C:\Windows\system32\cryptdlg.dll
2013-12-30 13:31:29 ----A---- C:\Windows\system32\drivers\afd.sys
2013-12-30 13:31:25 ----A---- C:\Windows\system32\shell32.dll
2013-12-30 13:31:24 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-12-30 13:31:24 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-12-30 13:31:24 ----A---- C:\Windows\system32\shdocvw.dll
2013-12-30 13:31:09 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-12-30 13:31:09 ----A---- C:\Windows\system32\wintrust.dll
2013-12-30 13:30:52 ----A---- C:\Windows\system32\win32k.sys
2013-12-30 13:30:50 ----A---- C:\Windows\system32\rpcrt4.dll
2013-12-30 13:30:49 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-12-30 13:30:46 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-12-30 13:30:46 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-12-30 13:30:46 ----A---- C:\Windows\system32\WebClnt.dll
2013-12-30 13:30:46 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-12-30 13:30:46 ----A---- C:\Windows\system32\davclnt.dll
2013-12-30 13:30:44 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-30 13:30:44 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-12-30 13:30:40 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-30 13:30:40 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-12-30 13:30:38 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-12-30 13:30:38 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-12-30 13:30:37 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-12-30 13:30:37 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-12-30 13:30:37 ----A---- C:\Windows\system32\nshwfp.dll
2013-12-30 13:30:33 ----A---- C:\Windows\system32\drivers\usbser.sys
2013-12-30 13:30:31 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-30 13:30:31 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-30 13:30:30 ----A---- C:\Windows\system32\drivers\usbcir.sys
2013-12-30 13:30:28 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-30 13:30:28 ----A---- C:\Windows\system32\msieftp.dll
2013-12-30 13:30:27 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-12-30 13:30:27 ----A---- C:\Windows\system32\qedit.dll
2013-12-30 13:30:17 ----A---- C:\Windows\system32\wwansvc.dll
2013-12-30 13:30:17 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-12-30 13:30:16 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-12-30 13:30:15 ----A---- C:\Windows\system32\drivers\usbscan.sys
2013-12-30 13:30:15 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-12-30 13:30:15 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-12-30 13:30:12 ----A---- C:\Windows\system32\comctl32.dll
2013-12-30 13:30:11 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-12-30 13:30:10 ----A---- C:\Windows\system32\atmfd.dll
2013-12-30 13:30:09 ----A---- C:\Windows\SYSWOW64\lpk.dll
2013-12-30 13:30:09 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-12-30 13:30:09 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2013-12-30 13:30:09 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-12-30 13:30:09 ----A---- C:\Windows\system32\lpk.dll
2013-12-30 13:30:09 ----A---- C:\Windows\system32\fontsub.dll
2013-12-30 13:30:09 ----A---- C:\Windows\system32\dciman32.dll
2013-12-30 13:30:08 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-12-30 13:30:08 ----A---- C:\Windows\system32\atmlib.dll
2013-12-30 13:30:06 ----A---- C:\Windows\SYSWOW64\wscript.exe
2013-12-30 13:30:06 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-30 13:30:06 ----A---- C:\Windows\system32\wscript.exe
2013-12-30 13:30:06 ----A---- C:\Windows\system32\scrrun.dll
2013-12-30 13:30:06 ----A---- C:\Windows\system32\cscript.exe
2013-12-30 13:30:05 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-30 13:28:00 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-12-30 13:28:00 ----A---- C:\Windows\system32\gdi32.dll
2013-12-30 13:27:44 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-12-30 13:27:44 ----A---- C:\Windows\system32\win32spl.dll
2013-12-30 13:27:42 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-12-30 13:27:39 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-12-30 13:27:39 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-12-30 13:27:39 ----A---- C:\Windows\system32\cdd.dll
2013-12-30 13:16:42 ----A---- C:\Windows\system32\scavengeui.dll
2013-12-30 13:14:41 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-12-30 13:14:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-12-30 13:14:41 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-12-30 13:14:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-12-30 13:14:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-12-30 13:14:40 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-12-30 13:14:40 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-12-26 11:54:23 ----D---- C:\WinSetupFromUSB
2013-12-19 12:20:22 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2013-12-18 13:48:32 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2013-12-18 13:48:32 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
======List of files/folders modified in the last 1 month======
2014-01-14 14:45:12 ----D---- C:\Program Files\trend micro
2014-01-14 14:45:04 ----D---- C:\Windows\temp
2014-01-14 14:44:26 ----SHD---- C:\System Volume Information
2014-01-14 14:43:29 ----D---- C:\Users\Maros\AppData\Roaming\uTorrent
2014-01-14 14:36:24 ----AD---- C:\Windows
2014-01-14 14:35:27 ----RD---- C:\Program Files
2014-01-14 14:33:12 ----D---- C:\Windows\System32
2014-01-14 14:33:07 ----D---- C:\Windows\system32\drivers
2014-01-14 14:33:01 ----D---- C:\ProgramData\NVIDIA
2014-01-14 14:27:08 ----D---- C:\ProgramData
2014-01-14 14:11:04 ----RD---- C:\Program Files (x86)
2014-01-14 13:55:48 ----D---- C:\Users\Maros\AppData\Roaming\Skype
2014-01-13 14:20:54 ----D---- C:\Users\Maros\AppData\Roaming\HpUpdate
2014-01-12 16:49:55 ----D---- C:\Windows\system32\catroot
2014-01-12 11:52:47 ----D---- C:\Windows\system32\Tasks
2014-01-12 11:48:52 ----D---- C:\Windows\inf
2014-01-12 11:44:06 ----A---- C:\Users\Maros\AppData\Roaming\trace_FilterInstaller.txt
2014-01-12 11:44:04 ----A---- C:\Users\Maros\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
2014-01-12 11:43:57 ----D---- C:\Windows\SysWOW64
2014-01-12 11:41:22 ----SHD---- C:\Windows\Installer
2014-01-12 11:41:12 ----DC---- C:\Windows\system32\DRVSTORE
2014-01-12 11:41:10 ----D---- C:\Windows\system32\DriverStore
2014-01-11 15:36:08 ----D---- C:\ProgramData\InstallMate
2014-01-11 15:36:03 ----D---- C:\Windows\Tasks
2014-01-11 15:36:03 ----D---- C:\Program Files (x86)\Resident Evil 6
2014-01-11 13:29:16 ----D---- C:\Windows\pss
2014-01-11 13:26:55 ----D---- C:\Users\Maros\AppData\Roaming\.purple
2014-01-11 13:18:48 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-09 21:11:16 ----D---- C:\Users\Maros\AppData\Roaming\Winamp
2014-01-09 21:11:16 ----D---- C:\Users\Maros\AppData\Roaming\Media Player Classic
2014-01-09 21:11:16 ----D---- C:\Users\Maros\AppData\Roaming\DAEMON Tools Lite
2014-01-09 21:11:14 ----D---- C:\Windows\Minidump
2014-01-09 21:11:14 ----D---- C:\Windows\Logs
2014-01-08 16:17:33 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-01-08 16:12:20 ----D---- C:\Windows\system32\catroot2
2014-01-08 15:10:02 ----D---- C:\Windows\Prefetch
2014-01-07 21:04:04 ----D---- C:\Program Files (x86)\Call of Duty Ghosts
2014-01-06 12:24:57 ----D---- C:\Windows\rescache
2014-01-05 15:03:35 ----D---- C:\ProgramData\Package Cache
2014-01-05 14:59:45 ----RSD---- C:\Windows\assembly
2014-01-04 00:28:10 ----SD---- C:\ProgramData\Microsoft
2014-01-04 00:27:21 ----SD---- C:\Users\Maros\AppData\Roaming\Microsoft
2014-01-03 17:28:40 ----D---- C:\Windows\winsxs
2014-01-03 16:13:19 ----D---- C:\Program Files\Internet Explorer
2014-01-03 16:13:19 ----D---- C:\Program Files (x86)\Internet Explorer
2014-01-01 16:10:23 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-01-01 16:10:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-01-01 16:09:17 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-01-01 16:09:16 ----D---- C:\Windows\system32\cs-CZ
2013-12-31 18:53:02 ----D---- C:\Windows\Panther
2013-12-31 18:53:02 ----D---- C:\Windows\debug
2013-12-31 14:05:12 ----D---- C:\Windows\Microsoft.NET
2013-12-31 01:44:50 ----D---- C:\Windows\SYSWOW64\sk-SK
2013-12-31 01:44:50 ----D---- C:\Windows\system32\sk-SK
2013-12-31 01:44:48 ----D---- C:\Windows\SYSWOW64\migration
2013-12-31 01:44:48 ----D---- C:\Windows\SYSWOW64\en-US
2013-12-31 01:44:47 ----D---- C:\Windows\system32\migration
2013-12-31 01:44:47 ----D---- C:\Windows\system32\en-US
2013-12-31 01:44:47 ----D---- C:\Windows\PolicyDefinitions
2013-12-30 22:15:03 ----D---- C:\Windows\AppPatch
2013-12-30 22:15:03 ----D---- C:\Program Files\Windows Media Player
2013-12-30 22:15:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-30 22:12:27 ----D---- C:\ProgramData\Microsoft Help
2013-12-30 15:24:58 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-30 15:21:22 ----D---- C:\Program Files\Windows Defender
2013-12-30 15:21:22 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\it-IT
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\es-ES
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\el-GR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\de-DE
2013-12-30 15:21:09 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-12-30 15:21:09 ----D---- C:\Windows\SYSWOW64\da-DK
2013-12-30 15:21:09 ----D---- C:\Windows\system32\zh-HK
2013-12-30 15:21:09 ----D---- C:\Windows\system32\tr-TR
2013-12-30 15:21:09 ----D---- C:\Windows\system32\sv-SE
2013-12-30 15:21:09 ----D---- C:\Windows\system32\pt-PT
2013-12-30 15:21:09 ----D---- C:\Windows\system32\pt-BR
2013-12-30 15:21:09 ----D---- C:\Windows\system32\pl-PL
2013-12-30 15:21:09 ----D---- C:\Windows\system32\nl-NL
2013-12-30 15:21:09 ----D---- C:\Windows\system32\ko-KR
2013-12-30 15:21:09 ----D---- C:\Windows\system32\it-IT
2013-12-30 15:21:09 ----D---- C:\Windows\system32\hu-HU
2013-12-30 15:21:09 ----D---- C:\Windows\system32\fr-FR
2013-12-30 15:21:09 ----D---- C:\Windows\system32\fi-FI
2013-12-30 15:21:09 ----D---- C:\Windows\system32\el-GR
2013-12-30 15:21:08 ----D---- C:\Windows\system32\zh-TW
2013-12-30 15:21:08 ----D---- C:\Windows\system32\zh-CN
2013-12-30 15:21:08 ----D---- C:\Windows\system32\ru-RU
2013-12-30 15:21:08 ----D---- C:\Windows\system32\nb-NO
2013-12-30 15:21:08 ----D---- C:\Windows\system32\ja-JP
2013-12-30 15:21:08 ----D---- C:\Windows\system32\es-ES
2013-12-30 15:21:08 ----D---- C:\Windows\system32\de-DE
2013-12-30 15:21:08 ----D---- C:\Windows\system32\da-DK
2013-12-30 15:21:08 ----D---- C:\Program Files\Windows Journal
2013-12-30 15:10:38 ----D---- C:\Program Files\Microsoft Security Client
2013-12-30 15:10:38 ----D---- C:\Program Files (x86)\Microsoft Security Client
2013-12-30 14:32:01 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-26 12:10:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-23 11:18:22 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-22 17:26:16 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-19 21:33:31 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-12-19 21:33:31 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-12-19 21:33:31 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-12-19 21:33:31 ----A---- C:\Windows\system32\OpenCL.dll
2013-12-19 21:33:31 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-12-19 21:33:31 ----A---- C:\Windows\system32\nvumdshimx.dll
2013-12-19 21:33:31 ----A---- C:\Windows\system32\nvapi64.dll
2013-12-19 19:53:46 ----A---- C:\Windows\system32\nvsvc64.dll
2013-12-19 19:53:46 ----A---- C:\Windows\system32\nvcpl.dll
2013-12-19 19:53:44 ----A---- C:\Windows\system32\nvvsvc.exe
2013-12-19 19:53:44 ----A---- C:\Windows\system32\nvsvcr.dll
2013-12-19 19:53:44 ----A---- C:\Windows\system32\nvshext.dll
2013-12-19 19:53:44 ----A---- C:\Windows\system32\nvmctray.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 248240]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-08-08 834544]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 HssDRV6;Hotspot Shield Routing Driver 6; C:\Windows\system32\DRIVERS\hssdrv6.sys [2012-07-24 41704]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2013-05-30 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2013-05-30 43680]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 134944]
R3 hitmanpro37;HitmanPro 3.7 Support Driver; \??\C:\Windows\system32\drivers\hitmanpro37.sys [2014-01-14 32512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2008-07-03 1477272]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-11-28 197408]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2013-12-05 39200]
R3 PAC207;Trust Webcam Live; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-04-12 572928]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-12-24 412264]
R3 SgamingkbFltr;Gaming Keyboard 1; C:\Windows\system32\drivers\GKS16Fltr.sys [2011-12-20 14848]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [2012-08-29 11880]
R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM); C:\Windows\system32\DRIVERS\vcsvad.sys [2008-12-26 21504]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 FairplayKD;FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys []
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2012-08-08 20544]
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl64.sys [2013-07-25 23040]
S3 netr28ux;TP-LINK Wireless USB Adapter; C:\Windows\system32\DRIVERS\netr28ux.sys []
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2013-01-23 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 taphss;Anchorfree HSS Adapter; C:\Windows\system32\DRIVERS\taphss.sys [2012-07-24 38632]
S3 tapoas;TAP-Win32 Adapter OAS; C:\Windows\system32\DRIVERS\tapoas.sys [2011-08-19 30720]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 UBNRedir;UBNRedir; C:\Windows\system32\DRIVERS\ubnredir.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2013-01-23 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [2012-08-01 14544]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
S3 WSDPrintDevice;Podpora tisku WSD prostřednictvím funkce UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]
S3 WSDScan;Podpora skenování WSD přes UMB; C:\Windows\system32\DRIVERS\WSDScan.sys [2009-07-14 25088]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-05 65640]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 23808]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\NLSSRV32.EXE [2012-11-13 70152]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-12-10 1494304]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-12-10 15129376]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-12-19 922912]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-08-24 76888]
R2 PSI_SVC_2_x64;Protexis Licensing V2 x64; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2010-11-30 336824]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-12-19 411936]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2012-09-17 2365792]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 348376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-26 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2012-11-18 529744]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-08 1255736]
S4 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
S4 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-22 119408]
S4 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]
S4 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-01-31 3289208]
S4 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2012-12-14 3467768]
-----------------EOF-----------------

Logfile of random's system information tool 1.09 (written by random/random)
Run by Maros at 2014-01-14 14:45:10
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 115 GB (48%) free of 238 GB
Total RAM: 4094 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:45:13, on 14. 1. 2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Program Files (x86)\Bloody4\Bloody4\Bloody4.exe
C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Program Files (x86)\Gaming Keyboard\Monitor.EXE
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Gaming Keyboard\OSD.exe
C:\Windows\twunk_32.exe
C:\Windows\twunk_32.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Maros.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O3 - Toolbar: (no name) - {D5D47440-0750-463D-BAEF-A47D02414806} - (no file)
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Gaming Keyboard] "C:\Program Files (x86)\Gaming Keyboard\Monitor.EXE"
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Bloody2] "C:\Program Files (x86)\Bloody4\Bloody4\Bloody4.exe" Minimum
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - Startup: HpM3Util.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\NLSSRV32.EXE
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 x64 (PSI_SVC_2_x64) - arvato digital services llc - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9399 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\NLSSRV32.EXE
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Windows\system32\rundll32.exe" Shell32.dll,Control_RunDLL mmsys.cpl
"C:\Windows\RAVCpl64.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe" /TUStart /pid:2344
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\System32\alg.exe
"C:\Program Files (x86)\Bloody4\Bloody4\Bloody4.exe" Minimum
WLIDSvcM.exe 2400
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Users\Maros\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HpM3Util.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ded261c5-b1d7-4ea4-b73a-ec3ac5f20539 -SystemEventPortName:HostProcess-633d3529-fda7-4818-91ad-21cfa88827fb -IoCancelEventPortName:HostProcess-4de8f29f-d024-484f-be4d-8003fcce0c5a -NonStateChangingEventPortName:HostProcess-42edc34c-acbb-426c-9446-dcd6c918a214 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d6b1c976-b4be-41a5-b778-2e6f0623ca47 -DeviceGroupId:WpdFsGroup
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Gaming Keyboard\Monitor.EXE"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\Gaming Keyboard\OSD.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\twunk_32.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-11477727671853279295130964601516728803351079938808-2054908665-11188056681543285233
"C:\Windows\twunk_32.exe"
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1128.0.2098300886\652407510" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,3,12,22,26 --gpu-vendor-id=0x10de --gpu-device-id=0x0dc4 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3221 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_16/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --instant-process --disable-html-notifications --channel="1128.1.852960024\371141511" /prefetch:673131151
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_16/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --channel="1128.3.1465755199\1025578813" /prefetch:673131151
"C:\Users\Maros\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NetworkConnectivity/disable_network_stats/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_16/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --channel="1128.13.1296344633\2039328489" /prefetch:673131151
"C:\Program Files\Microsoft Security Client\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey E7609A99-F26C-71F9-D1D0-33E9CE198BD4 -Reinvoke
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Maros\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3607238900-2339944577-2827055329-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3607238900-2339944577-2827055329-1000UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Maros\AppData\Roaming\Mozilla\Firefox\Profiles\265lgu85.default
prefs.js - "browser.startup.homepage" - "http://www.google.sk/"
prefs.js - "extensions.enabledItems" - "Cetrumcz@igeared:1.203.023.002, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nullsoft.com/winampDetector;version=1]
"Description"=Winamp Detector
"Path"=C:\Program Files (x86)\Winamp Detect\npwachk.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
nppdf32.dll
nppdf32.SKY
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
Cetrumcz_igeared.xml
mall-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2013-09-05 422280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2013-09-05 422280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-09-12 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-09-05 330632]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-09-12 157672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-09-05 330632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2013-09-05 422280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{D5D47440-0750-463D-BAEF-A47D02414806}
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2013-09-05 330632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Windows\RAVCpl64.exe [2008-07-03 6430208]
"Skytel"=C:\Windows\Skytel.exe [2008-06-25 1826816]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 1266912]
"Monitor"=C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2013-12-10 1100248]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Program Files (x86)\uTorrent\uTorrent.exe [2013-05-02 802136]
"Bloody2"=C:\Program Files (x86)\Bloody4\Bloody4\Bloody4.exe [2013-08-16 11854848]
"ISUSPM"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-10 218032]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Gaming Keyboard"=C:\Program Files (x86)\Gaming Keyboard\Monitor.EXE [2012-02-14 184320]
C:\Users\Maros\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
HpM3Util.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsv64.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2014-01-14 14:33:07 ----A---- C:\Windows\system32\drivers\hitmanpro37.sys
2014-01-14 14:27:08 ----D---- C:\ProgramData\HitmanPro
2014-01-14 14:15:49 ----D---- C:\Windows\ERUNT
2014-01-14 14:09:25 ----D---- C:\AdwCleaner
2014-01-12 13:50:22 ----D---- C:\rsit
2014-01-12 11:52:40 ----D---- C:\Program Files\CCleaner
2014-01-09 21:14:09 ----D---- C:\Users\Maros\AppData\Roaming\vlc
2014-01-09 20:59:28 ----D---- C:\Program Files (x86)\VideoLAN
2014-01-07 20:07:51 ----A---- C:\Windows\system32\nvhdap64.dll
2014-01-07 20:07:51 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2014-01-07 20:07:51 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-01-07 20:07:46 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\nvopencl.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\nvoglv64.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\nvoglshim64.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\nvinitx.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\NvIFR64.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\NvFBC64.dll
2014-01-07 20:07:46 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-01-07 20:07:45 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-01-07 20:07:45 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2014-01-07 20:07:45 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-01-07 20:07:45 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-01-07 20:07:45 ----A---- C:\Windows\system32\nvcuvid.dll
2014-01-07 20:07:45 ----A---- C:\Windows\system32\nvcuvenc.dll
2014-01-07 20:07:45 ----A---- C:\Windows\system32\nvcuda.dll
2014-01-07 20:07:38 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-01-07 20:07:38 ----A---- C:\Windows\system32\nvcompiler.dll
2014-01-07 19:35:47 ----A---- C:\Windows\system32\nvdispgenco6433221.dll
2014-01-07 19:35:46 ----A---- C:\Windows\system32\nvdispco6433221.dll
2014-01-05 14:02:16 ----D---- C:\Program Files (x86)\Deadpool
2014-01-03 12:23:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-01-03 12:23:04 ----A---- C:\Windows\system32\ieui.dll
2014-01-03 12:23:03 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-01-03 12:23:03 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-01-03 12:23:03 ----A---- C:\Windows\system32\jsproxy.dll
2014-01-03 12:23:03 ----A---- C:\Windows\system32\ieUnatt.exe
2014-01-03 12:23:03 ----A---- C:\Windows\system32\iesetup.dll
2014-01-03 12:23:03 ----A---- C:\Windows\system32\iernonce.dll
2014-01-03 12:23:03 ----A---- C:\Windows\system32\ie4uinit.exe
2014-01-03 12:23:02 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-01-03 12:23:02 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-01-03 12:23:01 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-01-03 12:23:01 ----A---- C:\Windows\system32\mshtml.dll
2014-01-03 12:23:01 ----A---- C:\Windows\system32\jscript9diag.dll
2014-01-03 12:23:01 ----A---- C:\Windows\system32\ieapfltr.dll
2014-01-03 12:23:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-01-03 12:23:00 ----A---- C:\Windows\system32\iertutil.dll
2014-01-03 12:22:59 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-01-03 12:22:59 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-01-03 12:22:58 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-01-03 12:22:58 ----A---- C:\Windows\system32\wininet.dll
2014-01-03 12:22:58 ----A---- C:\Windows\system32\urlmon.dll
2014-01-03 12:22:57 ----A---- C:\Windows\system32\ieframe.dll
2014-01-03 12:22:55 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-01-03 12:22:54 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-01-03 12:22:53 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-01-03 12:22:53 ----A---- C:\Windows\system32\jscript9.dll
2014-01-03 12:17:58 ----D---- C:\ProgramData\DownSauvoe
2014-01-03 12:17:57 ----D---- C:\ProgramData\dlfhleokgkpbdoafcdocdoebojmeoeli
2014-01-03 12:16:13 ----D---- C:\ProgramData\e1b4cec55f7fdea1
2014-01-03 12:16:08 ----D---- C:\ProgramData\DaiscountaExtensi
2013-12-31 00:50:31 ----D---- C:\Program Files (x86)\KONAMI
2013-12-30 22:44:53 ----D---- C:\Windows\Migration
2013-12-30 22:41:54 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-12-30 22:33:17 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-12-30 22:33:17 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-12-30 22:33:11 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-30 22:33:11 ----A---- C:\Windows\system32\elshyph.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\url.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-12-30 22:33:10 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-12-30 22:33:09 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-12-30 22:33:08 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-12-30 22:33:07 ----A---- C:\Windows\system32\jsIntl.dll
2013-12-30 22:33:06 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-30 22:33:06 ----A---- C:\Windows\system32\msrating.dll
2013-12-30 22:33:06 ----A---- C:\Windows\system32\msls31.dll
2013-12-30 22:33:06 ----A---- C:\Windows\system32\msfeedssync.exe
2013-12-30 22:33:06 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-12-30 22:33:06 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-12-30 22:33:05 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-12-30 22:33:05 ----A---- C:\Windows\system32\mshtmler.dll
2013-12-30 22:33:05 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-30 22:33:05 ----A---- C:\Windows\system32\iesysprep.dll
2013-12-30 22:33:05 ----A---- C:\Windows\system32\dxtrans.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\url.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\iedkcs32.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\ieapfltr.dat
2013-12-30 22:33:04 ----A---- C:\Windows\system32\icardie.dll
2013-12-30 22:33:04 ----A---- C:\Windows\system32\dxtmsft.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\wextract.exe
2013-12-30 22:33:03 ----A---- C:\Windows\system32\webcheck.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\vbscript.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\pngfilt.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\occache.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\mshtmled.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\mshta.exe
2013-12-30 22:33:03 ----A---- C:\Windows\system32\msfeeds.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\licmgr10.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\inseng.dll
2013-12-30 22:33:03 ----A---- C:\Windows\system32\iexpress.exe
2013-12-30 22:33:02 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-12-30 22:33:02 ----A---- C:\Windows\system32\jscript.dll
2013-12-30 22:33:02 ----A---- C:\Windows\system32\imgutil.dll
2013-12-30 22:33:02 ----A---- C:\Windows\system32\iepeers.dll
2013-12-30 22:12:53 ----A---- C:\Windows\system32\wmploc.DLL
2013-12-30 22:12:51 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-12-30 22:12:50 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-12-30 22:12:48 ----A---- C:\Windows\system32\wmp.dll
2013-12-30 22:02:39 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-30 22:02:39 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-30 22:00:40 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-12-30 22:00:40 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-12-30 13:54:11 ----D---- C:\Windows\system32\MRT
2013-12-30 13:41:49 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-12-30 13:41:49 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-12-30 13:41:49 ----A---- C:\Windows\system32\UIAnimation.dll
2013-12-30 13:41:49 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-12-30 13:41:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-12-30 13:41:31 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-12-30 13:41:31 ----A---- C:\Windows\system32\d3d10_1.dll
2013-12-30 13:41:30 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-12-30 13:41:30 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-12-30 13:41:30 ----A---- C:\Windows\system32\d3d10warp.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-12-30 13:41:29 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-12-30 13:41:29 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-12-30 13:41:29 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-12-30 13:41:29 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-12-30 13:41:29 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-12-30 13:41:29 ----A---- C:\Windows\system32\dxgi.dll
2013-12-30 13:41:29 ----A---- C:\Windows\system32\d3d10level9.dll
2013-12-30 13:41:28 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-12-30 13:41:28 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-12-30 13:41:28 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-12-30 13:41:28 ----A---- C:\Windows\system32\d3d10core.dll
2013-12-30 13:41:28 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-12-30 13:41:28 ----A---- C:\Windows\system32\d3d10.dll
2013-12-30 13:41:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-12-30 13:41:27 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-12-30 13:41:27 ----A---- C:\Windows\system32\XpsPrint.dll
2013-12-30 13:41:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-12-30 13:41:27 ----A---- C:\Windows\system32\FntCache.dll
2013-12-30 13:41:27 ----A---- C:\Windows\system32\DWrite.dll
2013-12-30 13:41:26 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-12-30 13:41:26 ----A---- C:\Windows\system32\d2d1.dll
2013-12-30 13:35:31 ----A---- C:\Windows\system32\consent.exe
2013-12-30 13:35:31 ----A---- C:\Windows\system32\appinfo.dll
2013-12-30 13:34:46 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-12-30 13:34:46 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-12-30 13:34:46 ----A---- C:\Windows\system32\cryptsvc.dll
2013-12-30 13:34:46 ----A---- C:\Windows\system32\cryptnet.dll
2013-12-30 13:34:46 ----A---- C:\Windows\system32\crypt32.dll
2013-12-30 13:34:45 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-12-30 13:34:25 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-12-30 13:34:25 ----A---- C:\Windows\system32\d3d11.dll
2013-12-30 13:34:21 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-12-30 13:34:21 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-12-30 13:34:21 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-12-30 13:34:21 ----A---- C:\Windows\system32\credui.dll
2013-12-30 13:34:21 ----A---- C:\Windows\system32\authui.dll
2013-12-30 13:34:20 ----A---- C:\Windows\SYSWOW64\credui.dll
2013-12-30 13:34:05 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-12-30 13:34:05 ----A---- C:\Windows\system32\tzres.dll
2013-12-30 13:33:38 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-12-30 13:33:38 ----A---- C:\Windows\system32\certutil.exe
2013-12-30 13:33:36 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-12-30 13:33:36 ----A---- C:\Windows\system32\certenc.dll
2013-12-30 13:32:37 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-12-30 13:32:36 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-12-30 13:32:36 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-12-30 13:32:36 ----A---- C:\Windows\system32\advapi32.dll
2013-12-30 13:32:35 ----A---- C:\Windows\SYSWOW64\tdh.dll
2013-12-30 13:32:35 ----A---- C:\Windows\system32\tdh.dll
2013-12-30 13:32:35 ----A---- C:\Windows\system32\ntdll.dll
2013-12-30 13:32:34 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-12-30 13:32:34 ----A---- C:\Windows\system32\wow64.dll
2013-12-30 13:32:33 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-12-30 13:32:33 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-12-30 13:32:33 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-12-30 13:32:32 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-12-30 13:32:32 ----A---- C:\Windows\SYSWOW64\user.exe
2013-12-30 13:32:32 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-12-30 13:32:28 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-12-30 13:32:27 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-12-30 13:32:27 ----A---- C:\Windows\system32\mswsock.dll
2013-12-30 13:32:22 ----A---- C:\Windows\system32\KernelBase.dll
2013-12-30 13:32:21 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-12-30 13:32:21 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-12-30 13:32:21 ----A---- C:\Windows\system32\winsrv.dll
2013-12-30 13:32:21 ----A---- C:\Windows\system32\smss.exe
2013-12-30 13:32:21 ----A---- C:\Windows\system32\kernel32.dll
2013-12-30 13:32:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-12-30 13:32:20 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-12-30 13:32:20 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-12-30 13:32:20 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-12-30 13:32:20 ----A---- C:\Windows\system32\csrsrv.dll
2013-12-30 13:32:20 ----A---- C:\Windows\system32\conhost.exe
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-12-30 13:32:19 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-12-30 13:32:18 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-12-30 13:32:17 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-12-30 13:32:16 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-12-30 13:32:16 ----A---- C:\Windows\system32\apisetschema.dll
2013-12-30 13:32:11 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-12-30 13:32:10 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-12-30 13:32:09 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-12-30 13:32:07 ----A---- C:\Windows\system32\schannel.dll
2013-12-30 13:32:06 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-12-30 13:32:06 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-12-30 13:32:06 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-12-30 13:32:06 ----A---- C:\Windows\system32\sspicli.dll
2013-12-30 13:32:06 ----A---- C:\Windows\system32\ncrypt.dll
2013-12-30 13:32:06 ----A---- C:\Windows\system32\lsass.exe
2013-12-30 13:32:06 ----A---- C:\Windows\system32\lsasrv.dll
2013-12-30 13:32:06 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-12-30 13:32:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-12-30 13:32:06 ----A---- C:\Windows\system32\drivers\cng.sys
2013-12-30 13:32:05 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-12-30 13:32:05 ----A---- C:\Windows\system32\sspisrv.dll
2013-12-30 13:32:05 ----A---- C:\Windows\system32\secur32.dll
2013-12-30 13:31:48 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-12-30 13:31:48 ----A---- C:\Windows\system32\cryptdlg.dll
2013-12-30 13:31:29 ----A---- C:\Windows\system32\drivers\afd.sys
2013-12-30 13:31:25 ----A---- C:\Windows\system32\shell32.dll
2013-12-30 13:31:24 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-12-30 13:31:24 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-12-30 13:31:24 ----A---- C:\Windows\system32\shdocvw.dll
2013-12-30 13:31:09 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-12-30 13:31:09 ----A---- C:\Windows\system32\wintrust.dll
2013-12-30 13:30:52 ----A---- C:\Windows\system32\win32k.sys
2013-12-30 13:30:50 ----A---- C:\Windows\system32\rpcrt4.dll
2013-12-30 13:30:49 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-12-30 13:30:46 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-12-30 13:30:46 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-12-30 13:30:46 ----A---- C:\Windows\system32\WebClnt.dll
2013-12-30 13:30:46 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-12-30 13:30:46 ----A---- C:\Windows\system32\davclnt.dll
2013-12-30 13:30:44 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-30 13:30:44 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-12-30 13:30:40 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-30 13:30:40 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-12-30 13:30:38 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-12-30 13:30:38 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-12-30 13:30:37 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-12-30 13:30:37 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-12-30 13:30:37 ----A---- C:\Windows\system32\nshwfp.dll
2013-12-30 13:30:33 ----A---- C:\Windows\system32\drivers\usbser.sys
2013-12-30 13:30:31 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-30 13:30:31 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-30 13:30:30 ----A---- C:\Windows\system32\drivers\usbcir.sys
2013-12-30 13:30:28 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-30 13:30:28 ----A---- C:\Windows\system32\msieftp.dll
2013-12-30 13:30:27 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-12-30 13:30:27 ----A---- C:\Windows\system32\qedit.dll
2013-12-30 13:30:17 ----A---- C:\Windows\system32\wwansvc.dll
2013-12-30 13:30:17 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-12-30 13:30:16 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-12-30 13:30:15 ----A---- C:\Windows\system32\drivers\usbscan.sys
2013-12-30 13:30:15 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-12-30 13:30:15 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-12-30 13:30:12 ----A---- C:\Windows\system32\comctl32.dll
2013-12-30 13:30:11 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-12-30 13:30:10 ----A---- C:\Windows\system32\atmfd.dll
2013-12-30 13:30:09 ----A---- C:\Windows\SYSWOW64\lpk.dll
2013-12-30 13:30:09 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-12-30 13:30:09 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2013-12-30 13:30:09 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-12-30 13:30:09 ----A---- C:\Windows\system32\lpk.dll
2013-12-30 13:30:09 ----A---- C:\Windows\system32\fontsub.dll
2013-12-30 13:30:09 ----A---- C:\Windows\system32\dciman32.dll
2013-12-30 13:30:08 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-12-30 13:30:08 ----A---- C:\Windows\system32\atmlib.dll
2013-12-30 13:30:06 ----A---- C:\Windows\SYSWOW64\wscript.exe
2013-12-30 13:30:06 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-30 13:30:06 ----A---- C:\Windows\system32\wscript.exe
2013-12-30 13:30:06 ----A---- C:\Windows\system32\scrrun.dll
2013-12-30 13:30:06 ----A---- C:\Windows\system32\cscript.exe
2013-12-30 13:30:05 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-30 13:28:00 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-12-30 13:28:00 ----A---- C:\Windows\system32\gdi32.dll
2013-12-30 13:27:44 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-12-30 13:27:44 ----A---- C:\Windows\system32\win32spl.dll
2013-12-30 13:27:42 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-12-30 13:27:39 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-12-30 13:27:39 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-12-30 13:27:39 ----A---- C:\Windows\system32\cdd.dll
2013-12-30 13:16:42 ----A---- C:\Windows\system32\scavengeui.dll
2013-12-30 13:14:41 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-12-30 13:14:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-12-30 13:14:41 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-12-30 13:14:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-12-30 13:14:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-12-30 13:14:40 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-12-30 13:14:40 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-12-26 11:54:23 ----D---- C:\WinSetupFromUSB
2013-12-19 12:20:22 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2013-12-18 13:48:32 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2013-12-18 13:48:32 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
======List of files/folders modified in the last 1 month======
2014-01-14 14:45:12 ----D---- C:\Program Files\trend micro
2014-01-14 14:45:04 ----D---- C:\Windows\temp
2014-01-14 14:44:26 ----SHD---- C:\System Volume Information
2014-01-14 14:43:29 ----D---- C:\Users\Maros\AppData\Roaming\uTorrent
2014-01-14 14:36:24 ----AD---- C:\Windows
2014-01-14 14:35:27 ----RD---- C:\Program Files
2014-01-14 14:33:12 ----D---- C:\Windows\System32
2014-01-14 14:33:07 ----D---- C:\Windows\system32\drivers
2014-01-14 14:33:01 ----D---- C:\ProgramData\NVIDIA
2014-01-14 14:27:08 ----D---- C:\ProgramData
2014-01-14 14:11:04 ----RD---- C:\Program Files (x86)
2014-01-14 13:55:48 ----D---- C:\Users\Maros\AppData\Roaming\Skype
2014-01-13 14:20:54 ----D---- C:\Users\Maros\AppData\Roaming\HpUpdate
2014-01-12 16:49:55 ----D---- C:\Windows\system32\catroot
2014-01-12 11:52:47 ----D---- C:\Windows\system32\Tasks
2014-01-12 11:48:52 ----D---- C:\Windows\inf
2014-01-12 11:44:06 ----A---- C:\Users\Maros\AppData\Roaming\trace_FilterInstaller.txt
2014-01-12 11:44:04 ----A---- C:\Users\Maros\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
2014-01-12 11:43:57 ----D---- C:\Windows\SysWOW64
2014-01-12 11:41:22 ----SHD---- C:\Windows\Installer
2014-01-12 11:41:12 ----DC---- C:\Windows\system32\DRVSTORE
2014-01-12 11:41:10 ----D---- C:\Windows\system32\DriverStore
2014-01-11 15:36:08 ----D---- C:\ProgramData\InstallMate
2014-01-11 15:36:03 ----D---- C:\Windows\Tasks
2014-01-11 15:36:03 ----D---- C:\Program Files (x86)\Resident Evil 6
2014-01-11 13:29:16 ----D---- C:\Windows\pss
2014-01-11 13:26:55 ----D---- C:\Users\Maros\AppData\Roaming\.purple
2014-01-11 13:18:48 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-09 21:11:16 ----D---- C:\Users\Maros\AppData\Roaming\Winamp
2014-01-09 21:11:16 ----D---- C:\Users\Maros\AppData\Roaming\Media Player Classic
2014-01-09 21:11:16 ----D---- C:\Users\Maros\AppData\Roaming\DAEMON Tools Lite
2014-01-09 21:11:14 ----D---- C:\Windows\Minidump
2014-01-09 21:11:14 ----D---- C:\Windows\Logs
2014-01-08 16:17:33 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-01-08 16:12:20 ----D---- C:\Windows\system32\catroot2
2014-01-08 15:10:02 ----D---- C:\Windows\Prefetch
2014-01-07 21:04:04 ----D---- C:\Program Files (x86)\Call of Duty Ghosts
2014-01-06 12:24:57 ----D---- C:\Windows\rescache
2014-01-05 15:03:35 ----D---- C:\ProgramData\Package Cache
2014-01-05 14:59:45 ----RSD---- C:\Windows\assembly
2014-01-04 00:28:10 ----SD---- C:\ProgramData\Microsoft
2014-01-04 00:27:21 ----SD---- C:\Users\Maros\AppData\Roaming\Microsoft
2014-01-03 17:28:40 ----D---- C:\Windows\winsxs
2014-01-03 16:13:19 ----D---- C:\Program Files\Internet Explorer
2014-01-03 16:13:19 ----D---- C:\Program Files (x86)\Internet Explorer
2014-01-01 16:10:23 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-01-01 16:10:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-01-01 16:09:17 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-01-01 16:09:16 ----D---- C:\Windows\system32\cs-CZ
2013-12-31 18:53:02 ----D---- C:\Windows\Panther
2013-12-31 18:53:02 ----D---- C:\Windows\debug
2013-12-31 14:05:12 ----D---- C:\Windows\Microsoft.NET
2013-12-31 01:44:50 ----D---- C:\Windows\SYSWOW64\sk-SK
2013-12-31 01:44:50 ----D---- C:\Windows\system32\sk-SK
2013-12-31 01:44:48 ----D---- C:\Windows\SYSWOW64\migration
2013-12-31 01:44:48 ----D---- C:\Windows\SYSWOW64\en-US
2013-12-31 01:44:47 ----D---- C:\Windows\system32\migration
2013-12-31 01:44:47 ----D---- C:\Windows\system32\en-US
2013-12-31 01:44:47 ----D---- C:\Windows\PolicyDefinitions
2013-12-30 22:15:03 ----D---- C:\Windows\AppPatch
2013-12-30 22:15:03 ----D---- C:\Program Files\Windows Media Player
2013-12-30 22:15:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-30 22:12:27 ----D---- C:\ProgramData\Microsoft Help
2013-12-30 15:24:58 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-30 15:21:22 ----D---- C:\Program Files\Windows Defender
2013-12-30 15:21:22 ----D---- C:\Program Files (x86)\Windows Defender
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\it-IT
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\es-ES
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\el-GR
2013-12-30 15:21:10 ----D---- C:\Windows\SYSWOW64\de-DE
2013-12-30 15:21:09 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-12-30 15:21:09 ----D---- C:\Windows\SYSWOW64\da-DK
2013-12-30 15:21:09 ----D---- C:\Windows\system32\zh-HK
2013-12-30 15:21:09 ----D---- C:\Windows\system32\tr-TR
2013-12-30 15:21:09 ----D---- C:\Windows\system32\sv-SE
2013-12-30 15:21:09 ----D---- C:\Windows\system32\pt-PT
2013-12-30 15:21:09 ----D---- C:\Windows\system32\pt-BR
2013-12-30 15:21:09 ----D---- C:\Windows\system32\pl-PL
2013-12-30 15:21:09 ----D---- C:\Windows\system32\nl-NL
2013-12-30 15:21:09 ----D---- C:\Windows\system32\ko-KR
2013-12-30 15:21:09 ----D---- C:\Windows\system32\it-IT
2013-12-30 15:21:09 ----D---- C:\Windows\system32\hu-HU
2013-12-30 15:21:09 ----D---- C:\Windows\system32\fr-FR
2013-12-30 15:21:09 ----D---- C:\Windows\system32\fi-FI
2013-12-30 15:21:09 ----D---- C:\Windows\system32\el-GR
2013-12-30 15:21:08 ----D---- C:\Windows\system32\zh-TW
2013-12-30 15:21:08 ----D---- C:\Windows\system32\zh-CN
2013-12-30 15:21:08 ----D---- C:\Windows\system32\ru-RU
2013-12-30 15:21:08 ----D---- C:\Windows\system32\nb-NO
2013-12-30 15:21:08 ----D---- C:\Windows\system32\ja-JP
2013-12-30 15:21:08 ----D---- C:\Windows\system32\es-ES
2013-12-30 15:21:08 ----D---- C:\Windows\system32\de-DE
2013-12-30 15:21:08 ----D---- C:\Windows\system32\da-DK
2013-12-30 15:21:08 ----D---- C:\Program Files\Windows Journal
2013-12-30 15:10:38 ----D---- C:\Program Files\Microsoft Security Client
2013-12-30 15:10:38 ----D---- C:\Program Files (x86)\Microsoft Security Client
2013-12-30 14:32:01 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-26 12:10:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-23 11:18:22 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-22 17:26:16 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-19 21:33:31 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-12-19 21:33:31 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-12-19 21:33:31 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-12-19 21:33:31 ----A---- C:\Windows\system32\OpenCL.dll
2013-12-19 21:33:31 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-12-19 21:33:31 ----A---- C:\Windows\system32\nvumdshimx.dll
2013-12-19 21:33:31 ----A---- C:\Windows\system32\nvapi64.dll
2013-12-19 19:53:46 ----A---- C:\Windows\system32\nvsvc64.dll
2013-12-19 19:53:46 ----A---- C:\Windows\system32\nvcpl.dll
2013-12-19 19:53:44 ----A---- C:\Windows\system32\nvvsvc.exe
2013-12-19 19:53:44 ----A---- C:\Windows\system32\nvsvcr.dll
2013-12-19 19:53:44 ----A---- C:\Windows\system32\nvshext.dll
2013-12-19 19:53:44 ----A---- C:\Windows\system32\nvmctray.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 248240]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-08-08 834544]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 HssDRV6;Hotspot Shield Routing Driver 6; C:\Windows\system32\DRIVERS\hssdrv6.sys [2012-07-24 41704]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2013-05-30 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2013-05-30 43680]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 134944]
R3 hitmanpro37;HitmanPro 3.7 Support Driver; \??\C:\Windows\system32\drivers\hitmanpro37.sys [2014-01-14 32512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2008-07-03 1477272]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-11-28 197408]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2013-12-05 39200]
R3 PAC207;Trust Webcam Live; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-04-12 572928]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-12-24 412264]
R3 SgamingkbFltr;Gaming Keyboard 1; C:\Windows\system32\drivers\GKS16Fltr.sys [2011-12-20 14848]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [2012-08-29 11880]
R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM); C:\Windows\system32\DRIVERS\vcsvad.sys [2008-12-26 21504]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 FairplayKD;FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys []
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2012-08-08 20544]
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl64.sys [2013-07-25 23040]
S3 netr28ux;TP-LINK Wireless USB Adapter; C:\Windows\system32\DRIVERS\netr28ux.sys []
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2013-01-23 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 taphss;Anchorfree HSS Adapter; C:\Windows\system32\DRIVERS\taphss.sys [2012-07-24 38632]
S3 tapoas;TAP-Win32 Adapter OAS; C:\Windows\system32\DRIVERS\tapoas.sys [2011-08-19 30720]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 UBNRedir;UBNRedir; C:\Windows\system32\DRIVERS\ubnredir.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2013-01-23 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [2012-08-01 14544]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
S3 WSDPrintDevice;Podpora tisku WSD prostřednictvím funkce UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]
S3 WSDScan;Podpora skenování WSD přes UMB; C:\Windows\system32\DRIVERS\WSDScan.sys [2009-07-14 25088]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-05 65640]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 23808]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\NLSSRV32.EXE [2012-11-13 70152]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-12-10 1494304]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-12-10 15129376]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-12-19 922912]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-08-24 76888]
R2 PSI_SVC_2_x64;Protexis Licensing V2 x64; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2010-11-30 336824]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-12-19 411936]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2012-09-17 2365792]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 348376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-26 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2012-11-18 529744]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-08 1255736]
S4 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
S4 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-22 119408]
S4 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]
S4 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-01-31 3289208]
S4 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2012-12-14 3467768]
-----------------EOF-----------------