ahoj prosím o kontrolu
Napsal: 22 dub 2014 19:21
mám zpomalené pc,nejde připojit k netu a když se připojí tak to dlouho trvá,přes wifi se připojuji i z druhého pc a to již funguje dobře po vyčištění,díky
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 21-04-2014 01
Ran by Standa (administrator) on STANDA-PC on 22-04-2014 20:05:53
Running from D:\
Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVerMedia) C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe
() C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe
(AVerMedia TECHNOLOGIES, Inc.) C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe
(AVerMedia Technologies, Inc.) C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Renesas Electronics Corporation) C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Lenovo) C:\Windows\jmesoft\hotkey.exe
() C:\Windows\jmesoft\JME_LOAD.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
() C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
(AVerMedia TECHNOLOGIES, Inc.) C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
(AVerMedia Technologies, Inc. ) C:\Program Files\SnugTV\SnugTV Station\QuickStart.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(Microsoft Corporation) C:\Program Files\Windows NT\Accessories\WORDPAD.EXE
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NUSB3MON] => C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2011-04-14] (Renesas Electronics Corporation)
HKLM\...\Run: [jmekey] => C:\Windows\jmesoft\hotkey.exe [118784 2011-07-20] (Lenovo)
HKLM\...\Run: [jmesoft] => C:\Windows\jmesoft\ServiceLoader.exe [28672 2011-03-15] ()
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10754664 2011-07-07] (Realtek Semiconductor)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-08-18] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [avast] => C:\Program Files\AVAST Software\Avast\avastUI.exe [4767304 2013-03-07] (AVAST Software)
HKU\S-1-5-21-3018533250-2179896737-1832843750-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: {9E2CD2C3-4DDA-4473-B904-B8E6D0DBAB86} http://consumersupport.lenovo.com/ot/en ... pdueng.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Standa\AppData\Roaming\Mozilla\Firefox\Profiles\rkqmj34w.default
FF Homepage: www.seznam.cz
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @lenovo.com/dueng,version=2.0 - C:\Windows\system32\lenovo\update\npdueng.dll (Lenovo)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! WebRep - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-02-23]
Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR DefaultSearchURL: {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR Extension: (YouTube) - C:\Users\Standa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-03-19]
CHR Extension: (Vyhledávání Google) - C:\Users\Standa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-03-19]
CHR Extension: (Gmail) - C:\Users\Standa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-03-19]
CHR HKLM\...\Chrome\Extension: [icmlaeflemplmjndnaapfdbbnpncnbda] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2012-02-23]
========================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-07] (AVAST Software)
R2 AVerRemote; C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe [348160 2011-01-29] (AVerMedia)
R2 AVerScheduleService; C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe [403456 2011-04-01] ()
R2 AVerUpdateServer; C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe [168448 2011-01-06] (AVerMedia TECHNOLOGIES, Inc.)
S2 JME Keyboard; C:\Windows\jmesoft\Service.exe [32768 2011-03-15] ()
R2 SnugTV Service; C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe [571904 2011-04-06] (AVerMedia Technologies, Inc.)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\system32\Drivers\aswFsBlk.sys [29816 2013-03-07] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [66336 2013-03-07] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [60656 2013-03-07] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49248 2013-03-07] ()
R1 aswSnx; C:\Windows\system32\Drivers\aswSnx.sys [765736 2013-03-07] (AVAST Software)
R1 aswSP; C:\Windows\system32\Drivers\aswSP.sys [368176 2013-03-07] (AVAST Software)
R1 aswTdi; C:\Windows\system32\Drivers\aswTdi.sys [62376 2013-03-07] (AVAST Software)
S3 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [164736 2013-03-07] ()
R3 AVerAF35; C:\Windows\System32\Drivers\AVerAF35.sys [768896 2010-09-21] (AVerMedia TECHNOLOGIES, Inc.)
R3 nusb3hub; C:\Windows\System32\DRIVERS\nusb3hub.sys [67456 2011-04-13] (Renesas Electronics Corporation)
R3 nusb3xhc; C:\Windows\System32\DRIVERS\nusb3xhc.sys [161024 2011-04-13] (Renesas Electronics Corporation)
R3 RSUSBVSTOR; C:\Windows\System32\Drivers\RtsUVStor.sys [232040 2011-09-14] (Realtek Semiconductor Corp.)
R3 RTL8192Ce; C:\Windows\System32\DRIVERS\rtl8192Ce.sys [999528 2010-12-03] (Realtek Semiconductor Corporation )
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
U3 catchme; \??\C:\Users\Standa\AppData\Local\Temp\catchme.sys [X]
U3 mbr; \??\C:\Users\Standa\AppData\Local\Temp\mbr.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-22 20:05 - 2014-04-22 20:05 - 00000000 ____D () C:\FRST
2014-04-22 20:03 - 2014-04-22 20:03 - 00012382 _____ () C:\Users\Standa\Desktop\dds.txt
2014-04-22 20:03 - 2014-04-22 20:03 - 00003177 _____ () C:\Users\Standa\Desktop\attach.txt
2014-04-22 19:53 - 2014-04-22 19:53 - 00011271 _____ () C:\ComboFix.txt
2014-04-22 19:37 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-04-22 19:37 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-04-22 19:37 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2014-04-22 19:36 - 2014-04-22 19:53 - 00000000 ____D () C:\Qoobox
2014-04-22 19:36 - 2014-04-22 19:51 - 00000000 ____D () C:\Windows\erdnt
2014-04-22 19:27 - 2014-04-22 19:27 - 00000000 ____D () C:\AdwCleaner
2014-04-22 03:05 - 2013-12-21 10:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-21 03:16 - 2014-03-01 06:10 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-21 03:16 - 2014-03-01 05:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-21 03:16 - 2014-03-01 05:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-21 03:16 - 2014-03-01 05:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-21 03:16 - 2014-03-01 05:38 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-21 03:16 - 2014-03-01 05:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-21 03:16 - 2014-03-01 05:31 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-04-21 03:15 - 2014-03-01 06:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-21 03:15 - 2014-03-01 06:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-21 03:15 - 2014-03-01 05:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-21 03:15 - 2014-03-01 05:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-21 03:15 - 2014-03-01 05:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-21 03:15 - 2014-03-01 05:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-21 03:15 - 2014-03-01 05:25 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-21 03:15 - 2014-03-01 05:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-21 03:15 - 2014-03-01 05:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-21 03:15 - 2014-03-01 05:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-21 03:15 - 2014-03-01 05:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-21 03:15 - 2014-03-01 04:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-21 03:15 - 2014-03-01 04:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-21 03:15 - 2014-03-01 04:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-21 03:15 - 2014-03-01 04:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-20 03:13 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-04-20 03:13 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 01051136 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-04-20 03:04 - 2014-04-20 03:04 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-04-20 03:04 - 2014-04-20 03:04 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00238288 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-04-20 03:04 - 2014-04-20 03:04 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-04-19 21:30 - 2014-02-04 04:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-04-19 21:30 - 2014-02-04 04:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-04-19 21:30 - 2014-02-04 04:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-04-19 21:30 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-04-19 21:30 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-04-19 21:30 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-04-19 21:30 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-04-19 21:30 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-04-19 21:30 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-04-19 21:30 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-04-19 21:30 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-04-19 21:30 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-04-19 21:30 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-04-19 21:30 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-04-19 21:30 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-04-19 21:30 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-04-19 21:30 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-04-19 21:29 - 2013-12-06 04:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-04-19 21:29 - 2013-12-06 04:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-04-19 21:29 - 2013-11-23 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-04-19 21:29 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-04-19 21:29 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-04-19 21:29 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-04-19 21:29 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-04-19 21:28 - 2014-02-07 03:07 - 02349056 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-04-19 21:28 - 2014-01-28 04:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-04-19 21:28 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-04-19 21:27 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-04-19 21:27 - 2014-01-24 04:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-19 21:27 - 2013-11-26 13:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-04-19 21:27 - 2013-10-04 03:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-04-19 21:27 - 2013-10-04 03:17 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-04-19 21:23 - 2014-03-04 11:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-19 21:23 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-04-19 21:19 - 2013-12-25 01:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-04-19 21:19 - 2013-11-27 03:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-04-19 21:19 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-04-19 20:34 - 2014-04-19 20:34 - 17879432 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerInstaller.exe
==================== One Month Modified Files and Folders =======
2014-04-22 20:05 - 2014-04-22 20:05 - 00000000 ____D () C:\FRST
2014-04-22 20:03 - 2014-04-22 20:03 - 00012382 _____ () C:\Users\Standa\Desktop\dds.txt
2014-04-22 20:03 - 2014-04-22 20:03 - 00003177 _____ () C:\Users\Standa\Desktop\attach.txt
2014-04-22 19:59 - 2012-02-21 11:23 - 00000000 ____D () C:\Windows\Panther
2014-04-22 19:53 - 2014-04-22 19:53 - 00011271 _____ () C:\ComboFix.txt
2014-04-22 19:53 - 2014-04-22 19:36 - 00000000 ____D () C:\Qoobox
2014-04-22 19:53 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Default
2014-04-22 19:53 - 2009-07-14 04:37 - 00000000 ___RD () C:\Users\Public
2014-04-22 19:51 - 2014-04-22 19:36 - 00000000 ____D () C:\Windows\erdnt
2014-04-22 19:51 - 2012-02-21 11:27 - 01201903 ____N () C:\Windows\WindowsUpdate.log
2014-04-22 19:49 - 2009-07-14 04:04 - 00000215 _____ () C:\Windows\system.ini
2014-04-22 19:41 - 2012-03-08 08:46 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-22 19:34 - 2012-04-06 10:58 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-22 19:27 - 2014-04-22 19:27 - 00000000 ____D () C:\AdwCleaner
2014-04-22 19:23 - 2012-02-23 17:13 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-04-22 19:07 - 2009-07-14 06:34 - 00013760 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-22 19:07 - 2009-07-14 06:34 - 00013760 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-22 18:57 - 2012-02-21 11:36 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-22 03:30 - 2012-03-08 08:46 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-22 03:29 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-22 03:19 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-04-21 11:50 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-04-21 03:00 - 2013-01-05 21:24 - 00000000 ____D () C:\Users\Standa\AppData\Roaming\Skype
2014-04-20 04:06 - 2009-07-14 06:33 - 00274480 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-04-20 03:47 - 2013-01-05 21:23 - 00000000 ____D () C:\ProgramData\Skype
2014-04-20 03:46 - 2013-02-14 04:29 - 00000000 ___RD () C:\Program Files\Skype
2014-04-20 03:17 - 2013-08-03 03:05 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-20 03:10 - 2012-02-23 10:26 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-20 03:04 - 2014-04-20 03:04 - 01051136 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-04-20 03:04 - 2014-04-20 03:04 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-04-20 03:04 - 2014-04-20 03:04 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00238288 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-04-20 03:04 - 2014-04-20 03:04 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-04-19 21:50 - 2012-03-08 08:48 - 00002129 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-04-19 21:39 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2014-04-19 20:38 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Public\Libraries
2014-04-19 20:34 - 2014-04-19 20:34 - 17879432 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerInstaller.exe
2014-04-19 20:34 - 2012-04-06 10:58 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-04-19 20:34 - 2012-02-23 21:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-03-31 09:35 - 2012-02-21 16:44 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-03-31 03:51 - 2012-02-21 17:07 - 88028728 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-04-19 20:34
==================== End Of Log ============================Logfile of random's system information tool 1.09 (written by random/random)
Run by Standa at 2014-04-22 20:08:51
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 274 GB (90%) free of 305 GB
Total RAM: 2043 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:10:07, on 22.4.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Windows\jmesoft\hotkey.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
C:\Program Files\SnugTV\SnugTV Station\QuickStart.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\explorer.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Windows NT\Accessories\WORDPAD.EXE
C:\Windows\system32\notepad.exe
C:\Windows\system32\notepad.exe
D:\RSIT.exe
C:\Program Files\trend micro\Standa.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [jmekey] C:\Windows\jmesoft\hotkey.exe
O4 - HKLM\..\Run: [jmesoft] C:\Windows\jmesoft\ServiceLoader.exe
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Global Startup: AVer HID Receiver.lnk = C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
O4 - Global Startup: AVerQuick.lnk = C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {9E2CD2C3-4DDA-4473-B904-B8E6D0DBAB86} (ElevatedCreater Class) - http://consumersupport.lenovo.com/ot/en ... pdueng.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AVerRemote - AVerMedia - C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe
O23 - Service: AVerScheduleService - Unknown owner - C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe
O23 - Service: AVerUpdateServer - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: JME Keyboard Driver (JME Keyboard) - Unknown owner - C:\Windows\jmesoft\Service.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SnugTV Service - AVerMedia Technologies, Inc. - C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe
--
End of file - 4786 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Standa\AppData\Roaming\Mozilla\Firefox\Profiles\rkqmj34w.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.77 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@lenovo.com/dueng,version=2.0]
"Description"=Driver Update Control
"Path"=C:\Windows\system32\lenovo\update\npdueng.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"=C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2011-04-14 113288]
"jmekey"=C:\Windows\jmesoft\hotkey.exe [2011-07-20 118784]
"jmesoft"=C:\Windows\jmesoft\ServiceLoader.exe [2011-03-15 28672]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-07-07 10754664]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-08-18 343168]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-03-07 4767304]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2013-11-14 20584608]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
AVer HID Receiver.lnk - C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
AVerQuick.lnk - C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2014-04-22 20:08:51 ----D---- C:\rsit
2014-04-22 20:08:51 ----D---- C:\Program Files\trend micro
2014-04-22 20:05:51 ----D---- C:\FRST
2014-04-22 19:53:57 ----SHD---- C:\$RECYCLE.BIN
2014-04-22 19:53:49 ----A---- C:\ComboFix.txt
2014-04-22 19:49:36 ----D---- C:\Windows\temp
2014-04-22 19:37:02 ----A---- C:\Windows\zip.exe
2014-04-22 19:37:02 ----A---- C:\Windows\SWSC.exe
2014-04-22 19:37:02 ----A---- C:\Windows\SWREG.exe
2014-04-22 19:37:02 ----A---- C:\Windows\sed.exe
2014-04-22 19:37:02 ----A---- C:\Windows\PEV.exe
2014-04-22 19:37:02 ----A---- C:\Windows\NIRCMD.exe
2014-04-22 19:37:02 ----A---- C:\Windows\MBR.exe
2014-04-22 19:37:02 ----A---- C:\Windows\grep.exe
2014-04-22 19:36:41 ----D---- C:\Qoobox
2014-04-22 19:36:18 ----D---- C:\Windows\erdnt
2014-04-22 19:27:05 ----D---- C:\AdwCleaner
2014-04-22 03:05:16 ----A---- C:\Windows\system32\vbscript.dll
2014-04-21 03:16:01 ----A---- C:\Windows\system32\jsproxy.dll
2014-04-21 03:16:01 ----A---- C:\Windows\system32\iernonce.dll
2014-04-21 03:16:01 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-04-21 03:16:01 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-04-21 03:16:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-04-21 03:16:00 ----A---- C:\Windows\system32\jscript9diag.dll
2014-04-21 03:16:00 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-04-21 03:15:59 ----A---- C:\Windows\system32\ieapfltr.dll
2014-04-21 03:15:58 ----A---- C:\Windows\system32\wininet.dll
2014-04-21 03:15:56 ----A---- C:\Windows\system32\ieUnatt.exe
2014-04-21 03:15:56 ----A---- C:\Windows\system32\ieui.dll
2014-04-21 03:15:55 ----A---- C:\Windows\system32\iertutil.dll
2014-04-21 03:15:54 ----A---- C:\Windows\system32\jscript9.dll
2014-04-21 03:15:52 ----A---- C:\Windows\system32\mshtml.dll
2014-04-21 03:15:50 ----A---- C:\Windows\system32\urlmon.dll
2014-04-21 03:15:48 ----A---- C:\Windows\system32\msfeeds.dll
2014-04-21 03:15:46 ----A---- C:\Windows\system32\msrating.dll
2014-04-21 03:15:46 ----A---- C:\Windows\system32\ie4uinit.exe
2014-04-21 03:15:45 ----A---- C:\Windows\system32\iesetup.dll
2014-04-21 03:15:44 ----A---- C:\Windows\system32\ieframe.dll
2014-04-20 03:36:47 ----D---- C:\Windows\Migration
2014-04-20 03:13:51 ----A---- C:\Windows\system32\wmp.dll
2014-04-20 03:13:48 ----A---- C:\Windows\system32\wmploc.DLL
2014-04-20 03:04:23 ----A---- C:\Windows\system32\wextract.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\webcheck.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\url.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\pngfilt.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\occache.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\msls31.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\mshtmler.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\mshtmled.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\mshta.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\msfeedssync.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\licmgr10.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\jsIntl.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\jscript.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\inseng.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\imgutil.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\iexpress.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\iesysprep.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\iepeers.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\iedkcs32.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\ieapfltr.dat
2014-04-20 03:04:23 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\icardie.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\elshyph.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\dxtrans.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\dxtmsft.dll
2014-04-19 21:30:24 ----A---- C:\Windows\system32\iologmsg.dll
2014-04-19 21:30:24 ----A---- C:\Windows\system32\drivers\storport.sys
2014-04-19 21:30:24 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-04-19 21:30:24 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-04-19 21:30:18 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-04-19 21:30:18 ----A---- C:\Windows\system32\RMActivate.exe
2014-04-19 21:30:17 ----A---- C:\Windows\system32\secproc_isv.dll
2014-04-19 21:30:17 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-04-19 21:30:17 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-04-19 21:30:16 ----A---- C:\Windows\system32\secproc.dll
2014-04-19 21:30:15 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-04-19 21:30:15 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-04-19 21:30:15 ----A---- C:\Windows\system32\msdrm.dll
2014-04-19 21:30:03 ----A---- C:\Windows\system32\qedit.dll
2014-04-19 21:30:03 ----A---- C:\Windows\system32\msieftp.dll
2014-04-19 21:30:01 ----A---- C:\Windows\system32\imagehlp.dll
2014-04-19 21:29:59 ----A---- C:\Windows\system32\msxml3r.dll
2014-04-19 21:29:59 ----A---- C:\Windows\system32\msxml3.dll
2014-04-19 21:29:58 ----A---- C:\Windows\system32\wscript.exe
2014-04-19 21:29:57 ----A---- C:\Windows\system32\scrrun.dll
2014-04-19 21:29:57 ----A---- C:\Windows\system32\cscript.exe
2014-04-19 21:29:56 ----A---- C:\Windows\system32\WMPhoto.dll
2014-04-19 21:28:46 ----A---- C:\Windows\system32\tzres.dll
2014-04-19 21:28:37 ----A---- C:\Windows\system32\wwansvc.dll
2014-04-19 21:28:02 ----A---- C:\Windows\system32\win32k.sys
2014-04-19 21:27:43 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-04-19 21:27:39 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-04-19 21:27:38 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-04-19 21:27:38 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-04-19 21:27:15 ----A---- C:\Windows\system32\drivers\netio.sys
2014-04-19 21:23:22 ----A---- C:\Windows\system32\kernel32.dll
2014-04-19 21:23:06 ----A---- C:\Windows\system32\wer.dll
2014-04-19 21:19:30 ----A---- C:\Windows\system32\d3d10warp.dll
2014-04-19 21:19:29 ----A---- C:\Windows\system32\d2d1.dll
2014-04-19 21:19:13 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-04-19 21:19:13 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-04-19 21:19:13 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-04-19 21:19:12 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-04-19 21:19:12 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-04-19 21:19:12 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-04-19 21:19:11 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-04-19 20:34:27 ----A---- C:\Windows\system32\FlashPlayerInstaller.exe
======List of files/folders modified in the last 1 month======
2014-04-22 20:08:51 ----RD---- C:\Program Files
2014-04-22 20:05:52 ----D---- C:\Windows
2014-04-22 19:59:18 ----D---- C:\Windows\Panther
2014-04-22 19:59:18 ----D---- C:\Windows\inf
2014-04-22 19:59:17 ----D---- C:\Windows\Logs
2014-04-22 19:59:17 ----D---- C:\Windows\debug
2014-04-22 19:49:50 ----A---- C:\Windows\system.ini
2014-04-22 19:49:37 ----D---- C:\Windows\system32\drivers\etc
2014-04-22 19:48:25 ----D---- C:\Windows\System32
2014-04-22 19:43:41 ----D---- C:\Windows\system32\drivers
2014-04-22 19:43:41 ----D---- C:\Windows\AppPatch
2014-04-22 19:43:37 ----D---- C:\Program Files\Common Files
2014-04-22 19:36:58 ----D---- C:\Windows\Prefetch
2014-04-22 19:23:24 ----D---- C:\Program Files\Mozilla Firefox
2014-04-22 19:14:03 ----D---- C:\Windows\system32\config
2014-04-22 18:57:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-04-22 03:30:16 ----D---- C:\Windows\winsxs
2014-04-22 03:28:39 ----D---- C:\Program Files\Internet Explorer
2014-04-22 03:19:42 ----D---- C:\Windows\Microsoft.NET
2014-04-22 03:11:49 ----SHD---- C:\Windows\Installer
2014-04-22 03:05:21 ----D---- C:\Windows\system32\catroot
2014-04-22 03:01:14 ----SHD---- C:\System Volume Information
2014-04-21 11:50:03 ----D---- C:\Windows\rescache
2014-04-21 03:18:38 ----D---- C:\Windows\system32\DriverStore
2014-04-21 03:12:35 ----D---- C:\Windows\system32\catroot2
2014-04-21 03:01:28 ----D---- C:\Windows\system32\cs-CZ
2014-04-21 03:00:19 ----D---- C:\Users\Standa\AppData\Roaming\Skype
2014-04-20 04:24:09 ----RSD---- C:\Windows\assembly
2014-04-20 04:03:41 ----D---- C:\Program Files\Windows Media Player
2014-04-20 04:03:39 ----D---- C:\Windows\PolicyDefinitions
2014-04-20 04:03:38 ----D---- C:\Windows\system32\migration
2014-04-20 04:03:38 ----D---- C:\Windows\system32\en-US
2014-04-20 03:47:01 ----D---- C:\ProgramData\Skype
2014-04-20 03:46:54 ----RD---- C:\Program Files\Skype
2014-04-20 03:36:47 ----SD---- C:\ProgramData\Microsoft
2014-04-20 03:17:41 ----D---- C:\Windows\system32\MRT
2014-04-20 03:10:36 ----D---- C:\Program Files\Microsoft Silverlight
2014-04-19 21:39:13 ----D---- C:\Windows\system32\LogFiles
2014-04-19 20:34:39 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-03-31 09:35:10 ----N---- C:\Windows\system32\MpSigStub.exe
2014-03-31 03:51:08 ----A---- C:\Windows\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-03-07 49248]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-03-07 60656]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-03-07 765736]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-03-07 368176]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-03-07 62376]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-03-07 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-03-07 66336]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-08-18 8396800]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-08-18 247296]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2011-06-07 211984]
R3 AVerAF35;AVerMedia A867 USB DVB-T; C:\Windows\System32\Drivers\AVerAF35.sys [2010-09-21 768896]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-07-07 3531176]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2011-04-13 67456]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2011-04-13 161024]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUVStor.sys [2011-09-14 232040]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-05-10 362600]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver; C:\Windows\system32\DRIVERS\rtl8192Ce.sys [2010-12-03 999528]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-03-07 164736]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\Standa\AppData\Local\Temp\catchme.sys []
S3 mbr;mbr; \??\C:\Users\Standa\AppData\Local\Temp\mbr.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-08-18 176128]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-03-07 45248]
R2 AVerRemote;AVerRemote; C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe [2011-01-29 348160]
R2 AVerScheduleService;AVerScheduleService; C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe [2011-04-01 403456]
R2 AVerUpdateServer;AVerUpdateServer; C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe [2011-01-06 168448]
R2 SnugTV Service;SnugTV Service; C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe [2011-04-06 571904]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-03-08 136176]
S2 JME Keyboard;JME Keyboard Driver; C:\Windows\jmesoft\Service.exe [2011-03-15 32768]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-18 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-03-08 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 108032]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-09-15 129976]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-02-21 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 11.0.9600.16521
Run by Standa at 20:03:00 on 2014-04-22
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2043.1190 [GMT 2:00]
.
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\atiesrxx.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe
C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe
C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe
C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Windows\jmesoft\hotkey.exe
C:\Windows\jmesoft\JME_LOAD.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
C:\Program Files\SnugTV\SnugTV Station\QuickStart.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\WUDFHost.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\explorer.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\System32\svchost.exe -k secsvcs
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.cz/
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
mRun: [NUSB3MON] "c:\program files\renesas electronics\usb 3.0 host controller driver\application\nusb3mon.exe"
mRun: [jmekey] c:\windows\jmesoft\hotkey.exe
mRun: [jmesoft] c:\windows\jmesoft\ServiceLoader.exe
mRun: [RTHDVCPL] c:\program files\realtek\audio\hda\RtHDVCpl.exe -s
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\averhi~1.lnk - c:\program files\common files\avermedia\averquick\AVerHIDReceiver.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\averqu~1.lnk - c:\program files\common files\avermedia\averquick\AVerQuick.exe
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
DPF: {9E2CD2C3-4DDA-4473-B904-B8E6D0DBAB86} - hxxp://consumersupport.lenovo.com/ot/en/SmartDownloading/cab/npdueng.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{FB3A7AD8-A9DC-4184-83A2-9B1AF18BA118} : DHCPNameServer = 192.168.1.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\34.0.1847.116\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\standa\appdata\roaming\mozilla\firefox\profiles\rkqmj34w.default\
FF - prefs.js: browser.startup.homepage - www.seznam.cz
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-4-14 49248]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2012-2-23 765736]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2012-2-23 368176]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2011-8-18 176128]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2012-2-23 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-2-23 66336]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2013-4-14 45248]
R2 AVerRemote;AVerRemote;c:\program files\common files\avermedia\service\AVerRemote.exe [2012-2-26 348160]
R2 AVerScheduleService;AVerScheduleService;c:\program files\common files\avermedia\service\AVerScheduleService.exe [2012-2-26 403456]
R2 AVerUpdateServer;AVerUpdateServer;c:\program files\avermedia\averupdate\AVerUpdateServer.exe [2011-1-6 168448]
R2 SnugTV Service;SnugTV Service;c:\program files\snugtv\snugtv station\AMAServer.exe [2011-4-6 571904]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [2011-6-7 211984]
R3 AVerAF35;AVerMedia A867 USB DVB-T;c:\windows\system32\drivers\AVerAF35.sys [2012-2-26 768896]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys [2011-4-13 67456]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys [2011-4-13 161024]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\drivers\RtsUVStor.sys [2012-2-21 232040]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2012-2-21 362600]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;c:\windows\system32\drivers\rtl8192Ce.sys [2010-12-3 999528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 JME Keyboard;JME Keyboard Driver;c:\windows\jmesoft\Service.exe [2012-2-21 32768]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-10-23 172192]
S3 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-4-14 164736]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\ieetwcollector.exe [2014-4-21 108032]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-2-23 52224]
S3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\wat\WatAdminSvc.exe [2012-2-22 1343400]
.
=============== Created Last 30 ================
.
2014-04-22 17:53:57 -------- d-sh--w- C:\$RECYCLE.BIN
2014-04-22 17:53:51 -------- d-----w- c:\users\standa\appdata\local\temp
2014-04-22 17:37:02 98816 ----a-w- c:\windows\sed.exe
2014-04-22 17:37:02 256000 ----a-w- c:\windows\PEV.exe
2014-04-22 17:37:02 208896 ----a-w- c:\windows\MBR.exe
2014-04-22 17:27:05 -------- d-----w- C:\AdwCleaner
2014-04-22 09:51:15 62576 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{c5174b79-6f72-413b-92ef-79421b8f1262}\offreg.dll
2014-04-22 09:49:48 8050496 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{c5174b79-6f72-413b-92ef-79421b8f1262}\mpengine.dll
2014-04-22 01:05:16 454656 ----a-w- c:\windows\system32\vbscript.dll
2014-04-21 01:16:01 51200 ----a-w- c:\windows\system32\ieetwproxystub.dll
2014-04-21 01:16:01 184320 ----a-w- c:\program files\internet explorer\F12Tools.dll
2014-04-21 01:16:01 1389568 ----a-w- c:\program files\internet explorer\MemoryAnalyzer.dll
2014-04-21 01:16:01 108032 ----a-w- c:\windows\system32\ieetwcollector.exe
2014-04-21 01:16:00 999936 ----a-w- c:\program files\internet explorer\networkinspection.dll
2014-04-21 01:16:00 646144 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-04-21 01:16:00 553472 ----a-w- c:\windows\system32\jscript9diag.dll
2014-04-21 01:16:00 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2014-04-20 01:36:47 -------- d-----w- c:\windows\Migration
2014-04-20 01:13:48 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2014-04-20 01:13:46 164864 ----a-w- c:\program files\windows media player\wmplayer.exe
2014-04-19 19:30:24 27072 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2014-04-19 19:29:59 2048 ----a-w- c:\windows\system32\msxml3r.dll
2014-04-19 19:29:59 1237504 ----a-w- c:\windows\system32\msxml3.dll
2014-04-19 19:29:58 141824 ----a-w- c:\windows\system32\wscript.exe
2014-04-19 19:29:58 121856 ----a-w- c:\windows\system32\wshom.ocx
2014-04-19 19:29:57 163840 ----a-w- c:\windows\system32\scrrun.dll
2014-04-19 19:29:57 126976 ----a-w- c:\windows\system32\cscript.exe
2014-04-19 19:29:56 417792 ----a-w- c:\windows\system32\WMPhoto.dll
2014-04-19 19:28:46 2048 ----a-w- c:\windows\system32\tzres.dll
2014-04-19 19:28:37 185344 ----a-w- c:\windows\system32\wwansvc.dll
2014-04-19 19:28:02 2349056 ----a-w- c:\windows\system32\win32k.sys
2014-04-19 19:27:43 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-04-19 19:27:39 1212352 ----a-w- c:\windows\system32\drivers\ntfs.sys
2014-04-19 19:27:38 81408 ----a-w- c:\windows\system32\drivers\drmk.sys
2014-04-19 19:27:38 177152 ----a-w- c:\windows\system32\drivers\portcls.sys
2014-04-19 19:27:15 240576 ----a-w- c:\windows\system32\drivers\netio.sys
2014-04-19 19:23:06 381440 ----a-w- c:\windows\system32\wer.dll
2014-04-19 19:19:30 1987584 ----a-w- c:\windows\system32\d3d10warp.dll
2014-04-19 19:19:29 3419136 ----a-w- c:\windows\system32\d2d1.dll
2014-04-19 19:19:13 76288 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2014-04-19 19:19:13 43520 ----a-w- c:\windows\system32\drivers\usbehci.sys
2014-04-19 19:19:13 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2014-04-19 19:19:12 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2014-04-19 19:19:12 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2014-04-19 19:19:12 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2014-04-19 19:19:11 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2014-04-19 18:34:27 17879432 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe
.
==================== Find3M ====================
.
2014-04-19 18:34:39 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-04-19 18:34:38 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-03-31 07:35:10 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-03-01 04:11:20 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-03-01 03:52:43 61952 ----a-w- c:\windows\system32\iesetup.dll
2014-03-01 03:38:26 112128 ----a-w- c:\windows\system32\ieUnatt.exe
2014-03-01 03:14:15 4244480 ----a-w- c:\windows\system32\jscript9.dll
2014-03-01 03:00:08 1964032 ----a-w- c:\windows\system32\inetcpl.cpl
2014-03-01 02:32:16 1820160 ----a-w- c:\windows\system32\wininet.dll
2014-02-04 02:07:53 149440 ----a-w- c:\windows\system32\drivers\storport.sys
2014-02-04 02:07:50 234432 ----a-w- c:\windows\system32\drivers\msiscsi.sys
2014-02-04 02:04:11 509440 ----a-w- c:\windows\system32\qedit.dll
2014-02-04 02:00:39 2048 ----a-w- c:\windows\system32\iologmsg.dll
2012-03-21 18:09:39 3993600 ----a-w- c:\program files\GUT2150.tmp
.
============= FINISH: 20:03:25,96 ===============
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 21-04-2014 01
Ran by Standa (administrator) on STANDA-PC on 22-04-2014 20:05:53
Running from D:\
Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVerMedia) C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe
() C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe
(AVerMedia TECHNOLOGIES, Inc.) C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe
(AVerMedia Technologies, Inc.) C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Renesas Electronics Corporation) C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Lenovo) C:\Windows\jmesoft\hotkey.exe
() C:\Windows\jmesoft\JME_LOAD.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
() C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
(AVerMedia TECHNOLOGIES, Inc.) C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
(AVerMedia Technologies, Inc. ) C:\Program Files\SnugTV\SnugTV Station\QuickStart.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\system32\wuauclt.exe
(Microsoft Corporation) C:\Program Files\Windows NT\Accessories\WORDPAD.EXE
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NUSB3MON] => C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2011-04-14] (Renesas Electronics Corporation)
HKLM\...\Run: [jmekey] => C:\Windows\jmesoft\hotkey.exe [118784 2011-07-20] (Lenovo)
HKLM\...\Run: [jmesoft] => C:\Windows\jmesoft\ServiceLoader.exe [28672 2011-03-15] ()
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10754664 2011-07-07] (Realtek Semiconductor)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-08-18] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [avast] => C:\Program Files\AVAST Software\Avast\avastUI.exe [4767304 2013-03-07] (AVAST Software)
HKU\S-1-5-21-3018533250-2179896737-1832843750-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: {9E2CD2C3-4DDA-4473-B904-B8E6D0DBAB86} http://consumersupport.lenovo.com/ot/en ... pdueng.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Standa\AppData\Roaming\Mozilla\Firefox\Profiles\rkqmj34w.default
FF Homepage: www.seznam.cz
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @lenovo.com/dueng,version=2.0 - C:\Windows\system32\lenovo\update\npdueng.dll (Lenovo)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! WebRep - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-02-23]
Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR DefaultSearchURL: {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR Extension: (YouTube) - C:\Users\Standa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-03-19]
CHR Extension: (Vyhledávání Google) - C:\Users\Standa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-03-19]
CHR Extension: (Gmail) - C:\Users\Standa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-03-19]
CHR HKLM\...\Chrome\Extension: [icmlaeflemplmjndnaapfdbbnpncnbda] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2012-02-23]
========================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-07] (AVAST Software)
R2 AVerRemote; C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe [348160 2011-01-29] (AVerMedia)
R2 AVerScheduleService; C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe [403456 2011-04-01] ()
R2 AVerUpdateServer; C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe [168448 2011-01-06] (AVerMedia TECHNOLOGIES, Inc.)
S2 JME Keyboard; C:\Windows\jmesoft\Service.exe [32768 2011-03-15] ()
R2 SnugTV Service; C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe [571904 2011-04-06] (AVerMedia Technologies, Inc.)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\system32\Drivers\aswFsBlk.sys [29816 2013-03-07] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [66336 2013-03-07] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [60656 2013-03-07] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49248 2013-03-07] ()
R1 aswSnx; C:\Windows\system32\Drivers\aswSnx.sys [765736 2013-03-07] (AVAST Software)
R1 aswSP; C:\Windows\system32\Drivers\aswSP.sys [368176 2013-03-07] (AVAST Software)
R1 aswTdi; C:\Windows\system32\Drivers\aswTdi.sys [62376 2013-03-07] (AVAST Software)
S3 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [164736 2013-03-07] ()
R3 AVerAF35; C:\Windows\System32\Drivers\AVerAF35.sys [768896 2010-09-21] (AVerMedia TECHNOLOGIES, Inc.)
R3 nusb3hub; C:\Windows\System32\DRIVERS\nusb3hub.sys [67456 2011-04-13] (Renesas Electronics Corporation)
R3 nusb3xhc; C:\Windows\System32\DRIVERS\nusb3xhc.sys [161024 2011-04-13] (Renesas Electronics Corporation)
R3 RSUSBVSTOR; C:\Windows\System32\Drivers\RtsUVStor.sys [232040 2011-09-14] (Realtek Semiconductor Corp.)
R3 RTL8192Ce; C:\Windows\System32\DRIVERS\rtl8192Ce.sys [999528 2010-12-03] (Realtek Semiconductor Corporation )
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
U3 catchme; \??\C:\Users\Standa\AppData\Local\Temp\catchme.sys [X]
U3 mbr; \??\C:\Users\Standa\AppData\Local\Temp\mbr.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-22 20:05 - 2014-04-22 20:05 - 00000000 ____D () C:\FRST
2014-04-22 20:03 - 2014-04-22 20:03 - 00012382 _____ () C:\Users\Standa\Desktop\dds.txt
2014-04-22 20:03 - 2014-04-22 20:03 - 00003177 _____ () C:\Users\Standa\Desktop\attach.txt
2014-04-22 19:53 - 2014-04-22 19:53 - 00011271 _____ () C:\ComboFix.txt
2014-04-22 19:37 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-04-22 19:37 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-04-22 19:37 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2014-04-22 19:37 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2014-04-22 19:36 - 2014-04-22 19:53 - 00000000 ____D () C:\Qoobox
2014-04-22 19:36 - 2014-04-22 19:51 - 00000000 ____D () C:\Windows\erdnt
2014-04-22 19:27 - 2014-04-22 19:27 - 00000000 ____D () C:\AdwCleaner
2014-04-22 03:05 - 2013-12-21 10:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-21 03:16 - 2014-03-01 06:10 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-21 03:16 - 2014-03-01 05:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-21 03:16 - 2014-03-01 05:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-21 03:16 - 2014-03-01 05:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-21 03:16 - 2014-03-01 05:38 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-21 03:16 - 2014-03-01 05:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-21 03:16 - 2014-03-01 05:31 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-04-21 03:15 - 2014-03-01 06:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-21 03:15 - 2014-03-01 06:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-21 03:15 - 2014-03-01 05:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-21 03:15 - 2014-03-01 05:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-21 03:15 - 2014-03-01 05:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-21 03:15 - 2014-03-01 05:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-21 03:15 - 2014-03-01 05:25 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-21 03:15 - 2014-03-01 05:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-21 03:15 - 2014-03-01 05:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-21 03:15 - 2014-03-01 05:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-21 03:15 - 2014-03-01 05:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-21 03:15 - 2014-03-01 04:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-21 03:15 - 2014-03-01 04:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-21 03:15 - 2014-03-01 04:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-21 03:15 - 2014-03-01 04:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-20 03:13 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-04-20 03:13 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 01051136 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-04-20 03:04 - 2014-04-20 03:04 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-04-20 03:04 - 2014-04-20 03:04 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00238288 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-04-20 03:04 - 2014-04-20 03:04 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-04-19 21:30 - 2014-02-04 04:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-04-19 21:30 - 2014-02-04 04:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-04-19 21:30 - 2014-02-04 04:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-04-19 21:30 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-04-19 21:30 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-04-19 21:30 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-04-19 21:30 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-04-19 21:30 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-04-19 21:30 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-04-19 21:30 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-04-19 21:30 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-04-19 21:30 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-04-19 21:30 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-04-19 21:30 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-04-19 21:30 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-04-19 21:30 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-04-19 21:30 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-04-19 21:29 - 2013-12-06 04:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-04-19 21:29 - 2013-12-06 04:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-04-19 21:29 - 2013-11-23 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-04-19 21:29 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-04-19 21:29 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-04-19 21:29 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-04-19 21:29 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-04-19 21:28 - 2014-02-07 03:07 - 02349056 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-04-19 21:28 - 2014-01-28 04:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-04-19 21:28 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-04-19 21:27 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-04-19 21:27 - 2014-01-24 04:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-19 21:27 - 2013-11-26 13:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-04-19 21:27 - 2013-10-04 03:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-04-19 21:27 - 2013-10-04 03:17 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-04-19 21:23 - 2014-03-04 11:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-19 21:23 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-04-19 21:19 - 2013-12-25 01:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-04-19 21:19 - 2013-11-27 03:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-04-19 21:19 - 2013-11-27 03:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-04-19 21:19 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-04-19 20:34 - 2014-04-19 20:34 - 17879432 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerInstaller.exe
==================== One Month Modified Files and Folders =======
2014-04-22 20:05 - 2014-04-22 20:05 - 00000000 ____D () C:\FRST
2014-04-22 20:03 - 2014-04-22 20:03 - 00012382 _____ () C:\Users\Standa\Desktop\dds.txt
2014-04-22 20:03 - 2014-04-22 20:03 - 00003177 _____ () C:\Users\Standa\Desktop\attach.txt
2014-04-22 19:59 - 2012-02-21 11:23 - 00000000 ____D () C:\Windows\Panther
2014-04-22 19:53 - 2014-04-22 19:53 - 00011271 _____ () C:\ComboFix.txt
2014-04-22 19:53 - 2014-04-22 19:36 - 00000000 ____D () C:\Qoobox
2014-04-22 19:53 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Default
2014-04-22 19:53 - 2009-07-14 04:37 - 00000000 ___RD () C:\Users\Public
2014-04-22 19:51 - 2014-04-22 19:36 - 00000000 ____D () C:\Windows\erdnt
2014-04-22 19:51 - 2012-02-21 11:27 - 01201903 ____N () C:\Windows\WindowsUpdate.log
2014-04-22 19:49 - 2009-07-14 04:04 - 00000215 _____ () C:\Windows\system.ini
2014-04-22 19:41 - 2012-03-08 08:46 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-22 19:34 - 2012-04-06 10:58 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-22 19:27 - 2014-04-22 19:27 - 00000000 ____D () C:\AdwCleaner
2014-04-22 19:23 - 2012-02-23 17:13 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-04-22 19:07 - 2009-07-14 06:34 - 00013760 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-22 19:07 - 2009-07-14 06:34 - 00013760 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-22 18:57 - 2012-02-21 11:36 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-22 03:30 - 2012-03-08 08:46 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-22 03:29 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-22 03:19 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-04-21 11:50 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-04-21 03:00 - 2013-01-05 21:24 - 00000000 ____D () C:\Users\Standa\AppData\Roaming\Skype
2014-04-20 04:06 - 2009-07-14 06:33 - 00274480 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-04-20 03:47 - 2013-01-05 21:23 - 00000000 ____D () C:\ProgramData\Skype
2014-04-20 03:46 - 2013-02-14 04:29 - 00000000 ___RD () C:\Program Files\Skype
2014-04-20 03:17 - 2013-08-03 03:05 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-20 03:10 - 2012-02-23 10:26 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-20 03:04 - 2014-04-20 03:04 - 01051136 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-04-20 03:04 - 2014-04-20 03:04 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-04-20 03:04 - 2014-04-20 03:04 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00238288 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-04-20 03:04 - 2014-04-20 03:04 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-04-20 03:04 - 2014-04-20 03:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-04-20 03:04 - 2014-04-20 03:04 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-04-19 21:50 - 2012-03-08 08:48 - 00002129 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-04-19 21:39 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2014-04-19 20:38 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Public\Libraries
2014-04-19 20:34 - 2014-04-19 20:34 - 17879432 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerInstaller.exe
2014-04-19 20:34 - 2012-04-06 10:58 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-04-19 20:34 - 2012-02-23 21:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-03-31 09:35 - 2012-02-21 16:44 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-03-31 03:51 - 2012-02-21 17:07 - 88028728 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-04-19 20:34
==================== End Of Log ============================Logfile of random's system information tool 1.09 (written by random/random)
Run by Standa at 2014-04-22 20:08:51
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 274 GB (90%) free of 305 GB
Total RAM: 2043 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:10:07, on 22.4.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Windows\jmesoft\hotkey.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
C:\Program Files\SnugTV\SnugTV Station\QuickStart.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\explorer.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Windows NT\Accessories\WORDPAD.EXE
C:\Windows\system32\notepad.exe
C:\Windows\system32\notepad.exe
D:\RSIT.exe
C:\Program Files\trend micro\Standa.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [jmekey] C:\Windows\jmesoft\hotkey.exe
O4 - HKLM\..\Run: [jmesoft] C:\Windows\jmesoft\ServiceLoader.exe
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Global Startup: AVer HID Receiver.lnk = C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
O4 - Global Startup: AVerQuick.lnk = C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {9E2CD2C3-4DDA-4473-B904-B8E6D0DBAB86} (ElevatedCreater Class) - http://consumersupport.lenovo.com/ot/en ... pdueng.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AVerRemote - AVerMedia - C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe
O23 - Service: AVerScheduleService - Unknown owner - C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe
O23 - Service: AVerUpdateServer - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: JME Keyboard Driver (JME Keyboard) - Unknown owner - C:\Windows\jmesoft\Service.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SnugTV Service - AVerMedia Technologies, Inc. - C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe
--
End of file - 4786 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Standa\AppData\Roaming\Mozilla\Firefox\Profiles\rkqmj34w.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.77 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@lenovo.com/dueng,version=2.0]
"Description"=Driver Update Control
"Path"=C:\Windows\system32\lenovo\update\npdueng.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"=C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2011-04-14 113288]
"jmekey"=C:\Windows\jmesoft\hotkey.exe [2011-07-20 118784]
"jmesoft"=C:\Windows\jmesoft\ServiceLoader.exe [2011-03-15 28672]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-07-07 10754664]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-08-18 343168]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-03-07 4767304]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2013-11-14 20584608]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
AVer HID Receiver.lnk - C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
AVerQuick.lnk - C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2014-04-22 20:08:51 ----D---- C:\rsit
2014-04-22 20:08:51 ----D---- C:\Program Files\trend micro
2014-04-22 20:05:51 ----D---- C:\FRST
2014-04-22 19:53:57 ----SHD---- C:\$RECYCLE.BIN
2014-04-22 19:53:49 ----A---- C:\ComboFix.txt
2014-04-22 19:49:36 ----D---- C:\Windows\temp
2014-04-22 19:37:02 ----A---- C:\Windows\zip.exe
2014-04-22 19:37:02 ----A---- C:\Windows\SWSC.exe
2014-04-22 19:37:02 ----A---- C:\Windows\SWREG.exe
2014-04-22 19:37:02 ----A---- C:\Windows\sed.exe
2014-04-22 19:37:02 ----A---- C:\Windows\PEV.exe
2014-04-22 19:37:02 ----A---- C:\Windows\NIRCMD.exe
2014-04-22 19:37:02 ----A---- C:\Windows\MBR.exe
2014-04-22 19:37:02 ----A---- C:\Windows\grep.exe
2014-04-22 19:36:41 ----D---- C:\Qoobox
2014-04-22 19:36:18 ----D---- C:\Windows\erdnt
2014-04-22 19:27:05 ----D---- C:\AdwCleaner
2014-04-22 03:05:16 ----A---- C:\Windows\system32\vbscript.dll
2014-04-21 03:16:01 ----A---- C:\Windows\system32\jsproxy.dll
2014-04-21 03:16:01 ----A---- C:\Windows\system32\iernonce.dll
2014-04-21 03:16:01 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-04-21 03:16:01 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-04-21 03:16:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-04-21 03:16:00 ----A---- C:\Windows\system32\jscript9diag.dll
2014-04-21 03:16:00 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-04-21 03:15:59 ----A---- C:\Windows\system32\ieapfltr.dll
2014-04-21 03:15:58 ----A---- C:\Windows\system32\wininet.dll
2014-04-21 03:15:56 ----A---- C:\Windows\system32\ieUnatt.exe
2014-04-21 03:15:56 ----A---- C:\Windows\system32\ieui.dll
2014-04-21 03:15:55 ----A---- C:\Windows\system32\iertutil.dll
2014-04-21 03:15:54 ----A---- C:\Windows\system32\jscript9.dll
2014-04-21 03:15:52 ----A---- C:\Windows\system32\mshtml.dll
2014-04-21 03:15:50 ----A---- C:\Windows\system32\urlmon.dll
2014-04-21 03:15:48 ----A---- C:\Windows\system32\msfeeds.dll
2014-04-21 03:15:46 ----A---- C:\Windows\system32\msrating.dll
2014-04-21 03:15:46 ----A---- C:\Windows\system32\ie4uinit.exe
2014-04-21 03:15:45 ----A---- C:\Windows\system32\iesetup.dll
2014-04-21 03:15:44 ----A---- C:\Windows\system32\ieframe.dll
2014-04-20 03:36:47 ----D---- C:\Windows\Migration
2014-04-20 03:13:51 ----A---- C:\Windows\system32\wmp.dll
2014-04-20 03:13:48 ----A---- C:\Windows\system32\wmploc.DLL
2014-04-20 03:04:23 ----A---- C:\Windows\system32\wextract.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\webcheck.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\url.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\pngfilt.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\occache.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\msls31.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\mshtmler.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\mshtmled.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\mshta.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\msfeedssync.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\licmgr10.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\jsIntl.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\jscript.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\inseng.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\imgutil.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\iexpress.exe
2014-04-20 03:04:23 ----A---- C:\Windows\system32\iesysprep.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\iepeers.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\iedkcs32.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\ieapfltr.dat
2014-04-20 03:04:23 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\icardie.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\elshyph.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\dxtrans.dll
2014-04-20 03:04:23 ----A---- C:\Windows\system32\dxtmsft.dll
2014-04-19 21:30:24 ----A---- C:\Windows\system32\iologmsg.dll
2014-04-19 21:30:24 ----A---- C:\Windows\system32\drivers\storport.sys
2014-04-19 21:30:24 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-04-19 21:30:24 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-04-19 21:30:18 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-04-19 21:30:18 ----A---- C:\Windows\system32\RMActivate.exe
2014-04-19 21:30:17 ----A---- C:\Windows\system32\secproc_isv.dll
2014-04-19 21:30:17 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-04-19 21:30:17 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-04-19 21:30:16 ----A---- C:\Windows\system32\secproc.dll
2014-04-19 21:30:15 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-04-19 21:30:15 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-04-19 21:30:15 ----A---- C:\Windows\system32\msdrm.dll
2014-04-19 21:30:03 ----A---- C:\Windows\system32\qedit.dll
2014-04-19 21:30:03 ----A---- C:\Windows\system32\msieftp.dll
2014-04-19 21:30:01 ----A---- C:\Windows\system32\imagehlp.dll
2014-04-19 21:29:59 ----A---- C:\Windows\system32\msxml3r.dll
2014-04-19 21:29:59 ----A---- C:\Windows\system32\msxml3.dll
2014-04-19 21:29:58 ----A---- C:\Windows\system32\wscript.exe
2014-04-19 21:29:57 ----A---- C:\Windows\system32\scrrun.dll
2014-04-19 21:29:57 ----A---- C:\Windows\system32\cscript.exe
2014-04-19 21:29:56 ----A---- C:\Windows\system32\WMPhoto.dll
2014-04-19 21:28:46 ----A---- C:\Windows\system32\tzres.dll
2014-04-19 21:28:37 ----A---- C:\Windows\system32\wwansvc.dll
2014-04-19 21:28:02 ----A---- C:\Windows\system32\win32k.sys
2014-04-19 21:27:43 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-04-19 21:27:39 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-04-19 21:27:38 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-04-19 21:27:38 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-04-19 21:27:15 ----A---- C:\Windows\system32\drivers\netio.sys
2014-04-19 21:23:22 ----A---- C:\Windows\system32\kernel32.dll
2014-04-19 21:23:06 ----A---- C:\Windows\system32\wer.dll
2014-04-19 21:19:30 ----A---- C:\Windows\system32\d3d10warp.dll
2014-04-19 21:19:29 ----A---- C:\Windows\system32\d2d1.dll
2014-04-19 21:19:13 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-04-19 21:19:13 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-04-19 21:19:13 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-04-19 21:19:12 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-04-19 21:19:12 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-04-19 21:19:12 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-04-19 21:19:11 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-04-19 20:34:27 ----A---- C:\Windows\system32\FlashPlayerInstaller.exe
======List of files/folders modified in the last 1 month======
2014-04-22 20:08:51 ----RD---- C:\Program Files
2014-04-22 20:05:52 ----D---- C:\Windows
2014-04-22 19:59:18 ----D---- C:\Windows\Panther
2014-04-22 19:59:18 ----D---- C:\Windows\inf
2014-04-22 19:59:17 ----D---- C:\Windows\Logs
2014-04-22 19:59:17 ----D---- C:\Windows\debug
2014-04-22 19:49:50 ----A---- C:\Windows\system.ini
2014-04-22 19:49:37 ----D---- C:\Windows\system32\drivers\etc
2014-04-22 19:48:25 ----D---- C:\Windows\System32
2014-04-22 19:43:41 ----D---- C:\Windows\system32\drivers
2014-04-22 19:43:41 ----D---- C:\Windows\AppPatch
2014-04-22 19:43:37 ----D---- C:\Program Files\Common Files
2014-04-22 19:36:58 ----D---- C:\Windows\Prefetch
2014-04-22 19:23:24 ----D---- C:\Program Files\Mozilla Firefox
2014-04-22 19:14:03 ----D---- C:\Windows\system32\config
2014-04-22 18:57:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-04-22 03:30:16 ----D---- C:\Windows\winsxs
2014-04-22 03:28:39 ----D---- C:\Program Files\Internet Explorer
2014-04-22 03:19:42 ----D---- C:\Windows\Microsoft.NET
2014-04-22 03:11:49 ----SHD---- C:\Windows\Installer
2014-04-22 03:05:21 ----D---- C:\Windows\system32\catroot
2014-04-22 03:01:14 ----SHD---- C:\System Volume Information
2014-04-21 11:50:03 ----D---- C:\Windows\rescache
2014-04-21 03:18:38 ----D---- C:\Windows\system32\DriverStore
2014-04-21 03:12:35 ----D---- C:\Windows\system32\catroot2
2014-04-21 03:01:28 ----D---- C:\Windows\system32\cs-CZ
2014-04-21 03:00:19 ----D---- C:\Users\Standa\AppData\Roaming\Skype
2014-04-20 04:24:09 ----RSD---- C:\Windows\assembly
2014-04-20 04:03:41 ----D---- C:\Program Files\Windows Media Player
2014-04-20 04:03:39 ----D---- C:\Windows\PolicyDefinitions
2014-04-20 04:03:38 ----D---- C:\Windows\system32\migration
2014-04-20 04:03:38 ----D---- C:\Windows\system32\en-US
2014-04-20 03:47:01 ----D---- C:\ProgramData\Skype
2014-04-20 03:46:54 ----RD---- C:\Program Files\Skype
2014-04-20 03:36:47 ----SD---- C:\ProgramData\Microsoft
2014-04-20 03:17:41 ----D---- C:\Windows\system32\MRT
2014-04-20 03:10:36 ----D---- C:\Program Files\Microsoft Silverlight
2014-04-19 21:39:13 ----D---- C:\Windows\system32\LogFiles
2014-04-19 20:34:39 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-03-31 09:35:10 ----N---- C:\Windows\system32\MpSigStub.exe
2014-03-31 03:51:08 ----A---- C:\Windows\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-03-07 49248]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-03-07 60656]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-03-07 765736]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-03-07 368176]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-03-07 62376]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-03-07 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-03-07 66336]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-08-18 8396800]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-08-18 247296]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2011-06-07 211984]
R3 AVerAF35;AVerMedia A867 USB DVB-T; C:\Windows\System32\Drivers\AVerAF35.sys [2010-09-21 768896]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-07-07 3531176]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2011-04-13 67456]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2011-04-13 161024]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUVStor.sys [2011-09-14 232040]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-05-10 362600]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver; C:\Windows\system32\DRIVERS\rtl8192Ce.sys [2010-12-03 999528]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-03-07 164736]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\Standa\AppData\Local\Temp\catchme.sys []
S3 mbr;mbr; \??\C:\Users\Standa\AppData\Local\Temp\mbr.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-08-18 176128]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-03-07 45248]
R2 AVerRemote;AVerRemote; C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe [2011-01-29 348160]
R2 AVerScheduleService;AVerScheduleService; C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe [2011-04-01 403456]
R2 AVerUpdateServer;AVerUpdateServer; C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe [2011-01-06 168448]
R2 SnugTV Service;SnugTV Service; C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe [2011-04-06 571904]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-03-08 136176]
S2 JME Keyboard;JME Keyboard Driver; C:\Windows\jmesoft\Service.exe [2011-03-15 32768]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-18 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-03-08 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 108032]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-09-15 129976]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-02-21 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 11.0.9600.16521
Run by Standa at 20:03:00 on 2014-04-22
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2043.1190 [GMT 2:00]
.
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\atiesrxx.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe
C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe
C:\Program Files\AVerMedia\AVerUpdate\AVerUpdateServer.exe
C:\Program Files\SnugTV\SnugTV Station\AMAServer.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Windows\jmesoft\hotkey.exe
C:\Windows\jmesoft\JME_LOAD.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
C:\Program Files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
C:\Program Files\SnugTV\SnugTV Station\QuickStart.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\WUDFHost.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\explorer.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\System32\svchost.exe -k secsvcs
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.cz/
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
mRun: [NUSB3MON] "c:\program files\renesas electronics\usb 3.0 host controller driver\application\nusb3mon.exe"
mRun: [jmekey] c:\windows\jmesoft\hotkey.exe
mRun: [jmesoft] c:\windows\jmesoft\ServiceLoader.exe
mRun: [RTHDVCPL] c:\program files\realtek\audio\hda\RtHDVCpl.exe -s
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\averhi~1.lnk - c:\program files\common files\avermedia\averquick\AVerHIDReceiver.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\averqu~1.lnk - c:\program files\common files\avermedia\averquick\AVerQuick.exe
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
DPF: {9E2CD2C3-4DDA-4473-B904-B8E6D0DBAB86} - hxxp://consumersupport.lenovo.com/ot/en/SmartDownloading/cab/npdueng.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{FB3A7AD8-A9DC-4184-83A2-9B1AF18BA118} : DHCPNameServer = 192.168.1.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\34.0.1847.116\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\standa\appdata\roaming\mozilla\firefox\profiles\rkqmj34w.default\
FF - prefs.js: browser.startup.homepage - www.seznam.cz
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-4-14 49248]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2012-2-23 765736]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2012-2-23 368176]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2011-8-18 176128]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2012-2-23 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-2-23 66336]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2013-4-14 45248]
R2 AVerRemote;AVerRemote;c:\program files\common files\avermedia\service\AVerRemote.exe [2012-2-26 348160]
R2 AVerScheduleService;AVerScheduleService;c:\program files\common files\avermedia\service\AVerScheduleService.exe [2012-2-26 403456]
R2 AVerUpdateServer;AVerUpdateServer;c:\program files\avermedia\averupdate\AVerUpdateServer.exe [2011-1-6 168448]
R2 SnugTV Service;SnugTV Service;c:\program files\snugtv\snugtv station\AMAServer.exe [2011-4-6 571904]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [2011-6-7 211984]
R3 AVerAF35;AVerMedia A867 USB DVB-T;c:\windows\system32\drivers\AVerAF35.sys [2012-2-26 768896]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys [2011-4-13 67456]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys [2011-4-13 161024]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\drivers\RtsUVStor.sys [2012-2-21 232040]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2012-2-21 362600]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;c:\windows\system32\drivers\rtl8192Ce.sys [2010-12-3 999528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 JME Keyboard;JME Keyboard Driver;c:\windows\jmesoft\Service.exe [2012-2-21 32768]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-10-23 172192]
S3 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-4-14 164736]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\ieetwcollector.exe [2014-4-21 108032]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-2-23 52224]
S3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\wat\WatAdminSvc.exe [2012-2-22 1343400]
.
=============== Created Last 30 ================
.
2014-04-22 17:53:57 -------- d-sh--w- C:\$RECYCLE.BIN
2014-04-22 17:53:51 -------- d-----w- c:\users\standa\appdata\local\temp
2014-04-22 17:37:02 98816 ----a-w- c:\windows\sed.exe
2014-04-22 17:37:02 256000 ----a-w- c:\windows\PEV.exe
2014-04-22 17:37:02 208896 ----a-w- c:\windows\MBR.exe
2014-04-22 17:27:05 -------- d-----w- C:\AdwCleaner
2014-04-22 09:51:15 62576 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{c5174b79-6f72-413b-92ef-79421b8f1262}\offreg.dll
2014-04-22 09:49:48 8050496 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{c5174b79-6f72-413b-92ef-79421b8f1262}\mpengine.dll
2014-04-22 01:05:16 454656 ----a-w- c:\windows\system32\vbscript.dll
2014-04-21 01:16:01 51200 ----a-w- c:\windows\system32\ieetwproxystub.dll
2014-04-21 01:16:01 184320 ----a-w- c:\program files\internet explorer\F12Tools.dll
2014-04-21 01:16:01 1389568 ----a-w- c:\program files\internet explorer\MemoryAnalyzer.dll
2014-04-21 01:16:01 108032 ----a-w- c:\windows\system32\ieetwcollector.exe
2014-04-21 01:16:00 999936 ----a-w- c:\program files\internet explorer\networkinspection.dll
2014-04-21 01:16:00 646144 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-04-21 01:16:00 553472 ----a-w- c:\windows\system32\jscript9diag.dll
2014-04-21 01:16:00 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2014-04-20 01:36:47 -------- d-----w- c:\windows\Migration
2014-04-20 01:13:48 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2014-04-20 01:13:46 164864 ----a-w- c:\program files\windows media player\wmplayer.exe
2014-04-19 19:30:24 27072 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2014-04-19 19:29:59 2048 ----a-w- c:\windows\system32\msxml3r.dll
2014-04-19 19:29:59 1237504 ----a-w- c:\windows\system32\msxml3.dll
2014-04-19 19:29:58 141824 ----a-w- c:\windows\system32\wscript.exe
2014-04-19 19:29:58 121856 ----a-w- c:\windows\system32\wshom.ocx
2014-04-19 19:29:57 163840 ----a-w- c:\windows\system32\scrrun.dll
2014-04-19 19:29:57 126976 ----a-w- c:\windows\system32\cscript.exe
2014-04-19 19:29:56 417792 ----a-w- c:\windows\system32\WMPhoto.dll
2014-04-19 19:28:46 2048 ----a-w- c:\windows\system32\tzres.dll
2014-04-19 19:28:37 185344 ----a-w- c:\windows\system32\wwansvc.dll
2014-04-19 19:28:02 2349056 ----a-w- c:\windows\system32\win32k.sys
2014-04-19 19:27:43 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-04-19 19:27:39 1212352 ----a-w- c:\windows\system32\drivers\ntfs.sys
2014-04-19 19:27:38 81408 ----a-w- c:\windows\system32\drivers\drmk.sys
2014-04-19 19:27:38 177152 ----a-w- c:\windows\system32\drivers\portcls.sys
2014-04-19 19:27:15 240576 ----a-w- c:\windows\system32\drivers\netio.sys
2014-04-19 19:23:06 381440 ----a-w- c:\windows\system32\wer.dll
2014-04-19 19:19:30 1987584 ----a-w- c:\windows\system32\d3d10warp.dll
2014-04-19 19:19:29 3419136 ----a-w- c:\windows\system32\d2d1.dll
2014-04-19 19:19:13 76288 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2014-04-19 19:19:13 43520 ----a-w- c:\windows\system32\drivers\usbehci.sys
2014-04-19 19:19:13 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2014-04-19 19:19:12 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2014-04-19 19:19:12 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2014-04-19 19:19:12 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2014-04-19 19:19:11 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2014-04-19 18:34:27 17879432 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe
.
==================== Find3M ====================
.
2014-04-19 18:34:39 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-04-19 18:34:38 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-03-31 07:35:10 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-03-01 04:11:20 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-03-01 03:52:43 61952 ----a-w- c:\windows\system32\iesetup.dll
2014-03-01 03:38:26 112128 ----a-w- c:\windows\system32\ieUnatt.exe
2014-03-01 03:14:15 4244480 ----a-w- c:\windows\system32\jscript9.dll
2014-03-01 03:00:08 1964032 ----a-w- c:\windows\system32\inetcpl.cpl
2014-03-01 02:32:16 1820160 ----a-w- c:\windows\system32\wininet.dll
2014-02-04 02:07:53 149440 ----a-w- c:\windows\system32\drivers\storport.sys
2014-02-04 02:07:50 234432 ----a-w- c:\windows\system32\drivers\msiscsi.sys
2014-02-04 02:04:11 509440 ----a-w- c:\windows\system32\qedit.dll
2014-02-04 02:00:39 2048 ----a-w- c:\windows\system32\iologmsg.dll
2012-03-21 18:09:39 3993600 ----a-w- c:\program files\GUT2150.tmp
.
============= FINISH: 20:03:25,96 ===============