Uz to vyzera OK a log z Combofixu:
ComboFix 14-01-27.02 - Peto . 01. 2014 20:01:40.2.4 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.421.1051.18.3949.2538 [GMT 1:00]
Running from: c:\users\Peto\Desktop\ComboFix.exe
Command switches used :: c:\users\Peto\Desktop\CFScript.txt
AV: ESET Smart Security 6.0 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Disabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 6.0 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_rpcnetp
.
.
((((((((((((((((((((((((( Files Created from 2013-12-27 to 2014-01-27 )))))))))))))))))))))))))))))))
.
.
2014-01-27 16:40 . 2014-01-27 16:40 -------- d-----w- C:\rsit
2014-01-27 16:40 . 2014-01-27 16:40 -------- d-----w- c:\program files\trend micro
2014-01-27 05:57 . 2014-01-27 05:59 -------- d-----w- c:\windows\system32\MRT
2014-01-27 02:06 . 2013-10-14 17:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2014-01-27 02:03 . 2014-01-27 02:03 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2014-01-27 02:03 . 2014-01-27 02:03 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-01-26 12:00 . 2013-11-23 18:26 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2014-01-26 12:00 . 2013-11-23 17:47 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2014-01-26 12:00 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2014-01-26 12:00 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2014-01-26 12:00 . 2013-04-17 07:02 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2014-01-26 12:00 . 2013-04-17 06:24 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-01-26 12:00 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2014-01-26 12:00 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2014-01-26 03:26 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2014-01-26 03:26 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe
2014-01-26 03:26 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL
2014-01-26 03:26 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL
2014-01-26 03:26 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll
2014-01-25 21:18 . 2014-01-25 21:18 -------- d-----w- c:\program files (x86)\Common Files\Overwolf
2014-01-25 21:18 . 2014-01-25 21:18 -------- d-----w- c:\program files (x86)\Common Files\Skype
2014-01-25 21:18 . 2014-01-25 21:19 -------- d-----w- c:\program files (x86)\Overwolf
2014-01-25 21:01 . 2014-01-25 21:01 -------- d-----w- c:\program files (x86)\TeamSpeak 3 Client
2014-01-25 15:53 . 2013-10-30 02:32 335360 ----a-w- c:\windows\system32\msieftp.dll
2014-01-25 15:53 . 2013-10-30 02:19 301568 ----a-w- c:\windows\SysWow64\msieftp.dll
2014-01-25 15:53 . 2013-07-04 12:50 633856 ----a-w- c:\windows\system32\comctl32.dll
2014-01-25 15:53 . 2013-07-04 11:50 530432 ----a-w- c:\windows\SysWow64\comctl32.dll
2014-01-25 15:53 . 2012-10-09 18:17 55296 ----a-w- c:\windows\system32\dhcpcsvc6.dll
2014-01-25 15:53 . 2012-10-09 18:17 226816 ----a-w- c:\windows\system32\dhcpcore6.dll
2014-01-25 15:53 . 2012-10-09 17:40 44032 ----a-w- c:\windows\SysWow64\dhcpcsvc6.dll
2014-01-25 15:53 . 2012-10-09 17:40 193536 ----a-w- c:\windows\SysWow64\dhcpcore6.dll
2014-01-25 15:53 . 2013-07-09 05:52 224256 ----a-w- c:\windows\system32\wintrust.dll
2014-01-25 15:53 . 2013-07-09 04:52 175104 ----a-w- c:\windows\SysWow64\wintrust.dll
2014-01-25 15:51 . 2013-10-04 02:16 116736 ----a-w- c:\windows\system32\drivers\drmk.sys
2014-01-25 15:50 . 2012-10-03 17:44 70656 ----a-w- c:\windows\system32\nlaapi.dll
2014-01-25 15:49 . 2013-11-26 10:32 3156480 ----a-w- c:\windows\system32\win32k.sys
2014-01-25 15:48 . 2013-05-13 05:50 52224 ----a-w- c:\windows\system32\certenc.dll
2014-01-25 15:48 . 2013-05-13 03:43 1192448 ----a-w- c:\windows\system32\certutil.exe
2014-01-25 15:48 . 2013-05-13 03:08 903168 ----a-w- c:\windows\SysWow64\certutil.exe
2014-01-25 15:48 . 2013-05-13 03:08 43008 ----a-w- c:\windows\SysWow64\certenc.dll
2014-01-25 15:47 . 2013-10-12 02:32 150016 ----a-w- c:\windows\system32\wshom.ocx
2014-01-25 15:47 . 2013-10-12 02:31 202752 ----a-w- c:\windows\system32\scrrun.dll
2014-01-25 15:47 . 2013-10-12 02:04 121856 ----a-w- c:\windows\SysWow64\wshom.ocx
2014-01-25 15:47 . 2013-10-12 02:03 163840 ----a-w- c:\windows\SysWow64\scrrun.dll
2014-01-25 15:47 . 2013-10-12 01:33 156160 ----a-w- c:\windows\system32\cscript.exe
2014-01-25 15:47 . 2013-10-12 01:33 168960 ----a-w- c:\windows\system32\wscript.exe
2014-01-25 15:47 . 2013-10-12 01:15 141824 ----a-w- c:\windows\SysWow64\wscript.exe
2014-01-25 15:47 . 2013-10-12 01:15 126976 ----a-w- c:\windows\SysWow64\cscript.exe
2014-01-25 15:47 . 2013-08-01 12:09 983488 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2014-01-25 15:47 . 2013-04-10 06:01 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2014-01-25 15:47 . 2011-02-03 11:25 144384 ----a-w- c:\windows\system32\cdd.dll
2014-01-25 15:42 . 2013-10-12 02:29 859648 ----a-w- c:\windows\system32\IKEEXT.DLL
2014-01-25 15:42 . 2013-10-12 02:30 830464 ----a-w- c:\windows\system32\nshwfp.dll
2014-01-25 15:42 . 2013-10-12 02:29 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2014-01-25 15:42 . 2013-10-12 02:03 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll
2014-01-25 15:42 . 2013-10-12 02:01 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL
2014-01-25 15:42 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2014-01-25 02:02 . 2014-01-25 02:02 -------- d-----w- c:\windows\system32\SPReview
2014-01-25 02:01 . 2014-01-25 02:01 -------- d-----w- c:\windows\system32\EventProviders
2014-01-24 16:10 . 2010-11-20 13:27 481280 ----a-w- c:\windows\system32\wmpps.dll
2014-01-24 16:09 . 2010-11-20 13:27 527872 ----a-w- c:\windows\system32\wmdrmnet.dll
2014-01-24 16:07 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2014-01-24 16:07 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2014-01-24 16:07 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2014-01-24 15:35 . 2014-01-24 15:35 -------- d-----w- c:\windows\SysWow64\Wat
2014-01-24 15:35 . 2014-01-24 15:35 -------- d-----w- c:\windows\system32\Wat
2014-01-24 06:33 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2014-01-24 06:33 . 2012-07-26 04:47 2560 ----a-w- c:\windows\system32\drivers\en-US\wdf01000.sys.mui
2014-01-24 06:33 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
2014-01-24 06:21 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2014-01-24 06:07 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2014-01-24 06:07 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2014-01-24 06:07 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2014-01-24 06:07 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2014-01-24 06:07 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2014-01-24 06:07 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2014-01-24 06:07 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2014-01-24 06:02 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2014-01-24 06:02 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2014-01-24 06:02 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2014-01-24 04:29 . 2011-06-16 05:49 199680 ----a-w- c:\windows\system32\xmllite.dll
2014-01-24 04:27 . 2011-10-26 05:25 1572864 ----a-w- c:\windows\system32\quartz.dll
2014-01-24 04:26 . 2011-03-11 06:34 1359872 ----a-w- c:\windows\system32\mfc42u.dll
2014-01-24 04:25 . 2012-11-02 05:59 478208 ----a-w- c:\windows\system32\dpnet.dll
2014-01-24 04:24 . 2012-03-17 07:58 75120 ----a-w- c:\windows\system32\drivers\partmgr.sys
2014-01-24 04:23 . 2011-05-24 11:42 404480 ----a-w- c:\windows\system32\umpnpmgr.dll
2014-01-24 04:22 . 2011-10-15 06:31 723456 ----a-w- c:\windows\system32\EncDec.dll
2014-01-23 17:12 . 2014-01-23 17:12 -------- d-----w- c:\program files (x86)\Microsoft Works
2014-01-23 17:12 . 2014-01-25 06:56 -------- d-----w- c:\program files (x86)\Microsoft.NET
2014-01-23 17:12 . 2014-01-23 17:12 -------- d-----w- c:\windows\PCHEALTH
2014-01-23 17:11 . 2014-01-23 17:11 -------- d-----w- c:\program files\Microsoft Office
2014-01-23 17:11 . 2014-01-23 17:11 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 8
2014-01-23 17:10 . 2014-01-23 17:13 -------- d-----w- c:\programdata\Microsoft Help
2014-01-23 17:09 . 2014-01-23 17:09 -------- d-----r- C:\MSOCache
2014-01-23 17:06 . 2014-01-23 17:06 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2014-01-23 17:06 . 2014-01-23 17:06 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite
2014-01-23 17:06 . 2014-01-23 17:08 -------- d-----w- c:\programdata\DAEMON Tools Lite
2014-01-23 17:03 . 2014-01-23 17:03 -------- d-----w- c:\programdata\WarThunder
2014-01-23 16:58 . 2014-01-26 11:25 -------- d-----w- c:\program files (x86)\SpeedFan
2014-01-23 16:57 . 2014-01-23 16:57 -------- d-----w- c:\program files (x86)\IrfanView
2014-01-23 16:55 . 2014-01-23 17:18 -------- d-----w- C:\totalcmd
2014-01-23 16:45 . 2012-02-17 06:38 1031680 ----a-w- c:\windows\system32\rdpcore.dll
2014-01-23 16:45 . 2012-02-17 05:34 826880 ----a-w- c:\windows\SysWow64\rdpcore.dll
2014-01-23 16:45 . 2012-02-17 04:57 23552 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2014-01-23 16:42 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2014-01-23 16:42 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe
2014-01-23 16:42 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll
2014-01-23 16:42 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll
2014-01-23 16:42 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll
2014-01-23 16:42 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll
2014-01-23 16:42 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll
2014-01-23 16:42 . 2012-06-02 14:19 186752 ----a-w- c:\windows\system32\wuwebv.dll
2014-01-23 16:42 . 2012-06-02 14:15 36864 ----a-w- c:\windows\system32\wuapp.exe
2014-01-23 16:36 . 2014-01-23 16:36 -------- d-----w- c:\program files\ESET
2014-01-23 16:25 . 2014-01-23 16:25 -------- d-----w- c:\program files\CCleaner
2014-01-22 22:31 . 2014-01-22 22:31 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller
2014-01-22 22:30 . 2008-10-15 05:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2014-01-22 22:30 . 2008-10-15 05:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2014-01-22 22:30 . 2008-10-15 05:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2014-01-22 22:30 . 2008-10-15 05:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2014-01-22 22:30 . 2008-10-15 05:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2014-01-22 22:30 . 2008-10-15 05:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2014-01-22 21:48 . 2014-01-22 21:49 -------- d-----w- c:\program files (x86)\Origin Games
2014-01-22 21:43 . 2014-01-23 20:04 -------- d-----w- c:\programdata\Origin
2014-01-22 21:43 . 2014-01-23 20:04 -------- d-----w- c:\programdata\Electronic Arts
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-01-27 02:02 . 2014-01-27 02:02 208384 ----a-w- c:\windows\SysWow64\webcheck.dll
2014-01-27 02:02 . 2014-01-27 02:02 243200 ----a-w- c:\windows\system32\webcheck.dll
2014-01-25 02:33 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2014-01-25 02:33 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-01 16:08 143360 ----a-w- c:\program files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"EADM"="c:\program files (x86)\Origin\Origin.exe" [2014-01-22 3551576]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-10-28 3675352]
"Overwolf"="c:\program files (x86)\Overwolf\Overwolf.exe" [2013-12-09 35768]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-11-18 98304]
"HControlUser"="c:\program files (x86)\ASUS\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"ATKMEDIA"="c:\program files (x86)\ASUS\ATK Media\DMedia.exe" [2009-08-19 170624]
"ATKOSD2"="c:\program files (x86)\ASUS\ATKOSD2\ATKOSD2.exe" [2009-10-26 6998656]
"NUSB3MON"="c:\program files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2009-10-21 106496]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2009-8-2 1080608]
FancyStart daemon.lnk - c:\windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe -d [2014-1-22 12862]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 ipswuio;ipswuio;c:\windows\system32\DRIVERS\ipswuio.sys;c:\windows\SYSNATIVE\DRIVERS\ipswuio.sys [x]
R3 OverwolfUpdaterService;Overwolf Updater Service;c:\program files (x86)\Overwolf\OverwolfUpdater.exe;c:\program files (x86)\Overwolf\OverwolfUpdater.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TurboBoost;TurboBoost;c:\program files\Intel\TurboBoost\TurboBoost.exe;c:\program files\Intel\TurboBoost\TurboBoost.exe [x]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys;c:\windows\SYSNATIVE\DRIVERS\epfwwfp.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys;c:\windows\SYSNATIVE\DRIVERS\eamonm.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys;c:\windows\SYSNATIVE\DRIVERS\ehdrv.sys [x]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys;c:\windows\SYSNATIVE\DRIVERS\EpfwLWF.sys [x]
S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe;c:\windows\SYSNATIVE\FBAgent.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 ASMMAP64;ASMMAP64;c:\program files\ATKGFNEX\ASMMAP64.sys;c:\program files\ATKGFNEX\ASMMAP64.sys [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [x]
S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys;c:\windows\SYSNATIVE\DRIVERS\TurboB.sys [x]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x]
S3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys;c:\windows\SYSNATIVE\drivers\btusbflt.sys [x]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys;c:\windows\SYSNATIVE\DRIVERS\btwl2cap.sys [x]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys;c:\windows\SYSNATIVE\DRIVERS\Impcd.sys [x]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller (NDIS 6.20);c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-01 15:52 159744 ----a-w- c:\program files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x64\OverlayIconShlExt1_64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-09-01 323584]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-09-30 621440]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2013-03-21 6330568]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\Peto\AppData\Roaming\Mozilla\Firefox\Profiles\oili0fjh.default\
FF - prefs.js: browser.startup.homepage - hxxps://
www.google.sk/
.
- - - - ORPHANS REMOVED - - - -
.
AddRemove-ASUS_N_Series_Screensaver - c:\windows\system32\ASUS_N_Series_Screensaver.scr
.
.
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\program files (x86)\ASUS\Net4Switch\Net4Switch.exe
c:\program files (x86)\ASUS\SmartLogon\sensorsrv.exe
c:\program files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\ASUS\ATK Hotkey\HControl.exe
c:\windows\AsScrPro.exe
c:\program files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
c:\program files\ASUS\NB Probe\SPM\spmgr.exe
c:\program files (x86)\ASUS\ATK Hotkey\ATKOSD.exe
c:\program files (x86)\ASUS\ATK Hotkey\WDC.exe
c:\program files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
.
**************************************************************************
.
Completion time: 2014-01-27 20:26:59 - machine was rebooted
ComboFix-quarantined-files.txt 2014-01-27 19:26
ComboFix2.txt 2014-01-27 18:46
.
Pre-Run: 116 687 642 624 bytes free
Post-Run: 116 134 318 080 bytes free
.
- - End Of File - - 08B93AC556B8CF223796C66B91F7D342
A36C5E4F47E84449FF07ED3517B43A31