Stránka 1 z 2

Prosím o kontrolu logu

Napsal: 29 led 2014 21:08
od saonek
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:57:55, on 29. 1. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vitecek\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Vitecek.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [mnchdrgsfSrv] C:\WINDOWS\inf\mnchdrgsf.vbe
O4 - HKLM\..\Run: [MSHostSrv] C:\WINDOWS\inf\cssi.vbe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [mncbhceSrv] C:\WINDOWS\inf\mncbhce.vbe
O4 - HKLM\..\Run: [MSStp] C:\WINDOWS\system32\msstp.vbe
O4 - HKLM\..\Run: [mnckamxoSrv] C:\WINDOWS\inf\mnckamxo.vbe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\RunOnce: [20131224] C:\Program Files\AVAST Software\Avast\setup\emupdate\30a6dc71-41cf-4026-8967-2dbfff158a7d.exe /check
O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')
O4 - Global Startup: Acer Backup Manager Tray.lnk = C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file)
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll C:\Windows\SysWOW64\nvinit.dll
O23 - Service: McAfee Application Installer Cleanup (0163121390576731) (0163121390576731mcinstcleanup) - Unknown owner - C:\WINDOWS\TEMP\016312~1.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) - Broadcom Corp. - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Activation Service (McAWFwk) - Unknown owner - c:\PROGRA~1\mcafee\msc\mcawfwk.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9593 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-01-11 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-24 1143168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-01-11 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-24 1143168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2013-03-27 111216]
"mnchdrgsfSrv"=C:\WINDOWS\inf\mnchdrgsf.vbe [2014-01-13 1338]
"MSHostSrv"=C:\WINDOWS\inf\cssi.vbe [2014-01-13 2334]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-24 3767096]
"mncbhceSrv"=C:\WINDOWS\inf\mncbhce.vbe [2014-01-19 1342]
"MSStp"=C:\WINDOWS\system32\msstp.vbe []
"mnckamxoSrv"=C:\WINDOWS\inf\mnckamxo.vbe [2014-01-19 1342]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2014-01-23 3813200]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"20131224"=C:\Program Files\AVAST Software\Avast\setup\emupdate\30a6dc71-41cf-4026-8967-2dbfff158a7d.exe [2014-01-29 181136]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer Backup Manager Tray.lnk - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\SysWOW64\nvinit.dll C:\Windows\SysWOW64\nvinit.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicDisplay.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicRender.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BrokerInfrastructure]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DeviceInstall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dxgkrnl.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\FsDepends.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LSM]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmartcardSimulator]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VirtualSmartcardReader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wcmsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"EnableCursorSuppression"=1
"ConsentPromptBehaviorUser"=3
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.l3codecp"=l3codecp.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2014-01-29 20:57:49 ----D---- C:\rsit
2014-01-29 20:57:49 ----D---- C:\Program Files (x86)\trend micro
2014-01-29 07:14:44 ----D---- C:\AdwCleaner
2014-01-28 19:36:51 ----A---- C:\ComboFix.txt
2014-01-28 19:34:15 ----D---- C:\$RECYCLE.BIN
2014-01-28 18:18:07 ----D---- C:\ProgramData\Blizzard Entertainment
2014-01-28 18:18:07 ----D---- C:\Program Files (x86)\World of Warcraft
2014-01-28 18:18:07 ----D---- C:\Program Files (x86)\Common Files\Blizzard Entertainment
2014-01-28 18:17:13 ----D---- C:\ProgramData\Battle.net
2014-01-28 13:56:54 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2014-01-26 16:18:12 ----A---- C:\WINDOWS\zip.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\SWXCACLS.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\SWSC.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\SWREG.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\sed.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\PEV.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\NIRCMD.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\MBR.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\grep.exe
2014-01-26 16:09:24 ----D---- C:\Qoobox
2014-01-26 16:09:00 ----D---- C:\WINDOWS\erdnt
2014-01-25 04:07:36 ----D---- C:\WINDOWS\Minidump
2014-01-24 21:31:43 ----D---- C:\Users\Vitecek\AppData\Roaming\AVAST Software
2014-01-24 21:30:48 ----A---- C:\WINDOWS\avastSS.scr
2014-01-24 21:29:46 ----D---- C:\ProgramData\AVAST Software
2014-01-24 21:21:00 ----D---- C:\Program Files (x86)\VS Revo Group
2014-01-22 23:46:41 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-01-22 23:46:31 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-01-22 23:37:55 ----D---- C:\Users\Vitecek\AppData\Roaming\GetRightToGo
2014-01-22 20:08:01 ----D---- C:\Users\Vitecek\AppData\Roaming\Malwarebytes
2014-01-22 20:07:38 ----D---- C:\ProgramData\Malwarebytes
2014-01-22 20:07:29 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-22 12:37:34 ----D---- C:\ProgramData\LogMeIn
2014-01-20 18:14:27 ----AD---- C:\WINDOWS\bitstreams
2014-01-20 18:14:27 ----A---- C:\WINDOWS\zlib1.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\windows-build.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\ssleay32.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\SCRYPT-README.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\NEWS.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\linux-usb-cgminer.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libusb-1.0.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libssh2.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\librtmp.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libidn-11.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libeay32.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libcurl.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\ChangeLog.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\GPU-README.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\FPGA-README.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\COPYING.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\AUTHORS.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\ASIC-README.txt
2014-01-20 18:14:26 ----A---- C:\WINDOWS\API-README.txt
2014-01-20 18:14:20 ----D---- C:\Program Files (x86)\MINECRAFT
2014-01-18 20:22:34 ----D---- C:\Program Files (x86)\Company
2014-01-15 14:56:53 ----A---- C:\WINDOWS\SysWOW64\WSShared.dll
2014-01-15 14:56:52 ----A---- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-15 14:18:55 ----A---- C:\WINDOWS\SysWOW64\SHCore.dll
2014-01-15 14:18:55 ----A---- C:\WINDOWS\SysWOW64\FirewallAPI.dll
2014-01-15 14:18:54 ----A---- C:\WINDOWS\SysWOW64\WebClnt.dll
2014-01-15 14:18:54 ----A---- C:\WINDOWS\SysWOW64\davclnt.dll
2014-01-14 17:32:21 ----D---- C:\WINDOWS\SysWOW64\NV
2014-01-13 19:50:03 ----D---- C:\Games
2014-01-13 14:58:12 ----D---- C:\Users\Vitecek\AppData\Roaming\Unity
2014-01-12 15:40:15 ----A---- C:\WINDOWS\SysWOW64\glcndFilter.dll
2014-01-12 15:40:11 ----A---- C:\WINDOWS\SysWOW64\winhttp.dll
2014-01-12 15:40:09 ----A---- C:\WINDOWS\SysWOW64\ole32.dll
2014-01-12 15:40:09 ----A---- C:\WINDOWS\HelpPane.exe
2014-01-12 15:40:06 ----A---- C:\WINDOWS\SysWOW64\KernelBase.dll
2014-01-12 15:40:00 ----A---- C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-01-12 15:39:58 ----A---- C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-01-12 15:39:56 ----A---- C:\WINDOWS\SysWOW64\wlanapi.dll
2014-01-12 15:39:56 ----A---- C:\WINDOWS\SysWOW64\WcnApi.dll
2014-01-12 15:39:55 ----A---- C:\WINDOWS\SysWOW64\wlansec.dll
2014-01-12 15:39:54 ----A---- C:\WINDOWS\SysWOW64\fdWCN.dll
2014-01-12 15:39:53 ----A---- C:\WINDOWS\SysWOW64\wfdprov.dll
2014-01-12 15:39:50 ----A---- C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-01-12 15:39:14 ----A---- C:\WINDOWS\SysWOW64\dskquota.dll
2014-01-12 15:39:02 ----A---- C:\WINDOWS\SysWOW64\mfnetsrc.dll
2014-01-12 15:39:01 ----A---- C:\WINDOWS\SysWOW64\mfnetcore.dll
2014-01-12 15:39:01 ----A---- C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-01-12 15:38:37 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2014-01-12 15:38:35 ----A---- C:\WINDOWS\SysWOW64\mfplat.dll
2014-01-12 15:38:34 ----A---- C:\WINDOWS\SysWOW64\StructuredQuery.dll
2014-01-12 15:38:33 ----A---- C:\WINDOWS\SysWOW64\usercpl.dll
2014-01-12 15:38:32 ----A---- C:\WINDOWS\SysWOW64\dhcpcore6.dll
2014-01-12 15:38:31 ----A---- C:\WINDOWS\SysWOW64\Windows.Storage.Compression.dll
2014-01-12 15:38:30 ----A---- C:\WINDOWS\SysWOW64\mswsock.dll
2014-01-12 15:38:30 ----A---- C:\WINDOWS\SysWOW64\input.dll
2014-01-12 15:38:30 ----A---- C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2014-01-12 15:38:29 ----A---- C:\WINDOWS\SysWOW64\PCPKsp.dll
2014-01-12 15:38:29 ----A---- C:\WINDOWS\SysWOW64\dhcpcore.dll
2014-01-12 15:38:28 ----A---- C:\WINDOWS\SysWOW64\AppxSip.dll
2014-01-12 15:38:24 ----A---- C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2014-01-12 15:38:23 ----A---- C:\WINDOWS\SysWOW64\wfapigp.dll
2014-01-12 15:38:22 ----A---- C:\WINDOWS\SysWOW64\kbdhebl3.dll
2014-01-12 15:38:02 ----A---- C:\WINDOWS\SysWOW64\shell32.dll
2014-01-12 15:38:00 ----A---- C:\WINDOWS\SysWOW64\msctf.dll
2014-01-12 15:37:56 ----A---- C:\WINDOWS\SysWOW64\shdocvw.dll
2014-01-12 15:37:56 ----A---- C:\WINDOWS\SysWOW64\SettingSync.dll
2014-01-12 15:37:56 ----A---- C:\WINDOWS\SysWOW64\mbsmsapi.dll
2014-01-12 15:37:42 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-01-12 15:37:38 ----A---- C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2014-01-12 15:37:37 ----A---- C:\WINDOWS\SysWOW64\WSDApi.dll
2014-01-12 15:37:37 ----A---- C:\WINDOWS\SysWOW64\ubpm.dll
2014-01-12 15:37:37 ----A---- C:\WINDOWS\SysWOW64\kerberos.dll
2014-01-12 15:37:16 ----A---- C:\WINDOWS\SysWOW64\Taskmgr.exe
2014-01-12 15:37:13 ----A---- C:\WINDOWS\SysWOW64\WebcamUi.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\wpnapps.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\storagewmi.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\mstsc.exe
2014-01-12 15:37:10 ----A---- C:\WINDOWS\SysWOW64\vds_ps.dll
2014-01-12 15:36:56 ----A---- C:\WINDOWS\SysWOW64\dwmcore.dll
2014-01-12 15:36:55 ----A---- C:\WINDOWS\SysWOW64\explorer.exe
2014-01-12 15:36:55 ----A---- C:\WINDOWS\explorer.exe
2014-01-12 15:36:53 ----A---- C:\WINDOWS\SysWOW64\mfcore.dll
2014-01-12 15:36:51 ----A---- C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-01-12 15:36:51 ----A---- C:\WINDOWS\SysWOW64\mscms.dll
2014-01-12 15:36:51 ----A---- C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2014-01-12 15:36:50 ----A---- C:\WINDOWS\SysWOW64\samlib.dll
2014-01-12 15:36:41 ----A---- C:\WINDOWS\SysWOW64\msftedit.dll
2014-01-12 15:36:39 ----A---- C:\WINDOWS\SysWOW64\winmmbase.dll
2014-01-12 15:36:39 ----A---- C:\WINDOWS\SysWOW64\winmm.dll
2014-01-12 15:36:39 ----A---- C:\WINDOWS\SysWOW64\WerFault.exe
2014-01-12 15:36:38 ----A---- C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2014-01-12 15:36:37 ----A---- C:\WINDOWS\SysWOW64\WinSCard.dll
2014-01-12 15:36:37 ----A---- C:\WINDOWS\SysWOW64\openfiles.exe
2014-01-12 15:36:37 ----A---- C:\WINDOWS\SysWOW64\LocationApi.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\wuapi.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\resutils.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\oleaut32.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\clusapi.dll
2014-01-12 15:36:28 ----A---- C:\WINDOWS\SysWOW64\wuwebv.dll
2014-01-12 15:36:28 ----A---- C:\WINDOWS\SysWOW64\wudriver.dll
2014-01-12 15:36:28 ----A---- C:\WINDOWS\SysWOW64\wuapp.exe
2014-01-12 15:35:27 ----A---- C:\WINDOWS\SysWOW64\Display.dll
2014-01-12 15:35:26 ----A---- C:\WINDOWS\SysWOW64\KBDKURD.DLL
2014-01-12 15:35:06 ----A---- C:\WINDOWS\SysWOW64\wvc.dll
2014-01-12 15:35:06 ----A---- C:\WINDOWS\SysWOW64\wdc.dll
2014-01-12 15:16:06 ----D---- C:\Program Files (x86)\Google
2014-01-12 15:00:52 ----A---- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-01-12 14:55:36 ----RD---- C:\WINDOWS\BrowserChoice
2014-01-12 13:50:26 ----A---- C:\WINDOWS\SysWOW64\synceng.dll
2014-01-12 13:50:13 ----A---- C:\WINDOWS\SysWOW64\mshtml.dll
2014-01-12 13:49:57 ----A---- C:\WINDOWS\SysWOW64\ieframe.dll
2014-01-12 13:49:55 ----A---- C:\WINDOWS\SysWOW64\jscript9.dll
2014-01-12 13:49:55 ----A---- C:\WINDOWS\SysWOW64\iertutil.dll
2014-01-12 13:49:53 ----A---- C:\WINDOWS\SysWOW64\wininet.dll
2014-01-12 13:49:52 ----A---- C:\WINDOWS\SysWOW64\uxtheme.dll
2014-01-12 13:49:52 ----A---- C:\WINDOWS\SysWOW64\urlmon.dll
2014-01-12 13:49:52 ----A---- C:\WINDOWS\SysWOW64\jscript.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\UXInit.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\msfeeds.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\jsproxy.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\iesysprep.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\iesetup.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\iernonce.dll
2014-01-12 13:49:39 ----A---- C:\WINDOWS\SysWOW64\mmc.exe
2014-01-12 13:49:37 ----A---- C:\WINDOWS\SysWOW64\setupapi.dll
2014-01-12 13:49:34 ----A---- C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-01-12 13:49:34 ----A---- C:\WINDOWS\SysWOW64\wiaacmgr.exe
2014-01-12 13:49:34 ----A---- C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2014-01-12 13:48:45 ----A---- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2014-01-12 13:48:45 ----A---- C:\WINDOWS\SysWOW64\sppc.dll
2014-01-12 13:48:44 ----A---- C:\WINDOWS\SysWOW64\wups.dll
2014-01-12 13:48:44 ----A---- C:\WINDOWS\SysWOW64\WSSync.dll
2014-01-12 13:48:44 ----A---- C:\WINDOWS\SysWOW64\WSClient.dll
2014-01-12 13:48:43 ----A---- C:\WINDOWS\SysWOW64\OEMLicense.dll
2014-01-12 13:48:42 ----A---- C:\WINDOWS\SysWOW64\setupcln.dll
2014-01-12 13:47:00 ----A---- C:\WINDOWS\SysWOW64\nshwfp.dll
2014-01-12 13:47:00 ----A---- C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2014-01-12 13:45:40 ----A---- C:\WINDOWS\SysWOW64\ncryptsslp.dll
2014-01-12 13:45:33 ----A---- C:\WINDOWS\SysWOW64\comctl32.dll
2014-01-12 13:45:32 ----A---- C:\WINDOWS\SysWOW64\imagehlp.dll
2014-01-12 13:44:25 ----A---- C:\WINDOWS\SysWOW64\gdi32.dll
2014-01-12 13:39:40 ----A---- C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll
2014-01-12 13:26:35 ----A---- C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2014-01-12 13:26:33 ----A---- C:\WINDOWS\SysWOW64\mstscax.dll
2014-01-12 13:26:32 ----A---- C:\WINDOWS\SysWOW64\netcfgx.dll
2014-01-12 13:26:31 ----A---- C:\WINDOWS\SysWOW64\winmde.dll
2014-01-12 13:26:31 ----A---- C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2014-01-12 13:26:30 ----A---- C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2014-01-12 13:26:30 ----A---- C:\WINDOWS\SysWOW64\drvstore.dll
2014-01-12 13:26:23 ----A---- C:\WINDOWS\SysWOW64\SettingSyncInfo.dll
2014-01-12 13:26:23 ----A---- C:\WINDOWS\SysWOW64\DevDispItemProvider.dll
2014-01-12 13:26:06 ----A---- C:\WINDOWS\SysWOW64\crypt32.dll
2014-01-12 13:25:53 ----A---- C:\WINDOWS\SysWOW64\rpcrt4.dll
2014-01-12 13:23:42 ----A---- C:\WINDOWS\SysWOW64\cryptnet.dll
2014-01-12 13:23:42 ----A---- C:\WINDOWS\SysWOW64\certutil.exe
2014-01-12 13:21:14 ----A---- C:\WINDOWS\SysWOW64\schannel.dll
2014-01-12 13:18:48 ----A---- C:\WINDOWS\SysWOW64\ReAgentc.exe
2014-01-12 13:18:48 ----A---- C:\WINDOWS\SysWOW64\qedit.dll
2014-01-12 13:18:47 ----A---- C:\WINDOWS\SysWOW64\ReAgent.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\fontsub.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\dciman32.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\atmlib.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\atmfd.dll
2014-01-12 13:17:49 ----A---- C:\WINDOWS\SysWOW64\lpk.dll
2014-01-12 13:17:44 ----A---- C:\WINDOWS\SysWOW64\duser.dll
2014-01-12 13:17:43 ----A---- C:\WINDOWS\SysWOW64\WWanAPI.dll
2014-01-12 13:17:43 ----A---- C:\WINDOWS\SysWOW64\wlroamextension.dll
2014-01-12 13:17:43 ----A---- C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2014-01-12 13:17:42 ----A---- C:\WINDOWS\SysWOW64\tasklist.exe
2014-01-12 13:17:42 ----A---- C:\WINDOWS\SysWOW64\taskkill.exe
2014-01-12 13:17:41 ----A---- C:\WINDOWS\SysWOW64\nlaapi.dll
2014-01-12 13:17:31 ----A---- C:\WINDOWS\SysWOW64\GdiPlus.dll
2014-01-12 13:17:26 ----A---- C:\WINDOWS\SysWOW64\DWrite.dll
2014-01-12 13:15:21 ----A---- C:\WINDOWS\SysWOW64\BCP47Langs.dll
2014-01-12 13:15:18 ----A---- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-01-12 13:15:17 ----A---- C:\WINDOWS\SysWOW64\stobject.dll
2014-01-12 13:15:17 ----A---- C:\WINDOWS\SysWOW64\netplwiz.dll
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\netprofm.dll
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\Magnify.exe
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\DevicePairing.dll
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\biwinrt.dll
2014-01-12 13:15:14 ----A---- C:\WINDOWS\SysWOW64\npmproxy.dll
2014-01-12 13:15:14 ----A---- C:\WINDOWS\SysWOW64\muifontsetup.dll
2014-01-12 13:15:13 ----A---- C:\WINDOWS\SysWOW64\nlmsprep.dll
2014-01-12 13:15:13 ----A---- C:\WINDOWS\SysWOW64\nlmproxy.dll
2014-01-12 13:14:11 ----A---- C:\WINDOWS\SysWOW64\untfs.dll
2014-01-12 13:14:11 ----A---- C:\WINDOWS\SysWOW64\kernel32.dll
2014-01-12 13:14:11 ----A---- C:\WINDOWS\SysWOW64\autochk.exe
2014-01-12 13:14:09 ----A---- C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\scrrun.dll
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\scrobj.dll
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\cscript.exe
2014-01-12 13:12:11 ----A---- C:\WINDOWS\SysWOW64\wintrust.dll
2014-01-12 13:12:11 ----A---- C:\WINDOWS\SysWOW64\apprepsync.dll
2014-01-12 13:12:11 ----A---- C:\WINDOWS\SysWOW64\apprepapi.dll
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnsvr.exe
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnhupnp.dll
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnet.dll
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnathlp.dll
2014-01-12 13:12:06 ----A---- C:\WINDOWS\SysWOW64\dpnlobby.dll
2014-01-12 13:12:06 ----A---- C:\WINDOWS\SysWOW64\dpnhpast.dll
2014-01-12 13:12:06 ----A---- C:\WINDOWS\SysWOW64\dpnaddr.dll
2014-01-12 13:11:32 ----A---- C:\WINDOWS\SysWOW64\d3d11.dll
2014-01-12 13:11:28 ----A---- C:\WINDOWS\SysWOW64\WMPhoto.dll
2014-01-12 13:11:27 ----A---- C:\WINDOWS\SysWOW64\esent.dll
2014-01-12 13:11:25 ----A---- C:\WINDOWS\SysWOW64\cryptdlg.dll
2014-01-12 13:11:02 ----A---- C:\WINDOWS\SysWOW64\wmp.dll
2014-01-12 13:11:00 ----A---- C:\WINDOWS\SysWOW64\tquery.dll
2014-01-12 13:10:59 ----A---- C:\WINDOWS\SysWOW64\mssrch.dll
2014-01-12 13:10:56 ----A---- C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2014-01-12 13:10:55 ----A---- C:\WINDOWS\SysWOW64\mssph.dll
2014-01-12 13:10:54 ----A---- C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2014-01-12 13:10:54 ----A---- C:\WINDOWS\SysWOW64\ntdll.dll
2014-01-12 13:10:53 ----A---- C:\WINDOWS\SysWOW64\rsaenh.dll
2014-01-12 13:10:53 ----A---- C:\WINDOWS\SysWOW64\AudioSes.dll
2014-01-12 13:10:53 ----A---- C:\WINDOWS\SysWOW64\AudioEng.dll
2014-01-12 13:10:52 ----A---- C:\WINDOWS\SysWOW64\SearchIndexer.exe
2014-01-12 13:10:51 ----A---- C:\WINDOWS\SysWOW64\Windows.Networking.dll
2014-01-12 13:10:49 ----A---- C:\WINDOWS\SysWOW64\mssvp.dll
2014-01-12 13:10:49 ----A---- C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\XpsRasterService.dll
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\wscapi.dll
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\Robocopy.exe
2014-01-12 13:10:47 ----A---- C:\WINDOWS\SysWOW64\dmvdsitf.dll
2014-01-12 13:10:47 ----A---- C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-01-12 13:10:46 ----A---- C:\WINDOWS\SysWOW64\mfreadwrite.dll
2014-01-12 13:10:45 ----A---- C:\WINDOWS\SysWOW64\mssphtb.dll
2014-01-12 13:10:45 ----A---- C:\WINDOWS\SysWOW64\fmifs.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\mssprxy.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\mssitlb.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\msshooks.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\msscntrs.dll
2014-01-12 13:09:49 ----A---- C:\WINDOWS\SysWOW64\poqexec.exe
2014-01-12 13:07:43 ----A---- C:\WINDOWS\SysWOW64\msxml6.dll
2014-01-12 13:07:42 ----A---- C:\WINDOWS\SysWOW64\msxml6r.dll
2014-01-12 13:07:42 ----A---- C:\WINDOWS\SysWOW64\msxml3r.dll
2014-01-12 13:07:42 ----A---- C:\WINDOWS\SysWOW64\msxml3.dll
2014-01-12 13:07:25 ----A---- C:\WINDOWS\SysWOW64\twinui.dll
2014-01-12 13:07:24 ----A---- C:\WINDOWS\SysWOW64\authui.dll
2014-01-12 13:07:24 ----A---- C:\WINDOWS\SysWOW64\actxprxy.dll
2014-01-12 13:06:58 ----A---- C:\WINDOWS\SysWOW64\msieftp.dll
2014-01-12 13:06:55 ----A---- C:\WINDOWS\SysWOW64\tzres.dll
2014-01-12 12:48:22 ----A---- C:\WINDOWS\War3Unin.pif
2014-01-12 12:48:22 ----A---- C:\WINDOWS\War3Unin.exe
2014-01-12 12:48:22 ----A---- C:\WINDOWS\War3Unin.dat
2014-01-12 12:47:38 ----D---- C:\Program Files (x86)\Warcraft III
2014-01-12 07:40:33 ----D---- C:\Users\Vitecek\AppData\Roaming\Wargaming.net
2014-01-12 03:05:16 ----ASH---- C:\swapfile.sys
2014-01-12 03:05:16 ----ASH---- C:\pagefile.sys
2014-01-12 03:05:15 ----SHD---- C:\System Volume Information
2014-01-12 03:05:12 ----ASH---- C:\hiberfil.sys
2014-01-11 20:16:25 ----A---- C:\WINDOWS\SysWOW64\XAudio2_7.dll
2014-01-11 20:16:25 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2014-01-11 20:16:24 ----A---- C:\WINDOWS\SysWOW64\xactengine3_7.dll
2014-01-11 20:16:24 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2014-01-11 20:16:23 ----A---- C:\WINDOWS\SysWOW64\d3dx11_43.dll
2014-01-11 20:16:23 ----A---- C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2014-01-11 20:16:22 ----A---- C:\WINDOWS\SysWOW64\D3DX9_43.dll
2014-01-11 20:16:22 ----A---- C:\WINDOWS\SysWOW64\d3dx10_43.dll
2014-01-11 20:16:21 ----A---- C:\WINDOWS\SysWOW64\XAudio2_6.dll
2014-01-11 20:16:21 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2014-01-11 20:16:20 ----A---- C:\WINDOWS\SysWOW64\xactengine3_6.dll
2014-01-11 20:16:20 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2014-01-11 20:16:19 ----A---- C:\WINDOWS\SysWOW64\XAudio2_5.dll
2014-01-11 20:16:19 ----A---- C:\WINDOWS\SysWOW64\xactengine3_5.dll
2014-01-11 20:16:18 ----A---- C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2014-01-11 20:16:18 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2014-01-11 20:16:17 ----A---- C:\WINDOWS\SysWOW64\d3dx11_42.dll
2014-01-11 20:16:17 ----A---- C:\WINDOWS\SysWOW64\d3dx10_42.dll
2014-01-11 20:16:16 ----A---- C:\WINDOWS\SysWOW64\D3DX9_42.dll
2014-01-11 20:16:15 ----A---- C:\WINDOWS\SysWOW64\d3dx10_41.dll
2014-01-11 20:16:15 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2014-01-11 20:16:14 ----A---- C:\WINDOWS\SysWOW64\XAudio2_4.dll
2014-01-11 20:16:14 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2014-01-11 20:16:14 ----A---- C:\WINDOWS\SysWOW64\D3DX9_41.dll
2014-01-11 20:16:13 ----A---- C:\WINDOWS\SysWOW64\xactengine3_4.dll
2014-01-11 20:16:13 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2014-01-11 20:16:12 ----A---- C:\WINDOWS\SysWOW64\d3dx10_40.dll
2014-01-11 20:16:12 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2014-01-11 20:16:11 ----A---- C:\WINDOWS\SysWOW64\XAudio2_3.dll
2014-01-11 20:16:11 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2014-01-11 20:16:11 ----A---- C:\WINDOWS\SysWOW64\D3DX9_40.dll
2014-01-11 20:16:10 ----A---- C:\WINDOWS\SysWOW64\xactengine3_3.dll
2014-01-11 20:16:10 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2014-01-11 20:16:09 ----A---- C:\WINDOWS\SysWOW64\XAudio2_2.dll
2014-01-11 20:16:09 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2014-01-11 20:16:08 ----A---- C:\WINDOWS\SysWOW64\xactengine3_2.dll
2014-01-11 20:16:07 ----A---- C:\WINDOWS\SysWOW64\D3DX9_39.dll
2014-01-11 20:16:07 ----A---- C:\WINDOWS\SysWOW64\d3dx10_39.dll
2014-01-11 20:16:07 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2014-01-11 20:16:06 ----A---- C:\WINDOWS\SysWOW64\XAudio2_1.dll
2014-01-11 20:16:06 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2014-01-11 20:16:05 ----A---- C:\WINDOWS\SysWOW64\xactengine3_1.dll
2014-01-11 20:16:05 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2014-01-11 20:16:04 ----A---- C:\WINDOWS\SysWOW64\d3dx10_38.dll
2014-01-11 20:16:04 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2014-01-11 20:16:03 ----A---- C:\WINDOWS\SysWOW64\XAudio2_0.dll
2014-01-11 20:16:03 ----A---- C:\WINDOWS\SysWOW64\D3DX9_38.dll
2014-01-11 20:16:02 ----A---- C:\WINDOWS\SysWOW64\xactengine3_0.dll
2014-01-11 20:16:02 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2014-01-11 20:16:01 ----A---- C:\WINDOWS\SysWOW64\d3dx10_37.dll
2014-01-11 20:16:01 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2014-01-11 20:16:00 ----A---- C:\WINDOWS\SysWOW64\xactengine2_10.dll
2014-01-11 20:16:00 ----A---- C:\WINDOWS\SysWOW64\D3DX9_37.dll
2014-01-11 20:15:59 ----A---- C:\WINDOWS\SysWOW64\d3dx9_36.dll
2014-01-11 20:15:59 ----A---- C:\WINDOWS\SysWOW64\d3dx10_36.dll
2014-01-11 20:15:59 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2014-01-11 20:15:58 ----A---- C:\WINDOWS\SysWOW64\xactengine2_9.dll
2014-01-11 20:15:58 ----A---- C:\WINDOWS\SysWOW64\d3dx10_35.dll
2014-01-11 20:15:58 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2014-01-11 20:15:57 ----A---- C:\WINDOWS\SysWOW64\xactengine2_8.dll
2014-01-11 20:15:57 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2014-01-11 20:15:57 ----A---- C:\WINDOWS\SysWOW64\d3dx9_35.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\xinput1_3.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\d3dx9_34.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\d3dx10_34.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2014-01-11 20:15:55 ----A---- C:\WINDOWS\SysWOW64\xactengine2_7.dll
2014-01-11 20:15:55 ----A---- C:\WINDOWS\SysWOW64\d3dx10_33.dll
2014-01-11 20:15:55 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2014-01-11 20:15:54 ----A---- C:\WINDOWS\SysWOW64\xactengine2_6.dll
2014-01-11 20:15:54 ----A---- C:\WINDOWS\SysWOW64\d3dx9_33.dll
2014-01-11 20:15:53 ----A---- C:\WINDOWS\SysWOW64\xactengine2_5.dll
2014-01-11 20:15:53 ----A---- C:\WINDOWS\SysWOW64\d3dx9_32.dll
2014-01-11 20:15:53 ----A---- C:\WINDOWS\SysWOW64\d3dx10.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\xinput1_2.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\xactengine2_4.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\xactengine2_3.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\d3dx9_31.dll
2014-01-11 20:15:51 ----A---- C:\WINDOWS\SysWOW64\xinput1_1.dll
2014-01-11 20:15:51 ----A---- C:\WINDOWS\SysWOW64\xactengine2_2.dll
2014-01-11 20:15:51 ----A---- C:\WINDOWS\SysWOW64\xactengine2_1.dll
2014-01-11 20:15:49 ----A---- C:\WINDOWS\SysWOW64\d3dx9_30.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\xactengine2_0.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\d3dx9_29.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\d3dx9_28.dll
2014-01-11 20:15:47 ----A---- C:\WINDOWS\SysWOW64\d3dx9_27.dll
2014-01-11 20:15:47 ----A---- C:\WINDOWS\SysWOW64\d3dx9_26.dll
2014-01-11 20:15:46 ----A---- C:\WINDOWS\SysWOW64\d3dx9_25.dll
2014-01-11 20:15:46 ----A---- C:\WINDOWS\SysWOW64\d3dx9_24.dll
2014-01-11 20:11:18 ----HD---- C:\WINDOWS\msdownld.tmp
2014-01-11 20:11:18 ----D---- C:\WINDOWS\SysWOW64\directx
2014-01-11 19:56:19 ----D---- C:\Users\Vitecek\AppData\Roaming\NVIDIA
2014-01-11 19:55:30 ----D---- C:\Users\Vitecek\AppData\Roaming\.minecraft
2014-01-11 19:55:18 ----D---- C:\ProgramData\Sun
2014-01-11 19:55:17 ----D---- C:\Program Files (x86)\Common Files\Java
2014-01-11 19:55:13 ----A---- C:\WINDOWS\SysWOW64\javaws.exe
2014-01-11 19:55:10 ----A---- C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-01-11 19:55:10 ----A---- C:\WINDOWS\SysWOW64\javaw.exe
2014-01-11 19:55:10 ----A---- C:\WINDOWS\SysWOW64\java.exe
2014-01-11 19:55:04 ----D---- C:\Program Files (x86)\Java
2014-01-11 19:52:09 ----D---- C:\ProgramData\Oracle
2014-01-11 19:46:07 ----D---- C:\Users\Vitecek\AppData\Roaming\WinRAR
2014-01-11 19:27:14 ----D---- C:\Users\Vitecek\AppData\Roaming\WildTangent
2014-01-11 19:26:00 ----D---- C:\Users\Vitecek\AppData\Roaming\lm
2014-01-11 19:25:55 ----D---- C:\Users\Vitecek\AppData\Roaming\Synaptics
2014-01-11 19:25:32 ----D---- C:\Users\Vitecek\AppData\Roaming\Macromedia
2014-01-11 19:25:31 ----D---- C:\Users\Vitecek\AppData\Roaming\Adobe
2014-01-11 19:24:15 ----SD---- C:\Users\Vitecek\AppData\Roaming\Microsoft
2014-01-11 19:22:37 ----D---- C:\WINDOWS\SoftwareDistribution
2014-01-11 19:04:54 ----A---- C:\Recovery.txt

======List of files/folders modified in the last 1 month======

2014-01-29 20:57:49 ----D---- C:\Program Files (x86)
2014-01-29 20:57:46 ----D---- C:\WINDOWS\Prefetch
2014-01-29 20:48:42 ----A---- C:\WINDOWS\SysWOW64\log.txt
2014-01-29 20:48:31 ----D---- C:\WINDOWS\Temp
2014-01-29 16:33:01 ----D---- C:\WINDOWS\Microsoft.NET
2014-01-29 07:16:45 ----D---- C:\ProgramData
2014-01-28 21:37:58 ----D---- C:\WINDOWS\Inf
2014-01-28 19:34:15 ----D---- C:\Windows
2014-01-28 19:34:15 ----A---- C:\WINDOWS\system.ini
2014-01-28 19:33:45 ----D---- C:\WINDOWS\SysWOW64
2014-01-28 19:31:58 ----D---- C:\WINDOWS\SysWOW64\drivers
2014-01-28 19:31:58 ----D---- C:\WINDOWS\apppatch
2014-01-28 19:31:57 ----D---- C:\Program Files (x86)\Common Files
2014-01-28 19:06:50 ----D---- C:\WINDOWS\System32
2014-01-28 13:57:15 ----SHD---- C:\WINDOWS\Installer
2014-01-26 16:27:35 ----D---- C:\WINDOWS\Tasks
2014-01-25 04:04:47 ----RD---- C:\Program Files
2014-01-24 21:30:57 ----D---- C:\WINDOWS\WinSxS
2014-01-24 21:10:51 ----HD---- C:\WINDOWS\ELAMBKUP
2014-01-23 06:22:04 ----SD---- C:\ProgramData\Microsoft
2014-01-22 23:31:21 ----D---- C:\ProgramData\Norton
2014-01-22 20:01:41 ----D---- C:\ProgramData\NortonInstaller
2014-01-22 19:59:25 ----D---- C:\ProgramData\WildTangent
2014-01-18 12:33:00 ----D---- C:\WINDOWS\rescache
2014-01-15 20:22:09 ----D---- C:\WINDOWS\WinStore
2014-01-15 20:22:07 ----D---- C:\WINDOWS\SysWOW64\en-US
2014-01-15 20:22:07 ----D---- C:\WINDOWS\SysWOW64\cs-CZ
2014-01-15 20:20:28 ----D---- C:\WINDOWS\CbsTemp
2014-01-15 17:50:25 ----D---- C:\Program Files (x86)\Acer
2014-01-14 17:32:11 ----D---- C:\ProgramData\NVIDIA
2014-01-13 14:04:40 ----RSD---- C:\WINDOWS\assembly
2014-01-12 16:14:21 ----D---- C:\Program Files (x86)\Windows Mail
2014-01-12 16:14:20 ----D---- C:\Program Files (x86)\Internet Explorer
2014-01-12 16:14:19 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-01-12 16:14:19 ----D---- C:\Program Files (x86)\Windows Media Player
2014-01-12 16:14:18 ----D---- C:\Program Files (x86)\Common Files\System
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\slmgr
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\sk-SK
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\oobe
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\migwiz
2014-01-12 16:14:17 ----D---- C:\Program Files (x86)\Windows Defender
2014-01-12 16:14:13 ----D---- C:\WINDOWS\SysWOW64\WCN
2014-01-12 16:14:12 ----D---- C:\WINDOWS\SysWOW64\wbem
2014-01-12 16:14:02 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-01-12 16:14:02 ----D---- C:\WINDOWS\PolicyDefinitions
2014-01-12 16:12:17 ----RSD---- C:\WINDOWS\Fonts
2014-01-12 16:11:37 ----RD---- C:\WINDOWS\ToastData
2014-01-12 15:04:31 ----D---- C:\ProgramData\PRICache
2014-01-12 15:01:58 ----D---- C:\WINDOWS\servicing
2014-01-12 14:56:28 ----D---- C:\WINDOWS\SysWOW64\migration
2014-01-12 14:56:27 ----D---- C:\Program Files (x86)\Common Files\Microsoft Shared
2014-01-12 14:52:34 ----D---- C:\WINDOWS\SysWOW64\Dism
2014-01-12 13:53:29 ----D---- C:\WINDOWS\AUInstallAgent
2014-01-12 03:16:45 ----D---- C:\WINDOWS\debug
2014-01-11 20:11:18 ----D---- C:\WINDOWS\Logs
2014-01-11 19:34:28 ----D---- C:\ProgramData\EgisTec IPS
2014-01-11 19:27:01 ----D---- C:\OEM
2014-01-11 19:26:29 ----D---- C:\ProgramData\OEM
2014-01-11 19:24:14 ----RD---- C:\Users

Re: Prosím o kontrolu logu

Napsal: 29 led 2014 21:10
od saonek
Tady je zbytek z logu,celé se to tam nevešlo.


======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AudioEndpointBuilder;@%SystemRoot%\system32\AudioEndpointBuilder.dll,-204; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Audiosrv;@%SystemRoot%\system32\audiosrv.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-24 50344]
R2 BFE;@%SystemRoot%\system32\bfe.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 BITS;@%SystemRoot%\system32\qmgr.dll,-1000; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 BrcmCardReader;Broadcom Card Reader Service; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [2012-08-21 176640]
R2 BrokerInfrastructure;@%windir%\system32\bisrv.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2012-10-26 2449552]
R2 CryptSvc;@%SystemRoot%\system32\cryptsvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 DcomLaunch;@combase.dll,-5012; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 DeviceAssociationService;@%SystemRoot%\system32\das.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Dhcp;@%SystemRoot%\system32\dhcpcore.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Dnscache;@%SystemRoot%\System32\dnsapi.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 DPS;@%systemroot%\system32\dps.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-12-10 350544]
R2 EventLog;@%SystemRoot%\system32\wevtsvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 EventSystem;@comres.dll,-2450; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2014-01-23 2221904]
R2 IKEEXT;@%SystemRoot%\system32\ikeext.dll,-501; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 iphlpsvc;@%SystemRoot%\system32\iphlpsvc.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LanmanServer;@%systemroot%\system32\srvsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 LanmanWorkstation;@%systemroot%\system32\wkssvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 lmhosts;@%SystemRoot%\system32\lmhsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-12-13 377104]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 LSM;@%windir%\system32\lsm.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 MMCSS;@%systemroot%\system32\mmcss.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 MpsSvc;@%SystemRoot%\system32\FirewallAPI.dll,-23090; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 NlaSvc;@%SystemRoot%\System32\nlasvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 nsi;@%SystemRoot%\system32\nsisvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2012-11-03 259136]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe []
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-09-05 1364256]
R2 PcaSvc;@%SystemRoot%\system32\pcasvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Power;@%SystemRoot%\system32\umpo.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 ProfSvc;@%systemroot%\system32\profsvc.dll,-300; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2013-03-27 96880]
R2 RpcEptMapper;@%windir%\system32\RpcEpMap.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 RpcSs;@combase.dll,-5010; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 SamSs;@%SystemRoot%\system32\samsrv.dll,-1; C:\WINDOWS\system32\lsass.exe []
R2 SENS;@%SystemRoot%\system32\Sens.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 ShellHWDetection;@%SystemRoot%\System32\shsvcs.dll,-12288; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Schedule;@%SystemRoot%\system32\schedsvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Spooler;@%systemroot%\system32\spoolsv.exe,-1; C:\WINDOWS\System32\spoolsv.exe []
R2 SysMain;@%SystemRoot%\system32\sysmain.dll,-1000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Themes;@%SystemRoot%\System32\themeservice.dll,-8192; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 TrkWks;@%SystemRoot%\system32\trkwks.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R2 Wcmsvc;@%SystemRoot%\System32\wcmsvc.dll,-4097; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Winmgmt;@%Systemroot%\system32\wbem\wmisvc.dll,-205; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 WlanSvc;@%SystemRoot%\System32\wlansvc.dll,-257; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 WMPNetworkSvc;@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101; C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe []
R3 AeLookupSvc;@%SystemRoot%\system32\aelupsvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 Appinfo;@%systemroot%\system32\appinfo.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 Browser;@%systemroot%\system32\browser.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2012-10-23 658064]
R3 fdPHost;@%systemroot%\system32\fdPHost.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 FDResPub;@%systemroot%\system32\fdrespub.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 hidserv;@%SystemRoot%\System32\hidserv.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 HomeGroupListener;@%SystemRoot%\System32\ListSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 HomeGroupProvider;@%SystemRoot%\System32\provsvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 KeyIso;@keyiso.dll,-100; C:\WINDOWS\system32\lsass.exe []
R3 NcdAutoSetup;@%SystemRoot%\system32\NcdAutoSetup.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 Netman;@%SystemRoot%\system32\netman.dll,-109; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 netprofm;@%SystemRoot%\system32\netprofmsvc.dll,-202; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 p2pimsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8004; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 p2psvc;@%SystemRoot%\system32\p2psvc.dll,-8006; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 PlugPlay;@%SystemRoot%\system32\umpnpmgr.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 PNRPsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8000; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 RasMan;@%Systemroot%\system32\rasmans.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 SSDPSRV;@%systemroot%\system32\ssdpsrv.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 SstpSvc;@%SystemRoot%\system32\sstpsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 SystemEventsBroker;@%windir%\system32\SystemEventsBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 TapiSrv;@%SystemRoot%\system32\tapisrv.dll,-10100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 TimeBroker;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 TrustedInstaller;@%SystemRoot%\servicing\TrustedInstaller.exe,-100; C:\WINDOWS\servicing\TrustedInstaller.exe [2013-05-15 98304]
R3 upnphost;@%systemroot%\system32\upnphost.dll,-213; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 WdiServiceHost;@%systemroot%\system32\wdi.dll,-502; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 WdiSystemHost;@%systemroot%\system32\wdi.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 WinHttpAutoProxySvc;@%SystemRoot%\system32\winhttp.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S2 0163121390576731mcinstcleanup;McAfee Application Installer Cleanup (0163121390576731); C:\WINDOWS\TEMP\016312~1.EXE -cleanup -nolog []
S2 gpsvc;@gpapi.dll,-112; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12 116648]
S2 SharedAccess;@%SystemRoot%\system32\ipnathlp.dll,-106; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S2 sppsvc;@%SystemRoot%\system32\sppsvc.exe,-101; C:\WINDOWS\system32\sppsvc.exe []
S3 ALG;@%SystemRoot%\system32\Alg.exe,-112; C:\WINDOWS\System32\alg.exe []
S3 AllUserInstallAgent;@%SystemRoot%\System32\AUInstallAgent.dll,-101; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 AppIDSvc;@%systemroot%\system32\appidsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 BDESVC;@%SystemRoot%\system32\bdesvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 bthserv;@%SystemRoot%\System32\bthserv.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 CertPropSvc;@%SystemRoot%\System32\certprop.dll,-11; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 COMSysApp;@comres.dll,-947; C:\WINDOWS\system32\dllhost.exe [2012-07-26 8704]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2012-10-23 277024]
S3 defragsvc;@%SystemRoot%\system32\defragsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2012-11-16 469648]
S3 DeviceInstall;@%SystemRoot%\system32\umpnpmgr.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 dot3svc;@%systemroot%\system32\dot3svc.dll,-1102; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 DsmSvc;@%SystemRoot%\system32\DeviceSetupManager.dll,-1000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 Eaphost;@%systemroot%\system32\eapsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 EFS;@%SystemRoot%\system32\efssvc.dll,-100; C:\WINDOWS\System32\lsass.exe []
S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2012-07-12 174160]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\WINDOWS\system32\fxssvc.exe []
S3 fhsvc;@%systemroot%\system32\fhsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-03-27 655624]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-07-26 43616]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12 116648]
S3 hkmsvc;@%SystemRoot%\system32\kmsvc.dll,-6; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 KtmRm;@comres.dll,-2946; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 lltdsvc;@%SystemRoot%\system32\lltdres.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe []
S3 MSDTC;@comres.dll,-2797; C:\WINDOWS\System32\msdtc.exe []
S3 MSiSCSI;@%SystemRoot%\system32\iscsidsc.dll,-5000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 msiserver;@%SystemRoot%\system32\msimsg.dll,-27; C:\WINDOWS\system32\msiexec.exe [2012-07-26 62976]
S3 napagent;@%SystemRoot%\system32\qagentrt.dll,-6; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 NcaSvc;@%SystemRoot%\system32\ncasvc.dll,-3009; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 Netlogon;@%SystemRoot%\System32\netlogon.dll,-102; C:\WINDOWS\system32\lsass.exe []
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\WINDOWS\SysWow64\perfhost.exe [2012-07-26 20992]
S3 pla;@%systemroot%\system32\pla.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 PNRPAutoReg;@%SystemRoot%\system32\pnrpauto.dll,-8002; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 PolicyAgent;@%SystemRoot%\System32\polstore.dll,-5010; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 PrintNotify;@C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 QWAVE;@%SystemRoot%\system32\qwave.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 RasAuto;@%Systemroot%\system32\rasauto.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 RpcLocator;@%systemroot%\system32\Locator.exe,-2; C:\WINDOWS\system32\locator.exe []
S3 SCPolicySvc;@%SystemRoot%\System32\certprop.dll,-13; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 SDRSVC;@%SystemRoot%\system32\sdrsvc.dll,-107; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 seclogon;@%SystemRoot%\system32\seclogon.dll,-7001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 SensrSvc;@%SystemRoot%\System32\sensrsvc.dll,-1000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 SessionEnv;@%SystemRoot%\System32\SessEnv.dll,-1026; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 SNMPTRAP;@%SystemRoot%\system32\snmptrap.exe,-3; C:\WINDOWS\System32\snmptrap.exe []
S3 stisvc;@%SystemRoot%\system32\wiaservc.dll,-9; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 svsvc;@%SystemRoot%\system32\svsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 swprv;@%SystemRoot%\System32\swprv.dll,-103; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 TabletInputService;@%SystemRoot%\system32\TabSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 TermService;@%SystemRoot%\System32\termsrv.dll,-268; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 THREADORDER;@%systemroot%\system32\mmcss.dll,-102; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 UI0Detect;@%SystemRoot%\system32\ui0detect.exe,-101; C:\WINDOWS\system32\UI0Detect.exe []
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 VaultSvc;@%SystemRoot%\system32\vaultsvc.dll,-1003; C:\WINDOWS\system32\lsass.exe []
S3 vds;@%SystemRoot%\system32\vds.exe,-100; C:\WINDOWS\System32\vds.exe []
S3 vmickvpexchange;@%systemroot%\system32\vmicres.dll,-201; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicrdv;@%systemroot%\system32\vmicres.dll,-601; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicshutdown;@%systemroot%\system32\vmicres.dll,-301; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmictimesync;@%systemroot%\system32\vmicres.dll,-401; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicvss;@%systemroot%\system32\vmicres.dll,-501; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicheartbeat;@%systemroot%\system32\vmicres.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 VSS;@%systemroot%\system32\vssvc.exe,-102; C:\WINDOWS\system32\vssvc.exe []
S3 W32Time;@%SystemRoot%\system32\w32time.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\WINDOWS\system32\wbengine.exe []
S3 WbioSrvc;@%systemroot%\system32\wbiosrvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wcncsvc;@%SystemRoot%\system32\wcncsvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 WcsPlugInService;@%SystemRoot%\system32\WcsPlugInService.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 WebClient;@%systemroot%\system32\webclnt.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 Wecsvc;@%SystemRoot%\system32\wecsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wercplsupport;@%SystemRoot%\System32\wercplsupport.dll,-101; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 WerSvc;@%SystemRoot%\System32\wersvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 WiaRpc;@%SystemRoot%\system32\wiarpc.dll,-2; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 WinDefend;@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310; C:\Program Files (x86)\Windows Defender\MsMpEng.exe []
S3 WinRM;@%Systemroot%\system32\wsmsvc.dll,-101; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 wlidsvc;@%SystemRoot%\system32\wlidsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wmiApSrv;@%Systemroot%\system32\wbem\wmiapsrv.exe,-110; C:\WINDOWS\system32\wbem\WmiApSrv.exe []
S4 NetTcpPortSharing;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8201; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-12 139696]
S4 RemoteAccess;@%Systemroot%\system32\mprdim.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S4 RemoteRegistry;@regsvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S4 SCardSvr;@%SystemRoot%\System32\SCardSvr.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]

Re: Prosím o kontrolu logu

Napsal: 29 led 2014 21:14
od Rudy
Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Prosím o kontrolu logu

Napsal: 29 led 2014 21:25
od saonek
Zdravím a díky
# AdwCleaner v3.010 - Report created 29/01/2014 at 21:21:28
# Updated 20/10/2013 by Xplode
# Operating System : Windows 8 (64 bits)
# Username : Vitecek - VITEK
# Running from : C:\Users\Vitecek\Downloads\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16537

Re: Prosím o kontrolu logu

Napsal: 29 led 2014 21:34
od Rudy
Toto je OK. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\inf\mnchdrgsf.vbe
C:\WINDOWS\inf\cssi.vbe
C:\WINDOWS\system32\msstp.vbe
C:\WINDOWS\inf\mnckamxo.vbe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"mnchdrgsfSrv"=-
"MSHostSrv"=-
"MSStp"=-
"mnckamxoSrv"=-

:commands
[Purity[
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 07:15
od saonek
Logfile of random's system information tool 1.09 (written by random/random)
Run by Vitecek at 2014-01-30 07:12:42
Microsoft Windows 8
System drive C: has 361 GB (79%) free of 457 GB
Total RAM: 3909 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:12:45, on 30. 1. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\WINDOWS\SysWOW64\WScript.exe
C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vitecek\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Vitecek.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [mncbhceSrv] C:\WINDOWS\inf\mncbhce.vbe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')
O4 - Global Startup: Acer Backup Manager Tray.lnk = C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file)
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll C:\Windows\SysWOW64\nvinit.dll
O23 - Service: McAfee Application Installer Cleanup (0163121390576731) (0163121390576731mcinstcleanup) - Unknown owner - C:\WINDOWS\TEMP\016312~1.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) - Broadcom Corp. - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Activation Service (McAWFwk) - Unknown owner - c:\PROGRA~1\mcafee\msc\mcawfwk.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9119 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-01-11 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-24 1143168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-01-11 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-24 1143168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2013-03-27 111216]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-24 3767096]
"mncbhceSrv"=C:\WINDOWS\inf\mncbhce.vbe [2014-01-19 1342]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2014-01-23 3813200]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer Backup Manager Tray.lnk - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\SysWOW64\nvinit.dll C:\Windows\SysWOW64\nvinit.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicDisplay.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicRender.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BrokerInfrastructure]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DeviceInstall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dxgkrnl.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\FsDepends.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LSM]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmartcardSimulator]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VirtualSmartcardReader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wcmsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"EnableCursorSuppression"=1
"ConsentPromptBehaviorUser"=3
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.l3codecp"=l3codecp.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2014-01-30 07:09:04 ----D---- C:\_OTM
2014-01-29 20:57:49 ----D---- C:\rsit
2014-01-29 20:57:49 ----D---- C:\Program Files (x86)\trend micro
2014-01-29 07:14:44 ----D---- C:\AdwCleaner
2014-01-28 19:36:51 ----A---- C:\ComboFix.txt
2014-01-28 19:34:15 ----D---- C:\$RECYCLE.BIN
2014-01-28 18:18:07 ----D---- C:\ProgramData\Blizzard Entertainment
2014-01-28 18:18:07 ----D---- C:\Program Files (x86)\World of Warcraft
2014-01-28 18:18:07 ----D---- C:\Program Files (x86)\Common Files\Blizzard Entertainment
2014-01-28 18:17:13 ----D---- C:\ProgramData\Battle.net
2014-01-28 13:56:54 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2014-01-26 16:18:12 ----A---- C:\WINDOWS\zip.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\SWXCACLS.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\SWSC.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\SWREG.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\sed.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\PEV.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\NIRCMD.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\MBR.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\grep.exe
2014-01-26 16:09:24 ----D---- C:\Qoobox
2014-01-26 16:09:00 ----D---- C:\WINDOWS\erdnt
2014-01-25 04:07:36 ----D---- C:\WINDOWS\Minidump
2014-01-24 21:31:43 ----D---- C:\Users\Vitecek\AppData\Roaming\AVAST Software
2014-01-24 21:30:48 ----A---- C:\WINDOWS\avastSS.scr
2014-01-24 21:29:46 ----D---- C:\ProgramData\AVAST Software
2014-01-24 21:21:00 ----D---- C:\Program Files (x86)\VS Revo Group
2014-01-22 23:46:41 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-01-22 23:46:31 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-01-22 23:37:55 ----D---- C:\Users\Vitecek\AppData\Roaming\GetRightToGo
2014-01-22 20:08:01 ----D---- C:\Users\Vitecek\AppData\Roaming\Malwarebytes
2014-01-22 20:07:38 ----D---- C:\ProgramData\Malwarebytes
2014-01-22 20:07:29 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-22 12:37:34 ----D---- C:\ProgramData\LogMeIn
2014-01-20 18:14:27 ----AD---- C:\WINDOWS\bitstreams
2014-01-20 18:14:27 ----A---- C:\WINDOWS\zlib1.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\windows-build.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\ssleay32.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\SCRYPT-README.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\NEWS.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\linux-usb-cgminer.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libusb-1.0.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libssh2.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\librtmp.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libidn-11.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libeay32.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libcurl.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\ChangeLog.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\GPU-README.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\FPGA-README.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\COPYING.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\AUTHORS.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\ASIC-README.txt
2014-01-20 18:14:26 ----A---- C:\WINDOWS\API-README.txt
2014-01-20 18:14:20 ----D---- C:\Program Files (x86)\MINECRAFT
2014-01-18 20:22:34 ----D---- C:\Program Files (x86)\Company
2014-01-15 14:56:53 ----A---- C:\WINDOWS\SysWOW64\WSShared.dll
2014-01-15 14:56:52 ----A---- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-15 14:18:55 ----A---- C:\WINDOWS\SysWOW64\SHCore.dll
2014-01-15 14:18:55 ----A---- C:\WINDOWS\SysWOW64\FirewallAPI.dll
2014-01-15 14:18:54 ----A---- C:\WINDOWS\SysWOW64\WebClnt.dll
2014-01-15 14:18:54 ----A---- C:\WINDOWS\SysWOW64\davclnt.dll
2014-01-14 17:32:21 ----D---- C:\WINDOWS\SysWOW64\NV
2014-01-13 19:50:03 ----D---- C:\Games
2014-01-13 14:58:12 ----D---- C:\Users\Vitecek\AppData\Roaming\Unity
2014-01-12 15:40:15 ----A---- C:\WINDOWS\SysWOW64\glcndFilter.dll
2014-01-12 15:40:11 ----A---- C:\WINDOWS\SysWOW64\winhttp.dll
2014-01-12 15:40:09 ----A---- C:\WINDOWS\SysWOW64\ole32.dll
2014-01-12 15:40:09 ----A---- C:\WINDOWS\HelpPane.exe
2014-01-12 15:40:06 ----A---- C:\WINDOWS\SysWOW64\KernelBase.dll
2014-01-12 15:40:00 ----A---- C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-01-12 15:39:58 ----A---- C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-01-12 15:39:56 ----A---- C:\WINDOWS\SysWOW64\wlanapi.dll
2014-01-12 15:39:56 ----A---- C:\WINDOWS\SysWOW64\WcnApi.dll
2014-01-12 15:39:55 ----A---- C:\WINDOWS\SysWOW64\wlansec.dll
2014-01-12 15:39:54 ----A---- C:\WINDOWS\SysWOW64\fdWCN.dll
2014-01-12 15:39:53 ----A---- C:\WINDOWS\SysWOW64\wfdprov.dll
2014-01-12 15:39:50 ----A---- C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-01-12 15:39:14 ----A---- C:\WINDOWS\SysWOW64\dskquota.dll
2014-01-12 15:39:02 ----A---- C:\WINDOWS\SysWOW64\mfnetsrc.dll
2014-01-12 15:39:01 ----A---- C:\WINDOWS\SysWOW64\mfnetcore.dll
2014-01-12 15:39:01 ----A---- C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-01-12 15:38:37 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2014-01-12 15:38:35 ----A---- C:\WINDOWS\SysWOW64\mfplat.dll
2014-01-12 15:38:34 ----A---- C:\WINDOWS\SysWOW64\StructuredQuery.dll
2014-01-12 15:38:33 ----A---- C:\WINDOWS\SysWOW64\usercpl.dll
2014-01-12 15:38:32 ----A---- C:\WINDOWS\SysWOW64\dhcpcore6.dll
2014-01-12 15:38:31 ----A---- C:\WINDOWS\SysWOW64\Windows.Storage.Compression.dll
2014-01-12 15:38:30 ----A---- C:\WINDOWS\SysWOW64\mswsock.dll
2014-01-12 15:38:30 ----A---- C:\WINDOWS\SysWOW64\input.dll
2014-01-12 15:38:30 ----A---- C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2014-01-12 15:38:29 ----A---- C:\WINDOWS\SysWOW64\PCPKsp.dll
2014-01-12 15:38:29 ----A---- C:\WINDOWS\SysWOW64\dhcpcore.dll
2014-01-12 15:38:28 ----A---- C:\WINDOWS\SysWOW64\AppxSip.dll
2014-01-12 15:38:24 ----A---- C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2014-01-12 15:38:23 ----A---- C:\WINDOWS\SysWOW64\wfapigp.dll
2014-01-12 15:38:22 ----A---- C:\WINDOWS\SysWOW64\kbdhebl3.dll
2014-01-12 15:38:02 ----A---- C:\WINDOWS\SysWOW64\shell32.dll
2014-01-12 15:38:00 ----A---- C:\WINDOWS\SysWOW64\msctf.dll
2014-01-12 15:37:56 ----A---- C:\WINDOWS\SysWOW64\shdocvw.dll
2014-01-12 15:37:56 ----A---- C:\WINDOWS\SysWOW64\SettingSync.dll
2014-01-12 15:37:56 ----A---- C:\WINDOWS\SysWOW64\mbsmsapi.dll
2014-01-12 15:37:42 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-01-12 15:37:38 ----A---- C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2014-01-12 15:37:37 ----A---- C:\WINDOWS\SysWOW64\WSDApi.dll
2014-01-12 15:37:37 ----A---- C:\WINDOWS\SysWOW64\ubpm.dll
2014-01-12 15:37:37 ----A---- C:\WINDOWS\SysWOW64\kerberos.dll
2014-01-12 15:37:16 ----A---- C:\WINDOWS\SysWOW64\Taskmgr.exe
2014-01-12 15:37:13 ----A---- C:\WINDOWS\SysWOW64\WebcamUi.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\wpnapps.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\storagewmi.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\mstsc.exe
2014-01-12 15:37:10 ----A---- C:\WINDOWS\SysWOW64\vds_ps.dll
2014-01-12 15:36:56 ----A---- C:\WINDOWS\SysWOW64\dwmcore.dll
2014-01-12 15:36:55 ----A---- C:\WINDOWS\SysWOW64\explorer.exe
2014-01-12 15:36:55 ----A---- C:\WINDOWS\explorer.exe
2014-01-12 15:36:53 ----A---- C:\WINDOWS\SysWOW64\mfcore.dll
2014-01-12 15:36:51 ----A---- C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-01-12 15:36:51 ----A---- C:\WINDOWS\SysWOW64\mscms.dll
2014-01-12 15:36:51 ----A---- C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2014-01-12 15:36:50 ----A---- C:\WINDOWS\SysWOW64\samlib.dll
2014-01-12 15:36:41 ----A---- C:\WINDOWS\SysWOW64\msftedit.dll
2014-01-12 15:36:39 ----A---- C:\WINDOWS\SysWOW64\winmmbase.dll
2014-01-12 15:36:39 ----A---- C:\WINDOWS\SysWOW64\winmm.dll
2014-01-12 15:36:39 ----A---- C:\WINDOWS\SysWOW64\WerFault.exe
2014-01-12 15:36:38 ----A---- C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2014-01-12 15:36:37 ----A---- C:\WINDOWS\SysWOW64\WinSCard.dll
2014-01-12 15:36:37 ----A---- C:\WINDOWS\SysWOW64\openfiles.exe
2014-01-12 15:36:37 ----A---- C:\WINDOWS\SysWOW64\LocationApi.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\wuapi.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\resutils.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\oleaut32.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\clusapi.dll
2014-01-12 15:36:28 ----A---- C:\WINDOWS\SysWOW64\wuwebv.dll
2014-01-12 15:36:28 ----A---- C:\WINDOWS\SysWOW64\wudriver.dll
2014-01-12 15:36:28 ----A---- C:\WINDOWS\SysWOW64\wuapp.exe
2014-01-12 15:35:27 ----A---- C:\WINDOWS\SysWOW64\Display.dll
2014-01-12 15:35:26 ----A---- C:\WINDOWS\SysWOW64\KBDKURD.DLL
2014-01-12 15:35:06 ----A---- C:\WINDOWS\SysWOW64\wvc.dll
2014-01-12 15:35:06 ----A---- C:\WINDOWS\SysWOW64\wdc.dll
2014-01-12 15:16:06 ----D---- C:\Program Files (x86)\Google
2014-01-12 15:00:52 ----A---- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-01-12 14:55:36 ----RD---- C:\WINDOWS\BrowserChoice
2014-01-12 13:50:26 ----A---- C:\WINDOWS\SysWOW64\synceng.dll
2014-01-12 13:50:13 ----A---- C:\WINDOWS\SysWOW64\mshtml.dll
2014-01-12 13:49:57 ----A---- C:\WINDOWS\SysWOW64\ieframe.dll
2014-01-12 13:49:55 ----A---- C:\WINDOWS\SysWOW64\jscript9.dll
2014-01-12 13:49:55 ----A---- C:\WINDOWS\SysWOW64\iertutil.dll
2014-01-12 13:49:53 ----A---- C:\WINDOWS\SysWOW64\wininet.dll
2014-01-12 13:49:52 ----A---- C:\WINDOWS\SysWOW64\uxtheme.dll
2014-01-12 13:49:52 ----A---- C:\WINDOWS\SysWOW64\urlmon.dll
2014-01-12 13:49:52 ----A---- C:\WINDOWS\SysWOW64\jscript.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\UXInit.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\msfeeds.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\jsproxy.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\iesysprep.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\iesetup.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\iernonce.dll
2014-01-12 13:49:39 ----A---- C:\WINDOWS\SysWOW64\mmc.exe
2014-01-12 13:49:37 ----A---- C:\WINDOWS\SysWOW64\setupapi.dll
2014-01-12 13:49:34 ----A---- C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-01-12 13:49:34 ----A---- C:\WINDOWS\SysWOW64\wiaacmgr.exe
2014-01-12 13:49:34 ----A---- C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2014-01-12 13:48:45 ----A---- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2014-01-12 13:48:45 ----A---- C:\WINDOWS\SysWOW64\sppc.dll
2014-01-12 13:48:44 ----A---- C:\WINDOWS\SysWOW64\wups.dll
2014-01-12 13:48:44 ----A---- C:\WINDOWS\SysWOW64\WSSync.dll
2014-01-12 13:48:44 ----A---- C:\WINDOWS\SysWOW64\WSClient.dll
2014-01-12 13:48:43 ----A---- C:\WINDOWS\SysWOW64\OEMLicense.dll
2014-01-12 13:48:42 ----A---- C:\WINDOWS\SysWOW64\setupcln.dll
2014-01-12 13:47:00 ----A---- C:\WINDOWS\SysWOW64\nshwfp.dll
2014-01-12 13:47:00 ----A---- C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2014-01-12 13:45:40 ----A---- C:\WINDOWS\SysWOW64\ncryptsslp.dll
2014-01-12 13:45:33 ----A---- C:\WINDOWS\SysWOW64\comctl32.dll
2014-01-12 13:45:32 ----A---- C:\WINDOWS\SysWOW64\imagehlp.dll
2014-01-12 13:44:25 ----A---- C:\WINDOWS\SysWOW64\gdi32.dll
2014-01-12 13:39:40 ----A---- C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll
2014-01-12 13:26:35 ----A---- C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2014-01-12 13:26:33 ----A---- C:\WINDOWS\SysWOW64\mstscax.dll
2014-01-12 13:26:32 ----A---- C:\WINDOWS\SysWOW64\netcfgx.dll
2014-01-12 13:26:31 ----A---- C:\WINDOWS\SysWOW64\winmde.dll
2014-01-12 13:26:31 ----A---- C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2014-01-12 13:26:30 ----A---- C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2014-01-12 13:26:30 ----A---- C:\WINDOWS\SysWOW64\drvstore.dll
2014-01-12 13:26:23 ----A---- C:\WINDOWS\SysWOW64\SettingSyncInfo.dll
2014-01-12 13:26:23 ----A---- C:\WINDOWS\SysWOW64\DevDispItemProvider.dll
2014-01-12 13:26:06 ----A---- C:\WINDOWS\SysWOW64\crypt32.dll
2014-01-12 13:25:53 ----A---- C:\WINDOWS\SysWOW64\rpcrt4.dll
2014-01-12 13:23:42 ----A---- C:\WINDOWS\SysWOW64\cryptnet.dll
2014-01-12 13:23:42 ----A---- C:\WINDOWS\SysWOW64\certutil.exe
2014-01-12 13:21:14 ----A---- C:\WINDOWS\SysWOW64\schannel.dll
2014-01-12 13:18:48 ----A---- C:\WINDOWS\SysWOW64\ReAgentc.exe
2014-01-12 13:18:48 ----A---- C:\WINDOWS\SysWOW64\qedit.dll
2014-01-12 13:18:47 ----A---- C:\WINDOWS\SysWOW64\ReAgent.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\fontsub.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\dciman32.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\atmlib.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\atmfd.dll
2014-01-12 13:17:49 ----A---- C:\WINDOWS\SysWOW64\lpk.dll
2014-01-12 13:17:44 ----A---- C:\WINDOWS\SysWOW64\duser.dll
2014-01-12 13:17:43 ----A---- C:\WINDOWS\SysWOW64\WWanAPI.dll
2014-01-12 13:17:43 ----A---- C:\WINDOWS\SysWOW64\wlroamextension.dll
2014-01-12 13:17:43 ----A---- C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2014-01-12 13:17:42 ----A---- C:\WINDOWS\SysWOW64\tasklist.exe
2014-01-12 13:17:42 ----A---- C:\WINDOWS\SysWOW64\taskkill.exe
2014-01-12 13:17:41 ----A---- C:\WINDOWS\SysWOW64\nlaapi.dll
2014-01-12 13:17:31 ----A---- C:\WINDOWS\SysWOW64\GdiPlus.dll
2014-01-12 13:17:26 ----A---- C:\WINDOWS\SysWOW64\DWrite.dll
2014-01-12 13:15:21 ----A---- C:\WINDOWS\SysWOW64\BCP47Langs.dll
2014-01-12 13:15:18 ----A---- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-01-12 13:15:17 ----A---- C:\WINDOWS\SysWOW64\stobject.dll
2014-01-12 13:15:17 ----A---- C:\WINDOWS\SysWOW64\netplwiz.dll
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\netprofm.dll
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\Magnify.exe
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\DevicePairing.dll
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\biwinrt.dll
2014-01-12 13:15:14 ----A---- C:\WINDOWS\SysWOW64\npmproxy.dll
2014-01-12 13:15:14 ----A---- C:\WINDOWS\SysWOW64\muifontsetup.dll
2014-01-12 13:15:13 ----A---- C:\WINDOWS\SysWOW64\nlmsprep.dll
2014-01-12 13:15:13 ----A---- C:\WINDOWS\SysWOW64\nlmproxy.dll
2014-01-12 13:14:11 ----A---- C:\WINDOWS\SysWOW64\untfs.dll
2014-01-12 13:14:11 ----A---- C:\WINDOWS\SysWOW64\kernel32.dll
2014-01-12 13:14:11 ----A---- C:\WINDOWS\SysWOW64\autochk.exe
2014-01-12 13:14:09 ----A---- C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\scrrun.dll
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\scrobj.dll
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\cscript.exe
2014-01-12 13:12:11 ----A---- C:\WINDOWS\SysWOW64\wintrust.dll
2014-01-12 13:12:11 ----A---- C:\WINDOWS\SysWOW64\apprepsync.dll
2014-01-12 13:12:11 ----A---- C:\WINDOWS\SysWOW64\apprepapi.dll
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnsvr.exe
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnhupnp.dll
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnet.dll
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnathlp.dll
2014-01-12 13:12:06 ----A---- C:\WINDOWS\SysWOW64\dpnlobby.dll
2014-01-12 13:12:06 ----A---- C:\WINDOWS\SysWOW64\dpnhpast.dll
2014-01-12 13:12:06 ----A---- C:\WINDOWS\SysWOW64\dpnaddr.dll
2014-01-12 13:11:32 ----A---- C:\WINDOWS\SysWOW64\d3d11.dll
2014-01-12 13:11:28 ----A---- C:\WINDOWS\SysWOW64\WMPhoto.dll
2014-01-12 13:11:27 ----A---- C:\WINDOWS\SysWOW64\esent.dll
2014-01-12 13:11:25 ----A---- C:\WINDOWS\SysWOW64\cryptdlg.dll
2014-01-12 13:11:02 ----A---- C:\WINDOWS\SysWOW64\wmp.dll
2014-01-12 13:11:00 ----A---- C:\WINDOWS\SysWOW64\tquery.dll
2014-01-12 13:10:59 ----A---- C:\WINDOWS\SysWOW64\mssrch.dll
2014-01-12 13:10:56 ----A---- C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2014-01-12 13:10:55 ----A---- C:\WINDOWS\SysWOW64\mssph.dll
2014-01-12 13:10:54 ----A---- C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2014-01-12 13:10:54 ----A---- C:\WINDOWS\SysWOW64\ntdll.dll
2014-01-12 13:10:53 ----A---- C:\WINDOWS\SysWOW64\rsaenh.dll
2014-01-12 13:10:53 ----A---- C:\WINDOWS\SysWOW64\AudioSes.dll
2014-01-12 13:10:53 ----A---- C:\WINDOWS\SysWOW64\AudioEng.dll
2014-01-12 13:10:52 ----A---- C:\WINDOWS\SysWOW64\SearchIndexer.exe
2014-01-12 13:10:51 ----A---- C:\WINDOWS\SysWOW64\Windows.Networking.dll
2014-01-12 13:10:49 ----A---- C:\WINDOWS\SysWOW64\mssvp.dll
2014-01-12 13:10:49 ----A---- C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\XpsRasterService.dll
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\wscapi.dll
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\Robocopy.exe
2014-01-12 13:10:47 ----A---- C:\WINDOWS\SysWOW64\dmvdsitf.dll
2014-01-12 13:10:47 ----A---- C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-01-12 13:10:46 ----A---- C:\WINDOWS\SysWOW64\mfreadwrite.dll
2014-01-12 13:10:45 ----A---- C:\WINDOWS\SysWOW64\mssphtb.dll
2014-01-12 13:10:45 ----A---- C:\WINDOWS\SysWOW64\fmifs.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\mssprxy.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\mssitlb.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\msshooks.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\msscntrs.dll
2014-01-12 13:09:49 ----A---- C:\WINDOWS\SysWOW64\poqexec.exe
2014-01-12 13:07:43 ----A---- C:\WINDOWS\SysWOW64\msxml6.dll
2014-01-12 13:07:42 ----A---- C:\WINDOWS\SysWOW64\msxml6r.dll
2014-01-12 13:07:42 ----A---- C:\WINDOWS\SysWOW64\msxml3r.dll
2014-01-12 13:07:42 ----A---- C:\WINDOWS\SysWOW64\msxml3.dll
2014-01-12 13:07:25 ----A---- C:\WINDOWS\SysWOW64\twinui.dll
2014-01-12 13:07:24 ----A---- C:\WINDOWS\SysWOW64\authui.dll
2014-01-12 13:07:24 ----A---- C:\WINDOWS\SysWOW64\actxprxy.dll
2014-01-12 13:06:58 ----A---- C:\WINDOWS\SysWOW64\msieftp.dll
2014-01-12 13:06:55 ----A---- C:\WINDOWS\SysWOW64\tzres.dll
2014-01-12 12:48:22 ----A---- C:\WINDOWS\War3Unin.pif
2014-01-12 12:48:22 ----A---- C:\WINDOWS\War3Unin.exe
2014-01-12 12:48:22 ----A---- C:\WINDOWS\War3Unin.dat
2014-01-12 12:47:38 ----D---- C:\Program Files (x86)\Warcraft III
2014-01-12 07:40:33 ----D---- C:\Users\Vitecek\AppData\Roaming\Wargaming.net
2014-01-12 03:05:16 ----ASH---- C:\swapfile.sys
2014-01-12 03:05:16 ----ASH---- C:\pagefile.sys
2014-01-12 03:05:15 ----SHD---- C:\System Volume Information
2014-01-12 03:05:12 ----ASH---- C:\hiberfil.sys
2014-01-11 20:16:25 ----A---- C:\WINDOWS\SysWOW64\XAudio2_7.dll
2014-01-11 20:16:25 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2014-01-11 20:16:24 ----A---- C:\WINDOWS\SysWOW64\xactengine3_7.dll
2014-01-11 20:16:24 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2014-01-11 20:16:23 ----A---- C:\WINDOWS\SysWOW64\d3dx11_43.dll
2014-01-11 20:16:23 ----A---- C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2014-01-11 20:16:22 ----A---- C:\WINDOWS\SysWOW64\D3DX9_43.dll
2014-01-11 20:16:22 ----A---- C:\WINDOWS\SysWOW64\d3dx10_43.dll
2014-01-11 20:16:21 ----A---- C:\WINDOWS\SysWOW64\XAudio2_6.dll
2014-01-11 20:16:21 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2014-01-11 20:16:20 ----A---- C:\WINDOWS\SysWOW64\xactengine3_6.dll
2014-01-11 20:16:20 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2014-01-11 20:16:19 ----A---- C:\WINDOWS\SysWOW64\XAudio2_5.dll
2014-01-11 20:16:19 ----A---- C:\WINDOWS\SysWOW64\xactengine3_5.dll
2014-01-11 20:16:18 ----A---- C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2014-01-11 20:16:18 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2014-01-11 20:16:17 ----A---- C:\WINDOWS\SysWOW64\d3dx11_42.dll
2014-01-11 20:16:17 ----A---- C:\WINDOWS\SysWOW64\d3dx10_42.dll
2014-01-11 20:16:16 ----A---- C:\WINDOWS\SysWOW64\D3DX9_42.dll
2014-01-11 20:16:15 ----A---- C:\WINDOWS\SysWOW64\d3dx10_41.dll
2014-01-11 20:16:15 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2014-01-11 20:16:14 ----A---- C:\WINDOWS\SysWOW64\XAudio2_4.dll
2014-01-11 20:16:14 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2014-01-11 20:16:14 ----A---- C:\WINDOWS\SysWOW64\D3DX9_41.dll
2014-01-11 20:16:13 ----A---- C:\WINDOWS\SysWOW64\xactengine3_4.dll
2014-01-11 20:16:13 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2014-01-11 20:16:12 ----A---- C:\WINDOWS\SysWOW64\d3dx10_40.dll
2014-01-11 20:16:12 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2014-01-11 20:16:11 ----A---- C:\WINDOWS\SysWOW64\XAudio2_3.dll
2014-01-11 20:16:11 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2014-01-11 20:16:11 ----A---- C:\WINDOWS\SysWOW64\D3DX9_40.dll
2014-01-11 20:16:10 ----A---- C:\WINDOWS\SysWOW64\xactengine3_3.dll
2014-01-11 20:16:10 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2014-01-11 20:16:09 ----A---- C:\WINDOWS\SysWOW64\XAudio2_2.dll
2014-01-11 20:16:09 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2014-01-11 20:16:08 ----A---- C:\WINDOWS\SysWOW64\xactengine3_2.dll
2014-01-11 20:16:07 ----A---- C:\WINDOWS\SysWOW64\D3DX9_39.dll
2014-01-11 20:16:07 ----A---- C:\WINDOWS\SysWOW64\d3dx10_39.dll
2014-01-11 20:16:07 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2014-01-11 20:16:06 ----A---- C:\WINDOWS\SysWOW64\XAudio2_1.dll
2014-01-11 20:16:06 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2014-01-11 20:16:05 ----A---- C:\WINDOWS\SysWOW64\xactengine3_1.dll
2014-01-11 20:16:05 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2014-01-11 20:16:04 ----A---- C:\WINDOWS\SysWOW64\d3dx10_38.dll
2014-01-11 20:16:04 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2014-01-11 20:16:03 ----A---- C:\WINDOWS\SysWOW64\XAudio2_0.dll
2014-01-11 20:16:03 ----A---- C:\WINDOWS\SysWOW64\D3DX9_38.dll
2014-01-11 20:16:02 ----A---- C:\WINDOWS\SysWOW64\xactengine3_0.dll
2014-01-11 20:16:02 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2014-01-11 20:16:01 ----A---- C:\WINDOWS\SysWOW64\d3dx10_37.dll
2014-01-11 20:16:01 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2014-01-11 20:16:00 ----A---- C:\WINDOWS\SysWOW64\xactengine2_10.dll
2014-01-11 20:16:00 ----A---- C:\WINDOWS\SysWOW64\D3DX9_37.dll
2014-01-11 20:15:59 ----A---- C:\WINDOWS\SysWOW64\d3dx9_36.dll
2014-01-11 20:15:59 ----A---- C:\WINDOWS\SysWOW64\d3dx10_36.dll
2014-01-11 20:15:59 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2014-01-11 20:15:58 ----A---- C:\WINDOWS\SysWOW64\xactengine2_9.dll
2014-01-11 20:15:58 ----A---- C:\WINDOWS\SysWOW64\d3dx10_35.dll
2014-01-11 20:15:58 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2014-01-11 20:15:57 ----A---- C:\WINDOWS\SysWOW64\xactengine2_8.dll
2014-01-11 20:15:57 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2014-01-11 20:15:57 ----A---- C:\WINDOWS\SysWOW64\d3dx9_35.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\xinput1_3.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\d3dx9_34.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\d3dx10_34.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2014-01-11 20:15:55 ----A---- C:\WINDOWS\SysWOW64\xactengine2_7.dll
2014-01-11 20:15:55 ----A---- C:\WINDOWS\SysWOW64\d3dx10_33.dll
2014-01-11 20:15:55 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2014-01-11 20:15:54 ----A---- C:\WINDOWS\SysWOW64\xactengine2_6.dll
2014-01-11 20:15:54 ----A---- C:\WINDOWS\SysWOW64\d3dx9_33.dll
2014-01-11 20:15:53 ----A---- C:\WINDOWS\SysWOW64\xactengine2_5.dll
2014-01-11 20:15:53 ----A---- C:\WINDOWS\SysWOW64\d3dx9_32.dll
2014-01-11 20:15:53 ----A---- C:\WINDOWS\SysWOW64\d3dx10.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\xinput1_2.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\xactengine2_4.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\xactengine2_3.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\d3dx9_31.dll
2014-01-11 20:15:51 ----A---- C:\WINDOWS\SysWOW64\xinput1_1.dll
2014-01-11 20:15:51 ----A---- C:\WINDOWS\SysWOW64\xactengine2_2.dll
2014-01-11 20:15:51 ----A---- C:\WINDOWS\SysWOW64\xactengine2_1.dll
2014-01-11 20:15:49 ----A---- C:\WINDOWS\SysWOW64\d3dx9_30.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\xactengine2_0.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\d3dx9_29.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\d3dx9_28.dll
2014-01-11 20:15:47 ----A---- C:\WINDOWS\SysWOW64\d3dx9_27.dll
2014-01-11 20:15:47 ----A---- C:\WINDOWS\SysWOW64\d3dx9_26.dll
2014-01-11 20:15:46 ----A---- C:\WINDOWS\SysWOW64\d3dx9_25.dll
2014-01-11 20:15:46 ----A---- C:\WINDOWS\SysWOW64\d3dx9_24.dll
2014-01-11 20:11:18 ----D---- C:\WINDOWS\SysWOW64\directx
2014-01-11 19:56:19 ----D---- C:\Users\Vitecek\AppData\Roaming\NVIDIA
2014-01-11 19:55:30 ----D---- C:\Users\Vitecek\AppData\Roaming\.minecraft
2014-01-11 19:55:18 ----D---- C:\ProgramData\Sun
2014-01-11 19:55:17 ----D---- C:\Program Files (x86)\Common Files\Java
2014-01-11 19:55:13 ----A---- C:\WINDOWS\SysWOW64\javaws.exe
2014-01-11 19:55:10 ----A---- C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-01-11 19:55:10 ----A---- C:\WINDOWS\SysWOW64\javaw.exe
2014-01-11 19:55:10 ----A---- C:\WINDOWS\SysWOW64\java.exe
2014-01-11 19:55:04 ----D---- C:\Program Files (x86)\Java
2014-01-11 19:52:09 ----D---- C:\ProgramData\Oracle
2014-01-11 19:46:07 ----D---- C:\Users\Vitecek\AppData\Roaming\WinRAR
2014-01-11 19:27:14 ----D---- C:\Users\Vitecek\AppData\Roaming\WildTangent
2014-01-11 19:26:00 ----D---- C:\Users\Vitecek\AppData\Roaming\lm
2014-01-11 19:25:55 ----D---- C:\Users\Vitecek\AppData\Roaming\Synaptics
2014-01-11 19:25:32 ----D---- C:\Users\Vitecek\AppData\Roaming\Macromedia
2014-01-11 19:25:31 ----D---- C:\Users\Vitecek\AppData\Roaming\Adobe
2014-01-11 19:24:15 ----SD---- C:\Users\Vitecek\AppData\Roaming\Microsoft
2014-01-11 19:22:37 ----D---- C:\WINDOWS\SoftwareDistribution
2014-01-11 19:04:54 ----A---- C:\Recovery.txt

======List of files/folders modified in the last 1 month======

2014-01-30 07:11:08 ----D---- C:\WINDOWS\Temp
2014-01-30 07:09:44 ----A---- C:\WINDOWS\SysWOW64\log.txt
2014-01-30 07:09:26 ----D---- C:\Windows
2014-01-30 07:09:07 ----D---- C:\WINDOWS\Prefetch
2014-01-30 07:09:04 ----D---- C:\WINDOWS\Tasks
2014-01-30 07:09:04 ----D---- C:\WINDOWS\Inf
2014-01-29 20:57:49 ----D---- C:\Program Files (x86)
2014-01-29 16:33:01 ----D---- C:\WINDOWS\Microsoft.NET
2014-01-29 07:16:45 ----D---- C:\ProgramData
2014-01-28 19:34:15 ----A---- C:\WINDOWS\system.ini
2014-01-28 19:33:45 ----D---- C:\WINDOWS\SysWOW64
2014-01-28 19:31:58 ----D---- C:\WINDOWS\SysWOW64\drivers
2014-01-28 19:31:58 ----D---- C:\WINDOWS\apppatch
2014-01-28 19:31:57 ----D---- C:\Program Files (x86)\Common Files
2014-01-28 19:06:50 ----D---- C:\WINDOWS\System32
2014-01-28 13:57:15 ----SHD---- C:\WINDOWS\Installer
2014-01-25 04:04:47 ----RD---- C:\Program Files
2014-01-24 21:30:57 ----D---- C:\WINDOWS\WinSxS
2014-01-24 21:10:51 ----HD---- C:\WINDOWS\ELAMBKUP
2014-01-23 06:22:04 ----SD---- C:\ProgramData\Microsoft
2014-01-22 23:31:21 ----D---- C:\ProgramData\Norton
2014-01-22 20:01:41 ----D---- C:\ProgramData\NortonInstaller
2014-01-22 19:59:25 ----D---- C:\ProgramData\WildTangent
2014-01-18 12:33:00 ----D---- C:\WINDOWS\rescache
2014-01-15 20:22:09 ----D---- C:\WINDOWS\WinStore
2014-01-15 20:22:07 ----D---- C:\WINDOWS\SysWOW64\en-US
2014-01-15 20:22:07 ----D---- C:\WINDOWS\SysWOW64\cs-CZ
2014-01-15 20:20:28 ----D---- C:\WINDOWS\CbsTemp
2014-01-15 17:50:25 ----D---- C:\Program Files (x86)\Acer
2014-01-14 17:32:11 ----D---- C:\ProgramData\NVIDIA
2014-01-13 14:04:40 ----RSD---- C:\WINDOWS\assembly
2014-01-12 16:14:21 ----D---- C:\Program Files (x86)\Windows Mail
2014-01-12 16:14:20 ----D---- C:\Program Files (x86)\Internet Explorer
2014-01-12 16:14:19 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-01-12 16:14:19 ----D---- C:\Program Files (x86)\Windows Media Player
2014-01-12 16:14:18 ----D---- C:\Program Files (x86)\Common Files\System
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\slmgr
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\sk-SK
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\oobe
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\migwiz
2014-01-12 16:14:17 ----D---- C:\Program Files (x86)\Windows Defender
2014-01-12 16:14:13 ----D---- C:\WINDOWS\SysWOW64\WCN
2014-01-12 16:14:12 ----D---- C:\WINDOWS\SysWOW64\wbem
2014-01-12 16:14:02 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-01-12 16:14:02 ----D---- C:\WINDOWS\PolicyDefinitions
2014-01-12 16:12:17 ----RSD---- C:\WINDOWS\Fonts
2014-01-12 16:11:37 ----RD---- C:\WINDOWS\ToastData
2014-01-12 15:04:31 ----D---- C:\ProgramData\PRICache
2014-01-12 15:01:58 ----D---- C:\WINDOWS\servicing
2014-01-12 14:56:28 ----D---- C:\WINDOWS\SysWOW64\migration
2014-01-12 14:56:27 ----D---- C:\Program Files (x86)\Common Files\Microsoft Shared
2014-01-12 14:52:34 ----D---- C:\WINDOWS\SysWOW64\Dism
2014-01-12 13:53:29 ----D---- C:\WINDOWS\AUInstallAgent
2014-01-12 03:16:45 ----D---- C:\WINDOWS\debug
2014-01-11 20:11:18 ----D---- C:\WINDOWS\Logs
2014-01-11 19:34:28 ----D---- C:\ProgramData\EgisTec IPS
2014-01-11 19:27:01 ----D---- C:\OEM
2014-01-11 19:26:29 ----D---- C:\ProgramData\OEM
2014-01-11 19:24:14 ----RD---- C:\Users

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 07:16
od saonek
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AudioEndpointBuilder;@%SystemRoot%\system32\AudioEndpointBuilder.dll,-204; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Audiosrv;@%SystemRoot%\system32\audiosrv.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-24 50344]
R2 BFE;@%SystemRoot%\system32\bfe.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 BITS;@%SystemRoot%\system32\qmgr.dll,-1000; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 BrcmCardReader;Broadcom Card Reader Service; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [2012-08-21 176640]
R2 BrokerInfrastructure;@%windir%\system32\bisrv.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2012-10-26 2449552]
R2 CryptSvc;@%SystemRoot%\system32\cryptsvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 DcomLaunch;@combase.dll,-5012; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 DeviceAssociationService;@%SystemRoot%\system32\das.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Dhcp;@%SystemRoot%\system32\dhcpcore.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Dnscache;@%SystemRoot%\System32\dnsapi.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 DPS;@%systemroot%\system32\dps.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-12-10 350544]
R2 EventLog;@%SystemRoot%\system32\wevtsvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 EventSystem;@comres.dll,-2450; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 gpsvc;@gpapi.dll,-112; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2014-01-23 2221904]
R2 IKEEXT;@%SystemRoot%\system32\ikeext.dll,-501; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 iphlpsvc;@%SystemRoot%\system32\iphlpsvc.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LanmanServer;@%systemroot%\system32\srvsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 LanmanWorkstation;@%systemroot%\system32\wkssvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 lmhosts;@%SystemRoot%\system32\lmhsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-12-13 377104]
R2 LSM;@%windir%\system32\lsm.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 MMCSS;@%systemroot%\system32\mmcss.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 MpsSvc;@%SystemRoot%\system32\FirewallAPI.dll,-23090; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 NlaSvc;@%SystemRoot%\System32\nlasvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 nsi;@%SystemRoot%\system32\nsisvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2012-11-03 259136]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe []
R2 PcaSvc;@%SystemRoot%\system32\pcasvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Power;@%SystemRoot%\system32\umpo.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 ProfSvc;@%systemroot%\system32\profsvc.dll,-300; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2013-03-27 96880]
R2 RpcEptMapper;@%windir%\system32\RpcEpMap.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 RpcSs;@combase.dll,-5010; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 SamSs;@%SystemRoot%\system32\samsrv.dll,-1; C:\WINDOWS\system32\lsass.exe []
R2 SENS;@%SystemRoot%\system32\Sens.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 ShellHWDetection;@%SystemRoot%\System32\shsvcs.dll,-12288; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Schedule;@%SystemRoot%\system32\schedsvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Spooler;@%systemroot%\system32\spoolsv.exe,-1; C:\WINDOWS\System32\spoolsv.exe []
R2 SysMain;@%SystemRoot%\system32\sysmain.dll,-1000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Themes;@%SystemRoot%\System32\themeservice.dll,-8192; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 TrkWks;@%SystemRoot%\system32\trkwks.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Wcmsvc;@%SystemRoot%\System32\wcmsvc.dll,-4097; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Winmgmt;@%Systemroot%\system32\wbem\wmisvc.dll,-205; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 WlanSvc;@%SystemRoot%\System32\wlansvc.dll,-257; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 Appinfo;@%systemroot%\system32\appinfo.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 Browser;@%systemroot%\system32\browser.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2012-10-23 658064]
R3 fdPHost;@%systemroot%\system32\fdPHost.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 FDResPub;@%systemroot%\system32\fdrespub.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 hidserv;@%SystemRoot%\System32\hidserv.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 HomeGroupListener;@%SystemRoot%\System32\ListSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 HomeGroupProvider;@%SystemRoot%\System32\provsvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 KeyIso;@keyiso.dll,-100; C:\WINDOWS\system32\lsass.exe []
R3 NcdAutoSetup;@%SystemRoot%\system32\NcdAutoSetup.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 Netman;@%SystemRoot%\system32\netman.dll,-109; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 netprofm;@%SystemRoot%\system32\netprofmsvc.dll,-202; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 p2pimsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8004; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 p2psvc;@%SystemRoot%\system32\p2psvc.dll,-8006; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 PlugPlay;@%SystemRoot%\system32\umpnpmgr.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 PNRPsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8000; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 RasMan;@%Systemroot%\system32\rasmans.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 SSDPSRV;@%systemroot%\system32\ssdpsrv.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 SstpSvc;@%SystemRoot%\system32\sstpsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 SystemEventsBroker;@%windir%\system32\SystemEventsBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 TapiSrv;@%SystemRoot%\system32\tapisrv.dll,-10100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 TimeBroker;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 TrustedInstaller;@%SystemRoot%\servicing\TrustedInstaller.exe,-100; C:\WINDOWS\servicing\TrustedInstaller.exe [2013-05-15 98304]
R3 WdiServiceHost;@%systemroot%\system32\wdi.dll,-502; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 WdiSystemHost;@%systemroot%\system32\wdi.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 WinHttpAutoProxySvc;@%SystemRoot%\system32\winhttp.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S2 0163121390576731mcinstcleanup;McAfee Application Installer Cleanup (0163121390576731); C:\WINDOWS\TEMP\016312~1.EXE -cleanup -nolog []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12 116648]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-09-05 1364256]
S2 SharedAccess;@%SystemRoot%\system32\ipnathlp.dll,-106; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S2 sppsvc;@%SystemRoot%\system32\sppsvc.exe,-101; C:\WINDOWS\system32\sppsvc.exe []
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
S2 WMPNetworkSvc;@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101; C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe []
S3 AeLookupSvc;@%SystemRoot%\system32\aelupsvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 ALG;@%SystemRoot%\system32\Alg.exe,-112; C:\WINDOWS\System32\alg.exe []
S3 AllUserInstallAgent;@%SystemRoot%\System32\AUInstallAgent.dll,-101; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 AppIDSvc;@%systemroot%\system32\appidsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 BDESVC;@%SystemRoot%\system32\bdesvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 bthserv;@%SystemRoot%\System32\bthserv.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 CertPropSvc;@%SystemRoot%\System32\certprop.dll,-11; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 COMSysApp;@comres.dll,-947; C:\WINDOWS\system32\dllhost.exe [2012-07-26 8704]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2012-10-23 277024]
S3 defragsvc;@%SystemRoot%\system32\defragsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2012-11-16 469648]
S3 DeviceInstall;@%SystemRoot%\system32\umpnpmgr.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 dot3svc;@%systemroot%\system32\dot3svc.dll,-1102; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 DsmSvc;@%SystemRoot%\system32\DeviceSetupManager.dll,-1000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 Eaphost;@%systemroot%\system32\eapsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 EFS;@%SystemRoot%\system32\efssvc.dll,-100; C:\WINDOWS\System32\lsass.exe []
S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2012-07-12 174160]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\WINDOWS\system32\fxssvc.exe []
S3 fhsvc;@%systemroot%\system32\fhsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-03-27 655624]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-07-26 43616]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12 116648]
S3 hkmsvc;@%SystemRoot%\system32\kmsvc.dll,-6; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 KtmRm;@comres.dll,-2946; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 lltdsvc;@%SystemRoot%\system32\lltdres.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe []
S3 MSDTC;@comres.dll,-2797; C:\WINDOWS\System32\msdtc.exe []
S3 MSiSCSI;@%SystemRoot%\system32\iscsidsc.dll,-5000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 msiserver;@%SystemRoot%\system32\msimsg.dll,-27; C:\WINDOWS\system32\msiexec.exe [2012-07-26 62976]
S3 napagent;@%SystemRoot%\system32\qagentrt.dll,-6; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 NcaSvc;@%SystemRoot%\system32\ncasvc.dll,-3009; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 Netlogon;@%SystemRoot%\System32\netlogon.dll,-102; C:\WINDOWS\system32\lsass.exe []
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\WINDOWS\SysWow64\perfhost.exe [2012-07-26 20992]
S3 pla;@%systemroot%\system32\pla.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 PNRPAutoReg;@%SystemRoot%\system32\pnrpauto.dll,-8002; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 PolicyAgent;@%SystemRoot%\System32\polstore.dll,-5010; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 PrintNotify;@C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 QWAVE;@%SystemRoot%\system32\qwave.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 RasAuto;@%Systemroot%\system32\rasauto.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 RpcLocator;@%systemroot%\system32\Locator.exe,-2; C:\WINDOWS\system32\locator.exe []
S3 SCPolicySvc;@%SystemRoot%\System32\certprop.dll,-13; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 SDRSVC;@%SystemRoot%\system32\sdrsvc.dll,-107; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 seclogon;@%SystemRoot%\system32\seclogon.dll,-7001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 SensrSvc;@%SystemRoot%\System32\sensrsvc.dll,-1000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 SessionEnv;@%SystemRoot%\System32\SessEnv.dll,-1026; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 SNMPTRAP;@%SystemRoot%\system32\snmptrap.exe,-3; C:\WINDOWS\System32\snmptrap.exe []
S3 stisvc;@%SystemRoot%\system32\wiaservc.dll,-9; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 svsvc;@%SystemRoot%\system32\svsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 swprv;@%SystemRoot%\System32\swprv.dll,-103; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 TabletInputService;@%SystemRoot%\system32\TabSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 TermService;@%SystemRoot%\System32\termsrv.dll,-268; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 THREADORDER;@%systemroot%\system32\mmcss.dll,-102; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 UI0Detect;@%SystemRoot%\system32\ui0detect.exe,-101; C:\WINDOWS\system32\UI0Detect.exe []
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 upnphost;@%systemroot%\system32\upnphost.dll,-213; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 VaultSvc;@%SystemRoot%\system32\vaultsvc.dll,-1003; C:\WINDOWS\system32\lsass.exe []
S3 vds;@%SystemRoot%\system32\vds.exe,-100; C:\WINDOWS\System32\vds.exe []
S3 vmickvpexchange;@%systemroot%\system32\vmicres.dll,-201; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicrdv;@%systemroot%\system32\vmicres.dll,-601; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicshutdown;@%systemroot%\system32\vmicres.dll,-301; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmictimesync;@%systemroot%\system32\vmicres.dll,-401; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicvss;@%systemroot%\system32\vmicres.dll,-501; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicheartbeat;@%systemroot%\system32\vmicres.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 VSS;@%systemroot%\system32\vssvc.exe,-102; C:\WINDOWS\system32\vssvc.exe []
S3 W32Time;@%SystemRoot%\system32\w32time.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\WINDOWS\system32\wbengine.exe []
S3 WbioSrvc;@%systemroot%\system32\wbiosrvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wcncsvc;@%SystemRoot%\system32\wcncsvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 WcsPlugInService;@%SystemRoot%\system32\WcsPlugInService.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 WebClient;@%systemroot%\system32\webclnt.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 Wecsvc;@%SystemRoot%\system32\wecsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wercplsupport;@%SystemRoot%\System32\wercplsupport.dll,-101; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 WerSvc;@%SystemRoot%\System32\wersvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 WiaRpc;@%SystemRoot%\system32\wiarpc.dll,-2; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 WinDefend;@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310; C:\Program Files (x86)\Windows Defender\MsMpEng.exe []
S3 WinRM;@%Systemroot%\system32\wsmsvc.dll,-101; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 wlidsvc;@%SystemRoot%\system32\wlidsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wmiApSrv;@%Systemroot%\system32\wbem\wmiapsrv.exe,-110; C:\WINDOWS\system32\wbem\WmiApSrv.exe []
S4 NetTcpPortSharing;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8201; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-12 139696]
S4 RemoteAccess;@%Systemroot%\system32\mprdim.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S4 RemoteRegistry;@regsvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S4 SCardSvr;@%SystemRoot%\System32\SCardSvr.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 17:47
od Rudy
Ještě jednou spusťte OTM tímto skriptem:
:files
C:\WINDOWS\inf\mncbhce.vbe

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"mncbhceSrv"=-

:commands
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC a dejte nový log RSIT.

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 18:15
od saonek
Logfile of random's system information tool 1.09 (written by random/random)
Run by Vitecek at 2014-01-30 18:14:23
Microsoft Windows 8
System drive C: has 361 GB (79%) free of 457 GB
Total RAM: 3909 MB (71% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:14:28, on 30. 1. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vitecek\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Vitecek.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Vitecek\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')
O4 - Global Startup: Acer Backup Manager Tray.lnk = C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file)
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll C:\Windows\SysWOW64\nvinit.dll
O23 - Service: McAfee Application Installer Cleanup (0163121390576731) (0163121390576731mcinstcleanup) - Unknown owner - C:\WINDOWS\TEMP\016312~1.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) - Broadcom Corp. - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Activation Service (McAWFwk) - Unknown owner - c:\PROGRA~1\mcafee\msc\mcawfwk.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9090 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2803842525-2395282326-2134614540-1002Core.job
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2803842525-2395282326-2134614540-1002UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-01-11 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-24 1143168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-01-11 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-24 1143168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2013-03-27 111216]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-24 3767096]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2014-01-23 3813200]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=C:\Users\Vitecek\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-30 138096]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer Backup Manager Tray.lnk - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\SysWOW64\nvinit.dll C:\Windows\SysWOW64\nvinit.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicDisplay.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicRender.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BrokerInfrastructure]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DeviceInstall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dxgkrnl.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\FsDepends.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LSM]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmartcardSimulator]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VirtualSmartcardReader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wcmsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"EnableCursorSuppression"=1
"ConsentPromptBehaviorUser"=3
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.l3codecp"=l3codecp.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2014-01-30 07:09:04 ----D---- C:\_OTM
2014-01-29 20:57:49 ----D---- C:\rsit
2014-01-29 20:57:49 ----D---- C:\Program Files (x86)\trend micro
2014-01-29 07:14:44 ----D---- C:\AdwCleaner
2014-01-28 19:36:51 ----A---- C:\ComboFix.txt
2014-01-28 19:34:15 ----D---- C:\$RECYCLE.BIN
2014-01-28 18:18:07 ----D---- C:\ProgramData\Blizzard Entertainment
2014-01-28 18:18:07 ----D---- C:\Program Files (x86)\World of Warcraft
2014-01-28 18:18:07 ----D---- C:\Program Files (x86)\Common Files\Blizzard Entertainment
2014-01-28 18:17:13 ----D---- C:\ProgramData\Battle.net
2014-01-28 13:56:54 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2014-01-26 16:18:12 ----A---- C:\WINDOWS\zip.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\SWXCACLS.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\SWSC.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\SWREG.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\sed.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\PEV.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\NIRCMD.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\MBR.exe
2014-01-26 16:18:12 ----A---- C:\WINDOWS\grep.exe
2014-01-26 16:09:24 ----D---- C:\Qoobox
2014-01-26 16:09:00 ----D---- C:\WINDOWS\erdnt
2014-01-25 04:07:36 ----D---- C:\WINDOWS\Minidump
2014-01-24 21:31:43 ----D---- C:\Users\Vitecek\AppData\Roaming\AVAST Software
2014-01-24 21:30:48 ----A---- C:\WINDOWS\avastSS.scr
2014-01-24 21:29:46 ----D---- C:\ProgramData\AVAST Software
2014-01-24 21:21:00 ----D---- C:\Program Files (x86)\VS Revo Group
2014-01-22 23:46:41 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-01-22 23:46:31 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-01-22 23:37:55 ----D---- C:\Users\Vitecek\AppData\Roaming\GetRightToGo
2014-01-22 20:08:01 ----D---- C:\Users\Vitecek\AppData\Roaming\Malwarebytes
2014-01-22 20:07:38 ----D---- C:\ProgramData\Malwarebytes
2014-01-22 20:07:29 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-22 12:37:34 ----D---- C:\ProgramData\LogMeIn
2014-01-20 18:14:27 ----AD---- C:\WINDOWS\bitstreams
2014-01-20 18:14:27 ----A---- C:\WINDOWS\zlib1.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\windows-build.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\ssleay32.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\SCRYPT-README.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\NEWS.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\linux-usb-cgminer.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libusb-1.0.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libssh2.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\librtmp.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libidn-11.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libeay32.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\libcurl.dll
2014-01-20 18:14:27 ----A---- C:\WINDOWS\ChangeLog.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\GPU-README.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\FPGA-README.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\COPYING.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\AUTHORS.txt
2014-01-20 18:14:27 ----A---- C:\WINDOWS\ASIC-README.txt
2014-01-20 18:14:26 ----A---- C:\WINDOWS\API-README.txt
2014-01-20 18:14:20 ----D---- C:\Program Files (x86)\MINECRAFT
2014-01-18 20:22:34 ----D---- C:\Program Files (x86)\Company
2014-01-15 14:56:53 ----A---- C:\WINDOWS\SysWOW64\WSShared.dll
2014-01-15 14:56:52 ----A---- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-15 14:18:55 ----A---- C:\WINDOWS\SysWOW64\SHCore.dll
2014-01-15 14:18:55 ----A---- C:\WINDOWS\SysWOW64\FirewallAPI.dll
2014-01-15 14:18:54 ----A---- C:\WINDOWS\SysWOW64\WebClnt.dll
2014-01-15 14:18:54 ----A---- C:\WINDOWS\SysWOW64\davclnt.dll
2014-01-14 17:32:21 ----D---- C:\WINDOWS\SysWOW64\NV
2014-01-13 19:50:03 ----D---- C:\Games
2014-01-13 14:58:12 ----D---- C:\Users\Vitecek\AppData\Roaming\Unity
2014-01-12 15:40:15 ----A---- C:\WINDOWS\SysWOW64\glcndFilter.dll
2014-01-12 15:40:11 ----A---- C:\WINDOWS\SysWOW64\winhttp.dll
2014-01-12 15:40:09 ----A---- C:\WINDOWS\SysWOW64\ole32.dll
2014-01-12 15:40:09 ----A---- C:\WINDOWS\HelpPane.exe
2014-01-12 15:40:06 ----A---- C:\WINDOWS\SysWOW64\KernelBase.dll
2014-01-12 15:40:00 ----A---- C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-01-12 15:39:58 ----A---- C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-01-12 15:39:56 ----A---- C:\WINDOWS\SysWOW64\wlanapi.dll
2014-01-12 15:39:56 ----A---- C:\WINDOWS\SysWOW64\WcnApi.dll
2014-01-12 15:39:55 ----A---- C:\WINDOWS\SysWOW64\wlansec.dll
2014-01-12 15:39:54 ----A---- C:\WINDOWS\SysWOW64\fdWCN.dll
2014-01-12 15:39:53 ----A---- C:\WINDOWS\SysWOW64\wfdprov.dll
2014-01-12 15:39:50 ----A---- C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-01-12 15:39:14 ----A---- C:\WINDOWS\SysWOW64\dskquota.dll
2014-01-12 15:39:02 ----A---- C:\WINDOWS\SysWOW64\mfnetsrc.dll
2014-01-12 15:39:01 ----A---- C:\WINDOWS\SysWOW64\mfnetcore.dll
2014-01-12 15:39:01 ----A---- C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-01-12 15:38:37 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2014-01-12 15:38:35 ----A---- C:\WINDOWS\SysWOW64\mfplat.dll
2014-01-12 15:38:34 ----A---- C:\WINDOWS\SysWOW64\StructuredQuery.dll
2014-01-12 15:38:33 ----A---- C:\WINDOWS\SysWOW64\usercpl.dll
2014-01-12 15:38:32 ----A---- C:\WINDOWS\SysWOW64\dhcpcore6.dll
2014-01-12 15:38:31 ----A---- C:\WINDOWS\SysWOW64\Windows.Storage.Compression.dll
2014-01-12 15:38:30 ----A---- C:\WINDOWS\SysWOW64\mswsock.dll
2014-01-12 15:38:30 ----A---- C:\WINDOWS\SysWOW64\input.dll
2014-01-12 15:38:30 ----A---- C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2014-01-12 15:38:29 ----A---- C:\WINDOWS\SysWOW64\PCPKsp.dll
2014-01-12 15:38:29 ----A---- C:\WINDOWS\SysWOW64\dhcpcore.dll
2014-01-12 15:38:28 ----A---- C:\WINDOWS\SysWOW64\AppxSip.dll
2014-01-12 15:38:24 ----A---- C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2014-01-12 15:38:23 ----A---- C:\WINDOWS\SysWOW64\wfapigp.dll
2014-01-12 15:38:22 ----A---- C:\WINDOWS\SysWOW64\kbdhebl3.dll
2014-01-12 15:38:02 ----A---- C:\WINDOWS\SysWOW64\shell32.dll
2014-01-12 15:38:00 ----A---- C:\WINDOWS\SysWOW64\msctf.dll
2014-01-12 15:37:56 ----A---- C:\WINDOWS\SysWOW64\shdocvw.dll
2014-01-12 15:37:56 ----A---- C:\WINDOWS\SysWOW64\SettingSync.dll
2014-01-12 15:37:56 ----A---- C:\WINDOWS\SysWOW64\mbsmsapi.dll
2014-01-12 15:37:42 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-01-12 15:37:38 ----A---- C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2014-01-12 15:37:37 ----A---- C:\WINDOWS\SysWOW64\WSDApi.dll
2014-01-12 15:37:37 ----A---- C:\WINDOWS\SysWOW64\ubpm.dll
2014-01-12 15:37:37 ----A---- C:\WINDOWS\SysWOW64\kerberos.dll
2014-01-12 15:37:16 ----A---- C:\WINDOWS\SysWOW64\Taskmgr.exe
2014-01-12 15:37:13 ----A---- C:\WINDOWS\SysWOW64\WebcamUi.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\wpnapps.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\storagewmi.dll
2014-01-12 15:37:11 ----A---- C:\WINDOWS\SysWOW64\mstsc.exe
2014-01-12 15:37:10 ----A---- C:\WINDOWS\SysWOW64\vds_ps.dll
2014-01-12 15:36:56 ----A---- C:\WINDOWS\SysWOW64\dwmcore.dll
2014-01-12 15:36:55 ----A---- C:\WINDOWS\SysWOW64\explorer.exe
2014-01-12 15:36:55 ----A---- C:\WINDOWS\explorer.exe
2014-01-12 15:36:53 ----A---- C:\WINDOWS\SysWOW64\mfcore.dll
2014-01-12 15:36:51 ----A---- C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-01-12 15:36:51 ----A---- C:\WINDOWS\SysWOW64\mscms.dll
2014-01-12 15:36:51 ----A---- C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2014-01-12 15:36:50 ----A---- C:\WINDOWS\SysWOW64\samlib.dll
2014-01-12 15:36:41 ----A---- C:\WINDOWS\SysWOW64\msftedit.dll
2014-01-12 15:36:39 ----A---- C:\WINDOWS\SysWOW64\winmmbase.dll
2014-01-12 15:36:39 ----A---- C:\WINDOWS\SysWOW64\winmm.dll
2014-01-12 15:36:39 ----A---- C:\WINDOWS\SysWOW64\WerFault.exe
2014-01-12 15:36:38 ----A---- C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2014-01-12 15:36:37 ----A---- C:\WINDOWS\SysWOW64\WinSCard.dll
2014-01-12 15:36:37 ----A---- C:\WINDOWS\SysWOW64\openfiles.exe
2014-01-12 15:36:37 ----A---- C:\WINDOWS\SysWOW64\LocationApi.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\wuapi.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\resutils.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\oleaut32.dll
2014-01-12 15:36:29 ----A---- C:\WINDOWS\SysWOW64\clusapi.dll
2014-01-12 15:36:28 ----A---- C:\WINDOWS\SysWOW64\wuwebv.dll
2014-01-12 15:36:28 ----A---- C:\WINDOWS\SysWOW64\wudriver.dll
2014-01-12 15:36:28 ----A---- C:\WINDOWS\SysWOW64\wuapp.exe
2014-01-12 15:35:27 ----A---- C:\WINDOWS\SysWOW64\Display.dll
2014-01-12 15:35:26 ----A---- C:\WINDOWS\SysWOW64\KBDKURD.DLL
2014-01-12 15:35:06 ----A---- C:\WINDOWS\SysWOW64\wvc.dll
2014-01-12 15:35:06 ----A---- C:\WINDOWS\SysWOW64\wdc.dll
2014-01-12 15:16:06 ----D---- C:\Program Files (x86)\Google
2014-01-12 15:00:52 ----A---- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-01-12 14:55:36 ----RD---- C:\WINDOWS\BrowserChoice
2014-01-12 13:50:26 ----A---- C:\WINDOWS\SysWOW64\synceng.dll
2014-01-12 13:50:13 ----A---- C:\WINDOWS\SysWOW64\mshtml.dll
2014-01-12 13:49:57 ----A---- C:\WINDOWS\SysWOW64\ieframe.dll
2014-01-12 13:49:55 ----A---- C:\WINDOWS\SysWOW64\jscript9.dll
2014-01-12 13:49:55 ----A---- C:\WINDOWS\SysWOW64\iertutil.dll
2014-01-12 13:49:53 ----A---- C:\WINDOWS\SysWOW64\wininet.dll
2014-01-12 13:49:52 ----A---- C:\WINDOWS\SysWOW64\uxtheme.dll
2014-01-12 13:49:52 ----A---- C:\WINDOWS\SysWOW64\urlmon.dll
2014-01-12 13:49:52 ----A---- C:\WINDOWS\SysWOW64\jscript.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\UXInit.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\msfeeds.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\jsproxy.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\iesysprep.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\iesetup.dll
2014-01-12 13:49:51 ----A---- C:\WINDOWS\SysWOW64\iernonce.dll
2014-01-12 13:49:39 ----A---- C:\WINDOWS\SysWOW64\mmc.exe
2014-01-12 13:49:37 ----A---- C:\WINDOWS\SysWOW64\setupapi.dll
2014-01-12 13:49:34 ----A---- C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-01-12 13:49:34 ----A---- C:\WINDOWS\SysWOW64\wiaacmgr.exe
2014-01-12 13:49:34 ----A---- C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2014-01-12 13:48:45 ----A---- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2014-01-12 13:48:45 ----A---- C:\WINDOWS\SysWOW64\sppc.dll
2014-01-12 13:48:44 ----A---- C:\WINDOWS\SysWOW64\wups.dll
2014-01-12 13:48:44 ----A---- C:\WINDOWS\SysWOW64\WSSync.dll
2014-01-12 13:48:44 ----A---- C:\WINDOWS\SysWOW64\WSClient.dll
2014-01-12 13:48:43 ----A---- C:\WINDOWS\SysWOW64\OEMLicense.dll
2014-01-12 13:48:42 ----A---- C:\WINDOWS\SysWOW64\setupcln.dll
2014-01-12 13:47:00 ----A---- C:\WINDOWS\SysWOW64\nshwfp.dll
2014-01-12 13:47:00 ----A---- C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2014-01-12 13:45:40 ----A---- C:\WINDOWS\SysWOW64\ncryptsslp.dll
2014-01-12 13:45:33 ----A---- C:\WINDOWS\SysWOW64\comctl32.dll
2014-01-12 13:45:32 ----A---- C:\WINDOWS\SysWOW64\imagehlp.dll
2014-01-12 13:44:25 ----A---- C:\WINDOWS\SysWOW64\gdi32.dll
2014-01-12 13:39:40 ----A---- C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll
2014-01-12 13:26:35 ----A---- C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2014-01-12 13:26:33 ----A---- C:\WINDOWS\SysWOW64\mstscax.dll
2014-01-12 13:26:32 ----A---- C:\WINDOWS\SysWOW64\netcfgx.dll
2014-01-12 13:26:31 ----A---- C:\WINDOWS\SysWOW64\winmde.dll
2014-01-12 13:26:31 ----A---- C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2014-01-12 13:26:30 ----A---- C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2014-01-12 13:26:30 ----A---- C:\WINDOWS\SysWOW64\drvstore.dll
2014-01-12 13:26:23 ----A---- C:\WINDOWS\SysWOW64\SettingSyncInfo.dll
2014-01-12 13:26:23 ----A---- C:\WINDOWS\SysWOW64\DevDispItemProvider.dll
2014-01-12 13:26:06 ----A---- C:\WINDOWS\SysWOW64\crypt32.dll
2014-01-12 13:25:53 ----A---- C:\WINDOWS\SysWOW64\rpcrt4.dll
2014-01-12 13:23:42 ----A---- C:\WINDOWS\SysWOW64\cryptnet.dll
2014-01-12 13:23:42 ----A---- C:\WINDOWS\SysWOW64\certutil.exe
2014-01-12 13:21:14 ----A---- C:\WINDOWS\SysWOW64\schannel.dll
2014-01-12 13:18:48 ----A---- C:\WINDOWS\SysWOW64\ReAgentc.exe
2014-01-12 13:18:48 ----A---- C:\WINDOWS\SysWOW64\qedit.dll
2014-01-12 13:18:47 ----A---- C:\WINDOWS\SysWOW64\ReAgent.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\fontsub.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\dciman32.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\atmlib.dll
2014-01-12 13:17:50 ----A---- C:\WINDOWS\SysWOW64\atmfd.dll
2014-01-12 13:17:49 ----A---- C:\WINDOWS\SysWOW64\lpk.dll
2014-01-12 13:17:44 ----A---- C:\WINDOWS\SysWOW64\duser.dll
2014-01-12 13:17:43 ----A---- C:\WINDOWS\SysWOW64\WWanAPI.dll
2014-01-12 13:17:43 ----A---- C:\WINDOWS\SysWOW64\wlroamextension.dll
2014-01-12 13:17:43 ----A---- C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2014-01-12 13:17:42 ----A---- C:\WINDOWS\SysWOW64\tasklist.exe
2014-01-12 13:17:42 ----A---- C:\WINDOWS\SysWOW64\taskkill.exe
2014-01-12 13:17:41 ----A---- C:\WINDOWS\SysWOW64\nlaapi.dll
2014-01-12 13:17:31 ----A---- C:\WINDOWS\SysWOW64\GdiPlus.dll
2014-01-12 13:17:26 ----A---- C:\WINDOWS\SysWOW64\DWrite.dll
2014-01-12 13:15:21 ----A---- C:\WINDOWS\SysWOW64\BCP47Langs.dll
2014-01-12 13:15:18 ----A---- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-01-12 13:15:17 ----A---- C:\WINDOWS\SysWOW64\stobject.dll
2014-01-12 13:15:17 ----A---- C:\WINDOWS\SysWOW64\netplwiz.dll
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\netprofm.dll
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\Magnify.exe
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\DevicePairing.dll
2014-01-12 13:15:16 ----A---- C:\WINDOWS\SysWOW64\biwinrt.dll
2014-01-12 13:15:14 ----A---- C:\WINDOWS\SysWOW64\npmproxy.dll
2014-01-12 13:15:14 ----A---- C:\WINDOWS\SysWOW64\muifontsetup.dll
2014-01-12 13:15:13 ----A---- C:\WINDOWS\SysWOW64\nlmsprep.dll
2014-01-12 13:15:13 ----A---- C:\WINDOWS\SysWOW64\nlmproxy.dll
2014-01-12 13:14:11 ----A---- C:\WINDOWS\SysWOW64\untfs.dll
2014-01-12 13:14:11 ----A---- C:\WINDOWS\SysWOW64\kernel32.dll
2014-01-12 13:14:11 ----A---- C:\WINDOWS\SysWOW64\autochk.exe
2014-01-12 13:14:09 ----A---- C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\scrrun.dll
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\scrobj.dll
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-01-12 13:12:31 ----A---- C:\WINDOWS\SysWOW64\cscript.exe
2014-01-12 13:12:11 ----A---- C:\WINDOWS\SysWOW64\wintrust.dll
2014-01-12 13:12:11 ----A---- C:\WINDOWS\SysWOW64\apprepsync.dll
2014-01-12 13:12:11 ----A---- C:\WINDOWS\SysWOW64\apprepapi.dll
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnsvr.exe
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnhupnp.dll
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnet.dll
2014-01-12 13:12:07 ----A---- C:\WINDOWS\SysWOW64\dpnathlp.dll
2014-01-12 13:12:06 ----A---- C:\WINDOWS\SysWOW64\dpnlobby.dll
2014-01-12 13:12:06 ----A---- C:\WINDOWS\SysWOW64\dpnhpast.dll
2014-01-12 13:12:06 ----A---- C:\WINDOWS\SysWOW64\dpnaddr.dll
2014-01-12 13:11:32 ----A---- C:\WINDOWS\SysWOW64\d3d11.dll
2014-01-12 13:11:28 ----A---- C:\WINDOWS\SysWOW64\WMPhoto.dll
2014-01-12 13:11:27 ----A---- C:\WINDOWS\SysWOW64\esent.dll
2014-01-12 13:11:25 ----A---- C:\WINDOWS\SysWOW64\cryptdlg.dll
2014-01-12 13:11:02 ----A---- C:\WINDOWS\SysWOW64\wmp.dll
2014-01-12 13:11:00 ----A---- C:\WINDOWS\SysWOW64\tquery.dll
2014-01-12 13:10:59 ----A---- C:\WINDOWS\SysWOW64\mssrch.dll
2014-01-12 13:10:56 ----A---- C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2014-01-12 13:10:55 ----A---- C:\WINDOWS\SysWOW64\mssph.dll
2014-01-12 13:10:54 ----A---- C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2014-01-12 13:10:54 ----A---- C:\WINDOWS\SysWOW64\ntdll.dll
2014-01-12 13:10:53 ----A---- C:\WINDOWS\SysWOW64\rsaenh.dll
2014-01-12 13:10:53 ----A---- C:\WINDOWS\SysWOW64\AudioSes.dll
2014-01-12 13:10:53 ----A---- C:\WINDOWS\SysWOW64\AudioEng.dll
2014-01-12 13:10:52 ----A---- C:\WINDOWS\SysWOW64\SearchIndexer.exe
2014-01-12 13:10:51 ----A---- C:\WINDOWS\SysWOW64\Windows.Networking.dll
2014-01-12 13:10:49 ----A---- C:\WINDOWS\SysWOW64\mssvp.dll
2014-01-12 13:10:49 ----A---- C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\XpsRasterService.dll
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\wscapi.dll
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2014-01-12 13:10:48 ----A---- C:\WINDOWS\SysWOW64\Robocopy.exe
2014-01-12 13:10:47 ----A---- C:\WINDOWS\SysWOW64\dmvdsitf.dll
2014-01-12 13:10:47 ----A---- C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-01-12 13:10:46 ----A---- C:\WINDOWS\SysWOW64\mfreadwrite.dll
2014-01-12 13:10:45 ----A---- C:\WINDOWS\SysWOW64\mssphtb.dll
2014-01-12 13:10:45 ----A---- C:\WINDOWS\SysWOW64\fmifs.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\mssprxy.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\mssitlb.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\msshooks.dll
2014-01-12 13:10:44 ----A---- C:\WINDOWS\SysWOW64\msscntrs.dll
2014-01-12 13:09:49 ----A---- C:\WINDOWS\SysWOW64\poqexec.exe
2014-01-12 13:07:43 ----A---- C:\WINDOWS\SysWOW64\msxml6.dll
2014-01-12 13:07:42 ----A---- C:\WINDOWS\SysWOW64\msxml6r.dll
2014-01-12 13:07:42 ----A---- C:\WINDOWS\SysWOW64\msxml3r.dll
2014-01-12 13:07:42 ----A---- C:\WINDOWS\SysWOW64\msxml3.dll
2014-01-12 13:07:25 ----A---- C:\WINDOWS\SysWOW64\twinui.dll
2014-01-12 13:07:24 ----A---- C:\WINDOWS\SysWOW64\authui.dll
2014-01-12 13:07:24 ----A---- C:\WINDOWS\SysWOW64\actxprxy.dll
2014-01-12 13:06:58 ----A---- C:\WINDOWS\SysWOW64\msieftp.dll
2014-01-12 13:06:55 ----A---- C:\WINDOWS\SysWOW64\tzres.dll
2014-01-12 12:48:22 ----A---- C:\WINDOWS\War3Unin.pif
2014-01-12 12:48:22 ----A---- C:\WINDOWS\War3Unin.exe
2014-01-12 12:48:22 ----A---- C:\WINDOWS\War3Unin.dat
2014-01-12 12:47:38 ----D---- C:\Program Files (x86)\Warcraft III
2014-01-12 07:40:33 ----D---- C:\Users\Vitecek\AppData\Roaming\Wargaming.net
2014-01-12 03:05:16 ----ASH---- C:\swapfile.sys
2014-01-12 03:05:16 ----ASH---- C:\pagefile.sys
2014-01-12 03:05:15 ----SHD---- C:\System Volume Information
2014-01-12 03:05:12 ----ASH---- C:\hiberfil.sys
2014-01-11 20:16:25 ----A---- C:\WINDOWS\SysWOW64\XAudio2_7.dll
2014-01-11 20:16:25 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2014-01-11 20:16:24 ----A---- C:\WINDOWS\SysWOW64\xactengine3_7.dll
2014-01-11 20:16:24 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2014-01-11 20:16:23 ----A---- C:\WINDOWS\SysWOW64\d3dx11_43.dll
2014-01-11 20:16:23 ----A---- C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2014-01-11 20:16:22 ----A---- C:\WINDOWS\SysWOW64\D3DX9_43.dll
2014-01-11 20:16:22 ----A---- C:\WINDOWS\SysWOW64\d3dx10_43.dll
2014-01-11 20:16:21 ----A---- C:\WINDOWS\SysWOW64\XAudio2_6.dll
2014-01-11 20:16:21 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2014-01-11 20:16:20 ----A---- C:\WINDOWS\SysWOW64\xactengine3_6.dll
2014-01-11 20:16:20 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2014-01-11 20:16:19 ----A---- C:\WINDOWS\SysWOW64\XAudio2_5.dll
2014-01-11 20:16:19 ----A---- C:\WINDOWS\SysWOW64\xactengine3_5.dll
2014-01-11 20:16:18 ----A---- C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2014-01-11 20:16:18 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2014-01-11 20:16:17 ----A---- C:\WINDOWS\SysWOW64\d3dx11_42.dll
2014-01-11 20:16:17 ----A---- C:\WINDOWS\SysWOW64\d3dx10_42.dll
2014-01-11 20:16:16 ----A---- C:\WINDOWS\SysWOW64\D3DX9_42.dll
2014-01-11 20:16:15 ----A---- C:\WINDOWS\SysWOW64\d3dx10_41.dll
2014-01-11 20:16:15 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2014-01-11 20:16:14 ----A---- C:\WINDOWS\SysWOW64\XAudio2_4.dll
2014-01-11 20:16:14 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2014-01-11 20:16:14 ----A---- C:\WINDOWS\SysWOW64\D3DX9_41.dll
2014-01-11 20:16:13 ----A---- C:\WINDOWS\SysWOW64\xactengine3_4.dll
2014-01-11 20:16:13 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2014-01-11 20:16:12 ----A---- C:\WINDOWS\SysWOW64\d3dx10_40.dll
2014-01-11 20:16:12 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2014-01-11 20:16:11 ----A---- C:\WINDOWS\SysWOW64\XAudio2_3.dll
2014-01-11 20:16:11 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2014-01-11 20:16:11 ----A---- C:\WINDOWS\SysWOW64\D3DX9_40.dll
2014-01-11 20:16:10 ----A---- C:\WINDOWS\SysWOW64\xactengine3_3.dll
2014-01-11 20:16:10 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2014-01-11 20:16:09 ----A---- C:\WINDOWS\SysWOW64\XAudio2_2.dll
2014-01-11 20:16:09 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2014-01-11 20:16:08 ----A---- C:\WINDOWS\SysWOW64\xactengine3_2.dll
2014-01-11 20:16:07 ----A---- C:\WINDOWS\SysWOW64\D3DX9_39.dll
2014-01-11 20:16:07 ----A---- C:\WINDOWS\SysWOW64\d3dx10_39.dll
2014-01-11 20:16:07 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2014-01-11 20:16:06 ----A---- C:\WINDOWS\SysWOW64\XAudio2_1.dll
2014-01-11 20:16:06 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2014-01-11 20:16:05 ----A---- C:\WINDOWS\SysWOW64\xactengine3_1.dll
2014-01-11 20:16:05 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2014-01-11 20:16:04 ----A---- C:\WINDOWS\SysWOW64\d3dx10_38.dll
2014-01-11 20:16:04 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2014-01-11 20:16:03 ----A---- C:\WINDOWS\SysWOW64\XAudio2_0.dll
2014-01-11 20:16:03 ----A---- C:\WINDOWS\SysWOW64\D3DX9_38.dll
2014-01-11 20:16:02 ----A---- C:\WINDOWS\SysWOW64\xactengine3_0.dll
2014-01-11 20:16:02 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2014-01-11 20:16:01 ----A---- C:\WINDOWS\SysWOW64\d3dx10_37.dll
2014-01-11 20:16:01 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2014-01-11 20:16:00 ----A---- C:\WINDOWS\SysWOW64\xactengine2_10.dll
2014-01-11 20:16:00 ----A---- C:\WINDOWS\SysWOW64\D3DX9_37.dll
2014-01-11 20:15:59 ----A---- C:\WINDOWS\SysWOW64\d3dx9_36.dll
2014-01-11 20:15:59 ----A---- C:\WINDOWS\SysWOW64\d3dx10_36.dll
2014-01-11 20:15:59 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2014-01-11 20:15:58 ----A---- C:\WINDOWS\SysWOW64\xactengine2_9.dll
2014-01-11 20:15:58 ----A---- C:\WINDOWS\SysWOW64\d3dx10_35.dll
2014-01-11 20:15:58 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2014-01-11 20:15:57 ----A---- C:\WINDOWS\SysWOW64\xactengine2_8.dll
2014-01-11 20:15:57 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2014-01-11 20:15:57 ----A---- C:\WINDOWS\SysWOW64\d3dx9_35.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\xinput1_3.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\d3dx9_34.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\d3dx10_34.dll
2014-01-11 20:15:56 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2014-01-11 20:15:55 ----A---- C:\WINDOWS\SysWOW64\xactengine2_7.dll
2014-01-11 20:15:55 ----A---- C:\WINDOWS\SysWOW64\d3dx10_33.dll
2014-01-11 20:15:55 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2014-01-11 20:15:54 ----A---- C:\WINDOWS\SysWOW64\xactengine2_6.dll
2014-01-11 20:15:54 ----A---- C:\WINDOWS\SysWOW64\d3dx9_33.dll
2014-01-11 20:15:53 ----A---- C:\WINDOWS\SysWOW64\xactengine2_5.dll
2014-01-11 20:15:53 ----A---- C:\WINDOWS\SysWOW64\d3dx9_32.dll
2014-01-11 20:15:53 ----A---- C:\WINDOWS\SysWOW64\d3dx10.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\xinput1_2.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\xactengine2_4.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\xactengine2_3.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2014-01-11 20:15:52 ----A---- C:\WINDOWS\SysWOW64\d3dx9_31.dll
2014-01-11 20:15:51 ----A---- C:\WINDOWS\SysWOW64\xinput1_1.dll
2014-01-11 20:15:51 ----A---- C:\WINDOWS\SysWOW64\xactengine2_2.dll
2014-01-11 20:15:51 ----A---- C:\WINDOWS\SysWOW64\xactengine2_1.dll
2014-01-11 20:15:49 ----A---- C:\WINDOWS\SysWOW64\d3dx9_30.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\xactengine2_0.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\d3dx9_29.dll
2014-01-11 20:15:48 ----A---- C:\WINDOWS\SysWOW64\d3dx9_28.dll
2014-01-11 20:15:47 ----A---- C:\WINDOWS\SysWOW64\d3dx9_27.dll
2014-01-11 20:15:47 ----A---- C:\WINDOWS\SysWOW64\d3dx9_26.dll
2014-01-11 20:15:46 ----A---- C:\WINDOWS\SysWOW64\d3dx9_25.dll
2014-01-11 20:15:46 ----A---- C:\WINDOWS\SysWOW64\d3dx9_24.dll
2014-01-11 20:11:18 ----D---- C:\WINDOWS\SysWOW64\directx
2014-01-11 19:56:19 ----D---- C:\Users\Vitecek\AppData\Roaming\NVIDIA
2014-01-11 19:55:30 ----D---- C:\Users\Vitecek\AppData\Roaming\.minecraft
2014-01-11 19:55:18 ----D---- C:\ProgramData\Sun
2014-01-11 19:55:17 ----D---- C:\Program Files (x86)\Common Files\Java
2014-01-11 19:55:13 ----A---- C:\WINDOWS\SysWOW64\javaws.exe
2014-01-11 19:55:10 ----A---- C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-01-11 19:55:10 ----A---- C:\WINDOWS\SysWOW64\javaw.exe
2014-01-11 19:55:10 ----A---- C:\WINDOWS\SysWOW64\java.exe
2014-01-11 19:55:04 ----D---- C:\Program Files (x86)\Java
2014-01-11 19:52:09 ----D---- C:\ProgramData\Oracle
2014-01-11 19:46:07 ----D---- C:\Users\Vitecek\AppData\Roaming\WinRAR
2014-01-11 19:27:14 ----D---- C:\Users\Vitecek\AppData\Roaming\WildTangent
2014-01-11 19:26:00 ----D---- C:\Users\Vitecek\AppData\Roaming\lm
2014-01-11 19:25:55 ----D---- C:\Users\Vitecek\AppData\Roaming\Synaptics
2014-01-11 19:25:32 ----D---- C:\Users\Vitecek\AppData\Roaming\Macromedia
2014-01-11 19:25:31 ----D---- C:\Users\Vitecek\AppData\Roaming\Adobe
2014-01-11 19:24:15 ----SD---- C:\Users\Vitecek\AppData\Roaming\Microsoft
2014-01-11 19:22:37 ----D---- C:\WINDOWS\SoftwareDistribution
2014-01-11 19:04:54 ----A---- C:\Recovery.txt

======List of files/folders modified in the last 1 month======

2014-01-30 18:13:19 ----D---- C:\WINDOWS\Temp
2014-01-30 18:10:49 ----D---- C:\WINDOWS\Prefetch
2014-01-30 18:10:45 ----A---- C:\WINDOWS\SysWOW64\log.txt
2014-01-30 18:10:36 ----D---- C:\WINDOWS\Inf
2014-01-30 18:10:34 ----D---- C:\WINDOWS\System32
2014-01-30 17:13:22 ----SHD---- C:\WINDOWS\Installer
2014-01-30 17:13:01 ----D---- C:\WINDOWS\Tasks
2014-01-30 07:09:26 ----D---- C:\Windows
2014-01-29 20:57:49 ----D---- C:\Program Files (x86)
2014-01-29 16:33:01 ----D---- C:\WINDOWS\Microsoft.NET
2014-01-29 07:16:45 ----D---- C:\ProgramData
2014-01-28 19:34:15 ----A---- C:\WINDOWS\system.ini
2014-01-28 19:33:45 ----D---- C:\WINDOWS\SysWOW64
2014-01-28 19:31:58 ----D---- C:\WINDOWS\SysWOW64\drivers
2014-01-28 19:31:58 ----D---- C:\WINDOWS\apppatch
2014-01-28 19:31:57 ----D---- C:\Program Files (x86)\Common Files
2014-01-25 04:04:47 ----RD---- C:\Program Files
2014-01-24 21:30:57 ----D---- C:\WINDOWS\WinSxS
2014-01-24 21:10:51 ----HD---- C:\WINDOWS\ELAMBKUP
2014-01-23 06:22:04 ----SD---- C:\ProgramData\Microsoft
2014-01-22 23:31:21 ----D---- C:\ProgramData\Norton
2014-01-22 20:01:41 ----D---- C:\ProgramData\NortonInstaller
2014-01-22 19:59:25 ----D---- C:\ProgramData\WildTangent
2014-01-18 12:33:00 ----D---- C:\WINDOWS\rescache
2014-01-15 20:22:09 ----D---- C:\WINDOWS\WinStore
2014-01-15 20:22:07 ----D---- C:\WINDOWS\SysWOW64\en-US
2014-01-15 20:22:07 ----D---- C:\WINDOWS\SysWOW64\cs-CZ
2014-01-15 20:20:28 ----D---- C:\WINDOWS\CbsTemp
2014-01-15 17:50:25 ----D---- C:\Program Files (x86)\Acer
2014-01-14 17:32:11 ----D---- C:\ProgramData\NVIDIA
2014-01-13 14:04:40 ----RSD---- C:\WINDOWS\assembly
2014-01-12 16:14:21 ----D---- C:\Program Files (x86)\Windows Mail
2014-01-12 16:14:20 ----D---- C:\Program Files (x86)\Internet Explorer
2014-01-12 16:14:19 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-01-12 16:14:19 ----D---- C:\Program Files (x86)\Windows Media Player
2014-01-12 16:14:18 ----D---- C:\Program Files (x86)\Common Files\System
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\slmgr
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\sk-SK
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\oobe
2014-01-12 16:14:17 ----D---- C:\WINDOWS\SysWOW64\migwiz
2014-01-12 16:14:17 ----D---- C:\Program Files (x86)\Windows Defender
2014-01-12 16:14:13 ----D---- C:\WINDOWS\SysWOW64\WCN
2014-01-12 16:14:12 ----D---- C:\WINDOWS\SysWOW64\wbem
2014-01-12 16:14:02 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-01-12 16:14:02 ----D---- C:\WINDOWS\PolicyDefinitions
2014-01-12 16:12:17 ----RSD---- C:\WINDOWS\Fonts
2014-01-12 16:11:37 ----RD---- C:\WINDOWS\ToastData
2014-01-12 15:04:31 ----D---- C:\ProgramData\PRICache
2014-01-12 15:01:58 ----D---- C:\WINDOWS\servicing
2014-01-12 14:56:28 ----D---- C:\WINDOWS\SysWOW64\migration
2014-01-12 14:56:27 ----D---- C:\Program Files (x86)\Common Files\Microsoft Shared
2014-01-12 14:52:34 ----D---- C:\WINDOWS\SysWOW64\Dism
2014-01-12 13:53:29 ----D---- C:\WINDOWS\AUInstallAgent
2014-01-12 03:16:45 ----D---- C:\WINDOWS\debug
2014-01-11 20:11:18 ----D---- C:\WINDOWS\Logs
2014-01-11 19:34:28 ----D---- C:\ProgramData\EgisTec IPS
2014-01-11 19:27:01 ----D---- C:\OEM
2014-01-11 19:26:29 ----D---- C:\ProgramData\OEM
2014-01-11 19:24:14 ----RD---- C:\Users

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 18:17
od saonek
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ACPI;@acpi.inf,%ACPI.SvcDesc%;Microsoft ACPI Driver; C:\WINDOWS\System32\drivers\ACPI.sys []
R0 acpiex;Microsoft ACPIEx Driver; C:\WINDOWS\System32\Drivers\acpiex.sys []
R0 aswRvrt;avast! Revert; C:\WINDOWS\SysWOW64\drivers\aswRvrt.sys []
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\SysWOW64\drivers\aswVmm.sys []
R0 CLFS;@%SystemRoot%\system32\drivers\clfs.sys,-100; C:\WINDOWS\System32\drivers\CLFS.sys []
R0 CNG;CNG; C:\WINDOWS\System32\Drivers\cng.sys []
R0 disk;@disk.inf,%disk_ServiceDesc%;Disk Driver; C:\WINDOWS\System32\drivers\disk.sys []
R0 EhStorClass;@%SystemRoot%\system32\drivers\EhStorClass.sys,-100; C:\WINDOWS\System32\drivers\EhStorClass.sys []
R0 FileInfo;@%SystemRoot%\system32\drivers\fileinfo.sys,-100; C:\WINDOWS\System32\drivers\fileinfo.sys []
R0 FltMgr;@%SystemRoot%\system32\drivers\fltmgr.sys,-10001; C:\WINDOWS\system32\drivers\fltmgr.sys []
R0 fvevol;@%SystemRoot%\system32\drivers\fvevol.sys,-100; C:\WINDOWS\System32\DRIVERS\fvevol.sys []
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys []
R0 KSecDD;KSecDD; C:\WINDOWS\System32\Drivers\ksecdd.sys []
R0 KSecPkg;KSecPkg; C:\WINDOWS\System32\Drivers\ksecpkg.sys []
R0 mountmgr;@%SystemRoot%\system32\drivers\mountmgr.sys,-100; C:\WINDOWS\System32\drivers\mountmgr.sys []
R0 msisadrv;msisadrv; C:\WINDOWS\System32\drivers\msisadrv.sys []
R0 Mup;@%systemroot%\system32\drivers\mup.sys,-101; C:\WINDOWS\System32\Drivers\mup.sys []
R0 NDIS;@%SystemRoot%\system32\drivers\ndis.sys,-200; C:\WINDOWS\system32\drivers\ndis.sys []
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys []
R0 partmgr;@%SystemRoot%\system32\drivers\partmgr.sys,-100; C:\WINDOWS\System32\drivers\partmgr.sys []
R0 pci;@machine.inf,%pci_svcdesc%;PCI Bus Driver; C:\WINDOWS\System32\drivers\pci.sys []
R0 pcw;Performance Counters for Windows Driver; C:\WINDOWS\System32\drivers\pcw.sys []
R0 pdc;@%SystemRoot%\system32\drivers\pdc.sys,-100; C:\WINDOWS\system32\drivers\pdc.sys []
R0 rdyboost;ReadyBoost; C:\WINDOWS\System32\drivers\rdyboost.sys []
R0 spaceport;@spaceport.inf,%Spaceport_ServiceDesc%;Storage Spaces Driver; C:\WINDOWS\System32\drivers\spaceport.sys []
R0 Tcpip;@%SystemRoot%\system32\tcpipcfg.dll,-50003; C:\WINDOWS\System32\drivers\tcpip.sys []
R0 vdrvroot;@vdrvroot.inf,%vdrvroot_svcdesc%;Microsoft Virtual Drive Enumerator; C:\WINDOWS\System32\drivers\vdrvroot.sys []
R0 volmgr;@volmgr.inf,%volmgr_svcdesc%;Volume Manager Driver; C:\WINDOWS\System32\drivers\volmgr.sys []
R0 volmgrx;@%SystemRoot%\system32\drivers\volmgrx.sys,-100; C:\WINDOWS\System32\drivers\volmgrx.sys []
R0 volsnap;@volume.inf,%VolumeClassName%;Storage volumes; C:\WINDOWS\System32\drivers\volsnap.sys []
R0 Wdf01000;@%SystemRoot%\system32\drivers\Wdf01000.sys,-1000; C:\WINDOWS\system32\drivers\Wdf01000.sys []
R0 WFPLWFS;@%SystemRoot%\System32\drivers\wfplwfs.sys,-6000; C:\WINDOWS\system32\DRIVERS\wfplwfs.sys []
R1 AFD;@%systemroot%\system32\drivers\afd.sys,-1000; C:\WINDOWS\system32\drivers\afd.sys []
R1 aswRdr;aswRdr; \??\C:\WINDOWS\system32\drivers\aswRdr2.sys []
R1 aswSnx;aswSnx; \??\C:\WINDOWS\system32\drivers\aswSnx.sys []
R1 aswSP;aswSP; \??\C:\WINDOWS\system32\drivers\aswSP.sys []
R1 BasicDisplay;BasicDisplay; C:\WINDOWS\System32\drivers\BasicDisplay.sys []
R1 BasicRender;BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys []
R1 Beep;Beep; C:\WINDOWS\SysWOW64\drivers\Beep.sys []
R1 cdrom;@cdrom.inf,%cdrom_ServiceDesc%;CD-ROM Driver; C:\WINDOWS\System32\drivers\cdrom.sys []
R1 Dfsc;@%systemroot%\system32\wkssvc.dll,-1008; C:\WINDOWS\System32\Drivers\dfsc.sys []
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\WINDOWS\System32\drivers\discache.sys []
R1 Msfs;Msfs; C:\WINDOWS\SysWOW64\drivers\Msfs.sys []
R1 mssmbios;@mssmbios.inf,%mssmbios_svcdesc%;Microsoft System Management BIOS Driver; C:\WINDOWS\System32\drivers\mssmbios.sys []
R1 mwlPSDFilter;mwlPSDFilter; C:\WINDOWS\system32\DRIVERS\mwlPSDFilter.sys []
R1 mwlPSDNServ;mwlPSDNServ; C:\WINDOWS\system32\DRIVERS\mwlPSDNServ.sys []
R1 mwlPSDVDisk;mwlPSDVDisk; C:\WINDOWS\system32\DRIVERS\mwlPSDVDisk.sys []
R1 NetBIOS;@netnb.inf,%NetBIOS_Desc%;NetBIOS Interface; C:\WINDOWS\system32\DRIVERS\netbios.sys []
R1 NetBT;@%SystemRoot%\system32\drivers\netbt.sys,-2; C:\WINDOWS\System32\DRIVERS\netbt.sys []
R1 Npfs;Npfs; C:\WINDOWS\SysWOW64\drivers\Npfs.sys []
R1 npsvctrig;@npsvctrig.inf,%NPSVCTRIG.SvcDisplayName%;Named pipe service trigger provider; C:\WINDOWS\System32\drivers\npsvctrig.sys []
R1 nsiproxy;@%SystemRoot%\system32\drivers\nsiproxy.sys,-2; C:\WINDOWS\system32\drivers\nsiproxy.sys []
R1 Null;Null; C:\WINDOWS\SysWOW64\drivers\Null.sys []
R1 Psched;@%SystemRoot%\System32\drivers\pacer.sys,-101; C:\WINDOWS\system32\DRIVERS\pacer.sys []
R1 rdbss;@%systemroot%\system32\wkssvc.dll,-1000; C:\WINDOWS\system32\DRIVERS\rdbss.sys []
R1 tdx;@%SystemRoot%\system32\tcpipcfg.dll,-50004; C:\WINDOWS\system32\DRIVERS\tdx.sys []
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys []
R1 Wanarpv6;@%systemroot%\system32\rascfg.dll,-32012; C:\WINDOWS\system32\DRIVERS\wanarp.sys []
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R2 lltdio;@%SystemRoot%\system32\lltdres.dll,-6; C:\WINDOWS\system32\DRIVERS\lltdio.sys []
R2 luafv;@%systemroot%\system32\drivers\luafv.sys,-100; C:\WINDOWS\system32\drivers\luafv.sys []
R2 NativeWifiP;@%SystemRoot%\System32\drivers\nwifi.sys,-101; C:\WINDOWS\system32\DRIVERS\nwifi.sys []
R2 Ndu;@%SystemRoot%\system32\drivers\Ndu.sys,-10001; C:\WINDOWS\system32\drivers\Ndu.sys []
R2 PEAUTH;PEAUTH; C:\WINDOWS\system32\drivers\peauth.sys []
R2 rspndr;@%SystemRoot%\system32\lltdres.dll,-5; C:\WINDOWS\system32\DRIVERS\rspndr.sys []
R2 secdrv;Security Driver; C:\WINDOWS\SysWOW64\drivers\secdrv.sys []
R2 tcpipreg;TCP/IP Registry Compatibility; C:\WINDOWS\System32\drivers\tcpipreg.sys []
R3 aswStm;aswStm; \??\C:\WINDOWS\system32\drivers\aswStm.sys []
R3 b57xdbd;@oem7.inf,%bcmxd_16bf_svcd%;Broadcom xD Picture Bus Driver Service; C:\WINDOWS\System32\drivers\b57xdbd.sys []
R3 b57xdmp;@oem7.inf,%BXD_SVCDESC%;Broadcom xD Picture vstorp client drv; C:\WINDOWS\System32\drivers\b57xdmp.sys []
R3 BCM43XX;@oem14.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys []
R3 bowser;@%systemroot%\system32\browser.dll,-102; C:\WINDOWS\system32\DRIVERS\bowser.sys []
R3 bScsiMSa;bScsiMSa; C:\WINDOWS\System32\drivers\bScsiMSa.sys []
R3 bScsiSDa;bScsiSDa; C:\WINDOWS\System32\drivers\bScsiSDa.sys []
R3 CmBatt;@cmbatt.inf,%CmBatt.SvcDesc%;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\System32\drivers\CmBatt.sys []
R3 CompositeBus;@CompositeBus.inf,%CompositeBus.SVCDESC%;Composite Bus Enumerator Driver; C:\WINDOWS\System32\drivers\CompositeBus.sys []
R3 condrv;Console Driver; C:\WINDOWS\System32\drivers\condrv.sys []
R3 DXGKrnl;LDDM Graphics Subsystem; C:\WINDOWS\System32\drivers\dxgkrnl.sys []
R3 fastfat;FAT12/16/32 File System Driver; C:\WINDOWS\SysWOW64\drivers\fastfat.sys []
R3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys []
R3 HDAudBus;@hdaudbus.inf,%HDAudBus.SVCDESC%;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\drivers\HDAudBus.sys []
R3 HidUsb;@input.inf,%HID.SvcDesc%;Microsoft HID Class Driver; C:\WINDOWS\System32\drivers\hidusb.sys []
R3 HTTP;@%SystemRoot%\system32\drivers\http.sys,-1; C:\WINDOWS\system32\drivers\HTTP.sys []
R3 i8042prt;@msmouse.inf,%i8042prt.SvcDesc%;PS/2 Keyboard and Mouse Port Driver; C:\WINDOWS\System32\drivers\i8042prt.sys []
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys []
R3 IntcDAud;@oem4.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys []
R3 intelppm;@cpu.inf,%IntelPPM.SvcDesc%;Intel Processor Driver; C:\WINDOWS\System32\drivers\intelppm.sys []
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\system32\DRIVERS\k57nd60a.sys []
R3 kbdclass;@keyboard.inf,%kbdclass.SvcDesc%;Keyboard Class Driver; C:\WINDOWS\System32\drivers\kbdclass.sys []
R3 kbdhid;@keyboard.inf,%KBDHID.SvcDesc%;Keyboard HID Driver; C:\WINDOWS\System32\drivers\kbdhid.sys []
R3 kdnic;@kdnic.inf,%KdNic.Service.DispName%;Microsoft Kernel Debug Network Miniport (NDIS 6.20); C:\WINDOWS\system32\DRIVERS\kdnic.sys []
R3 ksthunk;Kernel Streaming Thunks; C:\WINDOWS\system32\drivers\ksthunk.sys []
R3 MEIx64;@oem8.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys []
R3 monitor;@monitor.inf,%Monitor.SVCDESC%;Microsoft Monitor Class Function Driver Service; C:\WINDOWS\System32\drivers\monitor.sys []
R3 mouclass;@msmouse.inf,%mouclass.SvcDesc%;Mouse Class Driver; C:\WINDOWS\System32\drivers\mouclass.sys []
R3 mouhid;@msmouse.inf,%MOUHID.SvcDesc%;Mouse HID Driver; C:\WINDOWS\System32\drivers\mouhid.sys []
R3 mpsdrv;@%SystemRoot%\system32\FirewallAPI.dll,-23092; C:\WINDOWS\System32\drivers\mpsdrv.sys []
R3 mrxsmb;@%systemroot%\system32\wkssvc.dll,-1002; C:\WINDOWS\system32\DRIVERS\mrxsmb.sys []
R3 mrxsmb10;@%systemroot%\system32\wkssvc.dll,-1004; C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys []
R3 mrxsmb20;@%systemroot%\system32\wkssvc.dll,-1006; C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys []
R3 NdisTapi;@%systemroot%\system32\rascfg.dll,-32001; C:\WINDOWS\system32\DRIVERS\ndistapi.sys []
R3 Ndisuio;@ndisuio.inf,%NDISUIO_Desc%;NDIS Usermode I/O Protocol; C:\WINDOWS\system32\DRIVERS\ndisuio.sys []
R3 NdisWan;@%systemroot%\system32\rascfg.dll,-32002; C:\WINDOWS\system32\DRIVERS\ndiswan.sys []
R3 NDProxy;NDIS Proxy; C:\WINDOWS\SysWOW64\drivers\NDProxy.sys []
R3 Ntfs;Ntfs; C:\WINDOWS\SysWOW64\drivers\Ntfs.sys []
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys []
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys []
R3 PptpMiniport;@%systemroot%\system32\rascfg.dll,-32006; C:\WINDOWS\system32\DRIVERS\raspptp.sys []
R3 Ps2Kb2Hid;@oem10.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys []
R3 RasAgileVpn;@netavpna.inf,%Svc-Mp-AgileVpn-DispName%;WAN Miniport (IKEv2); C:\WINDOWS\system32\DRIVERS\AgileVpn.sys []
R3 Rasl2tp;@%systemroot%\system32\rascfg.dll,-32005; C:\WINDOWS\system32\DRIVERS\rasl2tp.sys []
R3 RasPppoe;@%systemroot%\system32\rascfg.dll,-32007; C:\WINDOWS\system32\DRIVERS\raspppoe.sys []
R3 RasSstp;@%systemroot%\system32\sstpsvc.dll,-202; C:\WINDOWS\system32\DRIVERS\rassstp.sys []
R3 rdpbus;@rdpbus.inf,%rdpbus_svcdesc%;Remote Desktop Device Redirector Bus Driver; C:\WINDOWS\System32\drivers\rdpbus.sys []
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys []
R3 srv;@%systemroot%\system32\srvsvc.dll,-102; C:\WINDOWS\System32\DRIVERS\srv.sys []
R3 srv2;@%systemroot%\system32\srvsvc.dll,-104; C:\WINDOWS\System32\DRIVERS\srv2.sys []
R3 srvnet;srvnet; C:\WINDOWS\System32\DRIVERS\srvnet.sys []
R3 swenum;@swenum.inf,%SWENUM.SVCDESC%;Software Bus Driver; C:\WINDOWS\System32\drivers\swenum.sys []
R3 SynTP;@oem12.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys []
R3 tunnel;@nettun.inf,%TUNNEL.Service.DisplayName%;Microsoft Tunnel Miniport Adapter Driver; C:\WINDOWS\system32\DRIVERS\tunnel.sys []
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys []
R3 umbus;@umbus.inf,%umbus.SVCDESC%;UMBus Enumerator Driver; C:\WINDOWS\System32\drivers\umbus.sys []
R3 usbccgp;@usb.inf,%GenericParent.SvcDesc%;Microsoft USB Generic Parent Driver; C:\WINDOWS\System32\drivers\usbccgp.sys []
R3 usbehci;@usbport.inf,%EHCIMP.SvcDesc%;Ovladač miniportu vylepšeného hostitelského řadiče Microsoft USB 2.0; C:\WINDOWS\System32\drivers\usbehci.sys []
R3 usbhub;@usbport.inf,%ROOTHUB.SvcDesc%;Ovladač standardního rozbočovače USB; C:\WINDOWS\System32\drivers\usbhub.sys []
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys []
R3 vwifibus;@%SystemRoot%\System32\drivers\vwifibus.sys,-257; C:\WINDOWS\System32\drivers\vwifibus.sys []
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys []
R3 WmiAcpi;@wmiacpi.inf,%WMIMAP.SvcDesc%;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\System32\drivers\wmiacpi.sys []
S0 3ware;3ware; C:\WINDOWS\System32\drivers\3ware.sys []
S0 adp94xx;adp94xx; C:\WINDOWS\System32\drivers\adp94xx.sys []
S0 adpahci;adpahci; C:\WINDOWS\System32\drivers\adpahci.sys []
S0 adpu320;adpu320; C:\WINDOWS\System32\drivers\adpu320.sys []
S0 agp440;@machine.inf,%agp440_svcdesc%;Intel AGP Bus Filter; C:\WINDOWS\System32\drivers\agp440.sys []
S0 amdsata;amdsata; C:\WINDOWS\System32\drivers\amdsata.sys []
S0 amdsbs;amdsbs; C:\WINDOWS\System32\drivers\amdsbs.sys []
S0 amdxata;amdxata; C:\WINDOWS\System32\drivers\amdxata.sys []
S0 arc;arc; C:\WINDOWS\System32\drivers\arc.sys []
S0 arcsas;@arcsas.inf,%arcsas_ServiceName%;Adaptec SAS/SATA-II RAID Windows Inbox Miniport Driver; C:\WINDOWS\System32\drivers\arcsas.sys []
S0 atapi;@mshdc.inf,%idechannel.DeviceDesc%;IDE Channel; C:\WINDOWS\System32\drivers\atapi.sys []
S0 b06bdrv;@netbvbda.inf,%vbd_srv_desc%;Broadcom NetXtreme II VBD; C:\WINDOWS\System32\drivers\bxvbda.sys []
S0 ebdrv;@netevbda.inf,%vbd_srv_desc%;Broadcom NetXtreme II 10 GigE VBD; C:\WINDOWS\System32\drivers\evbda.sys []
S0 EhStorTcgDrv;@ehstortcgdrv.inf,%EhStorTcgDrv.Desc%;Microsoft driver for storage devices supporting IEEE 1667 and TCG protocols; C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys []
S0 gagp30kx;@machine.inf,%gagp30kx_svcdesc%;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms; C:\WINDOWS\System32\drivers\gagp30kx.sys []
S0 HpSAMD;HpSAMD; C:\WINDOWS\System32\drivers\HpSAMD.sys []
S0 hwpolicy;@%systemroot%\system32\drivers\hwpolicy.sys,-101; C:\WINDOWS\System32\drivers\hwpolicy.sys []
S0 iaStorV;@iastorv.inf,%*PNP0600.DeviceDesc%;Intel RAID Controller Windows 7; C:\WINDOWS\System32\drivers\iaStorV.sys []
S0 iirsp;iirsp; C:\WINDOWS\System32\drivers\iirsp.sys []
S0 intelide;intelide; C:\WINDOWS\System32\drivers\intelide.sys []
S0 isapnp;isapnp; C:\WINDOWS\System32\drivers\isapnp.sys []
S0 LSI_SAS;LSI_SAS; C:\WINDOWS\System32\drivers\lsi_sas.sys []
S0 LSI_SAS2;LSI_SAS2; C:\WINDOWS\System32\drivers\lsi_sas2.sys []
S0 LSI_SCSI;LSI_SCSI; C:\WINDOWS\System32\drivers\lsi_scsi.sys []
S0 LSI_SSS;LSI_SSS; C:\WINDOWS\System32\drivers\lsi_sss.sys []
S0 megasas;megasas; C:\WINDOWS\System32\drivers\megasas.sys []
S0 MegaSR;MegaSR; C:\WINDOWS\System32\drivers\MegaSR.sys []
S0 mvumis;mvumis; C:\WINDOWS\System32\drivers\mvumis.sys []
S0 nfrd960;nfrd960; C:\WINDOWS\System32\drivers\nfrd960.sys []
S0 nv_agp;@machine.inf,%agpnvidia_svcdesc%;NVIDIA nForce AGP Bus Filter; C:\WINDOWS\System32\drivers\nv_agp.sys []
S0 nvraid;nvraid; C:\WINDOWS\System32\drivers\nvraid.sys []
S0 nvstor;nvstor; C:\WINDOWS\System32\drivers\nvstor.sys []
S0 pciide;pciide; C:\WINDOWS\System32\drivers\pciide.sys []
S0 pcmcia;pcmcia; C:\WINDOWS\System32\drivers\pcmcia.sys []
S0 sbp2port;@sbp2.inf,%sbp2_ServiceDesc%;SBP-2 Transport/Protocol Bus Driver; C:\WINDOWS\System32\drivers\sbp2port.sys []
S0 SiSRaid2;SiSRaid2; C:\WINDOWS\System32\drivers\SiSRaid2.sys []
S0 SiSRaid4;SiSRaid4; C:\WINDOWS\System32\drivers\sisraid4.sys []
S0 stexstor;stexstor; C:\WINDOWS\System32\drivers\stexstor.sys []
S0 storahci;@mshdc.inf,%storahci_ServiceDescription%;Microsoft Standard SATA AHCI Driver; C:\WINDOWS\System32\drivers\storahci.sys []
S0 storflt;@%SystemRoot%\system32\vmstorfltres.dll,-1000; C:\WINDOWS\system32\DRIVERS\vmstorfl.sys []
S0 storvsc;storvsc; C:\WINDOWS\System32\drivers\storvsc.sys []
S0 uagp35;@machine.inf,%uagp35_svcdesc%;Microsoft AGPv3.5 Filter; C:\WINDOWS\System32\drivers\uagp35.sys []
S0 uliagpkx;@machine.inf,%uliagpkx_svcdesc%;Uli AGP Bus Filter; C:\WINDOWS\System32\drivers\uliagpkx.sys []
S0 viaide;viaide; C:\WINDOWS\System32\drivers\viaide.sys []
S0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\WINDOWS\System32\drivers\vmbus.sys []
S0 vsmraid;vsmraid; C:\WINDOWS\System32\drivers\vsmraid.sys []
S0 VSTXRAID;@vstxraid.inf,%Driver.DeviceDesc%;VIA StorX Storage Controller Windows Driver; C:\WINDOWS\System32\drivers\vstxraid.sys []
S0 Wd;@wd.inf,%WdServiceDisplayName%;Microsoft Watchdog Timer Driver; C:\WINDOWS\System32\drivers\wd.sys []
S1 dam;@%SystemRoot%\system32\drivers\dam.sys,-100; C:\WINDOWS\system32\drivers\dam.sys []
S3 1394ohci;@1394.inf,%PCI\CC_0C0010.DeviceDesc%;1394 OHCI Compliant Host Controller; C:\WINDOWS\System32\drivers\1394ohci.sys []
S3 acpipagr;@acpipagr.inf,%SvcDesc%;ACPI Processor Aggregator Driver; C:\WINDOWS\System32\drivers\acpipagr.sys []
S3 AcpiPmi;@acpipmi.inf,%AcpiPmi.SvcDesc%;ACPI Power Meter Driver; C:\WINDOWS\System32\drivers\acpipmi.sys []
S3 acpitime;@acpitime.inf,%AcpiTime.SvcDesc%;ACPI Wake Alarm Driver; C:\WINDOWS\System32\drivers\acpitime.sys []
S3 AmdK8;@cpu.inf,%AmdK8.SvcDesc%;AMD K8 Processor Driver; C:\WINDOWS\System32\drivers\amdk8.sys []
S3 AmdPPM;@cpu.inf,%AmdPPM.SvcDesc%;AMD Processor Driver; C:\WINDOWS\System32\drivers\amdppm.sys []
S3 AppID;@%systemroot%\system32\appidsvc.dll,-102; C:\WINDOWS\system32\drivers\appid.sys []
S3 AsyncMac;@%systemroot%\system32\rascfg.dll,-32000; C:\WINDOWS\system32\DRIVERS\asyncmac.sys []
S3 athr;@netathrx.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athrx.sys []
S3 BthAvrcpTg;@bthaudhid.inf,%BthAvrcpTg_SvcDesc%;Bluetooth Audio/Video Remote Control HID; C:\WINDOWS\System32\drivers\BthAvrcpTg.sys []
S3 BthHFEnum;@bthhfenum.inf,%BthHFEnum.SVCDESC%;Bluetooth Hands-Free Audio and Call Control HID Enumerator; C:\WINDOWS\System32\drivers\bthhfenum.sys []
S3 bthhfhid;@bthaudhid.inf,%BthAudioHFHid.SVCDESC%;Bluetooth Hands-Free Call Control HID; C:\WINDOWS\System32\drivers\BthHFHid.sys []
S3 BTHMODEM;@bthspp.inf,%BthSerial.DisplayName%;Bluetooth Serial Communications Driver; C:\WINDOWS\System32\drivers\bthmodem.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 circlass;@circlass.inf,%circlass.SVCDESC%;Consumer IR Devices; C:\WINDOWS\System32\drivers\circlass.sys []
S3 dmvsc;dmvsc; C:\WINDOWS\System32\drivers\dmvsc.sys []
S3 drmkaud;@wdmaudio.inf,%drmkaud.SvcDesc%;Microsoft Trusted Audio Drivers; C:\WINDOWS\system32\drivers\drmkaud.sys []
S3 ErrDev;@errdev.inf,%ERRDEV.SvcDesc%;Microsoft Hardware Error Device Driver; C:\WINDOWS\System32\drivers\errdev.sys []
S3 exfat;exFAT File System Driver; C:\WINDOWS\SysWOW64\drivers\exfat.sys []
S3 fdc;@fdc.inf,%fdc_ServiceDesc%;Floppy Disk Controller Driver; C:\WINDOWS\System32\drivers\fdc.sys []
S3 Filetrace;@%SystemRoot%\system32\drivers\filetrace.sys,-10001; C:\WINDOWS\system32\drivers\filetrace.sys []
S3 flpydisk;@flpydisk.inf,%floppy_ServiceDesc%;Floppy Disk Driver; C:\WINDOWS\System32\drivers\flpydisk.sys []
S3 FsDepends;@%SystemRoot%\system32\drivers\fsdepends.sys,-10001; C:\WINDOWS\System32\drivers\FsDepends.sys []
S3 FxPPM;@cpu.inf,%FxPPM.SvcDesc%;Power Framework Processor Driver; C:\WINDOWS\System32\drivers\fxppm.sys []
S3 gencounter;@wgencounter.inf,%GenCounter.SVCDESC%;Microsoft Hyper-V Generation Counter; C:\WINDOWS\System32\drivers\vmgencounter.sys []
S3 GPIOClx0101;Microsoft GPIO Class Extension Driver; C:\WINDOWS\System32\Drivers\msgpioclx.sys []
S3 HdAudAddService;@hdaudio.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys []
S3 HidBatt;@hidbatt.inf,%HidBatt.SvcDesc%;HID UPS Battery Driver; C:\WINDOWS\System32\drivers\HidBatt.sys []
S3 HidBth;@hidbth.inf,%HIDBTH.SvcDesc%;Microsoft Bluetooth HID Miniport; C:\WINDOWS\System32\drivers\hidbth.sys []
S3 hidi2c;@hidi2c.inf,%hidi2c.SVCDESC%;Microsoft I2C HID Miniport Driver; C:\WINDOWS\System32\drivers\hidi2c.sys []
S3 HidIr;@hidir.inf,%HIDIR.SvcDesc%;Microsoft Infrared HID Driver; C:\WINDOWS\System32\drivers\hidir.sys []
S3 HipShieldK;McAfee Inc. HipShieldK; C:\WINDOWS\system32\drivers\HipShieldK.sys []
S3 hyperkbd;hyperkbd; C:\WINDOWS\System32\drivers\hyperkbd.sys []
S3 HyperVideo;HyperVideo; C:\WINDOWS\system32\DRIVERS\HyperVideo.sys []
S3 IpFilterDriver;@%systemroot%\system32\rascfg.dll,-32013; C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys []
S3 IPMIDRV;IPMIDRV; C:\WINDOWS\System32\drivers\IPMIDrv.sys []
S3 IPNAT;IP Network Address Translator; C:\WINDOWS\System32\drivers\ipnat.sys []
S3 IRENUM;@%SystemRoot%\system32\drivers\irenum.sys,-100; C:\WINDOWS\system32\drivers\irenum.sys []
S3 iScsiPrt;@iscsi.inf,%iScsiPortName%;iScsiPort Driver; C:\WINDOWS\System32\drivers\msiscsi.sys []
S3 Modem;Modem; C:\WINDOWS\system32\drivers\modem.sys []
S3 MRxDAV;@%systemroot%\system32\webclnt.dll,-104; C:\WINDOWS\system32\drivers\mrxdav.sys []
S3 MsBridge;@%SystemRoot%\system32\bridgeres.dll,-1; C:\WINDOWS\system32\DRIVERS\bridge.sys []
S3 msgpiowin32;@msgpiowin32.inf,%GPIO.SvcDesc%;GPIO Buttons Driver; C:\WINDOWS\System32\drivers\msgpiowin32.sys []
S3 mshidkmdf;@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100; C:\WINDOWS\System32\drivers\mshidkmdf.sys []
S3 mshidumdf;@%SystemRoot%\system32\drivers\mshidumdf.sys,-100; C:\WINDOWS\System32\drivers\mshidumdf.sys []
S3 MSKSSRV;@ksfilter.inf,%MSKSSRV.DeviceDesc%;Microsoft Streaming Service Proxy; C:\WINDOWS\system32\drivers\MSKSSRV.sys []
S3 MsLldp;@C:\Windows\system32\DRIVERS\mslldp.sys,-200; C:\WINDOWS\system32\DRIVERS\mslldp.sys []
S3 MSPCLOCK;@ksfilter.inf,%MSPCLOCK.DeviceDesc%;Microsoft Streaming Clock Proxy; C:\WINDOWS\system32\drivers\MSPCLOCK.sys []
S3 MSPQM;@ksfilter.inf,%MSPQM.DeviceDesc%;Microsoft Streaming Quality Manager Proxy; C:\WINDOWS\system32\drivers\MSPQM.sys []
S3 MsRPC;MsRPC; C:\WINDOWS\SysWOW64\drivers\MsRPC.sys []
S3 MSTEE;@ksfilter.inf,%MSTEE.DeviceDesc%;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys []
S3 MTConfig;@mtconfig.inf,%MTConfig.SVCDESC%;Microsoft Input Configuration Driver; C:\WINDOWS\System32\drivers\MTConfig.sys []
S3 NdisCap;@%SystemRoot%\System32\drivers\ndiscap.sys,-5000; C:\WINDOWS\system32\DRIVERS\ndiscap.sys []
S3 NdisImPlatform;@%SystemRoot%\System32\drivers\ndisimplatform.sys,-501; C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys []
S3 NDISWANLEGACY;@%systemroot%\system32\rascfg.dll,-32014; C:\WINDOWS\system32\DRIVERS\ndiswan.sys []
S3 Parport;@msports.inf,%Parport.SVCDESC%;Parallel port driver; C:\WINDOWS\System32\drivers\parport.sys []
S3 Processor;@cpu.inf,%Processor.SvcDesc%;Processor Driver; C:\WINDOWS\System32\drivers\processr.sys []
S3 QWAVEdrv;@%SystemRoot%\system32\drivers\qwavedrv.sys,-1; C:\WINDOWS\system32\drivers\qwavedrv.sys []
S3 RasAcd;Remote Access Auto Connection Driver; C:\WINDOWS\System32\DRIVERS\rasacd.sys []
S3 RDPDR;@%SystemRoot%\System32\DRIVERS\rdpdr.sys,-100; C:\WINDOWS\System32\drivers\rdpdr.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\WINDOWS\System32\drivers\rdpvideominiport.sys []
S3 RDPWD;RDP Winstation Driver; C:\WINDOWS\SysWOW64\drivers\RDPWD.sys []
S3 s3cap;s3cap; C:\WINDOWS\System32\drivers\vms3cap.sys []
S3 scfilter;@%SystemRoot%\System32\drivers\scfilter.sys,-11; C:\WINDOWS\System32\DRIVERS\scfilter.sys []
S3 sdbus;sdbus; C:\WINDOWS\System32\drivers\sdbus.sys []
S3 sdstor;@sdstor.inf,%sdstor_ServiceDesc%;SD Storage Port Driver; C:\WINDOWS\System32\drivers\sdstor.sys []
S3 SerCx;Serial UART Support Library; C:\WINDOWS\system32\drivers\SerCx.sys []
S3 Serenum;@msports.inf,%Serenum.SVCDESC%;Serenum Filter Driver; C:\WINDOWS\System32\drivers\serenum.sys []
S3 Serial;@msports.inf,%Serial.SVCDESC%;Serial port driver; C:\WINDOWS\System32\drivers\serial.sys []
S3 sermouse;@msmouse.inf,%sermouse.SvcDesc%;Serial Mouse Driver; C:\WINDOWS\System32\drivers\sermouse.sys []
S3 sfloppy;@flpydisk.inf,%sfloppy_devdesc%;High-Capacity Floppy Disk Drive; C:\WINDOWS\System32\drivers\sfloppy.sys []
S3 SpbCx;Simple Peripheral Bus Support Library; C:\WINDOWS\system32\drivers\SpbCx.sys []
S3 TCPIP6;@netip6.inf,%MS_TCPIP6.TCPIP6.ServiceDescription%;Microsoft IPv6 Protocol Driver; C:\WINDOWS\system32\DRIVERS\tcpip.sys []
S3 terminpt;@termmou.inf,%TermInpt.SVCDESC%;Microsoft Remote Desktop Input Driver; C:\WINDOWS\System32\drivers\terminpt.sys []
S3 TPM;@tpm.inf,%TPM%;TPM; C:\WINDOWS\system32\drivers\tpm.sys []
S3 TsUsbFlt;TsUsbFlt; C:\WINDOWS\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;@tsgenericusbdriver.inf,%TsUsbGD.DeviceDesc.Generic%;Remote Desktop Generic USB Device; C:\WINDOWS\System32\drivers\TsUsbGD.sys []
S3 UASPStor;@uaspstor.inf,%UASPortName%;USB Attached SCSI (UAS) Driver; C:\WINDOWS\System32\drivers\uaspstor.sys []
S3 UCX01000;USB Controller Extension; C:\WINDOWS\System32\drivers\ucx01000.sys []
S3 UmPass;@umpass.inf,%UmPass.SVCDESC%;Microsoft UMPass Driver; C:\WINDOWS\System32\drivers\umpass.sys []
S3 usbcir;@usbcir.inf,%usbcir.SVCDESC%;eHome Infrared Receiver (USBCIR); C:\WINDOWS\System32\drivers\usbcir.sys []
S3 USBHUB3;@usbhub3.inf,%UsbHub3.SVCDESC%;SuperSpeed Hub; C:\WINDOWS\System32\drivers\UsbHub3.sys []
S3 usbohci;@usbport.inf,%OHCIMP.SvcDesc%;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\System32\drivers\usbohci.sys []
S3 usbprint;@usbprint.inf,%USBPRINT.SvcDesc%;Microsoft USB PRINTER Class; C:\WINDOWS\System32\drivers\usbprint.sys []
S3 USBSTOR;@usbstor.inf,%USBSTOR.SvcDesc%;USB Mass Storage Driver; C:\WINDOWS\System32\drivers\USBSTOR.SYS []
S3 usbuhci;@usbport.inf,%UHCIMP.SvcDesc%;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\System32\drivers\usbuhci.sys []
S3 USBXHCI;@usbxhci.inf,%PCI\CC_0C0330.DeviceDesc%;USB xHCI Compliant Host Controller; C:\WINDOWS\System32\drivers\USBXHCI.SYS []
S3 VerifierExt;@%SystemRoot%\system32\drivers\VerifierExt.sys,-1000; C:\WINDOWS\system32\drivers\VerifierExt.sys []
S3 vhdmp;vhdmp; C:\WINDOWS\System32\drivers\vhdmp.sys []
S3 VMBusHID;VMBusHID; C:\WINDOWS\System32\drivers\VMBusHID.sys []
S3 vpci;@wvpci.inf,%vpci.SVCDESC%;Microsoft Hyper-V Virtual PCI Bus; C:\WINDOWS\System32\drivers\vpci.sys []
S3 WacomPen;@hiddigi.inf,%WacomPen.SVCDESC%;Wacom Serial Pen HID Driver; C:\WINDOWS\System32\drivers\wacompen.sys []
S3 Wanarp;@%systemroot%\system32\rascfg.dll,-32011; C:\WINDOWS\system32\DRIVERS\wanarp.sys []
S3 WdBoot;@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-390; C:\WINDOWS\system32\drivers\WdBoot.sys []
S3 WdFilter;@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-330; C:\WINDOWS\system32\drivers\WdFilter.sys []
S3 WIMMount;WIMMount; C:\WINDOWS\system32\drivers\wimmount.sys []
S4 cdfs;CD/DVD File System Reader; C:\WINDOWS\system32\DRIVERS\cdfs.sys []
S4 udfs;udfs; C:\WINDOWS\system32\DRIVERS\udfs.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AudioEndpointBuilder;@%SystemRoot%\system32\AudioEndpointBuilder.dll,-204; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Audiosrv;@%SystemRoot%\system32\audiosrv.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-24 50344]
R2 BFE;@%SystemRoot%\system32\bfe.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 BITS;@%SystemRoot%\system32\qmgr.dll,-1000; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 BrcmCardReader;Broadcom Card Reader Service; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [2012-08-21 176640]
R2 BrokerInfrastructure;@%windir%\system32\bisrv.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2012-10-26 2449552]
R2 CryptSvc;@%SystemRoot%\system32\cryptsvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 DcomLaunch;@combase.dll,-5012; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 DeviceAssociationService;@%SystemRoot%\system32\das.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Dhcp;@%SystemRoot%\system32\dhcpcore.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Dnscache;@%SystemRoot%\System32\dnsapi.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 DPS;@%systemroot%\system32\dps.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-12-10 350544]
R2 EventLog;@%SystemRoot%\system32\wevtsvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 EventSystem;@comres.dll,-2450; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 gpsvc;@gpapi.dll,-112; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2014-01-23 2221904]
R2 IKEEXT;@%SystemRoot%\system32\ikeext.dll,-501; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 iphlpsvc;@%SystemRoot%\system32\iphlpsvc.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LanmanServer;@%systemroot%\system32\srvsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 LanmanWorkstation;@%systemroot%\system32\wkssvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 lmhosts;@%SystemRoot%\system32\lmhsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-12-13 377104]
R2 LSM;@%windir%\system32\lsm.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 MMCSS;@%systemroot%\system32\mmcss.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 MpsSvc;@%SystemRoot%\system32\FirewallAPI.dll,-23090; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 NlaSvc;@%SystemRoot%\System32\nlasvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 nsi;@%SystemRoot%\system32\nsisvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2012-11-03 259136]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe []
R2 PcaSvc;@%SystemRoot%\system32\pcasvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Power;@%SystemRoot%\system32\umpo.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 ProfSvc;@%systemroot%\system32\profsvc.dll,-300; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2013-03-27 96880]
R2 RpcEptMapper;@%windir%\system32\RpcEpMap.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 RpcSs;@combase.dll,-5010; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 SamSs;@%SystemRoot%\system32\samsrv.dll,-1; C:\WINDOWS\system32\lsass.exe []
R2 SENS;@%SystemRoot%\system32\Sens.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 ShellHWDetection;@%SystemRoot%\System32\shsvcs.dll,-12288; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Schedule;@%SystemRoot%\system32\schedsvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Spooler;@%systemroot%\system32\spoolsv.exe,-1; C:\WINDOWS\System32\spoolsv.exe []
R2 SysMain;@%SystemRoot%\system32\sysmain.dll,-1000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Themes;@%SystemRoot%\System32\themeservice.dll,-8192; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 TrkWks;@%SystemRoot%\system32\trkwks.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R2 Wcmsvc;@%SystemRoot%\System32\wcmsvc.dll,-4097; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 Winmgmt;@%Systemroot%\system32\wbem\wmisvc.dll,-205; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R2 WlanSvc;@%SystemRoot%\System32\wlansvc.dll,-257; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 Appinfo;@%systemroot%\system32\appinfo.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 Browser;@%systemroot%\system32\browser.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2012-10-23 658064]
R3 fdPHost;@%systemroot%\system32\fdPHost.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 FDResPub;@%systemroot%\system32\fdrespub.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 hidserv;@%SystemRoot%\System32\hidserv.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 HomeGroupListener;@%SystemRoot%\System32\ListSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 HomeGroupProvider;@%SystemRoot%\System32\provsvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 KeyIso;@keyiso.dll,-100; C:\WINDOWS\system32\lsass.exe []
R3 NcdAutoSetup;@%SystemRoot%\system32\NcdAutoSetup.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 Netman;@%SystemRoot%\system32\netman.dll,-109; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 netprofm;@%SystemRoot%\system32\netprofmsvc.dll,-202; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 p2pimsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8004; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 p2psvc;@%SystemRoot%\system32\p2psvc.dll,-8006; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 PlugPlay;@%SystemRoot%\system32\umpnpmgr.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 PNRPsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8000; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 RasMan;@%Systemroot%\system32\rasmans.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 SSDPSRV;@%systemroot%\system32\ssdpsrv.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 SstpSvc;@%SystemRoot%\system32\sstpsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 SystemEventsBroker;@%windir%\system32\SystemEventsBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 TapiSrv;@%SystemRoot%\system32\tapisrv.dll,-10100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 TimeBroker;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
R3 TrustedInstaller;@%SystemRoot%\servicing\TrustedInstaller.exe,-100; C:\WINDOWS\servicing\TrustedInstaller.exe [2013-05-15 98304]
R3 WdiServiceHost;@%systemroot%\system32\wdi.dll,-502; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 WdiSystemHost;@%systemroot%\system32\wdi.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
R3 WinHttpAutoProxySvc;@%SystemRoot%\system32\winhttp.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S2 0163121390576731mcinstcleanup;McAfee Application Installer Cleanup (0163121390576731); C:\WINDOWS\TEMP\016312~1.EXE -cleanup -nolog []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12 116648]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-09-05 1364256]
S2 SharedAccess;@%SystemRoot%\system32\ipnathlp.dll,-106; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S2 sppsvc;@%SystemRoot%\system32\sppsvc.exe,-101; C:\WINDOWS\system32\sppsvc.exe []
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
S2 WMPNetworkSvc;@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101; C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe []
S3 AeLookupSvc;@%SystemRoot%\system32\aelupsvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 ALG;@%SystemRoot%\system32\Alg.exe,-112; C:\WINDOWS\System32\alg.exe []
S3 AllUserInstallAgent;@%SystemRoot%\System32\AUInstallAgent.dll,-101; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 AppIDSvc;@%systemroot%\system32\appidsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 BDESVC;@%SystemRoot%\system32\bdesvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 bthserv;@%SystemRoot%\System32\bthserv.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 CertPropSvc;@%SystemRoot%\System32\certprop.dll,-11; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 COMSysApp;@comres.dll,-947; C:\WINDOWS\system32\dllhost.exe [2012-07-26 8704]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2012-10-23 277024]
S3 defragsvc;@%SystemRoot%\system32\defragsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2012-11-16 469648]
S3 DeviceInstall;@%SystemRoot%\system32\umpnpmgr.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 dot3svc;@%systemroot%\system32\dot3svc.dll,-1102; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 DsmSvc;@%SystemRoot%\system32\DeviceSetupManager.dll,-1000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 Eaphost;@%systemroot%\system32\eapsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 EFS;@%SystemRoot%\system32\efssvc.dll,-100; C:\WINDOWS\System32\lsass.exe []
S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2012-07-12 174160]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\WINDOWS\system32\fxssvc.exe []
S3 fhsvc;@%systemroot%\system32\fhsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-03-27 655624]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-07-26 43616]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12 116648]
S3 hkmsvc;@%SystemRoot%\system32\kmsvc.dll,-6; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 KtmRm;@comres.dll,-2946; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 lltdsvc;@%SystemRoot%\system32\lltdres.dll,-1; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe []
S3 MSDTC;@comres.dll,-2797; C:\WINDOWS\System32\msdtc.exe []
S3 MSiSCSI;@%SystemRoot%\system32\iscsidsc.dll,-5000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 msiserver;@%SystemRoot%\system32\msimsg.dll,-27; C:\WINDOWS\system32\msiexec.exe [2012-07-26 62976]
S3 napagent;@%SystemRoot%\system32\qagentrt.dll,-6; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 NcaSvc;@%SystemRoot%\system32\ncasvc.dll,-3009; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 Netlogon;@%SystemRoot%\System32\netlogon.dll,-102; C:\WINDOWS\system32\lsass.exe []
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\WINDOWS\SysWow64\perfhost.exe [2012-07-26 20992]
S3 pla;@%systemroot%\system32\pla.dll,-500; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 PNRPAutoReg;@%SystemRoot%\system32\pnrpauto.dll,-8002; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 PolicyAgent;@%SystemRoot%\System32\polstore.dll,-5010; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 PrintNotify;@C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 QWAVE;@%SystemRoot%\system32\qwave.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 RasAuto;@%Systemroot%\system32\rasauto.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 RpcLocator;@%systemroot%\system32\Locator.exe,-2; C:\WINDOWS\system32\locator.exe []
S3 SCPolicySvc;@%SystemRoot%\System32\certprop.dll,-13; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 SDRSVC;@%SystemRoot%\system32\sdrsvc.dll,-107; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 seclogon;@%SystemRoot%\system32\seclogon.dll,-7001; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 SensrSvc;@%SystemRoot%\System32\sensrsvc.dll,-1000; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 SessionEnv;@%SystemRoot%\System32\SessEnv.dll,-1026; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 SNMPTRAP;@%SystemRoot%\system32\snmptrap.exe,-3; C:\WINDOWS\System32\snmptrap.exe []
S3 stisvc;@%SystemRoot%\system32\wiaservc.dll,-9; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 svsvc;@%SystemRoot%\system32\svsvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 swprv;@%SystemRoot%\System32\swprv.dll,-103; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 TabletInputService;@%SystemRoot%\system32\TabSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 TermService;@%SystemRoot%\System32\termsrv.dll,-268; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 THREADORDER;@%systemroot%\system32\mmcss.dll,-102; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 UI0Detect;@%SystemRoot%\system32\ui0detect.exe,-101; C:\WINDOWS\system32\UI0Detect.exe []
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 upnphost;@%systemroot%\system32\upnphost.dll,-213; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 VaultSvc;@%SystemRoot%\system32\vaultsvc.dll,-1003; C:\WINDOWS\system32\lsass.exe []
S3 vds;@%SystemRoot%\system32\vds.exe,-100; C:\WINDOWS\System32\vds.exe []
S3 vmickvpexchange;@%systemroot%\system32\vmicres.dll,-201; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicrdv;@%systemroot%\system32\vmicres.dll,-601; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicshutdown;@%systemroot%\system32\vmicres.dll,-301; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmictimesync;@%systemroot%\system32\vmicres.dll,-401; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicvss;@%systemroot%\system32\vmicres.dll,-501; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 vmicheartbeat;@%systemroot%\system32\vmicres.dll,-101; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 VSS;@%systemroot%\system32\vssvc.exe,-102; C:\WINDOWS\system32\vssvc.exe []
S3 W32Time;@%SystemRoot%\system32\w32time.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\WINDOWS\system32\wbengine.exe []
S3 WbioSrvc;@%systemroot%\system32\wbiosrvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wcncsvc;@%SystemRoot%\system32\wcncsvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 WcsPlugInService;@%SystemRoot%\system32\WcsPlugInService.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 WebClient;@%systemroot%\system32\webclnt.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 Wecsvc;@%SystemRoot%\system32\wecsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wercplsupport;@%SystemRoot%\System32\wercplsupport.dll,-101; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 WerSvc;@%SystemRoot%\System32\wersvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 WiaRpc;@%SystemRoot%\system32\wiarpc.dll,-2; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 WinDefend;@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310; C:\Program Files (x86)\Windows Defender\MsMpEng.exe []
S3 WinRM;@%Systemroot%\system32\wsmsvc.dll,-101; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S3 wlidsvc;@%SystemRoot%\system32\wlidsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S3 wmiApSrv;@%Systemroot%\system32\wbem\wmiapsrv.exe,-110; C:\WINDOWS\system32\wbem\WmiApSrv.exe []
S4 NetTcpPortSharing;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8201; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-12 139696]
S4 RemoteAccess;@%Systemroot%\system32\mprdim.dll,-200; C:\WINDOWS\System32\svchost.exe [2012-09-20 23040]
S4 RemoteRegistry;@regsvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]
S4 SCardSvr;@%SystemRoot%\System32\SCardSvr.dll,-1; C:\WINDOWS\system32\svchost.exe [2012-09-20 23040]

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 18:45
od Rudy
To svinstvo je tam stále. Dejte log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware.

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 20:04
od saonek
ComboFix 14-01-29.01 - Vitecek . 01. 2014 19:54:29.3.2 - x64
Microsoft Windows 8 6.2.9200.0.1250.420.1029.18.3909.2828 [GMT 1:00]
Spuštěný z: c:\users\Vitecek\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-12-28 do 2014-01-30 )))))))))))))))))))))))))))))))
.
.
2014-01-30 19:00 . 2014-01-30 19:00 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2014-01-30 19:00 . 2014-01-30 19:00 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-01-30 17:10 . 2014-01-30 17:10 -------- d-----w- c:\windows\system32\%LOCALAPPDATA%
2014-01-30 06:09 . 2014-01-30 06:09 -------- d-----w- C:\_OTM
2014-01-29 19:57 . 2014-01-30 17:14 -------- d-----w- c:\program files (x86)\trend micro
2014-01-29 19:57 . 2014-01-29 19:57 -------- d-----w- C:\rsit
2014-01-29 06:14 . 2014-01-29 20:21 -------- d-----w- C:\AdwCleaner
2014-01-28 17:18 . 2014-01-29 12:21 -------- d-----w- c:\program files (x86)\World of Warcraft
2014-01-28 17:18 . 2014-01-28 17:18 -------- d-----w- c:\programdata\Blizzard Entertainment
2014-01-28 17:18 . 2014-01-28 17:18 -------- d-----w- c:\program files (x86)\Common Files\Blizzard Entertainment
2014-01-28 17:17 . 2014-01-28 17:17 -------- d-----w- c:\programdata\Battle.net
2014-01-28 12:56 . 2014-01-28 12:56 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi
2014-01-24 20:30 . 2014-01-24 20:30 92544 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-01-24 20:30 . 2014-01-24 20:30 80184 ----a-w- c:\windows\system32\drivers\aswStm.sys
2014-01-24 20:30 . 2014-01-24 20:30 78648 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-01-24 20:30 . 2014-01-24 20:30 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-01-24 20:30 . 2014-01-24 20:30 421704 ----a-w- c:\windows\system32\drivers\aswSP.sys
2014-01-24 20:30 . 2014-01-24 20:30 207904 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-01-24 20:30 . 2014-01-24 20:30 1038072 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2014-01-24 20:30 . 2014-01-24 20:30 334136 ----a-w- c:\windows\system32\aswBoot.exe
2014-01-24 20:30 . 2014-01-24 20:30 43152 ----a-w- c:\windows\avastSS.scr
2014-01-24 20:30 . 2014-01-24 20:30 -------- d-----w- c:\program files\AVAST Software
2014-01-24 20:29 . 2014-01-24 20:29 -------- d-----w- c:\programdata\AVAST Software
2014-01-24 20:21 . 2014-01-24 20:21 -------- d-----w- c:\program files (x86)\VS Revo Group
2014-01-24 16:46 . 2014-01-24 16:46 246960 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10231.bin
2014-01-24 15:24 . 2013-09-23 12:49 197704 ----a-w- c:\windows\system32\drivers\HipShieldK.sys
2014-01-23 12:33 . 2014-01-23 12:33 41504 ---ha-w- c:\windows\system32\drivers\Hamdrv.sys
2014-01-22 22:46 . 2014-01-28 18:06 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2014-01-22 22:46 . 2014-01-28 18:07 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2
2014-01-22 19:07 . 2014-01-22 19:07 -------- d-----w- c:\programdata\Malwarebytes
2014-01-22 19:07 . 2013-04-04 13:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-01-22 19:07 . 2014-01-22 19:07 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2014-01-22 11:37 . 2014-01-22 11:37 -------- d-----w- c:\programdata\LogMeIn
2014-01-20 17:14 . 2014-01-20 17:14 -------- d---a-w- c:\windows\bitstreams
2014-01-20 17:14 . 2013-05-31 15:32 84992 ----a-w- c:\windows\zlib1.dll
2014-01-20 17:14 . 2013-05-31 15:32 612352 ----a-w- c:\windows\libcurl.dll
2014-01-20 17:14 . 2013-05-31 15:32 279955 ----a-w- c:\windows\libidn-11.dll
2014-01-20 17:14 . 2013-05-31 15:32 183382 ----a-w- c:\windows\librtmp.dll
2014-01-20 17:14 . 2013-05-31 15:32 171008 ----a-w- c:\windows\libssh2.dll
2014-01-20 17:14 . 2013-05-31 15:32 110094 ----a-w- c:\windows\libusb-1.0.dll
2014-01-20 17:14 . 2014-01-21 13:13 -------- d-----w- c:\program files (x86)\MINECRAFT
2014-01-18 19:22 . 2014-01-18 19:22 -------- d-----w- c:\program files (x86)\Company
2014-01-15 13:56 . 2013-12-07 06:37 688640 ----a-w- c:\windows\system32\WSShared.dll
2014-01-15 13:56 . 2013-12-07 05:15 562688 ----a-w- c:\windows\SysWow64\WSShared.dll
2014-01-15 13:56 . 2013-12-07 06:37 163840 ----a-w- c:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-15 13:56 . 2013-12-07 05:15 124928 ----a-w- c:\windows\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-15 13:18 . 2013-10-31 05:56 915968 ----a-w- c:\windows\system32\MPSSVC.dll
2014-01-15 13:18 . 2013-10-31 05:56 758784 ----a-w- c:\windows\system32\FirewallAPI.dll
2014-01-15 13:18 . 2013-10-31 04:01 550400 ----a-w- c:\windows\SysWow64\FirewallAPI.dll
2014-01-15 13:18 . 2013-10-28 05:50 588288 ----a-w- c:\windows\system32\SHCore.dll
2014-01-15 13:18 . 2013-10-28 04:05 452608 ----a-w- c:\windows\SysWow64\SHCore.dll
2014-01-15 13:18 . 2013-10-13 20:49 100696 ----a-w- c:\windows\system32\drivers\disk.sys
2014-01-15 13:18 . 2013-08-27 05:21 227840 ----a-w- c:\windows\system32\WebClnt.dll
2014-01-15 13:18 . 2013-10-31 03:42 74752 ----a-w- c:\windows\system32\drivers\mpsdrv.sys
2014-01-15 13:18 . 2013-08-27 05:19 104448 ----a-w- c:\windows\system32\davclnt.dll
2014-01-15 13:18 . 2013-08-26 22:29 199168 ----a-w- c:\windows\SysWow64\WebClnt.dll
2014-01-15 13:18 . 2013-08-26 22:28 86016 ----a-w- c:\windows\SysWow64\davclnt.dll
2014-01-14 16:32 . 2014-01-14 16:32 -------- d-----w- c:\windows\SysWow64\NV
2014-01-14 16:32 . 2014-01-14 16:32 -------- d-----w- c:\windows\system32\NV
2014-01-13 18:50 . 2014-01-13 18:50 -------- d-----w- C:\Games
2014-01-12 14:39 . 2012-11-06 04:20 314880 ----a-w- c:\windows\system32\rdpclip.exe
2014-01-12 14:38 . 2012-10-11 05:45 3236864 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\tipskins.dll
2014-01-12 14:37 . 2013-08-01 10:41 2233688 ----a-w- c:\windows\system32\drivers\tcpip.sys
2014-01-12 14:36 . 2013-06-01 09:20 2219520 ----a-w- c:\windows\system32\dwmcore.dll
2014-01-12 14:35 . 2012-11-20 05:24 1164800 ----a-w- c:\windows\SysWow64\Display.dll
2014-01-12 14:35 . 2012-11-20 05:17 1184256 ----a-w- c:\windows\system32\Display.dll
2014-01-12 14:35 . 2012-11-20 04:59 7168 ----a-w- c:\windows\system32\KBDKURD.DLL
2014-01-12 14:35 . 2012-11-20 05:02 6656 ----a-w- c:\windows\SysWow64\KBDKURD.DLL
2014-01-12 14:35 . 2013-06-16 22:41 997632 ----a-w- c:\windows\system32\drivers\ndis.sys
2014-01-12 14:35 . 2013-08-03 06:40 1374208 ----a-w- c:\windows\system32\wdc.dll
2014-01-12 14:35 . 2013-08-03 06:40 462336 ----a-w- c:\windows\system32\sysmon.ocx
2014-01-12 14:35 . 2013-08-03 06:40 566784 ----a-w- c:\windows\system32\wvc.dll
2014-01-12 14:35 . 2013-08-03 05:14 399360 ----a-w- c:\windows\SysWow64\sysmon.ocx
2014-01-12 14:35 . 2013-08-03 05:13 437248 ----a-w- c:\windows\SysWow64\wvc.dll
2014-01-12 14:35 . 2013-08-03 05:13 1245696 ----a-w- c:\windows\SysWow64\wdc.dll
2014-01-12 14:16 . 2014-01-12 14:17 -------- d-----w- c:\program files (x86)\Google
2014-01-12 14:00 . 2014-01-09 08:02 78296 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-01-12 14:00 . 2014-01-09 08:02 694240 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-01-12 13:55 . 2014-01-12 14:04 -------- d-----r- c:\windows\BrowserChoice
2014-01-12 13:14 . 2014-01-15 19:22 -------- d-----w- c:\windows\system32\MRT
2014-01-12 12:50 . 2012-10-10 07:04 94208 ----a-w- c:\windows\system32\synceng.dll
2014-01-12 12:50 . 2012-10-10 06:31 72192 ----a-w- c:\windows\SysWow64\synceng.dll
2014-01-12 12:50 . 2013-10-25 06:18 19271168 ----a-w- c:\windows\system32\mshtml.dll
2014-01-12 12:48 . 2013-08-16 05:22 4917760 ----a-w- c:\windows\system32\sppsvc.exe
2014-01-12 12:47 . 2013-07-01 22:08 52848 ----a-w- c:\program files\Windows Defender\MpTpmAtt.dll
2014-01-12 12:46 . 2013-09-04 03:11 576512 ----a-w- c:\windows\system32\drivers\afd.sys
2014-01-12 12:44 . 2013-10-02 23:25 1300992 ----a-w- c:\windows\system32\gdi32.dll
2014-01-12 12:44 . 2013-10-01 22:22 1022976 ----a-w- c:\windows\SysWow64\gdi32.dll
2014-01-12 12:39 . 2012-08-31 00:53 17888 ----a-w- c:\windows\SysWow64\msvcr100_clr0400.dll
2014-01-12 12:38 . 2012-08-31 00:52 17888 ----a-w- c:\windows\system32\msvcr100_clr0400.dll
2014-01-12 12:30 . 2013-06-22 05:45 785624 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2014-01-12 12:30 . 2013-06-22 05:45 54488 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2014-01-12 12:30 . 2013-07-05 22:02 99328 ----a-w- c:\windows\system32\drivers\usbcir.sys
2014-01-12 12:30 . 2013-07-05 22:01 210560 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2014-01-12 12:30 . 2013-07-01 22:14 25600 ----a-w- c:\windows\system32\drivers\usbprint.sys
2014-01-12 12:30 . 2013-06-29 03:08 32768 ----a-w- c:\windows\system32\drivers\hidparse.sys
2014-01-12 12:30 . 2013-06-29 03:07 83968 ----a-w- c:\windows\system32\drivers\hidclass.sys
2014-01-12 12:30 . 2013-05-04 04:48 27648 ----a-w- c:\windows\system32\drivers\hidusb.sys
2014-01-12 12:25 . 2013-05-23 23:02 1314816 ----a-w- c:\windows\system32\rpcrt4.dll
2014-01-12 12:25 . 2013-05-23 22:25 694272 ----a-w- c:\windows\SysWow64\rpcrt4.dll
2014-01-12 12:23 . 2013-04-23 23:13 1013248 ----a-w- c:\windows\SysWow64\certutil.exe
2014-01-12 12:23 . 2013-04-23 23:12 109056 ----a-w- c:\windows\SysWow64\cryptnet.dll
2014-01-12 12:23 . 2013-04-23 22:56 1255936 ----a-w- c:\windows\system32\certutil.exe
2014-01-12 12:23 . 2013-04-23 22:55 141312 ----a-w- c:\windows\system32\cryptnet.dll
2014-01-12 12:23 . 2013-03-02 09:59 411880 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2014-01-12 12:21 . 2013-09-23 22:30 419328 ----a-w- c:\windows\system32\schannel.dll
2014-01-12 12:21 . 2013-09-23 22:30 323072 ----a-w- c:\windows\SysWow64\schannel.dll
2014-01-12 12:18 . 2013-06-01 09:25 496640 ----a-w- c:\windows\SysWow64\qedit.dll
2014-01-12 12:18 . 2013-06-01 09:21 595968 ----a-w- c:\windows\system32\qedit.dll
2014-01-12 12:18 . 2012-10-24 03:25 26624 ----a-w- c:\windows\system32\ReAgentc.exe
2014-01-12 12:18 . 2012-10-24 02:48 24064 ----a-w- c:\windows\SysWow64\ReAgentc.exe
2014-01-12 12:18 . 2013-03-02 08:23 375808 ----a-w- c:\windows\SysWow64\ReAgent.dll
2014-01-12 12:18 . 2013-03-02 02:44 1011200 ----a-w- c:\windows\system32\reseteng.dll
2014-01-12 12:18 . 2012-12-15 04:55 443392 ----a-w- c:\windows\system32\ReAgent.dll
2014-01-12 12:18 . 2012-11-03 05:26 132096 ----a-w- c:\windows\system32\sysreset.exe
2014-01-12 12:18 . 2012-11-03 05:25 945152 ----a-w- c:\windows\system32\resetengmig.dll
2014-01-12 12:16 . 2013-07-01 01:42 79192 ----a-w- c:\windows\system32\drivers\usbehci.sys
2014-01-12 12:16 . 2013-07-01 01:42 623448 ----a-w- c:\windows\system32\drivers\usbhub.sys
2014-01-12 12:16 . 2013-07-01 01:42 498008 ----a-w- c:\windows\system32\drivers\usbport.sys
2014-01-12 12:16 . 2013-07-01 01:42 21848 ----a-w- c:\windows\system32\drivers\usbd.sys
2014-01-12 12:16 . 2013-06-29 03:07 32256 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2014-01-12 12:16 . 2013-06-29 03:06 120832 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2014-01-12 12:16 . 2012-11-20 04:56 27136 ----a-w- c:\windows\system32\drivers\usbohci.sys
2014-01-12 12:14 . 2013-05-15 02:25 888320 ----a-w- c:\windows\system32\autochk.exe
2014-01-12 12:14 . 2013-05-30 23:24 1257472 ----a-w- c:\windows\system32\kernel32.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-01-13 12:50 . 2012-07-26 08:13 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"RadioController"="c:\program files (x86)\RadioController\RfBtnHelper.exe" [2013-03-27 111216]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-01-24 3767096]
"LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2014-01-23 3813200]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe" [2012-07-26 62976]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\StartUp\
Acer Backup Manager Tray.lnk - c:\program files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe -h -k [2012-11-3 624192]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableCursorSuppression"= 1 (0x1)
"ConsentPromptBehaviorUser"= 3 (0x3)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0sdnclean64.exe
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R2 0163121390576731mcinstcleanup;McAfee Application Installer Cleanup (0163121390576731);c:\windows\TEMP\016312~1.EXE;c:\windows\TEMP\016312~1.EXE [x]
R3 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R3 DeviceFastLaneService;Device Fast-lane Service;c:\program files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe;c:\program files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [x]
R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [x]
R3 HipShieldK;McAfee Inc. HipShieldK;c:\windows\system32\drivers\HipShieldK.sys;c:\windows\SYSNATIVE\drivers\HipShieldK.sys [x]
R3 McAWFwk;McAfee Activation Service;c:\progra~1\mcafee\msc\mcawfwk.exe;c:\progra~1\mcafee\msc\mcawfwk.exe [x]
R3 vmicheartbeat;Služba prezenčního signálu technologie Hyper-V;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 iaStorA;iaStorA;c:\windows\System32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDFilter.sys [x]
S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDNServ.sys [x]
S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDVDisk.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 BrcmCardReader;Broadcom Card Reader Service;c:\program files\Broadcom\MemoryCard\BrcmCardReader.exe;c:\program files\Broadcom\MemoryCard\BrcmCardReader.exe [x]
S2 CCDMonitorService;CCDMonitorService;c:\program files (x86)\Acer\Acer Cloud\CCDMonitorService.exe;c:\program files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [x]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe;c:\program files (x86)\Launch Manager\dsiwmis.exe [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [x]
S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [x]
S2 RfButtonDriverService;Dritek RF Button Command Service;c:\windows\RfBtnSvc64.exe;c:\windows\RfBtnSvc64.exe [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\System32\drivers\b57xdbd.sys;c:\windows\SYSNATIVE\drivers\b57xdbd.sys [x]
S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\System32\drivers\b57xdmp.sys;c:\windows\SYSNATIVE\drivers\b57xdmp.sys [x]
S3 bScsiMSa;bScsiMSa;c:\windows\System32\drivers\bScsiMSa.sys;c:\windows\SYSNATIVE\drivers\bScsiMSa.sys [x]
S3 bScsiSDa;bScsiSDa;c:\windows\System32\drivers\bScsiSDa.sys;c:\windows\SYSNATIVE\drivers\bScsiSDa.sys [x]
S3 ePowerSvc;ePower Service;c:\program files\Acer\Acer Power Management\ePowerSvc.exe;c:\program files\Acer\Acer Power Management\ePowerSvc.exe [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys;c:\windows\SYSNATIVE\DRIVERS\k57nd60a.sys [x]
S3 Ps2Kb2Hid;PS/2 Keyboard to HID Driver;c:\windows\System32\drivers\aPs2Kb2Hid.sys;c:\windows\SYSNATIVE\drivers\aPs2Kb2Hid.sys [x]
S3 SmbDrvI;SmbDrvI;c:\windows\system32\DRIVERS\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\DRIVERS\Smb_driver_Intel.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-01-28 18:36 1211672 ----a-w- c:\program files (x86)\Google\Chrome\Application\32.0.1700.102\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-01-30 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2803842525-2395282326-2134614540-1002Core.job
- c:\users\Vitecek\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-30 16:12]
.
2014-01-30 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2803842525-2395282326-2134614540-1002UA.job
- c:\users\Vitecek\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-30 16:12]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-01-24 20:30 287280 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-10-23 171040]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-10-23 399392]
"Persistence"="c:\windows\system32\igfxpers.exe" [2012-10-23 441888]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-06-11 12503184]
"Printsrv"="c:\windows\System32\Printing_Admin_Scripts\en-US\pubpr.vbs" [BU]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://acer13.msn.com
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 93.153.117.1 93.153.117.33
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B9A09F18-45AB-4F09-A117-A4ADDA8FA8C8}]
@Denied: (A) (Everyone)
"Solution"="{36eb6792-3a29-43b3-8cd0-f67d266fb426}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane\0]
"Key"="ActionsPane"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\8.0\\ActionsPane.xsd"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
@SACL=(02 0000)
.
Celkový čas: 2014-01-30 20:02:42
ComboFix-quarantined-files.txt 2014-01-30 19:02
ComboFix2.txt 2014-01-28 18:36
ComboFix3.txt 2014-01-26 15:28
.
Před spuštěním: 378 178 781 184 bytes free
Po spuštění: 378 931 101 696 bytes free
.
- - End Of File - - 4AEAC5596C6AD5E7E9E3EE7BA3CD7FCE

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 20:56
od Rudy
Už to bude OK. Jen odemkneme pár klíčů. Přesuňte ComboFix na plochu. Otevřte poznámkový blok a zkopírujte do něj:
RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B9A09F18-45AB-4F09-A117-A4ADDA8FA8C8}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane\0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

Reboot::
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 21:24
od saonek
Udělal jsem jak jste napsal vložil jsem txt soubor na ploše do combofixu,proběhl sken combofixu při kterém se restartoval pc po restartu mě to psalo abych počkal na log,ale pak proběhla rychle okno s černou obrazovkou a s nějakýma datama které tam rychle proběhly.Log na konci se už neukázal.

Re: Prosím o kontrolu logu

Napsal: 30 led 2014 22:29
od Rudy
Nic se neděje, toto bylo pouze odemknutí zamčených klíčů. Nastala nějaká změna?