Pomalý notebook
Napsal: 21 kvě 2014 20:08
Dobrý večer,
chtěl bych Vás požádat o pomoc. Mám tu velice pomalý notebook, nebyl správně udržovaný, nebyly instalovány aktualizace OS, musel jsem odstranit dočasné soubory pomocí Ccleaneru, vymazal jsem několik zbytečných doplňků (toolbary, přehrávače, hry, ..) ale PC je stále velmi pomalý. Děkuji za Váš čas.
Zde je log RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by okay at 2014-05-21 20:55:51
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 6 GB (15%) free of 41 GB
Total RAM: 2009 MB (50% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:56:06, on 21.5.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe
C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe
C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe
C:\Program Files\trend micro\okay.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: W2PBrowser Browser Helper - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zaøízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zaøízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Pøidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Pøidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Samsung AnyWeb Print - {328ECD19-C167-40eb-A0C7-16FE7634105E} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O9 - Extra button: Odeslat do zaøízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zaøízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Sluba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Sluba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Samsung UPD Service - Unknown owner - C:\Windows\System32\SUPDSvc.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8942 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 4093824
\??\C:\Windows\system32\conhost.exe "429813912124789250-5949426048262548517115151031113051511-841447089-1649982274
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe" -quickstart
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe" "-quickstart" "-env:OOO_CWD=2C:\\Program Files (x86)\\OpenOffice.org 3\\program"
taskeng.exe {65DD1C6A-5782-4569-AACE-0513A1573B10}
"C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe"
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
WLIDSvcM.exe 3900
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe"
"C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-dbde47b0-88cb-4c19-ab7f-99c48e4d97c7 -SystemEventPortName:HostProcess-e5e8cad0-daf3-4c9e-9f23-9b82039ff978 -IoCancelEventPortName:HostProcess-f973a7cc-ae4c-4316-8fd7-957bf01f35f5 -NonStateChangingEventPortName:HostProcess-31146bca-838a-4393-a861-ea35ff196494 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9da302e7-d4ef-4eae-8a6e-a2e298af79db -DeviceGroupId:WpdFsGroup
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
wmiadap.exe /R /T
"C:\Users\okay\Desktop\RSITx64.exe"
C:\Windows\System32\svchost.exe -k WerSvcGroup
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-22 245592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2010-04-28 132456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-22 201784]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA609D72-8482-4076-8991-8CDAE5B93BCB}]
W2PBrowser Class - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll [2010-08-23 1236992]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-03-25 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-22 245592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-22 201784]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-08-11 11369576]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2010-08-05 2586504]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-08-25 161304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-08-25 386584]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-08-25 415256]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-04-17 3671872]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2014-01-22 4858968]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\okay\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.3.lnk - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-08-25 271360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2014-05-21 20:55:51 ----D---- C:\rsit
2014-05-21 20:55:51 ----D---- C:\Program Files\trend micro
2014-05-21 19:58:22 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-05-21 19:58:22 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-21 19:58:22 ----A---- C:\Windows\system32\mshtml.dll
2014-05-21 19:58:20 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-05-21 19:16:47 ----D---- C:\Windows\rescache
2014-05-21 18:15:06 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-05-21 18:15:06 ----A---- C:\Windows\system32\d3d10warp.dll
2014-05-21 18:15:05 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-05-21 18:15:05 ----A---- C:\Windows\system32\d2d1.dll
2014-05-21 18:15:02 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-05-21 18:15:02 ----A---- C:\Windows\system32\WMPhoto.dll
2014-05-21 18:13:07 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-21 18:12:23 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-05-21 18:12:22 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-05-21 06:25:09 ----SD---- C:\Windows\system32\CompatTel
2014-05-21 06:22:27 ----A---- C:\Windows\system32\wmploc.DLL
2014-05-21 06:22:25 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-05-21 06:22:24 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-05-21 06:22:21 ----A---- C:\Windows\system32\wmp.dll
2014-05-21 06:07:19 ----D---- C:\Windows\Migration
2014-05-21 06:00:27 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-05-21 05:52:25 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-05-21 05:52:05 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-05-21 05:52:05 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-05-21 05:52:05 ----A---- C:\Windows\system32\elshyph.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\url.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-05-21 05:52:04 ----A---- C:\Windows\system32\wininet.dll
2014-05-21 05:52:04 ----A---- C:\Windows\system32\urlmon.dll
2014-05-21 05:52:04 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-05-21 05:52:04 ----A---- C:\Windows\system32\msls31.dll
2014-05-21 05:52:04 ----A---- C:\Windows\system32\jsIntl.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\wextract.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\webcheck.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\vbscript.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\url.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\pngfilt.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\occache.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\msrating.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\mshtmler.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\mshta.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\msfeedssync.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\msfeeds.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\licmgr10.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\jsproxy.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\jscript9diag.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\jscript9.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\jscript.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\inseng.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\imgutil.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iexpress.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieUnatt.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieui.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iesysprep.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iesetup.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iertutil.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iernonce.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iepeers.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieframe.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iedkcs32.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieapfltr.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ie4uinit.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\icardie.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\dxtrans.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\dxtmsft.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-21 05:48:22 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-21 05:48:22 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-05-21 05:48:22 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-05-21 05:48:21 ----A---- C:\Windows\system32\XpsPrint.dll
2014-05-21 05:48:21 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-05-21 05:48:19 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-05-21 05:48:19 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-05-21 05:48:15 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-05-21 05:48:15 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-05-21 05:48:15 ----A---- C:\Windows\system32\dxgi.dll
2014-05-21 05:48:14 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-05-21 05:48:14 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-05-21 05:48:14 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-05-21 05:48:14 ----A---- C:\Windows\system32\FntCache.dll
2014-05-21 05:48:14 ----A---- C:\Windows\system32\DWrite.dll
2014-05-21 05:48:13 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-05-21 05:48:13 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-05-21 05:48:12 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-05-21 05:48:12 ----A---- C:\Windows\system32\d3d10core.dll
2014-05-21 05:48:12 ----A---- C:\Windows\system32\d3d10.dll
2014-05-21 05:48:11 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-05-21 05:48:11 ----A---- C:\Windows\system32\d3d10_1.dll
2014-05-21 05:48:10 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-05-21 05:48:10 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-05-21 05:48:10 ----A---- C:\Windows\system32\UIAnimation.dll
2014-05-21 05:48:10 ----A---- C:\Windows\system32\d3d10level9.dll
2014-05-20 21:48:45 ----A---- C:\Windows\system32\consent.exe
2014-05-20 21:48:42 ----A---- C:\Windows\system32\appinfo.dll
2014-05-20 21:47:16 ----A---- C:\Windows\system32\drivers\afd.sys
2014-05-20 21:47:02 ----A---- C:\Windows\system32\shell32.dll
2014-05-20 21:46:59 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-05-20 21:46:27 ----A---- C:\Windows\system32\aepdu.dll
2014-05-20 21:46:27 ----A---- C:\Windows\system32\aeinv.dll
2014-05-20 21:45:07 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-05-20 21:45:07 ----A---- C:\Windows\system32\wintrust.dll
2014-05-20 21:44:19 ----A---- C:\Windows\system32\msxml3.dll
2014-05-20 21:44:17 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-05-20 21:44:17 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-05-20 21:44:17 ----A---- C:\Windows\system32\msxml3r.dll
2014-05-20 21:44:14 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-05-20 21:44:14 ----A---- C:\Windows\system32\wer.dll
2014-05-20 21:44:07 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-05-20 21:44:07 ----A---- C:\Windows\system32\tzres.dll
2014-05-20 21:43:49 ----A---- C:\Windows\system32\comctl32.dll
2014-05-20 21:43:48 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-05-20 21:43:17 ----A---- C:\Windows\system32\crypt32.dll
2014-05-20 21:43:14 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-05-20 21:43:14 ----A---- C:\Windows\system32\cryptsvc.dll
2014-05-20 21:43:14 ----A---- C:\Windows\system32\cryptnet.dll
2014-05-20 21:43:13 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-05-20 21:43:13 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-05-20 21:42:39 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-05-20 21:42:39 ----A---- C:\Windows\system32\msieftp.dll
2014-05-20 21:42:36 ----A---- C:\Windows\system32\wwansvc.dll
2014-05-20 21:42:36 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-05-20 21:42:32 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2014-05-20 21:42:32 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2014-05-20 21:42:32 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2014-05-20 21:42:32 ----A---- C:\Windows\system32\dhcpcore6.dll
2014-05-20 21:42:09 ----A---- C:\Windows\system32\imagehlp.dll
2014-05-20 21:42:08 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-05-20 21:42:06 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-05-20 21:42:06 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-05-20 21:41:37 ----A---- C:\Windows\system32\win32k.sys
2014-05-20 21:34:54 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-05-20 21:34:53 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2014-05-20 21:32:28 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-05-20 21:32:19 ----A---- C:\Windows\system32\authui.dll
2014-05-20 21:32:18 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-05-20 21:32:17 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-05-20 21:32:17 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-05-20 21:32:17 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-05-20 21:32:17 ----A---- C:\Windows\system32\credui.dll
2014-05-20 21:32:07 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-05-20 21:32:07 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-05-20 21:32:07 ----A---- C:\Windows\system32\lpk.dll
2014-05-20 21:32:07 ----A---- C:\Windows\system32\dciman32.dll
2014-05-20 21:32:07 ----A---- C:\Windows\system32\atmfd.dll
2014-05-20 21:32:06 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-05-20 21:32:06 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-05-20 21:32:06 ----A---- C:\Windows\system32\fontsub.dll
2014-05-20 21:32:05 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-05-20 21:32:05 ----A---- C:\Windows\system32\atmlib.dll
2014-05-20 21:32:02 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-05-20 21:32:02 ----A---- C:\Windows\system32\RMActivate.exe
2014-05-20 21:32:01 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-05-20 21:32:01 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-05-20 21:32:01 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-05-20 21:32:00 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-05-20 21:32:00 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-05-20 21:32:00 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-05-20 21:31:59 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-05-20 21:31:59 ----A---- C:\Windows\system32\secproc_isv.dll
2014-05-20 21:31:58 ----A---- C:\Windows\system32\secproc.dll
2014-05-20 21:31:58 ----A---- C:\Windows\system32\msdrm.dll
2014-05-20 21:31:57 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-05-20 21:31:57 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-05-20 21:31:56 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-05-20 21:31:56 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-05-20 21:31:56 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-05-20 21:31:56 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-05-20 21:31:38 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-05-20 21:31:37 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-05-20 21:31:35 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-05-20 21:31:34 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-05-20 21:31:33 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-05-20 21:31:32 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-05-20 21:31:31 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-05-20 21:29:20 ----A---- C:\Windows\system32\d3d11.dll
2014-05-20 21:29:19 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-05-20 21:21:07 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-05-20 21:21:06 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-05-20 21:21:06 ----A---- C:\Windows\system32\rpcrt4.dll
2014-05-20 21:21:05 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-05-20 21:21:04 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-05-20 21:21:04 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-05-20 21:21:04 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-05-20 21:21:04 ----A---- C:\Windows\system32\WebClnt.dll
2014-05-20 21:21:04 ----A---- C:\Windows\system32\davclnt.dll
2014-05-20 21:21:03 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-05-20 21:13:59 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-05-20 21:13:59 ----A---- C:\Windows\system32\ncsi.dll
2014-05-20 21:13:58 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-05-20 21:13:58 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2014-05-20 21:13:58 ----A---- C:\Windows\system32\nlasvc.dll
2014-05-20 21:13:58 ----A---- C:\Windows\system32\netcorehc.dll
2014-05-20 21:13:58 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-05-20 21:13:57 ----A---- C:\Windows\system32\nlaapi.dll
2014-05-20 21:13:57 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-05-20 21:13:56 ----A---- C:\Windows\SYSWOW64\netevent.dll
2014-05-20 21:13:56 ----A---- C:\Windows\system32\netevent.dll
2014-05-20 21:13:32 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-05-20 21:13:31 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-05-20 21:13:23 ----A---- C:\Windows\system32\advapi32.dll
2014-05-20 21:13:22 ----A---- C:\Windows\system32\ntdll.dll
2014-05-20 21:13:17 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-05-20 21:13:17 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-05-20 21:13:17 ----A---- C:\Windows\system32\tdh.dll
2014-05-20 21:13:16 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-05-20 21:13:07 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-05-20 21:13:07 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-05-20 21:12:24 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-20 21:12:23 ----A---- C:\Windows\system32\schannel.dll
2014-05-20 21:12:23 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-20 21:12:21 ----A---- C:\Windows\system32\kerberos.dll
2014-05-20 21:12:20 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-05-20 21:12:20 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-05-20 21:12:19 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-05-20 21:12:17 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-05-20 21:12:17 ----A---- C:\Windows\system32\winlogon.exe
2014-05-20 21:12:17 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-20 21:12:16 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-05-20 21:12:16 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-20 21:12:15 ----A---- C:\Windows\system32\objsel.dll
2014-05-20 21:12:15 ----A---- C:\Windows\system32\drivers\cng.sys
2014-05-20 21:12:13 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-20 21:12:11 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-05-20 21:12:10 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-05-20 21:12:10 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-20 21:12:09 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-05-20 21:12:09 ----A---- C:\Windows\system32\wdigest.dll
2014-05-20 21:12:08 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-05-20 21:12:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-05-20 21:12:07 ----A---- C:\Windows\system32\smss.exe
2014-05-20 21:12:07 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-20 21:12:07 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-20 21:12:06 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-05-20 21:12:06 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-20 21:12:06 ----A---- C:\Windows\system32\adprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-20 21:12:04 ----A---- C:\Windows\system32\sspicli.dll
2014-05-20 21:12:04 ----A---- C:\Windows\system32\csrsrv.dll
2014-05-20 21:12:03 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-05-20 21:12:03 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-20 21:12:03 ----A---- C:\Windows\system32\lsass.exe
2014-05-20 21:12:02 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-05-20 21:12:01 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-05-20 21:12:01 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-05-20 21:12:01 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-20 21:12:01 ----A---- C:\Windows\system32\secur32.dll
2014-05-20 21:12:01 ----A---- C:\Windows\system32\credssp.dll
2014-05-20 21:12:00 ----A---- C:\Windows\system32\ncrypt.dll
2014-05-20 21:11:45 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-05-20 21:11:45 ----A---- C:\Windows\system32\apisetschema.dll
2014-05-20 21:11:05 ----A---- C:\Windows\system32\OxpsConverter.exe
2014-05-20 21:10:29 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-05-20 21:10:25 ----A---- C:\Windows\system32\mswsock.dll
2014-05-20 21:10:23 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-05-20 21:09:08 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-05-20 21:09:08 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-05-20 21:09:06 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-05-20 21:09:05 ----A---- C:\Windows\system32\drivers\netio.sys
2014-05-20 21:08:55 ----A---- C:\Windows\system32\drivers\storport.sys
2014-05-20 21:08:55 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-05-20 21:08:55 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-05-20 21:08:54 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2014-05-20 21:08:54 ----A---- C:\Windows\system32\iologmsg.dll
2014-05-20 21:08:15 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-05-20 21:08:15 ----A---- C:\Windows\system32\shdocvw.dll
2014-05-20 21:07:38 ----A---- C:\Windows\system32\win32spl.dll
2014-05-20 21:07:37 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-05-20 21:07:34 ----A---- C:\Windows\system32\gdi32.dll
2014-05-20 21:07:33 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-05-20 21:07:29 ----A---- C:\Windows\system32\taskhost.exe
2014-05-20 21:07:23 ----A---- C:\Windows\system32\qedit.dll
2014-05-20 21:07:22 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-05-20 21:07:13 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2014-05-20 21:07:13 ----A---- C:\Windows\system32\cryptdlg.dll
2014-05-20 21:06:17 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-05-20 21:06:17 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-05-20 21:06:17 ----A---- C:\Windows\system32\wscript.exe
2014-05-20 21:06:17 ----A---- C:\Windows\system32\scrrun.dll
2014-05-20 21:06:17 ----A---- C:\Windows\system32\cscript.exe
2014-05-20 21:06:16 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-05-20 21:06:09 ----A---- C:\Windows\system32\wow64win.dll
2014-05-20 21:06:09 ----A---- C:\Windows\system32\wow64.dll
2014-05-20 21:06:09 ----A---- C:\Windows\system32\kernel32.dll
2014-05-20 21:06:08 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-05-20 21:06:08 ----A---- C:\Windows\system32\winsrv.dll
2014-05-20 21:06:08 ----A---- C:\Windows\system32\conhost.exe
2014-05-20 21:06:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-05-20 21:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-05-20 21:06:07 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-05-20 21:06:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-05-20 21:06:07 ----A---- C:\Windows\system32\ntvdm64.dll
2014-05-20 21:06:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-05-20 21:06:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-05-20 21:06:06 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-05-20 21:06:06 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-05-20 21:06:06 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-05-20 21:06:06 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-05-20 21:06:06 ----A---- C:\Windows\system32\wow64cpu.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-05-20 21:06:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-05-20 21:06:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-05-20 21:06:00 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-05-20 21:06:00 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-05-20 21:05:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-05-20 21:05:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-05-20 21:05:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-05-20 21:05:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-05-20 21:05:58 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-05-20 21:05:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-05-20 21:05:57 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-05-20 21:05:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-05-20 21:05:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-05-20 21:05:56 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-05-20 21:05:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-05-20 21:05:55 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-05-20 21:05:55 ----A---- C:\Windows\SYSWOW64\user.exe
2014-05-20 21:05:51 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-05-20 21:05:43 ----A---- C:\Windows\system32\certutil.exe
2014-05-20 21:05:42 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-05-20 21:05:35 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-05-20 21:05:35 ----A---- C:\Windows\system32\certenc.dll
2014-05-20 21:04:18 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-05-20 21:04:17 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-05-20 21:04:17 ----A---- C:\Windows\system32\cdd.dll
2014-05-20 21:00:49 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-05-20 21:00:49 ----A---- C:\Windows\system32\nshwfp.dll
2014-05-20 21:00:49 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-05-20 21:00:49 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-05-20 21:00:48 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-05-20 20:49:55 ----A---- C:\Windows\SYSWOW64\sqlite3.dll
2014-05-20 20:49:07 ----D---- C:\AdwCleaner
2014-05-20 20:41:06 ----D---- C:\Program Files\CCleaner
2014-05-20 20:38:41 ----A---- C:\Windows\system32\scavengeui.dll
2014-05-20 18:31:39 ----ASH---- C:\pagefile.sys
2014-05-19 22:31:24 ----D---- C:\Windows\system32\SPReview
2014-05-19 22:28:02 ----D---- C:\Program Files (x86)\ESET
2014-05-19 22:26:29 ----D---- C:\Windows\system32\MRT
2014-05-19 22:26:17 ----A---- C:\Windows\system32\MRT.exe
2014-05-19 21:10:04 ----A---- C:\AVScanner.ini
2014-05-19 20:28:58 ----D---- C:\Zaloha_reg
======List of files/folders modified in the last 1 months======
2014-05-21 20:56:06 ----D---- C:\Windows\Prefetch
2014-05-21 20:56:03 ----D---- C:\Windows\Temp
2014-05-21 20:55:51 ----RD---- C:\Program Files
2014-05-21 20:46:50 ----D---- C:\Windows\system32\config
2014-05-21 20:46:22 ----D---- C:\Windows\inf
2014-05-21 20:45:39 ----D---- C:\Windows
2014-05-21 20:37:34 ----D---- C:\Windows\SoftwareDistribution
2014-05-21 20:37:08 ----D---- C:\Windows\System32
2014-05-21 20:37:08 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-05-21 20:35:01 ----D---- C:\Windows\Panther
2014-05-21 20:35:01 ----D---- C:\Windows\Logs
2014-05-21 20:33:11 ----D---- C:\Windows\system32\DriverStore
2014-05-21 20:29:52 ----D---- C:\Windows\winsxs
2014-05-21 20:27:51 ----D---- C:\Windows\SysWOW64
2014-05-21 20:15:48 ----D---- C:\Windows\Microsoft.NET
2014-05-21 19:58:27 ----D---- C:\Windows\system32\catroot
2014-05-21 19:58:18 ----SHD---- C:\Windows\Installer
2014-05-21 19:58:18 ----SHD---- C:\Config.Msi
2014-05-21 19:54:16 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-05-21 19:49:02 ----SHD---- C:\System Volume Information
2014-05-21 18:21:41 ----RSD---- C:\Windows\assembly
2014-05-21 18:12:38 ----D---- C:\Windows\system32\catroot2
2014-05-21 06:25:22 ----D---- C:\Program Files\Windows Media Player
2014-05-21 06:25:22 ----D---- C:\Program Files (x86)\Windows Media Player
2014-05-21 06:25:18 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-05-21 06:25:18 ----D---- C:\Windows\system32\cs-CZ
2014-05-21 06:25:18 ----D---- C:\Program Files\Internet Explorer
2014-05-21 06:25:18 ----D---- C:\Program Files (x86)\Internet Explorer
2014-05-21 06:25:16 ----D---- C:\Windows\SYSWOW64\migration
2014-05-21 06:25:16 ----D---- C:\Windows\SYSWOW64\en-US
2014-05-21 06:25:14 ----D---- C:\Windows\system32\migration
2014-05-21 06:25:14 ----D---- C:\Windows\system32\en-US
2014-05-21 06:25:14 ----D---- C:\Windows\PolicyDefinitions
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\it-IT
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\es-ES
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\el-GR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\de-DE
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\da-DK
2014-05-21 06:25:11 ----D---- C:\Windows\system32\zh-HK
2014-05-21 06:25:11 ----D---- C:\Windows\system32\pt-PT
2014-05-21 06:25:11 ----D---- C:\Windows\system32\pt-BR
2014-05-21 06:25:11 ----D---- C:\Windows\system32\pl-PL
2014-05-21 06:25:11 ----D---- C:\Windows\system32\nl-NL
2014-05-21 06:25:11 ----D---- C:\Windows\system32\ko-KR
2014-05-21 06:25:11 ----D---- C:\Windows\system32\it-IT
2014-05-21 06:25:11 ----D---- C:\Windows\system32\hu-HU
2014-05-21 06:25:11 ----D---- C:\Windows\system32\el-GR
2014-05-21 06:25:10 ----D---- C:\Windows\system32\zh-TW
2014-05-21 06:25:10 ----D---- C:\Windows\system32\zh-CN
2014-05-21 06:25:10 ----D---- C:\Windows\system32\tr-TR
2014-05-21 06:25:10 ----D---- C:\Windows\system32\sv-SE
2014-05-21 06:25:10 ----D---- C:\Windows\system32\ru-RU
2014-05-21 06:25:10 ----D---- C:\Windows\system32\nb-NO
2014-05-21 06:25:10 ----D---- C:\Windows\system32\ja-JP
2014-05-21 06:25:10 ----D---- C:\Windows\system32\fr-FR
2014-05-21 06:25:10 ----D---- C:\Windows\system32\fi-FI
2014-05-21 06:25:10 ----D---- C:\Windows\system32\es-ES
2014-05-21 06:25:10 ----D---- C:\Windows\system32\de-DE
2014-05-21 06:25:10 ----D---- C:\Windows\system32\da-DK
2014-05-21 06:25:09 ----D---- C:\Windows\AppPatch
2014-05-21 06:25:06 ----D---- C:\Windows\system32\drivers
2014-05-21 06:07:19 ----SD---- C:\ProgramData\Microsoft
2014-05-20 22:55:37 ----D---- C:\Program Files\Windows Defender
2014-05-20 22:55:37 ----D---- C:\Program Files (x86)\Windows Defender
2014-05-20 22:55:30 ----D---- C:\Program Files\Windows Journal
2014-05-20 20:51:21 ----HD---- C:\ProgramData
2014-05-20 20:51:21 ----D---- C:\Program Files (x86)
2014-05-20 20:42:52 ----D---- C:\Windows\debug
2014-05-20 20:41:20 ----D---- C:\Windows\system32\Tasks
2014-05-20 18:40:33 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-05-20 18:40:33 ----D---- C:\Program Files (x86)\Windows Mail
2014-05-20 18:40:32 ----D---- C:\Program Files (x86)\Windows Portable Devices
2014-05-20 18:40:32 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-05-20 18:40:29 ----D---- C:\Program Files\Windows Sidebar
2014-05-20 18:40:29 ----D---- C:\Program Files\Windows Portable Devices
2014-05-20 18:40:29 ----D---- C:\Program Files\Windows Mail
2014-05-20 18:40:29 ----D---- C:\Program Files\DVD Maker
2014-05-20 18:40:28 ----D---- C:\Program Files\Windows Photo Viewer
2014-05-20 18:40:26 ----D---- C:\Program Files\Common Files\System
2014-05-20 18:40:23 ----D---- C:\Windows\servicing
2014-05-20 18:40:23 ----D---- C:\Windows\ehome
2014-05-20 18:40:09 ----D---- C:\Windows\SYSWOW64\oobe
2014-05-20 18:40:07 ----D---- C:\Windows\SYSWOW64\Setup
2014-05-20 18:40:07 ----D---- C:\Windows\SYSWOW64\cs
2014-05-20 18:40:07 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2014-05-20 18:40:03 ----D---- C:\Windows\SYSWOW64\wbem
2014-05-20 18:40:03 ----D---- C:\Windows\SYSWOW64\sppui
2014-05-20 18:40:03 ----D---- C:\Windows\SYSWOW64\manifeststore
2014-05-20 18:40:02 ----D---- C:\Windows\SYSWOW64\migwiz
2014-05-20 18:40:01 ----D---- C:\Windows\SYSWOW64\Dism
2014-05-20 18:39:18 ----D---- C:\Windows\system32\oobe
2014-05-20 18:39:17 ----D---- C:\Windows\system32\Setup
2014-05-20 18:39:17 ----D---- C:\Windows\system32\cs
2014-05-20 18:39:17 ----D---- C:\Windows\system32\AdvancedInstallers
2014-05-20 18:39:09 ----D---- C:\Windows\system32\manifeststore
2014-05-20 18:39:08 ----D---- C:\Windows\system32\sppui
2014-05-20 18:39:05 ----D---- C:\Windows\system32\drivers\cs-CZ
2014-05-20 18:39:04 ----D---- C:\Windows\system32\wbem
2014-05-20 18:39:03 ----D---- C:\Windows\system32\migwiz
2014-05-20 18:39:02 ----D---- C:\Windows\system32\Dism
2014-05-20 18:38:08 ----RSD---- C:\Windows\Fonts
2014-05-20 18:37:32 ----D---- C:\Windows\system32\Boot
2014-05-20 18:31:35 ----D---- C:\Program Files\Google
2014-05-20 18:31:35 ----D---- C:\Program Files (x86)\Google
2014-05-20 00:58:13 ----D---- C:\Program Files (x86)\The KMPlayer
2014-05-19 23:09:51 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2014-05-19 23:09:49 ----A---- C:\Windows\system32\msclmd.dll
2014-05-19 22:28:06 ----D---- C:\Windows\Downloaded Program Files
2014-05-19 21:32:27 ----D---- C:\ProgramData\Adobe
2014-05-19 21:25:01 ----D---- C:\ProgramData\Microsoft Help
2014-05-19 21:23:43 ----SD---- C:\Users\okay\AppData\Roaming\Microsoft
2014-05-19 21:23:43 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-05-19 21:23:33 ----D---- C:\Program Files (x86)\Common Files
2014-05-19 21:23:20 ----D---- C:\Windows\ShellNew
2014-05-19 21:22:42 ----D---- C:\Program Files (x86)\MSBuild
2014-05-19 21:19:13 ----A---- C:\Windows\win.ini
2014-05-19 21:15:40 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-05-19 21:13:27 ----D---- C:\ProgramData\WildTangent
2014-05-19 21:09:21 ----D---- C:\ProgramData\Google
2014-05-19 21:08:39 ----D---- C:\Program Files (x86)\Comodo
2014-05-19 20:27:29 ----D---- C:\Users\okay\AppData\Roaming\DAEMON Tools Lite
2014-05-19 20:27:01 ----D---- C:\Windows\Minidump
2014-05-14 07:19:26 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2014-01-22 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2014-01-22 189936]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-10-13 409624]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2013-02-28 22664]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2014-01-22 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-01-22 1030952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-01-22 378944]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2014-01-22 64288]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-13 283200]
R1 SABI;SAMSUNG Kernel Driver For Windows 7; \??\C:\Windows\system32\Drivers\SABI.sys [2009-05-28 13824]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2014-01-22 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2014-01-22 80816]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-04-22 3062336]
R3 BthEnum;Ovladaè pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladaè rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-07-14 344616]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-07-20 102952]
R3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2010-07-20 135720]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-03-02 39464]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-07-20 21544]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-08-10 111616]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2010-08-25 10611552]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-08-11 2454760]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladaè portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\drivers\Dot4Prt.sys [2010-11-20 19968]
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-04-28 61288]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 rtport;rtport; \??\C:\Windows\SysWOW64\drivers\rtport.sys [2010-11-25 15144]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-22 46808]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-07-21 951584]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Sluba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-24 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 fsssvc;Sluba Windows Live Zabezpeèení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
S3 gupdatem;Sluba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-24 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-05-21 111616]
S3 Samsung UPD Service;Samsung UPD Service; C:\Windows\System32\SUPDSvc.exe [2010-08-09 166704]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-01-31 1255736]
S4 aspnet_state;Stavová sluba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
chtěl bych Vás požádat o pomoc. Mám tu velice pomalý notebook, nebyl správně udržovaný, nebyly instalovány aktualizace OS, musel jsem odstranit dočasné soubory pomocí Ccleaneru, vymazal jsem několik zbytečných doplňků (toolbary, přehrávače, hry, ..) ale PC je stále velmi pomalý. Děkuji za Váš čas.
Zde je log RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by okay at 2014-05-21 20:55:51
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 6 GB (15%) free of 41 GB
Total RAM: 2009 MB (50% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:56:06, on 21.5.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe
C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe
C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe
C:\Program Files\trend micro\okay.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: W2PBrowser Browser Helper - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zaøízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zaøízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Pøidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Pøidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Samsung AnyWeb Print - {328ECD19-C167-40eb-A0C7-16FE7634105E} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O9 - Extra button: Odeslat do zaøízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zaøízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Sluba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Sluba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Samsung UPD Service - Unknown owner - C:\Windows\System32\SUPDSvc.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8942 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 4093824
\??\C:\Windows\system32\conhost.exe "429813912124789250-5949426048262548517115151031113051511-841447089-1649982274
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe" -quickstart
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe" "-quickstart" "-env:OOO_CWD=2C:\\Program Files (x86)\\OpenOffice.org 3\\program"
taskeng.exe {65DD1C6A-5782-4569-AACE-0513A1573B10}
"C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe"
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
WLIDSvcM.exe 3900
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe"
"C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-dbde47b0-88cb-4c19-ab7f-99c48e4d97c7 -SystemEventPortName:HostProcess-e5e8cad0-daf3-4c9e-9f23-9b82039ff978 -IoCancelEventPortName:HostProcess-f973a7cc-ae4c-4316-8fd7-957bf01f35f5 -NonStateChangingEventPortName:HostProcess-31146bca-838a-4393-a861-ea35ff196494 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9da302e7-d4ef-4eae-8a6e-a2e298af79db -DeviceGroupId:WpdFsGroup
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
wmiadap.exe /R /T
"C:\Users\okay\Desktop\RSITx64.exe"
C:\Windows\System32\svchost.exe -k WerSvcGroup
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-22 245592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2010-04-28 132456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-22 201784]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA609D72-8482-4076-8991-8CDAE5B93BCB}]
W2PBrowser Class - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll [2010-08-23 1236992]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-03-25 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-01-22 245592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-22 201784]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-08-11 11369576]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2010-08-05 2586504]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-08-25 161304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-08-25 386584]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-08-25 415256]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-04-17 3671872]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2014-01-22 4858968]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\okay\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.3.lnk - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-08-25 271360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2014-05-21 20:55:51 ----D---- C:\rsit
2014-05-21 20:55:51 ----D---- C:\Program Files\trend micro
2014-05-21 19:58:22 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-05-21 19:58:22 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-21 19:58:22 ----A---- C:\Windows\system32\mshtml.dll
2014-05-21 19:58:20 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-05-21 19:16:47 ----D---- C:\Windows\rescache
2014-05-21 18:15:06 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-05-21 18:15:06 ----A---- C:\Windows\system32\d3d10warp.dll
2014-05-21 18:15:05 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-05-21 18:15:05 ----A---- C:\Windows\system32\d2d1.dll
2014-05-21 18:15:02 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-05-21 18:15:02 ----A---- C:\Windows\system32\WMPhoto.dll
2014-05-21 18:13:07 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-21 18:12:23 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-05-21 18:12:22 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-05-21 06:25:09 ----SD---- C:\Windows\system32\CompatTel
2014-05-21 06:22:27 ----A---- C:\Windows\system32\wmploc.DLL
2014-05-21 06:22:25 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-05-21 06:22:24 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-05-21 06:22:21 ----A---- C:\Windows\system32\wmp.dll
2014-05-21 06:07:19 ----D---- C:\Windows\Migration
2014-05-21 06:00:27 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-05-21 05:52:25 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-05-21 05:52:05 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-05-21 05:52:05 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-05-21 05:52:05 ----A---- C:\Windows\system32\elshyph.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\url.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-05-21 05:52:04 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-05-21 05:52:04 ----A---- C:\Windows\system32\wininet.dll
2014-05-21 05:52:04 ----A---- C:\Windows\system32\urlmon.dll
2014-05-21 05:52:04 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-05-21 05:52:04 ----A---- C:\Windows\system32\msls31.dll
2014-05-21 05:52:04 ----A---- C:\Windows\system32\jsIntl.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\wextract.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\webcheck.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\vbscript.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\url.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\pngfilt.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\occache.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\msrating.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\mshtmler.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\mshta.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\msfeedssync.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\msfeeds.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\licmgr10.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\jsproxy.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\jscript9diag.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\jscript9.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\jscript.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\inseng.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\imgutil.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iexpress.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieUnatt.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieui.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iesysprep.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iesetup.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iertutil.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iernonce.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iepeers.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieframe.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\iedkcs32.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ieapfltr.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\ie4uinit.exe
2014-05-21 05:52:03 ----A---- C:\Windows\system32\icardie.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\dxtrans.dll
2014-05-21 05:52:03 ----A---- C:\Windows\system32\dxtmsft.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-21 05:48:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-21 05:48:23 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-21 05:48:22 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-21 05:48:22 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-05-21 05:48:22 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-05-21 05:48:21 ----A---- C:\Windows\system32\XpsPrint.dll
2014-05-21 05:48:21 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-05-21 05:48:19 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-05-21 05:48:19 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-05-21 05:48:15 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-05-21 05:48:15 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-05-21 05:48:15 ----A---- C:\Windows\system32\dxgi.dll
2014-05-21 05:48:14 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-05-21 05:48:14 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-05-21 05:48:14 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-05-21 05:48:14 ----A---- C:\Windows\system32\FntCache.dll
2014-05-21 05:48:14 ----A---- C:\Windows\system32\DWrite.dll
2014-05-21 05:48:13 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-05-21 05:48:13 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-05-21 05:48:12 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-05-21 05:48:12 ----A---- C:\Windows\system32\d3d10core.dll
2014-05-21 05:48:12 ----A---- C:\Windows\system32\d3d10.dll
2014-05-21 05:48:11 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-05-21 05:48:11 ----A---- C:\Windows\system32\d3d10_1.dll
2014-05-21 05:48:10 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-05-21 05:48:10 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-05-21 05:48:10 ----A---- C:\Windows\system32\UIAnimation.dll
2014-05-21 05:48:10 ----A---- C:\Windows\system32\d3d10level9.dll
2014-05-20 21:48:45 ----A---- C:\Windows\system32\consent.exe
2014-05-20 21:48:42 ----A---- C:\Windows\system32\appinfo.dll
2014-05-20 21:47:16 ----A---- C:\Windows\system32\drivers\afd.sys
2014-05-20 21:47:02 ----A---- C:\Windows\system32\shell32.dll
2014-05-20 21:46:59 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-05-20 21:46:27 ----A---- C:\Windows\system32\aepdu.dll
2014-05-20 21:46:27 ----A---- C:\Windows\system32\aeinv.dll
2014-05-20 21:45:07 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-05-20 21:45:07 ----A---- C:\Windows\system32\wintrust.dll
2014-05-20 21:44:19 ----A---- C:\Windows\system32\msxml3.dll
2014-05-20 21:44:17 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-05-20 21:44:17 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-05-20 21:44:17 ----A---- C:\Windows\system32\msxml3r.dll
2014-05-20 21:44:14 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-05-20 21:44:14 ----A---- C:\Windows\system32\wer.dll
2014-05-20 21:44:07 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-05-20 21:44:07 ----A---- C:\Windows\system32\tzres.dll
2014-05-20 21:43:49 ----A---- C:\Windows\system32\comctl32.dll
2014-05-20 21:43:48 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-05-20 21:43:17 ----A---- C:\Windows\system32\crypt32.dll
2014-05-20 21:43:14 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-05-20 21:43:14 ----A---- C:\Windows\system32\cryptsvc.dll
2014-05-20 21:43:14 ----A---- C:\Windows\system32\cryptnet.dll
2014-05-20 21:43:13 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-05-20 21:43:13 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-05-20 21:42:39 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-05-20 21:42:39 ----A---- C:\Windows\system32\msieftp.dll
2014-05-20 21:42:36 ----A---- C:\Windows\system32\wwansvc.dll
2014-05-20 21:42:36 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-05-20 21:42:32 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2014-05-20 21:42:32 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2014-05-20 21:42:32 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2014-05-20 21:42:32 ----A---- C:\Windows\system32\dhcpcore6.dll
2014-05-20 21:42:09 ----A---- C:\Windows\system32\imagehlp.dll
2014-05-20 21:42:08 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-05-20 21:42:06 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-05-20 21:42:06 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-05-20 21:41:37 ----A---- C:\Windows\system32\win32k.sys
2014-05-20 21:34:54 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-05-20 21:34:53 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2014-05-20 21:32:28 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-05-20 21:32:19 ----A---- C:\Windows\system32\authui.dll
2014-05-20 21:32:18 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-05-20 21:32:17 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-05-20 21:32:17 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-05-20 21:32:17 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-05-20 21:32:17 ----A---- C:\Windows\system32\credui.dll
2014-05-20 21:32:07 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-05-20 21:32:07 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-05-20 21:32:07 ----A---- C:\Windows\system32\lpk.dll
2014-05-20 21:32:07 ----A---- C:\Windows\system32\dciman32.dll
2014-05-20 21:32:07 ----A---- C:\Windows\system32\atmfd.dll
2014-05-20 21:32:06 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-05-20 21:32:06 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-05-20 21:32:06 ----A---- C:\Windows\system32\fontsub.dll
2014-05-20 21:32:05 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-05-20 21:32:05 ----A---- C:\Windows\system32\atmlib.dll
2014-05-20 21:32:02 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-05-20 21:32:02 ----A---- C:\Windows\system32\RMActivate.exe
2014-05-20 21:32:01 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-05-20 21:32:01 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-05-20 21:32:01 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-05-20 21:32:00 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-05-20 21:32:00 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-05-20 21:32:00 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-05-20 21:31:59 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-05-20 21:31:59 ----A---- C:\Windows\system32\secproc_isv.dll
2014-05-20 21:31:58 ----A---- C:\Windows\system32\secproc.dll
2014-05-20 21:31:58 ----A---- C:\Windows\system32\msdrm.dll
2014-05-20 21:31:57 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-05-20 21:31:57 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-05-20 21:31:56 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-05-20 21:31:56 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-05-20 21:31:56 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-05-20 21:31:56 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-05-20 21:31:38 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-05-20 21:31:37 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-05-20 21:31:35 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-05-20 21:31:34 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-05-20 21:31:33 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-05-20 21:31:32 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-05-20 21:31:31 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-05-20 21:29:20 ----A---- C:\Windows\system32\d3d11.dll
2014-05-20 21:29:19 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-05-20 21:21:07 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-05-20 21:21:06 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-05-20 21:21:06 ----A---- C:\Windows\system32\rpcrt4.dll
2014-05-20 21:21:05 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-05-20 21:21:04 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-05-20 21:21:04 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-05-20 21:21:04 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-05-20 21:21:04 ----A---- C:\Windows\system32\WebClnt.dll
2014-05-20 21:21:04 ----A---- C:\Windows\system32\davclnt.dll
2014-05-20 21:21:03 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-05-20 21:13:59 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-05-20 21:13:59 ----A---- C:\Windows\system32\ncsi.dll
2014-05-20 21:13:58 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-05-20 21:13:58 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2014-05-20 21:13:58 ----A---- C:\Windows\system32\nlasvc.dll
2014-05-20 21:13:58 ----A---- C:\Windows\system32\netcorehc.dll
2014-05-20 21:13:58 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-05-20 21:13:57 ----A---- C:\Windows\system32\nlaapi.dll
2014-05-20 21:13:57 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-05-20 21:13:56 ----A---- C:\Windows\SYSWOW64\netevent.dll
2014-05-20 21:13:56 ----A---- C:\Windows\system32\netevent.dll
2014-05-20 21:13:32 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-05-20 21:13:31 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-05-20 21:13:23 ----A---- C:\Windows\system32\advapi32.dll
2014-05-20 21:13:22 ----A---- C:\Windows\system32\ntdll.dll
2014-05-20 21:13:17 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-05-20 21:13:17 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-05-20 21:13:17 ----A---- C:\Windows\system32\tdh.dll
2014-05-20 21:13:16 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-05-20 21:13:07 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-05-20 21:13:07 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-05-20 21:12:24 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-20 21:12:23 ----A---- C:\Windows\system32\schannel.dll
2014-05-20 21:12:23 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-20 21:12:21 ----A---- C:\Windows\system32\kerberos.dll
2014-05-20 21:12:20 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-05-20 21:12:20 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-05-20 21:12:19 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-05-20 21:12:17 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-05-20 21:12:17 ----A---- C:\Windows\system32\winlogon.exe
2014-05-20 21:12:17 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-20 21:12:16 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-05-20 21:12:16 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-20 21:12:15 ----A---- C:\Windows\system32\objsel.dll
2014-05-20 21:12:15 ----A---- C:\Windows\system32\drivers\cng.sys
2014-05-20 21:12:13 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-20 21:12:11 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-05-20 21:12:10 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-05-20 21:12:10 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-20 21:12:09 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-05-20 21:12:09 ----A---- C:\Windows\system32\wdigest.dll
2014-05-20 21:12:08 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-05-20 21:12:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-05-20 21:12:07 ----A---- C:\Windows\system32\smss.exe
2014-05-20 21:12:07 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-20 21:12:07 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-20 21:12:06 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-05-20 21:12:06 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-20 21:12:06 ----A---- C:\Windows\system32\adprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-20 21:12:05 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-20 21:12:04 ----A---- C:\Windows\system32\sspicli.dll
2014-05-20 21:12:04 ----A---- C:\Windows\system32\csrsrv.dll
2014-05-20 21:12:03 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-05-20 21:12:03 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-20 21:12:03 ----A---- C:\Windows\system32\lsass.exe
2014-05-20 21:12:02 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-05-20 21:12:01 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-05-20 21:12:01 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-05-20 21:12:01 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-20 21:12:01 ----A---- C:\Windows\system32\secur32.dll
2014-05-20 21:12:01 ----A---- C:\Windows\system32\credssp.dll
2014-05-20 21:12:00 ----A---- C:\Windows\system32\ncrypt.dll
2014-05-20 21:11:45 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-05-20 21:11:45 ----A---- C:\Windows\system32\apisetschema.dll
2014-05-20 21:11:05 ----A---- C:\Windows\system32\OxpsConverter.exe
2014-05-20 21:10:29 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-05-20 21:10:25 ----A---- C:\Windows\system32\mswsock.dll
2014-05-20 21:10:23 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-05-20 21:09:08 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-05-20 21:09:08 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-05-20 21:09:06 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-05-20 21:09:05 ----A---- C:\Windows\system32\drivers\netio.sys
2014-05-20 21:08:55 ----A---- C:\Windows\system32\drivers\storport.sys
2014-05-20 21:08:55 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-05-20 21:08:55 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-05-20 21:08:54 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2014-05-20 21:08:54 ----A---- C:\Windows\system32\iologmsg.dll
2014-05-20 21:08:15 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-05-20 21:08:15 ----A---- C:\Windows\system32\shdocvw.dll
2014-05-20 21:07:38 ----A---- C:\Windows\system32\win32spl.dll
2014-05-20 21:07:37 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-05-20 21:07:34 ----A---- C:\Windows\system32\gdi32.dll
2014-05-20 21:07:33 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-05-20 21:07:29 ----A---- C:\Windows\system32\taskhost.exe
2014-05-20 21:07:23 ----A---- C:\Windows\system32\qedit.dll
2014-05-20 21:07:22 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-05-20 21:07:13 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2014-05-20 21:07:13 ----A---- C:\Windows\system32\cryptdlg.dll
2014-05-20 21:06:17 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-05-20 21:06:17 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-05-20 21:06:17 ----A---- C:\Windows\system32\wscript.exe
2014-05-20 21:06:17 ----A---- C:\Windows\system32\scrrun.dll
2014-05-20 21:06:17 ----A---- C:\Windows\system32\cscript.exe
2014-05-20 21:06:16 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-05-20 21:06:09 ----A---- C:\Windows\system32\wow64win.dll
2014-05-20 21:06:09 ----A---- C:\Windows\system32\wow64.dll
2014-05-20 21:06:09 ----A---- C:\Windows\system32\kernel32.dll
2014-05-20 21:06:08 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-05-20 21:06:08 ----A---- C:\Windows\system32\winsrv.dll
2014-05-20 21:06:08 ----A---- C:\Windows\system32\conhost.exe
2014-05-20 21:06:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-05-20 21:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-05-20 21:06:07 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-05-20 21:06:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-05-20 21:06:07 ----A---- C:\Windows\system32\ntvdm64.dll
2014-05-20 21:06:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-05-20 21:06:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-05-20 21:06:06 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-05-20 21:06:06 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-05-20 21:06:06 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-05-20 21:06:06 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-05-20 21:06:06 ----A---- C:\Windows\system32\wow64cpu.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-05-20 21:06:05 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-05-20 21:06:04 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-05-20 21:06:03 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-05-20 21:06:02 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-05-20 21:06:01 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-05-20 21:06:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-05-20 21:06:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-05-20 21:06:00 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-05-20 21:06:00 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-05-20 21:05:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-05-20 21:05:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-05-20 21:05:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-05-20 21:05:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-05-20 21:05:58 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-05-20 21:05:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-05-20 21:05:57 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-05-20 21:05:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-05-20 21:05:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-05-20 21:05:56 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-05-20 21:05:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-05-20 21:05:55 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-05-20 21:05:55 ----A---- C:\Windows\SYSWOW64\user.exe
2014-05-20 21:05:51 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-05-20 21:05:43 ----A---- C:\Windows\system32\certutil.exe
2014-05-20 21:05:42 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-05-20 21:05:35 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-05-20 21:05:35 ----A---- C:\Windows\system32\certenc.dll
2014-05-20 21:04:18 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-05-20 21:04:17 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-05-20 21:04:17 ----A---- C:\Windows\system32\cdd.dll
2014-05-20 21:00:49 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-05-20 21:00:49 ----A---- C:\Windows\system32\nshwfp.dll
2014-05-20 21:00:49 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-05-20 21:00:49 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-05-20 21:00:48 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-05-20 20:49:55 ----A---- C:\Windows\SYSWOW64\sqlite3.dll
2014-05-20 20:49:07 ----D---- C:\AdwCleaner
2014-05-20 20:41:06 ----D---- C:\Program Files\CCleaner
2014-05-20 20:38:41 ----A---- C:\Windows\system32\scavengeui.dll
2014-05-20 18:31:39 ----ASH---- C:\pagefile.sys
2014-05-19 22:31:24 ----D---- C:\Windows\system32\SPReview
2014-05-19 22:28:02 ----D---- C:\Program Files (x86)\ESET
2014-05-19 22:26:29 ----D---- C:\Windows\system32\MRT
2014-05-19 22:26:17 ----A---- C:\Windows\system32\MRT.exe
2014-05-19 21:10:04 ----A---- C:\AVScanner.ini
2014-05-19 20:28:58 ----D---- C:\Zaloha_reg
======List of files/folders modified in the last 1 months======
2014-05-21 20:56:06 ----D---- C:\Windows\Prefetch
2014-05-21 20:56:03 ----D---- C:\Windows\Temp
2014-05-21 20:55:51 ----RD---- C:\Program Files
2014-05-21 20:46:50 ----D---- C:\Windows\system32\config
2014-05-21 20:46:22 ----D---- C:\Windows\inf
2014-05-21 20:45:39 ----D---- C:\Windows
2014-05-21 20:37:34 ----D---- C:\Windows\SoftwareDistribution
2014-05-21 20:37:08 ----D---- C:\Windows\System32
2014-05-21 20:37:08 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-05-21 20:35:01 ----D---- C:\Windows\Panther
2014-05-21 20:35:01 ----D---- C:\Windows\Logs
2014-05-21 20:33:11 ----D---- C:\Windows\system32\DriverStore
2014-05-21 20:29:52 ----D---- C:\Windows\winsxs
2014-05-21 20:27:51 ----D---- C:\Windows\SysWOW64
2014-05-21 20:15:48 ----D---- C:\Windows\Microsoft.NET
2014-05-21 19:58:27 ----D---- C:\Windows\system32\catroot
2014-05-21 19:58:18 ----SHD---- C:\Windows\Installer
2014-05-21 19:58:18 ----SHD---- C:\Config.Msi
2014-05-21 19:54:16 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-05-21 19:49:02 ----SHD---- C:\System Volume Information
2014-05-21 18:21:41 ----RSD---- C:\Windows\assembly
2014-05-21 18:12:38 ----D---- C:\Windows\system32\catroot2
2014-05-21 06:25:22 ----D---- C:\Program Files\Windows Media Player
2014-05-21 06:25:22 ----D---- C:\Program Files (x86)\Windows Media Player
2014-05-21 06:25:18 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-05-21 06:25:18 ----D---- C:\Windows\system32\cs-CZ
2014-05-21 06:25:18 ----D---- C:\Program Files\Internet Explorer
2014-05-21 06:25:18 ----D---- C:\Program Files (x86)\Internet Explorer
2014-05-21 06:25:16 ----D---- C:\Windows\SYSWOW64\migration
2014-05-21 06:25:16 ----D---- C:\Windows\SYSWOW64\en-US
2014-05-21 06:25:14 ----D---- C:\Windows\system32\migration
2014-05-21 06:25:14 ----D---- C:\Windows\system32\en-US
2014-05-21 06:25:14 ----D---- C:\Windows\PolicyDefinitions
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\it-IT
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\es-ES
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\el-GR
2014-05-21 06:25:12 ----D---- C:\Windows\SYSWOW64\de-DE
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-05-21 06:25:11 ----D---- C:\Windows\SYSWOW64\da-DK
2014-05-21 06:25:11 ----D---- C:\Windows\system32\zh-HK
2014-05-21 06:25:11 ----D---- C:\Windows\system32\pt-PT
2014-05-21 06:25:11 ----D---- C:\Windows\system32\pt-BR
2014-05-21 06:25:11 ----D---- C:\Windows\system32\pl-PL
2014-05-21 06:25:11 ----D---- C:\Windows\system32\nl-NL
2014-05-21 06:25:11 ----D---- C:\Windows\system32\ko-KR
2014-05-21 06:25:11 ----D---- C:\Windows\system32\it-IT
2014-05-21 06:25:11 ----D---- C:\Windows\system32\hu-HU
2014-05-21 06:25:11 ----D---- C:\Windows\system32\el-GR
2014-05-21 06:25:10 ----D---- C:\Windows\system32\zh-TW
2014-05-21 06:25:10 ----D---- C:\Windows\system32\zh-CN
2014-05-21 06:25:10 ----D---- C:\Windows\system32\tr-TR
2014-05-21 06:25:10 ----D---- C:\Windows\system32\sv-SE
2014-05-21 06:25:10 ----D---- C:\Windows\system32\ru-RU
2014-05-21 06:25:10 ----D---- C:\Windows\system32\nb-NO
2014-05-21 06:25:10 ----D---- C:\Windows\system32\ja-JP
2014-05-21 06:25:10 ----D---- C:\Windows\system32\fr-FR
2014-05-21 06:25:10 ----D---- C:\Windows\system32\fi-FI
2014-05-21 06:25:10 ----D---- C:\Windows\system32\es-ES
2014-05-21 06:25:10 ----D---- C:\Windows\system32\de-DE
2014-05-21 06:25:10 ----D---- C:\Windows\system32\da-DK
2014-05-21 06:25:09 ----D---- C:\Windows\AppPatch
2014-05-21 06:25:06 ----D---- C:\Windows\system32\drivers
2014-05-21 06:07:19 ----SD---- C:\ProgramData\Microsoft
2014-05-20 22:55:37 ----D---- C:\Program Files\Windows Defender
2014-05-20 22:55:37 ----D---- C:\Program Files (x86)\Windows Defender
2014-05-20 22:55:30 ----D---- C:\Program Files\Windows Journal
2014-05-20 20:51:21 ----HD---- C:\ProgramData
2014-05-20 20:51:21 ----D---- C:\Program Files (x86)
2014-05-20 20:42:52 ----D---- C:\Windows\debug
2014-05-20 20:41:20 ----D---- C:\Windows\system32\Tasks
2014-05-20 18:40:33 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-05-20 18:40:33 ----D---- C:\Program Files (x86)\Windows Mail
2014-05-20 18:40:32 ----D---- C:\Program Files (x86)\Windows Portable Devices
2014-05-20 18:40:32 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-05-20 18:40:29 ----D---- C:\Program Files\Windows Sidebar
2014-05-20 18:40:29 ----D---- C:\Program Files\Windows Portable Devices
2014-05-20 18:40:29 ----D---- C:\Program Files\Windows Mail
2014-05-20 18:40:29 ----D---- C:\Program Files\DVD Maker
2014-05-20 18:40:28 ----D---- C:\Program Files\Windows Photo Viewer
2014-05-20 18:40:26 ----D---- C:\Program Files\Common Files\System
2014-05-20 18:40:23 ----D---- C:\Windows\servicing
2014-05-20 18:40:23 ----D---- C:\Windows\ehome
2014-05-20 18:40:09 ----D---- C:\Windows\SYSWOW64\oobe
2014-05-20 18:40:07 ----D---- C:\Windows\SYSWOW64\Setup
2014-05-20 18:40:07 ----D---- C:\Windows\SYSWOW64\cs
2014-05-20 18:40:07 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2014-05-20 18:40:03 ----D---- C:\Windows\SYSWOW64\wbem
2014-05-20 18:40:03 ----D---- C:\Windows\SYSWOW64\sppui
2014-05-20 18:40:03 ----D---- C:\Windows\SYSWOW64\manifeststore
2014-05-20 18:40:02 ----D---- C:\Windows\SYSWOW64\migwiz
2014-05-20 18:40:01 ----D---- C:\Windows\SYSWOW64\Dism
2014-05-20 18:39:18 ----D---- C:\Windows\system32\oobe
2014-05-20 18:39:17 ----D---- C:\Windows\system32\Setup
2014-05-20 18:39:17 ----D---- C:\Windows\system32\cs
2014-05-20 18:39:17 ----D---- C:\Windows\system32\AdvancedInstallers
2014-05-20 18:39:09 ----D---- C:\Windows\system32\manifeststore
2014-05-20 18:39:08 ----D---- C:\Windows\system32\sppui
2014-05-20 18:39:05 ----D---- C:\Windows\system32\drivers\cs-CZ
2014-05-20 18:39:04 ----D---- C:\Windows\system32\wbem
2014-05-20 18:39:03 ----D---- C:\Windows\system32\migwiz
2014-05-20 18:39:02 ----D---- C:\Windows\system32\Dism
2014-05-20 18:38:08 ----RSD---- C:\Windows\Fonts
2014-05-20 18:37:32 ----D---- C:\Windows\system32\Boot
2014-05-20 18:31:35 ----D---- C:\Program Files\Google
2014-05-20 18:31:35 ----D---- C:\Program Files (x86)\Google
2014-05-20 00:58:13 ----D---- C:\Program Files (x86)\The KMPlayer
2014-05-19 23:09:51 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2014-05-19 23:09:49 ----A---- C:\Windows\system32\msclmd.dll
2014-05-19 22:28:06 ----D---- C:\Windows\Downloaded Program Files
2014-05-19 21:32:27 ----D---- C:\ProgramData\Adobe
2014-05-19 21:25:01 ----D---- C:\ProgramData\Microsoft Help
2014-05-19 21:23:43 ----SD---- C:\Users\okay\AppData\Roaming\Microsoft
2014-05-19 21:23:43 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-05-19 21:23:33 ----D---- C:\Program Files (x86)\Common Files
2014-05-19 21:23:20 ----D---- C:\Windows\ShellNew
2014-05-19 21:22:42 ----D---- C:\Program Files (x86)\MSBuild
2014-05-19 21:19:13 ----A---- C:\Windows\win.ini
2014-05-19 21:15:40 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-05-19 21:13:27 ----D---- C:\ProgramData\WildTangent
2014-05-19 21:09:21 ----D---- C:\ProgramData\Google
2014-05-19 21:08:39 ----D---- C:\Program Files (x86)\Comodo
2014-05-19 20:27:29 ----D---- C:\Users\okay\AppData\Roaming\DAEMON Tools Lite
2014-05-19 20:27:01 ----D---- C:\Windows\Minidump
2014-05-14 07:19:26 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2014-01-22 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2014-01-22 189936]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-10-13 409624]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2013-02-28 22664]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2014-01-22 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-01-22 1030952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-01-22 378944]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2014-01-22 64288]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-13 283200]
R1 SABI;SAMSUNG Kernel Driver For Windows 7; \??\C:\Windows\system32\Drivers\SABI.sys [2009-05-28 13824]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2014-01-22 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2014-01-22 80816]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-04-22 3062336]
R3 BthEnum;Ovladaè pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladaè rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-07-14 344616]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-07-20 102952]
R3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2010-07-20 135720]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-03-02 39464]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-07-20 21544]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-08-10 111616]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2010-08-25 10611552]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-08-11 2454760]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladaè portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\drivers\Dot4Prt.sys [2010-11-20 19968]
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-04-28 61288]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 rtport;rtport; \??\C:\Windows\SysWOW64\drivers\rtport.sys [2010-11-25 15144]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-22 46808]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-07-21 951584]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Sluba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-24 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 fsssvc;Sluba Windows Live Zabezpeèení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
S3 gupdatem;Sluba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-24 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-05-21 111616]
S3 Samsung UPD Service;Samsung UPD Service; C:\Windows\System32\SUPDSvc.exe [2010-08-09 166704]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-01-31 1255736]
S4 aspnet_state;Stavová sluba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------