Pomalý boot + problém s diakritikou
Napsal: 30 bře 2014 18:37
Zdravím,
v poslednom čase mám problém s diakritikou, keď PC dlhšie beží a píšem mäkčene a dĺžne pomocou klávesy vedľa Backspace, tak mi napíše niečo v zmysle ˇˇd, ´´l apod., prípadne nenapíše žiadnu diakritiku. K tomu mám pomalý booting PC, ale to môže byť aj spôsobené HW opotrebovaním disku, predsalen nie je najnovší
Prikladám RSIT, vďaka za rady.
Logfile of random's system information tool 1.09 (written by random/random)
Run by melonsvk at 2014-03-30 19:35:09
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 165 GB (31%) free of 535 GB
Total RAM: 3951 MB (30% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:35:19, on 30. 3. 2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Connectify\DispatchUI.exe
C:\Program Files (x86)\Connectify\Connectify.exe
C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTShellHlp.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\spotify.exe
C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTAgent.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Program Files (x86)\Aurora\firefox.exe
C:\Program Files (x86)\Aurora\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\trend micro\melonsvk.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.webisgreat.info/?pid=5 ... Z&unqvl=48
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.webisgreat.info/?pid=5 ... Z&unqvl=48
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = cache34.ics.muni.cz:5555
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: CrossriderApp0051386 - {11111111-1111-1111-1111-110511131186} - C:\Program Files (x86)\FreeHD-Sport TV V9.0\FreeHD-Sport TV V9.0-bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [mnctwgbfoSrv] C:\Windows\inf\mnctwgbfo.vbe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [winhotspot] C:\Program Files (x86)\winhotspot\1F70.tmp
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\melonsvk\AppData\Roaming\Spotify\spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Startup: Firewall.exe
O4 - Startup: Firewall.exe.tmp
O4 - Global Startup: Virtual Router Manager.lnk = ?
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.connectify.me
O15 - ESC Trusted Zone: http://*.fastspring.com
O15 - ESC Trusted Zone: http://*.connectify.me (HKLM)
O15 - ESC Trusted Zone: http://*.fastspring.com (HKLM)
O17 - HKLM\System\CCS\Services\Tcpip\..\{8D99CD24-35C1-4794-9F89-0E7FDDA3DBE8}: NameServer = 8.8.8.8,4.4.4.4
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Connectify - Connectify - C:\Program Files (x86)\Connectify\ConnectifyService.exe
O23 - Service: DirMngr - Unknown owner - C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FileZilla Server FTP server (FileZilla Server) - FileZilla Project - C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-30007 (IISADMIN) - Unknown owner - C:\Windows\system32\inetsrv\inetinfo.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VirtualRouterService (Virtual Router) - Chris Pietschmann (http://pietschsoft.com) - C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-20001 (WMSVC) - Unknown owner - C:\Windows\system32\inetsrv\wmsvc.exe (file missing)
--
End of file - 11607 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\system32\WLANExt.exe 26721184
\??\C:\Windows\system32\conhost.exe "16418372831180569320-63370955-178265028319351881871722769018912507162081476100
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\IDT\WDM\AESTSr64.exe"
C:\Windows\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Connectify\ConnectifyService.exe"
"taskhost.exe"
"C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe" --service
C:\Windows\system32\svchost.exe -k ftpsvc
C:\Windows\system32\inetsrv\inetinfo.exe
taskeng.exe {7FF35929-A678-4F44-9B89-F371BBA51C66}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"ConnectifyD.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
\??\C:\Windows\system32\conhost.exe "-1519514290212542423350586175134948017446959177-104126483-52538877778154438
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Greenshot\Greenshot.exe"
"C:\Program Files (x86)\Connectify\DispatchUI.exe"
"C:\Program Files\Microsoft Office\Office15\MsoSync.exe"
"C:\Program Files (x86)\Connectify\Connectify.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTShellHlp.exe"
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
C:\Windows\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files\TortoiseSVN\bin\TSVNCache.exe"
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
"C:\Users\melonsvk\AppData\Roaming\Spotify\spotify.exe" /uri spotify:autostart
"C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTAgent.exe" -autorun
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\alg.exe
"C:\Users\melonsvk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Firewall.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --channel="4704.0.738085283\687742797" /prefetch:673131151
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --channel="4704.1.1220783892\281454800" /prefetch:673131151
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --channel="4704.2.931529645\1616593696" /prefetch:673131151
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --channel="4704.3.2100471715\528102524" /prefetch:673131151
C:\Windows\system32\msiexec.exe /V
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=gpu-process --channel="4704.4.975686803\744279612" --no-sandbox --lang=en-US --log-severity=disable --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --gpu-vendor-id=0x1002 --gpu-device-id=0x68e4 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.200.11.0 --lang=en-US --log-severity=disable /prefetch:822062411
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Aurora\firefox.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Aurora\plugin-container.exe" --channel=3312.229c6690.218531925 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll" -greomni "C:\Program Files (x86)\Aurora\omni.ja" -appomni "C:\Program Files (x86)\Aurora\browser\omni.ja" -appdir "C:\Program Files (x86)\Aurora\browser" 1E05176855CC7D2F 3312 "\\.\pipe\gecko-crash-server-pipe.3312" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe" --proxy-stub-channel=Flash5196.5B1792E0.17724 --host-broker-channel=Flash5196.5B1792E0.24118 --host-pid=5196 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe" --channel=6140.0034F78C.338668509 --proxy-stub-channel=Flash5196.5B1792E0.17724 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Windows\system32\wuauclt.exe"
C:\Windows\servicing\TrustedInstaller.exe
"c:\Program Files\Microsoft Security Client\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey CDCC5871-ACC3-15E9-9EC6-25EE7C1433FE -Reinvoke
"C:\Users\melonsvk\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-630410970-3409253043-4037834172-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-630410970-3409253043-4037834172-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\melonsvk\AppData\Roaming\Mozilla\Firefox\Profiles\uopr2aj9.default
prefs.js - "browser.startup.homepage" - "http://websearch.webisgreat.info/?pid=5 ... Z&unqvl=48"
prefs.js - "keyword.URL" - "http://websearch.webisgreat.info/?pid=5 ... =48&l=1&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.77 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.77 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL
C:\Users\melonsvk\AppData\Roaming\Mozilla\Firefox\Profiles\uopr2aj9.default\searchplugins\
WebSearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511131186}]
FreeHD-Sport TV V9.0 - C:\Program Files (x86)\FreeHD-Sport TV V9.0\FreeHD-Sport TV V9.0-bho64.dll [2014-02-12 949248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-03-03 218784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2013-09-13 878296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2013-11-02 2331336]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511131186}]
FreeHD-Sport TV V9.0 - C:\Program Files (x86)\FreeHD-Sport TV V9.0\FreeHD-Sport TV V9.0-bho.dll [2014-02-12 677888]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-03-03 153248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2013-09-13 705240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2013-11-02 1727176]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-09-08 489472]
"Greenshot"=C:\Program Files\Greenshot\Greenshot.exe [2012-10-30 462848]
"Connectify Dispatch"=C:\Program Files (x86)\Connectify\DispatchUI.exe [2013-09-24 2233120]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-09-03 444856]
"Connectify Hotspot"=C:\Program Files (x86)\Connectify\Connectify.exe [2013-09-24 4162336]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 1266912]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2014-02-25 1821888]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2013-12-06 20203904]
"winhotspot"=C:\Program Files (x86)\winhotspot\1F70.tmp [2014-01-20 158208]
"Spotify Web Helper"=C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-01-29 1171968]
"Spotify"=C:\Users\melonsvk\AppData\Roaming\Spotify\spotify.exe [2014-01-29 6118400]
"DAEMON Tools Pro Agent"=C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTAgent.exe [2013-10-17 3125280]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-02-10 20922016]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2013-09-05 766208]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2011-09-28 1039872]
"mnctwgbfoSrv"=C:\Windows\inf\mnctwgbfo.vbe [2014-01-19 1342]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Virtual Router Manager.lnk - C:\Windows\Installer\{BE905C46-2B34-4D73-AEE1-769ED138E0FF}\_118D1A4EFFA6998C3492EB.exe
C:\Users\melonsvk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Firewall.exe
Firewall.exe.tmp
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2014-03-30 19:35:11 ----D---- C:\Program Files\trend micro
2014-03-30 19:35:09 ----D---- C:\rsit
2014-03-30 19:29:28 ----RD---- C:\Program Files (x86)\Skype
2014-03-29 18:49:38 ----D---- C:\Program Files (x86)\Aurora
2014-03-27 23:19:30 ----D---- C:\Program Files (x86)\Git
2014-03-27 23:10:51 ----D---- C:\Users\melonsvk\AppData\Roaming\TortoiseSVN
2014-03-26 00:05:46 ----D---- C:\Users\melonsvk\AppData\Roaming\.kde
2014-03-25 23:59:48 ----D---- C:\Users\melonsvk\AppData\Roaming\gnupg
2014-03-25 23:59:44 ----D---- C:\ProgramData\GNU
2014-03-25 23:59:30 ----D---- C:\Program Files (x86)\GNU
2014-03-25 23:49:40 ----D---- C:\gnupg
2014-03-24 04:21:14 ----D---- C:\Program Files\Microsoft.NET
2014-03-24 04:04:46 ----D---- C:\Program Files\Microsoft Silverlight
2014-03-24 04:04:46 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-03-24 04:03:50 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-03-23 22:09:48 ----D---- C:\Windows\temp
2014-03-23 22:09:46 ----A---- C:\ComboFix.txt
2014-03-23 22:04:16 ----SHD---- C:\$RECYCLE.BIN
2014-03-23 21:49:13 ----A---- C:\Windows\zip.exe
2014-03-23 21:49:13 ----A---- C:\Windows\SWSC.exe
2014-03-23 21:49:13 ----A---- C:\Windows\SWREG.exe
2014-03-23 21:49:13 ----A---- C:\Windows\sed.exe
2014-03-23 21:49:13 ----A---- C:\Windows\PEV.exe
2014-03-23 21:49:13 ----A---- C:\Windows\NIRCMD.exe
2014-03-23 21:49:13 ----A---- C:\Windows\MBR.exe
2014-03-23 21:49:13 ----A---- C:\Windows\grep.exe
2014-03-23 21:48:11 ----D---- C:\Qoobox
2014-03-23 21:47:02 ----D---- C:\Windows\erdnt
2014-03-23 20:56:59 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-03-23 20:56:53 ----D---- C:\Program Files\Microsoft Security Client
2014-03-19 15:04:16 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2014-03-19 10:27:45 ----D---- C:\Users\melonsvk\AppData\Roaming\Malwarebytes
2014-03-19 10:27:34 ----D---- C:\ProgramData\Malwarebytes
2014-03-19 10:27:33 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-03-19 10:27:33 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-03-17 02:36:34 ----A---- C:\Windows\system32\FNTCACHE.DAT
2014-03-16 12:01:09 ----D---- C:\Program Files (x86)\AlLTubeNoAds
2014-03-14 16:46:56 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-03-14 16:46:56 ----A---- C:\Windows\system32\wer.dll
2014-03-14 16:46:54 ----A---- C:\Windows\system32\win32k.sys
2014-03-14 16:46:51 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-03-14 16:46:51 ----A---- C:\Windows\system32\iertutil.dll
2014-03-14 16:46:50 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-03-14 16:46:50 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-03-14 16:46:49 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-03-14 16:46:48 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-03-14 16:46:48 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-03-14 16:46:48 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-03-14 16:46:45 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-03-14 16:46:45 ----A---- C:\Windows\system32\urlmon.dll
2014-03-14 16:46:45 ----A---- C:\Windows\system32\iernonce.dll
2014-03-14 16:46:44 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-03-14 16:46:44 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-03-14 16:46:44 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-03-14 16:46:44 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-03-14 16:46:43 ----A---- C:\Windows\system32\msfeeds.dll
2014-03-14 16:46:42 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-03-14 16:46:40 ----A---- C:\Windows\system32\iesetup.dll
2014-03-14 16:46:40 ----A---- C:\Windows\system32\ie4uinit.exe
2014-03-14 16:46:38 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-03-14 16:46:37 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-03-14 16:46:37 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-03-14 16:46:36 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-03-14 16:46:36 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-03-14 16:46:36 ----A---- C:\Windows\system32\jsproxy.dll
2014-03-14 16:46:36 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-03-14 16:46:35 ----A---- C:\Windows\system32\ieui.dll
2014-03-14 16:46:35 ----A---- C:\Windows\system32\ieframe.dll
2014-03-14 16:46:33 ----A---- C:\Windows\system32\jscript9diag.dll
2014-03-14 16:46:33 ----A---- C:\Windows\system32\ieUnatt.exe
2014-03-14 16:46:32 ----A---- C:\Windows\system32\jscript9.dll
2014-03-14 16:46:31 ----A---- C:\Windows\system32\wininet.dll
2014-03-14 16:46:31 ----A---- C:\Windows\system32\ieapfltr.dll
2014-03-14 16:46:30 ----A---- C:\Windows\system32\msrating.dll
2014-03-14 16:46:29 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-14 16:46:29 ----A---- C:\Windows\system32\mshtml.dll
2014-03-14 16:41:56 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-03-14 16:41:56 ----A---- C:\Windows\system32\qedit.dll
======List of files/folders modified in the last 1 month======
2014-03-30 19:35:11 ----RD---- C:\Program Files
2014-03-30 19:31:45 ----D---- C:\Windows\system32\config
2014-03-30 19:31:43 ----D---- C:\Windows\System32
2014-03-30 19:31:43 ----D---- C:\Windows\inf
2014-03-30 19:31:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-03-30 19:30:22 ----D---- C:\Users\melonsvk\AppData\Roaming\Skype
2014-03-30 19:29:35 ----SHD---- C:\Windows\Installer
2014-03-30 19:29:29 ----D---- C:\Program Files (x86)\Common Files
2014-03-30 19:29:28 ----RD---- C:\Program Files (x86)
2014-03-30 19:29:21 ----D---- C:\ProgramData\Skype
2014-03-30 19:28:34 ----D---- C:\Users\melonsvk\AppData\Roaming\Spotify
2014-03-30 19:28:14 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-30 19:26:01 ----D---- C:\Windows\Prefetch
2014-03-30 19:25:15 ----D---- C:\Windows\system32\inetsrv
2014-03-30 19:23:41 ----D---- C:\Program Files (x86)\Steam
2014-03-30 19:23:10 ----D---- C:\Windows
2014-03-29 22:28:57 ----D---- C:\Users\melonsvk\AppData\Roaming\AIMP3
2014-03-29 02:15:53 ----D---- C:\Users\melonsvk\AppData\Roaming\vlc
2014-03-27 12:03:43 ----SHD---- C:\System Volume Information
2014-03-25 23:59:44 ----D---- C:\ProgramData
2014-03-24 22:04:15 ----D---- C:\Program Files (x86)\DAEMON.Tools.Pro.Advanced.v5.4.0.0377+Crack
2014-03-24 22:03:30 ----D---- C:\Windows\AutoKMS
2014-03-24 04:21:47 ----RSD---- C:\Windows\assembly
2014-03-24 04:21:14 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-03-24 04:19:17 ----D---- C:\ProgramData\Microsoft Help
2014-03-24 04:16:58 ----D---- C:\Windows\winsxs
2014-03-24 04:15:21 ----D---- C:\Windows\SysWOW64
2014-03-24 04:14:06 ----D---- C:\Windows\Microsoft.NET
2014-03-23 22:18:16 ----D---- C:\Users\melonsvk\AppData\Roaming\DAEMON Tools Pro
2014-03-23 22:09:49 ----D---- C:\Windows\system32\drivers
2014-03-23 22:04:20 ----A---- C:\Windows\system.ini
2014-03-23 22:04:04 ----D---- C:\Windows\system32\drivers\etc
2014-03-23 21:57:01 ----D---- C:\Windows\SYSWOW64\drivers
2014-03-23 21:57:01 ----D---- C:\Windows\AppPatch
2014-03-23 20:57:02 ----D---- C:\Windows\system32\catroot
2014-03-23 20:56:59 ----SD---- C:\ProgramData\Microsoft
2014-03-20 02:30:59 ----D---- C:\Program Files (x86)\Adobe Photoshop CS6 aktivtor
2014-03-20 02:28:45 ----D---- C:\Program Files (x86)\Cain
2014-03-19 03:54:07 ----D---- C:\Windows\system32\catroot2
2014-03-18 02:58:30 ----D---- C:\Windows\Tasks
2014-03-18 02:58:30 ----D---- C:\Windows\system32\Tasks
2014-03-17 02:35:45 ----D---- C:\ProgramData\SNT
2014-03-17 02:34:01 ----D---- C:\Program Files\Internet Explorer
2014-03-17 02:34:01 ----D---- C:\Program Files (x86)\Internet Explorer
2014-03-16 12:29:12 ----D---- C:\ProgramData\YoutubeAdblocker
2014-03-16 12:29:12 ----D---- C:\ProgramData\40f12ab00162f710
2014-03-16 12:25:06 ----D---- C:\ProgramData\VMware
2014-03-16 12:25:05 ----D---- C:\Program Files\Common Files
2014-03-16 12:24:54 ----D---- C:\Windows\system32\DriverStore
2014-03-16 12:23:36 ----D---- C:\Users\melonsvk\AppData\Roaming\VMware
2014-03-16 12:22:49 ----D---- C:\Program Files (x86)\SNT
2014-03-16 12:17:40 ----D---- C:\Program Files\Sandboxie
2014-03-16 12:17:04 ----D---- C:\Program Files (x86)\Opera
2014-03-16 12:17:02 ----D---- C:\Users\melonsvk\AppData\Roaming\Opera Software
2014-03-16 12:02:06 ----D---- C:\Program Files (x86)\SmartTweak
2014-03-16 12:01:10 ----D---- C:\ProgramData\AlLTubeNoAds
2014-03-12 04:47:08 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-03-08 01:55:53 ----D---- C:\Program Files (x86)\winhotspot
2014-03-04 12:48:19 ----SD---- C:\Users\melonsvk\AppData\Roaming\Microsoft
2014-03-01 12:22:05 ----D---- C:\Windows\system32\drivers\UMDF
2014-03-01 12:20:54 ----D---- C:\totalcmd
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 248240]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 cnnctfy3;Connectify LightWeight Filter; C:\Windows\system32\DRIVERS\cnnctfy3.sys [2013-09-25 35352]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-02-06 283064]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\Windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\Windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 134944]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-09-05 12653568]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-09-05 617984]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-07-05 96256]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2013-09-14 3063360]
R3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 25928]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\Windows\system32\DRIVERS\stwrt64.sys [2010-09-08 515584]
R3 tap0901;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
R3 vpcbus;Virtual PC Host Bus Service; C:\Windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;USB Virtualization Connector Service; C:\Windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 cpuz135;cpuz135; \??\C:\Users\melonsvk\AppData\Local\Temp\Rar$EX75.616\pcwiz_x64.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys []
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
S3 vpcuxd;USB Virtualization Stub Service; C:\Windows\system32\DRIVERS\vpcuxd.sys [2010-11-20 16384]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-02 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-09-05 239616]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 Connectify;Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [2013-09-24 487936]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DirMngr;DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [2013-10-07 218112]
R2 ftpsvc;@%windir%\system32\inetsrv\ftpres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 IISADMIN;@%windir%\system32\inetsrv\iisres.dll,-30007; C:\Windows\system32\inetsrv\inetinfo.exe [2010-11-20 15872]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 23808]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2010-09-08 271360]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 348376]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-02-25 568512]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-11 116648]
S2 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S2 Virtual Router;VirtualRouterService; C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe [2013-02-10 12288]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-12 257928]
S3 FileZilla Server;FileZilla Server FTP server; C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe [2014-01-02 637440]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-11 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-29 119408]
S3 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2013-08-22 37176]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-10 1255736]
S3 WMSVC;@%windir%\system32\inetsrv\iisres.dll,-20001; C:\Windows\system32\inetsrv\wmsvc.exe [2009-07-14 10752]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
-----------------EOF-----------------
v poslednom čase mám problém s diakritikou, keď PC dlhšie beží a píšem mäkčene a dĺžne pomocou klávesy vedľa Backspace, tak mi napíše niečo v zmysle ˇˇd, ´´l apod., prípadne nenapíše žiadnu diakritiku. K tomu mám pomalý booting PC, ale to môže byť aj spôsobené HW opotrebovaním disku, predsalen nie je najnovší

Logfile of random's system information tool 1.09 (written by random/random)
Run by melonsvk at 2014-03-30 19:35:09
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 165 GB (31%) free of 535 GB
Total RAM: 3951 MB (30% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:35:19, on 30. 3. 2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Connectify\DispatchUI.exe
C:\Program Files (x86)\Connectify\Connectify.exe
C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTShellHlp.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\spotify.exe
C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTAgent.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Program Files (x86)\Aurora\firefox.exe
C:\Program Files (x86)\Aurora\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\trend micro\melonsvk.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.webisgreat.info/?pid=5 ... Z&unqvl=48
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.webisgreat.info/?pid=5 ... Z&unqvl=48
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = cache34.ics.muni.cz:5555
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: CrossriderApp0051386 - {11111111-1111-1111-1111-110511131186} - C:\Program Files (x86)\FreeHD-Sport TV V9.0\FreeHD-Sport TV V9.0-bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [mnctwgbfoSrv] C:\Windows\inf\mnctwgbfo.vbe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [winhotspot] C:\Program Files (x86)\winhotspot\1F70.tmp
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\melonsvk\AppData\Roaming\Spotify\spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Startup: Firewall.exe
O4 - Startup: Firewall.exe.tmp
O4 - Global Startup: Virtual Router Manager.lnk = ?
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.connectify.me
O15 - ESC Trusted Zone: http://*.fastspring.com
O15 - ESC Trusted Zone: http://*.connectify.me (HKLM)
O15 - ESC Trusted Zone: http://*.fastspring.com (HKLM)
O17 - HKLM\System\CCS\Services\Tcpip\..\{8D99CD24-35C1-4794-9F89-0E7FDDA3DBE8}: NameServer = 8.8.8.8,4.4.4.4
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Connectify - Connectify - C:\Program Files (x86)\Connectify\ConnectifyService.exe
O23 - Service: DirMngr - Unknown owner - C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FileZilla Server FTP server (FileZilla Server) - FileZilla Project - C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-30007 (IISADMIN) - Unknown owner - C:\Windows\system32\inetsrv\inetinfo.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VirtualRouterService (Virtual Router) - Chris Pietschmann (http://pietschsoft.com) - C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-20001 (WMSVC) - Unknown owner - C:\Windows\system32\inetsrv\wmsvc.exe (file missing)
--
End of file - 11607 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\system32\WLANExt.exe 26721184
\??\C:\Windows\system32\conhost.exe "16418372831180569320-63370955-178265028319351881871722769018912507162081476100
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\IDT\WDM\AESTSr64.exe"
C:\Windows\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Connectify\ConnectifyService.exe"
"taskhost.exe"
"C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe" --service
C:\Windows\system32\svchost.exe -k ftpsvc
C:\Windows\system32\inetsrv\inetinfo.exe
taskeng.exe {7FF35929-A678-4F44-9B89-F371BBA51C66}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"ConnectifyD.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
\??\C:\Windows\system32\conhost.exe "-1519514290212542423350586175134948017446959177-104126483-52538877778154438
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Greenshot\Greenshot.exe"
"C:\Program Files (x86)\Connectify\DispatchUI.exe"
"C:\Program Files\Microsoft Office\Office15\MsoSync.exe"
"C:\Program Files (x86)\Connectify\Connectify.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTShellHlp.exe"
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
C:\Windows\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files\TortoiseSVN\bin\TSVNCache.exe"
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
"C:\Users\melonsvk\AppData\Roaming\Spotify\spotify.exe" /uri spotify:autostart
"C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTAgent.exe" -autorun
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\alg.exe
"C:\Users\melonsvk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Firewall.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --channel="4704.0.738085283\687742797" /prefetch:673131151
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --channel="4704.1.1220783892\281454800" /prefetch:673131151
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --channel="4704.2.931529645\1616593696" /prefetch:673131151
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --channel="4704.3.2100471715\528102524" /prefetch:673131151
C:\Windows\system32\msiexec.exe /V
"C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=gpu-process --channel="4704.4.975686803\744279612" --no-sandbox --lang=en-US --log-severity=disable --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --gpu-vendor-id=0x1002 --gpu-device-id=0x68e4 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.200.11.0 --lang=en-US --log-severity=disable /prefetch:822062411
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Aurora\firefox.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Aurora\plugin-container.exe" --channel=3312.229c6690.218531925 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll" -greomni "C:\Program Files (x86)\Aurora\omni.ja" -appomni "C:\Program Files (x86)\Aurora\browser\omni.ja" -appdir "C:\Program Files (x86)\Aurora\browser" 1E05176855CC7D2F 3312 "\\.\pipe\gecko-crash-server-pipe.3312" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe" --proxy-stub-channel=Flash5196.5B1792E0.17724 --host-broker-channel=Flash5196.5B1792E0.24118 --host-pid=5196 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe" --channel=6140.0034F78C.338668509 --proxy-stub-channel=Flash5196.5B1792E0.17724 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Windows\system32\wuauclt.exe"
C:\Windows\servicing\TrustedInstaller.exe
"c:\Program Files\Microsoft Security Client\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey CDCC5871-ACC3-15E9-9EC6-25EE7C1433FE -Reinvoke
"C:\Users\melonsvk\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-630410970-3409253043-4037834172-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-630410970-3409253043-4037834172-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\melonsvk\AppData\Roaming\Mozilla\Firefox\Profiles\uopr2aj9.default
prefs.js - "browser.startup.homepage" - "http://websearch.webisgreat.info/?pid=5 ... Z&unqvl=48"
prefs.js - "keyword.URL" - "http://websearch.webisgreat.info/?pid=5 ... =48&l=1&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.77 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.77 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL
C:\Users\melonsvk\AppData\Roaming\Mozilla\Firefox\Profiles\uopr2aj9.default\searchplugins\
WebSearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511131186}]
FreeHD-Sport TV V9.0 - C:\Program Files (x86)\FreeHD-Sport TV V9.0\FreeHD-Sport TV V9.0-bho64.dll [2014-02-12 949248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-03-03 218784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2013-09-13 878296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2013-11-02 2331336]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511131186}]
FreeHD-Sport TV V9.0 - C:\Program Files (x86)\FreeHD-Sport TV V9.0\FreeHD-Sport TV V9.0-bho.dll [2014-02-12 677888]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-03-03 153248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2013-09-13 705240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2013-11-02 1727176]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-09-08 489472]
"Greenshot"=C:\Program Files\Greenshot\Greenshot.exe [2012-10-30 462848]
"Connectify Dispatch"=C:\Program Files (x86)\Connectify\DispatchUI.exe [2013-09-24 2233120]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-09-03 444856]
"Connectify Hotspot"=C:\Program Files (x86)\Connectify\Connectify.exe [2013-09-24 4162336]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 1266912]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2014-02-25 1821888]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2013-12-06 20203904]
"winhotspot"=C:\Program Files (x86)\winhotspot\1F70.tmp [2014-01-20 158208]
"Spotify Web Helper"=C:\Users\melonsvk\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-01-29 1171968]
"Spotify"=C:\Users\melonsvk\AppData\Roaming\Spotify\spotify.exe [2014-01-29 6118400]
"DAEMON Tools Pro Agent"=C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTAgent.exe [2013-10-17 3125280]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-02-10 20922016]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2013-09-05 766208]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2011-09-28 1039872]
"mnctwgbfoSrv"=C:\Windows\inf\mnctwgbfo.vbe [2014-01-19 1342]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Virtual Router Manager.lnk - C:\Windows\Installer\{BE905C46-2B34-4D73-AEE1-769ED138E0FF}\_118D1A4EFFA6998C3492EB.exe
C:\Users\melonsvk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Firewall.exe
Firewall.exe.tmp
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2014-03-30 19:35:11 ----D---- C:\Program Files\trend micro
2014-03-30 19:35:09 ----D---- C:\rsit
2014-03-30 19:29:28 ----RD---- C:\Program Files (x86)\Skype
2014-03-29 18:49:38 ----D---- C:\Program Files (x86)\Aurora
2014-03-27 23:19:30 ----D---- C:\Program Files (x86)\Git
2014-03-27 23:10:51 ----D---- C:\Users\melonsvk\AppData\Roaming\TortoiseSVN
2014-03-26 00:05:46 ----D---- C:\Users\melonsvk\AppData\Roaming\.kde
2014-03-25 23:59:48 ----D---- C:\Users\melonsvk\AppData\Roaming\gnupg
2014-03-25 23:59:44 ----D---- C:\ProgramData\GNU
2014-03-25 23:59:30 ----D---- C:\Program Files (x86)\GNU
2014-03-25 23:49:40 ----D---- C:\gnupg
2014-03-24 04:21:14 ----D---- C:\Program Files\Microsoft.NET
2014-03-24 04:04:46 ----D---- C:\Program Files\Microsoft Silverlight
2014-03-24 04:04:46 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-03-24 04:03:50 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-03-23 22:09:48 ----D---- C:\Windows\temp
2014-03-23 22:09:46 ----A---- C:\ComboFix.txt
2014-03-23 22:04:16 ----SHD---- C:\$RECYCLE.BIN
2014-03-23 21:49:13 ----A---- C:\Windows\zip.exe
2014-03-23 21:49:13 ----A---- C:\Windows\SWSC.exe
2014-03-23 21:49:13 ----A---- C:\Windows\SWREG.exe
2014-03-23 21:49:13 ----A---- C:\Windows\sed.exe
2014-03-23 21:49:13 ----A---- C:\Windows\PEV.exe
2014-03-23 21:49:13 ----A---- C:\Windows\NIRCMD.exe
2014-03-23 21:49:13 ----A---- C:\Windows\MBR.exe
2014-03-23 21:49:13 ----A---- C:\Windows\grep.exe
2014-03-23 21:48:11 ----D---- C:\Qoobox
2014-03-23 21:47:02 ----D---- C:\Windows\erdnt
2014-03-23 20:56:59 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-03-23 20:56:53 ----D---- C:\Program Files\Microsoft Security Client
2014-03-19 15:04:16 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2014-03-19 10:27:45 ----D---- C:\Users\melonsvk\AppData\Roaming\Malwarebytes
2014-03-19 10:27:34 ----D---- C:\ProgramData\Malwarebytes
2014-03-19 10:27:33 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-03-19 10:27:33 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-03-17 02:36:34 ----A---- C:\Windows\system32\FNTCACHE.DAT
2014-03-16 12:01:09 ----D---- C:\Program Files (x86)\AlLTubeNoAds
2014-03-14 16:46:56 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-03-14 16:46:56 ----A---- C:\Windows\system32\wer.dll
2014-03-14 16:46:54 ----A---- C:\Windows\system32\win32k.sys
2014-03-14 16:46:51 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-03-14 16:46:51 ----A---- C:\Windows\system32\iertutil.dll
2014-03-14 16:46:50 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-03-14 16:46:50 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-03-14 16:46:49 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-03-14 16:46:48 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-03-14 16:46:48 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-03-14 16:46:48 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-03-14 16:46:45 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-03-14 16:46:45 ----A---- C:\Windows\system32\urlmon.dll
2014-03-14 16:46:45 ----A---- C:\Windows\system32\iernonce.dll
2014-03-14 16:46:44 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-03-14 16:46:44 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-03-14 16:46:44 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-03-14 16:46:44 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-03-14 16:46:43 ----A---- C:\Windows\system32\msfeeds.dll
2014-03-14 16:46:42 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-03-14 16:46:40 ----A---- C:\Windows\system32\iesetup.dll
2014-03-14 16:46:40 ----A---- C:\Windows\system32\ie4uinit.exe
2014-03-14 16:46:38 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-03-14 16:46:37 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-03-14 16:46:37 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-03-14 16:46:36 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-03-14 16:46:36 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-03-14 16:46:36 ----A---- C:\Windows\system32\jsproxy.dll
2014-03-14 16:46:36 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-03-14 16:46:35 ----A---- C:\Windows\system32\ieui.dll
2014-03-14 16:46:35 ----A---- C:\Windows\system32\ieframe.dll
2014-03-14 16:46:33 ----A---- C:\Windows\system32\jscript9diag.dll
2014-03-14 16:46:33 ----A---- C:\Windows\system32\ieUnatt.exe
2014-03-14 16:46:32 ----A---- C:\Windows\system32\jscript9.dll
2014-03-14 16:46:31 ----A---- C:\Windows\system32\wininet.dll
2014-03-14 16:46:31 ----A---- C:\Windows\system32\ieapfltr.dll
2014-03-14 16:46:30 ----A---- C:\Windows\system32\msrating.dll
2014-03-14 16:46:29 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-14 16:46:29 ----A---- C:\Windows\system32\mshtml.dll
2014-03-14 16:41:56 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-03-14 16:41:56 ----A---- C:\Windows\system32\qedit.dll
======List of files/folders modified in the last 1 month======
2014-03-30 19:35:11 ----RD---- C:\Program Files
2014-03-30 19:31:45 ----D---- C:\Windows\system32\config
2014-03-30 19:31:43 ----D---- C:\Windows\System32
2014-03-30 19:31:43 ----D---- C:\Windows\inf
2014-03-30 19:31:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-03-30 19:30:22 ----D---- C:\Users\melonsvk\AppData\Roaming\Skype
2014-03-30 19:29:35 ----SHD---- C:\Windows\Installer
2014-03-30 19:29:29 ----D---- C:\Program Files (x86)\Common Files
2014-03-30 19:29:28 ----RD---- C:\Program Files (x86)
2014-03-30 19:29:21 ----D---- C:\ProgramData\Skype
2014-03-30 19:28:34 ----D---- C:\Users\melonsvk\AppData\Roaming\Spotify
2014-03-30 19:28:14 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-30 19:26:01 ----D---- C:\Windows\Prefetch
2014-03-30 19:25:15 ----D---- C:\Windows\system32\inetsrv
2014-03-30 19:23:41 ----D---- C:\Program Files (x86)\Steam
2014-03-30 19:23:10 ----D---- C:\Windows
2014-03-29 22:28:57 ----D---- C:\Users\melonsvk\AppData\Roaming\AIMP3
2014-03-29 02:15:53 ----D---- C:\Users\melonsvk\AppData\Roaming\vlc
2014-03-27 12:03:43 ----SHD---- C:\System Volume Information
2014-03-25 23:59:44 ----D---- C:\ProgramData
2014-03-24 22:04:15 ----D---- C:\Program Files (x86)\DAEMON.Tools.Pro.Advanced.v5.4.0.0377+Crack
2014-03-24 22:03:30 ----D---- C:\Windows\AutoKMS
2014-03-24 04:21:47 ----RSD---- C:\Windows\assembly
2014-03-24 04:21:14 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-03-24 04:19:17 ----D---- C:\ProgramData\Microsoft Help
2014-03-24 04:16:58 ----D---- C:\Windows\winsxs
2014-03-24 04:15:21 ----D---- C:\Windows\SysWOW64
2014-03-24 04:14:06 ----D---- C:\Windows\Microsoft.NET
2014-03-23 22:18:16 ----D---- C:\Users\melonsvk\AppData\Roaming\DAEMON Tools Pro
2014-03-23 22:09:49 ----D---- C:\Windows\system32\drivers
2014-03-23 22:04:20 ----A---- C:\Windows\system.ini
2014-03-23 22:04:04 ----D---- C:\Windows\system32\drivers\etc
2014-03-23 21:57:01 ----D---- C:\Windows\SYSWOW64\drivers
2014-03-23 21:57:01 ----D---- C:\Windows\AppPatch
2014-03-23 20:57:02 ----D---- C:\Windows\system32\catroot
2014-03-23 20:56:59 ----SD---- C:\ProgramData\Microsoft
2014-03-20 02:30:59 ----D---- C:\Program Files (x86)\Adobe Photoshop CS6 aktivtor
2014-03-20 02:28:45 ----D---- C:\Program Files (x86)\Cain
2014-03-19 03:54:07 ----D---- C:\Windows\system32\catroot2
2014-03-18 02:58:30 ----D---- C:\Windows\Tasks
2014-03-18 02:58:30 ----D---- C:\Windows\system32\Tasks
2014-03-17 02:35:45 ----D---- C:\ProgramData\SNT
2014-03-17 02:34:01 ----D---- C:\Program Files\Internet Explorer
2014-03-17 02:34:01 ----D---- C:\Program Files (x86)\Internet Explorer
2014-03-16 12:29:12 ----D---- C:\ProgramData\YoutubeAdblocker
2014-03-16 12:29:12 ----D---- C:\ProgramData\40f12ab00162f710
2014-03-16 12:25:06 ----D---- C:\ProgramData\VMware
2014-03-16 12:25:05 ----D---- C:\Program Files\Common Files
2014-03-16 12:24:54 ----D---- C:\Windows\system32\DriverStore
2014-03-16 12:23:36 ----D---- C:\Users\melonsvk\AppData\Roaming\VMware
2014-03-16 12:22:49 ----D---- C:\Program Files (x86)\SNT
2014-03-16 12:17:40 ----D---- C:\Program Files\Sandboxie
2014-03-16 12:17:04 ----D---- C:\Program Files (x86)\Opera
2014-03-16 12:17:02 ----D---- C:\Users\melonsvk\AppData\Roaming\Opera Software
2014-03-16 12:02:06 ----D---- C:\Program Files (x86)\SmartTweak
2014-03-16 12:01:10 ----D---- C:\ProgramData\AlLTubeNoAds
2014-03-12 04:47:08 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-03-08 01:55:53 ----D---- C:\Program Files (x86)\winhotspot
2014-03-04 12:48:19 ----SD---- C:\Users\melonsvk\AppData\Roaming\Microsoft
2014-03-01 12:22:05 ----D---- C:\Windows\system32\drivers\UMDF
2014-03-01 12:20:54 ----D---- C:\totalcmd
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 248240]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 cnnctfy3;Connectify LightWeight Filter; C:\Windows\system32\DRIVERS\cnnctfy3.sys [2013-09-25 35352]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-02-06 283064]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\Windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\Windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 134944]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-09-05 12653568]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-09-05 617984]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-07-05 96256]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2013-09-14 3063360]
R3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 25928]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\Windows\system32\DRIVERS\stwrt64.sys [2010-09-08 515584]
R3 tap0901;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
R3 vpcbus;Virtual PC Host Bus Service; C:\Windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;USB Virtualization Connector Service; C:\Windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 cpuz135;cpuz135; \??\C:\Users\melonsvk\AppData\Local\Temp\Rar$EX75.616\pcwiz_x64.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys []
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
S3 vpcuxd;USB Virtualization Stub Service; C:\Windows\system32\DRIVERS\vpcuxd.sys [2010-11-20 16384]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-02 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-09-05 239616]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 Connectify;Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [2013-09-24 487936]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DirMngr;DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [2013-10-07 218112]
R2 ftpsvc;@%windir%\system32\inetsrv\ftpres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 IISADMIN;@%windir%\system32\inetsrv\iisres.dll,-30007; C:\Windows\system32\inetsrv\inetinfo.exe [2010-11-20 15872]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 23808]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2010-09-08 271360]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 348376]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-02-25 568512]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-11 116648]
S2 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S2 Virtual Router;VirtualRouterService; C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe [2013-02-10 12288]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-12 257928]
S3 FileZilla Server;FileZilla Server FTP server; C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe [2014-01-02 637440]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-11 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-29 119408]
S3 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2013-08-22 37176]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-10 1255736]
S3 WMSVC;@%windir%\system32\inetsrv\iisres.dll,-20001; C:\Windows\system32\inetsrv\wmsvc.exe [2009-07-14 10752]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
-----------------EOF-----------------