Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o pomoc, vir na fcb.

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
mikepf2n
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 28 kvě 2014 20:13

Prosím o pomoc, vir na fcb.

#1 Příspěvek od mikepf2n »

tady je log ze RSITu, Děkuji!:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Michael Pfann at 2014-05-28 20:53:29
Microsoft Windows 8.1
System drive C: has 482 GB (53%) free of 905 GB
Total RAM: 3941 MB (53% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:01:01, on 28. 5. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17037)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PcSync2.exe
C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
C:\Program Files (x86)\Common Files\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Michael Pfann.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: ChromeFrame BHO - {ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} - C:\Program Files (x86)\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll
O2 - BHO: SimpleAdblock Class - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files (x86)\Common Files\Simple Adblock\SimpleAdblock.dll
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
O4 - HKLM\..\Run: [Lenovo EasyCamera_Monitor] C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Nokia.PCSync] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PcSync2.exe" /NoDialog
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - Startup: Lingea Update Center.lnk = C:\Program Files (x86)\Common Files\Lingea Shared\luc.exe
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://www.samsungsetup.com
O18 - Protocol: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Program Files (x86)\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Endpoint Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe
O23 - Service: ESET SHA Service (ESHASRV) - ESET - C:\Program Files\ESET\ESET Endpoint Antivirus\EShaSrv.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: LSCWinService - Unknown owner - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10836 bytes

======Listing Processes======





wininit.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe"
dashost.exe {101c4448-9c73-47b6-ae840df5fae379a5}
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-614d2d0c-7d1d-4b07-aa0a-054ad30e8dc2 -SystemEventPortName:HostProcess-9742892e-668d-4d50-b897-5b4974f4c07f -IoCancelEventPortName:HostProcess-89c8281e-276a-4ac4-b722-e6f3e3796fe6 -NonStateChangingEventPortName:HostProcess-a69b6036-408d-49b5-9b5c-04f0fb688164 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:457423e8-98d4-4fa9-88bf-277d1a07e15e -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\pla.dll,PlaHost "LSC Memory" "0x960_0xbd4_0x549ed573"

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"LogonUI.exe" /flags:0x0
-hiberboot

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
C:\WINDOWS\Explorer.EXE
taskhostex.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\ESET\ESET Endpoint Antivirus\egui.exe" /hide /waitservice
"C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PcSync2.exe" /NoDialog
"C:\Windows\System32\StikyNot.exe"
"C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
"C:\Program Files (x86)\Common Files\Nokia\MPAPI\MPAPI3s.exe" -Embedding
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
{0B558FF8-67E8-4582-BB94-EAB747A0D8B6}
{A2564569-43CE-4878-BE9C-5057B3CA175D}
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
"C:\Users\Michael Pfann\Downloads\RSITx64.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\AutoKMS.job - C:\windows\AutoKMS\AutoKMS.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Michael Pfann\AppData\Roaming\Mozilla\Firefox\Profiles\6c2lg6oy.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.40.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.40.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL

C:\Program Files (x86)\Mozilla Firefox\extensions\
info@lingea.com

C:\Program Files (x86)\Mozilla Firefox\components\
flashplayer.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
np32dsw.dll
nppdf32.dll
ShockwavePlugin.class

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
SimpleAdblock Class - C:\Program Files (x86)\Common Files\Simple Adblock\SimpleAdblockx64.dll [2012-09-21 997144]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-09-13 462248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-09-13 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7}]
ChromeFrame BHO - C:\Program Files (x86)\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll [2014-02-02 2215240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
SimpleAdblock Class - C:\Program Files (x86)\Common Files\Simple Adblock\SimpleAdblock.dll [2012-09-21 872728]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2012-08-09 2864016]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-07-02 12921488]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-06-13 1212560]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-06-26 366720]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-10-20 17079376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-10-20 191568]
"egui"=C:\Program Files\ESET\ESET Endpoint Antivirus\egui.exe [2012-07-04 4133072]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 108144]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2010-12-17 438784]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2014-04-25 22415552]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
"Nokia.PCSync"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PcSync2.exe [2012-06-26 1172568]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2013-11-14 457728]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Dolby Advanced Audio v2"=C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [2012-04-23 508256]
"Lenovo EasyCamera_Monitor"=C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe [2010-08-24 257224]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2012-07-27 167024]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]

C:\Users\Michael Pfann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Lingea Update Center.lnk - C:\Program Files (x86)\Common Files\Lingea Shared\luc.exe
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.ac3filter"=ac3filter64.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-05-28 20:53:31 ----D---- C:\Program Files\trend micro
2014-05-28 20:53:29 ----D---- C:\rsit
2014-05-19 10:57:00 ----SHD---- C:\Config.Msi
2014-05-15 09:52:21 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-05-14 23:50:16 ----D---- C:\WINDOWS\PCHEALTH
2014-05-14 23:50:16 ----D---- C:\Program Files\Common Files\DESIGNER
2014-05-14 23:19:23 ----A---- C:\WINDOWS\SYSWOW64\wusa.exe
2014-05-14 23:19:23 ----A---- C:\WINDOWS\system32\wusa.exe
2014-05-14 23:19:16 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-05-14 23:19:14 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-05-14 23:19:13 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-05-14 23:18:35 ----A---- C:\WINDOWS\system32\storewuauth.dll
2014-05-14 23:18:34 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-05-14 23:18:30 ----A---- C:\WINDOWS\system32\twinui.dll
2014-05-14 23:18:29 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-05-14 23:18:29 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-05-14 23:18:28 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-05-14 23:18:27 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-05-14 23:18:27 ----A---- C:\WINDOWS\system32\ubpm.dll
2014-05-14 23:18:26 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-05-14 23:18:26 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2014-05-14 23:18:26 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2014-05-14 23:18:25 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-05-14 23:18:23 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2014-05-14 23:18:23 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-05-14 23:18:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-14 23:18:22 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2014-05-14 23:18:22 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-05-14 23:18:22 ----A---- C:\WINDOWS\system32\wups.dll
2014-05-14 23:18:22 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-05-14 23:18:22 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-14 23:18:21 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-05-14 23:18:21 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2014-05-14 23:18:21 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-05-14 23:18:21 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-05-14 23:18:21 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-05-14 23:18:21 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-05-14 23:18:20 ----A---- C:\WINDOWS\system32\WSReset.exe
2014-05-14 23:17:46 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-05-14 23:17:42 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-05-14 23:17:40 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-05-14 23:17:38 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-05-14 23:17:35 ----A---- C:\WINDOWS\SYSWOW64\mrt100.dll
2014-05-14 23:17:35 ----A---- C:\WINDOWS\SYSWOW64\mrt_map.dll
2014-05-14 23:17:35 ----A---- C:\WINDOWS\system32\mrt100.dll
2014-05-14 23:17:35 ----A---- C:\WINDOWS\system32\mrt_map.dll
2014-05-14 23:17:32 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-05-14 23:17:23 ----A---- C:\WINDOWS\system32\shell32.dll
2014-05-10 15:50:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-05-06 15:43:07 ----A---- C:\WINDOWS\system32\srchadmin.dll
2014-05-06 15:43:06 ----A---- C:\WINDOWS\SYSWOW64\IdCtrls.dll
2014-05-06 15:43:05 ----A---- C:\WINDOWS\SYSWOW64\autochk.exe
2014-05-06 15:43:05 ----A---- C:\WINDOWS\system32\SettingSync.dll
2014-05-06 15:43:04 ----A---- C:\WINDOWS\system32\dafBth.dll
2014-05-06 15:43:03 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2014-05-06 15:43:03 ----A---- C:\WINDOWS\system32\DAMM.dll
2014-05-06 15:43:02 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-05-06 15:43:01 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-05-06 15:43:00 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-05-06 15:42:58 ----A---- C:\WINDOWS\system32\sud.dll
2014-05-06 15:42:57 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-05-06 15:42:56 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-05-06 15:42:56 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2014-05-06 15:42:55 ----A---- C:\WINDOWS\system32\RacEngn.dll
2014-05-06 15:42:51 ----A---- C:\WINDOWS\system32\devinv.dll
2014-05-06 15:42:51 ----A---- C:\WINDOWS\system32\CredentialMigrationHandler.dll
2014-05-06 15:42:51 ----A---- C:\WINDOWS\system32\aepic.dll
2014-05-06 15:42:51 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-05-06 15:42:51 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-05-06 15:42:50 ----A---- C:\WINDOWS\system32\OobeFldr.dll
2014-05-06 15:42:50 ----A---- C:\WINDOWS\system32\microsoft-windows-kernel-power-events.dll
2014-05-06 15:42:49 ----A---- C:\WINDOWS\system32\sppnp.dll
2014-05-06 15:42:49 ----A---- C:\WINDOWS\system32\Defrag.exe
2014-05-06 15:42:48 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2014-05-06 15:42:47 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe
2014-05-06 15:42:47 ----A---- C:\WINDOWS\system32\dwm.exe
2014-05-06 15:42:45 ----A---- C:\WINDOWS\system32\LockScreenContent.dll
2014-05-06 15:42:45 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2014-05-06 15:42:44 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-05-06 15:42:42 ----A---- C:\WINDOWS\system32\ConfigureExpandedStorage.dll
2014-05-06 15:42:41 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-05-06 15:42:41 ----A---- C:\WINDOWS\system32\psmsrv.dll
2014-05-06 15:42:40 ----AC---- C:\WINDOWS\system32\drivers\vhdmp.sys
2014-05-06 15:42:40 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2014-05-06 15:42:39 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2014-05-06 15:42:38 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2014-05-06 15:42:37 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2014-05-06 15:42:37 ----A---- C:\WINDOWS\system32\davclnt.dll
2014-05-06 15:42:36 ----A---- C:\WINDOWS\system32\kernel32.dll
2014-05-06 15:42:32 ----A---- C:\WINDOWS\system32\tdh.dll
2014-05-06 15:42:32 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-05-06 15:42:32 ----A---- C:\WINDOWS\system32\ieetwcollectorres.dll
2014-05-06 15:42:32 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-05-06 15:42:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2014-05-06 15:42:22 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-05-06 15:42:20 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2014-05-06 15:42:20 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2014-05-06 15:42:20 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2014-05-06 15:42:19 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2014-05-06 15:42:19 ----A---- C:\WINDOWS\system32\SettingSyncPolicy.dll
2014-05-06 15:42:18 ----A---- C:\WINDOWS\system32\systemreset.exe
2014-05-06 15:42:18 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2014-05-06 15:42:18 ----A---- C:\WINDOWS\system32\srms.dat
2014-05-06 15:42:18 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-05-06 15:42:17 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2014-05-06 15:42:13 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll
2014-05-06 15:42:13 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2014-05-06 15:42:12 ----A---- C:\WINDOWS\system32\deviceassociation.dll
2014-05-06 15:42:12 ----A---- C:\WINDOWS\system32\dasHost.exe
2014-05-06 15:42:12 ----A---- C:\WINDOWS\system32\das.dll
2014-05-06 15:42:12 ----A---- C:\WINDOWS\system32\AepRoam.dll
2014-05-06 15:42:11 ----A---- C:\WINDOWS\system32\w32tm.exe
2014-05-06 15:42:11 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2014-05-06 15:42:10 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-05-06 15:42:09 ----A---- C:\WINDOWS\system32\wmpmde.dll
2014-05-06 15:42:09 ----A---- C:\WINDOWS\system32\msrating.dll
2014-05-06 15:42:07 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2014-05-06 15:42:06 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2014-05-06 15:42:04 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-05-06 15:42:02 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-05-06 15:42:01 ----A---- C:\WINDOWS\system32\rasmans.dll
2014-05-06 15:41:59 ----A---- C:\WINDOWS\system32\wlidcli.dll
2014-05-06 15:41:57 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2014-05-06 15:41:56 ----A---- C:\WINDOWS\system32\wersvc.dll
2014-05-06 15:41:53 ----A---- C:\WINDOWS\SYSWOW64\OobeFldr.dll
2014-05-06 15:41:52 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2014-05-06 15:41:50 ----A---- C:\WINDOWS\system32\fsutil.exe
2014-05-06 15:41:46 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-05-06 15:41:45 ----A---- C:\WINDOWS\system32\LockScreenContentHost.dll
2014-05-06 15:41:41 ----A---- C:\WINDOWS\system32\pnidui.dll
2014-05-06 15:41:40 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2014-05-06 15:41:40 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2014-05-06 15:41:40 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2014-05-06 15:41:39 ----A---- C:\WINDOWS\system32\ci.dll
2014-05-06 15:41:38 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2014-05-06 15:41:35 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-05-06 15:41:34 ----A---- C:\WINDOWS\SYSWOW64\Dism.exe
2014-05-06 15:41:34 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2014-05-06 15:41:33 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-05-06 15:41:32 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-05-06 15:41:31 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-05-06 15:41:26 ----A---- C:\WINDOWS\system32\vdsdyn.dll
2014-05-06 15:41:26 ----A---- C:\WINDOWS\system32\bcdboot.exe
2014-05-06 15:41:25 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-05-06 15:41:25 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2014-05-06 15:41:24 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2014-05-06 15:41:23 ----A---- C:\WINDOWS\system32\recimg.exe
2014-05-06 15:41:23 ----A---- C:\WINDOWS\system32\pnpclean.dll
2014-05-06 15:41:23 ----A---- C:\WINDOWS\system32\lsm.dll
2014-05-06 15:41:22 ----A---- C:\WINDOWS\system32\dui70.dll
2014-05-06 15:41:21 ----A---- C:\WINDOWS\system32\winresume.exe
2014-05-06 15:41:21 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2014-05-06 15:41:20 ----A---- C:\WINDOWS\system32\winload.exe
2014-05-06 15:41:19 ----A---- C:\WINDOWS\system32\UserAccountBroker.exe
2014-05-06 15:41:19 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2014-05-06 15:41:18 ----A---- C:\WINDOWS\system32\zipfldr.dll
2014-05-06 15:41:17 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-05-06 15:41:16 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe
2014-05-06 15:41:16 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2014-05-06 15:41:15 ----A---- C:\WINDOWS\system32\osk.exe
2014-05-06 15:41:14 ----A---- C:\WINDOWS\system32\imm32.dll
2014-05-06 15:41:10 ----A---- C:\WINDOWS\system32\tsgqec.dll
2014-05-06 15:41:10 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2014-05-06 15:41:09 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-05-06 15:41:08 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2014-05-06 15:41:08 ----A---- C:\WINDOWS\system32\slpts.dll
2014-05-06 15:41:07 ----A---- C:\WINDOWS\system32\taskhostex.exe
2014-05-06 15:41:07 ----A---- C:\WINDOWS\system32\taskhost.exe
2014-05-06 15:41:05 ----A---- C:\WINDOWS\SYSWOW64\deviceassociation.dll
2014-05-06 15:41:04 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-05-06 15:41:03 ----A---- C:\WINDOWS\system32\dwmredir.dll
2014-05-06 15:40:58 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-05-06 15:40:57 ----A---- C:\WINDOWS\system32\sxproxy.dll
2014-05-06 15:40:57 ----A---- C:\WINDOWS\system32\spp.dll
2014-05-06 15:40:56 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2014-05-06 15:40:55 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-05-06 15:40:55 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-05-06 15:40:54 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2014-05-06 15:40:54 ----A---- C:\WINDOWS\system32\msTextPrediction.dll
2014-05-06 15:40:50 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2014-05-06 15:40:50 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2014-05-06 15:40:49 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2014-05-06 15:40:48 ----A---- C:\WINDOWS\system32\hal.dll
2014-05-06 15:40:48 ----A---- C:\WINDOWS\system32\dxgi.dll
2014-05-06 15:40:47 ----A---- C:\WINDOWS\SYSWOW64\wlidcli.dll
2014-05-06 15:40:47 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2014-05-06 15:40:46 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2014-05-06 15:40:45 ----A---- C:\WINDOWS\system32\themecpl.dll
2014-05-06 15:40:45 ----A---- C:\WINDOWS\system32\authui.dll
2014-05-06 15:40:44 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-05-06 15:40:43 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2014-05-06 15:40:43 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2014-05-06 15:40:43 ----A---- C:\WINDOWS\system32\rpchttp.dll
2014-05-06 15:40:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2014-05-06 15:40:42 ----A---- C:\WINDOWS\system32\MDEServer.exe
2014-05-06 15:40:41 ----A---- C:\WINDOWS\system32\conhost.exe
2014-05-06 15:40:39 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-05-06 15:40:39 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-05-06 15:40:39 ----A---- C:\WINDOWS\system32\fveapibase.dll
2014-05-06 15:40:39 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-05-06 15:40:38 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2014-05-06 15:40:38 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2014-05-06 15:40:36 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2014-05-06 15:40:35 ----A---- C:\WINDOWS\system32\energy.dll
2014-05-06 15:40:34 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2014-05-06 15:40:34 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2014-05-06 15:40:34 ----A---- C:\WINDOWS\system32\wlanapi.dll
2014-05-06 15:40:33 ----A---- C:\WINDOWS\system32\wlansvc.dll
2014-05-06 15:40:33 ----A---- C:\WINDOWS\system32\wlansec.dll
2014-05-06 15:40:32 ----A---- C:\WINDOWS\system32\acppage.dll
2014-05-06 15:40:30 ----A---- C:\WINDOWS\system32\SHCore.dll
2014-05-06 15:40:29 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2014-05-06 15:40:29 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe
2014-05-06 15:40:28 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2014-05-06 15:40:28 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2014-05-06 15:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2014-05-06 15:40:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-05-06 15:40:11 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-05-06 15:40:06 ----A---- C:\WINDOWS\system32\wmp.dll
2014-05-06 15:40:06 ----A---- C:\WINDOWS\system32\dxmasf.dll
2014-05-05 16:07:16 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2014-05-05 16:07:16 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-05-05 16:07:15 ----A---- C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2014-05-05 16:07:14 ----A---- C:\WINDOWS\system32\mfsvr.dll
2014-05-05 16:07:13 ----A---- C:\WINDOWS\system32\perftrack.dll
2014-05-05 16:07:13 ----A---- C:\WINDOWS\system32\gdi32.dll
2014-05-05 16:07:12 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2014-05-05 16:07:12 ----A---- C:\WINDOWS\system32\DAConn.dll
2014-05-05 16:07:12 ----A---- C:\WINDOWS\system32\aelupsvc.dll
2014-05-05 16:07:11 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2014-05-05 16:07:10 ----A---- C:\WINDOWS\system32\dmvdsitf.dll
2014-05-05 16:07:08 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2014-05-05 16:07:08 ----A---- C:\WINDOWS\system32\dot3mm.dll
2014-05-05 16:07:02 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-05-05 16:07:02 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-05-05 16:07:02 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2014-05-05 16:07:01 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2014-05-05 16:07:01 ----A---- C:\WINDOWS\system32\cdd.dll
2014-05-05 16:07:00 ----A---- C:\WINDOWS\system32\mfpmp.exe
2014-05-05 16:07:00 ----A---- C:\WINDOWS\system32\mf.dll
2014-05-05 16:07:00 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2014-05-05 16:07:00 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2014-05-05 16:06:59 ----A---- C:\WINDOWS\system32\migisol.dll
2014-05-05 16:06:59 ----A---- C:\WINDOWS\system32\autoconv.exe
2014-05-05 16:06:58 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2014-05-05 16:06:58 ----A---- C:\WINDOWS\system32\dnsapi.dll
2014-05-05 16:06:57 ----A---- C:\WINDOWS\system32\provsvc.dll
2014-05-05 16:06:55 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2014-05-05 16:06:54 ----A---- C:\WINDOWS\system32\werconcpl.dll
2014-05-05 16:06:54 ----A---- C:\WINDOWS\system32\defragsvc.dll
2014-05-05 16:06:53 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2014-05-05 16:06:52 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2014-05-05 16:06:50 ----A---- C:\WINDOWS\system32\mfplat.dll
2014-05-05 16:06:48 ----A---- C:\WINDOWS\system32\l2gpstore.dll
2014-05-05 16:06:46 ----A---- C:\WINDOWS\system32\f3ahvoas.dll
2014-05-05 16:06:45 ----A---- C:\WINDOWS\system32\InputSwitch.dll
2014-05-05 16:06:45 ----A---- C:\WINDOWS\system32\dfrgui.exe
2014-05-05 16:06:44 ----A---- C:\WINDOWS\system32\bcdedit.exe
2014-05-05 16:06:44 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2014-05-05 16:06:43 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2014-05-05 16:06:43 ----A---- C:\WINDOWS\system32\CloudNotifications.exe
2014-05-05 16:06:43 ----A---- C:\WINDOWS\system32\bootux.dll
2014-05-05 16:06:42 ----A---- C:\WINDOWS\system32\autofmt.exe
2014-05-05 16:06:42 ----A---- C:\WINDOWS\system32\AltTab.dll
2014-05-05 16:06:40 ----A---- C:\WINDOWS\system32\samsrv.dll
2014-05-05 16:06:40 ----A---- C:\WINDOWS\system32\samlib.dll
2014-05-05 16:06:40 ----A---- C:\WINDOWS\system32\DevPropMgr.dll
2014-05-05 16:06:39 ----A---- C:\WINDOWS\system32\lpksetupproxyserv.dll
2014-05-05 16:06:39 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2014-05-05 16:06:38 ----A---- C:\WINDOWS\system32\drivers\http.sys
2014-05-05 16:06:37 ----AC---- C:\WINDOWS\system32\drivers\BasicRender.sys
2014-05-05 16:06:37 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-05-05 16:06:37 ----A---- C:\WINDOWS\system32\DismApi.dll
2014-05-05 16:06:37 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2014-05-05 16:06:35 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgrade.exe
2014-05-05 16:06:35 ----A---- C:\WINDOWS\system32\drivers\luafv.sys
2014-05-05 16:06:34 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-05-05 16:06:30 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2014-05-05 16:06:30 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2014-05-05 16:06:29 ----A---- C:\WINDOWS\system32\autochk.exe
2014-05-05 16:06:29 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-05-05 16:06:28 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-05-05 16:06:28 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-05-05 16:06:28 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-05-05 16:06:28 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-05-05 16:06:28 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-05-05 16:06:27 ----A---- C:\WINDOWS\system32\energytask.dll
2014-05-05 16:06:26 ----A---- C:\WINDOWS\system32\spcompat.dll
2014-05-05 16:06:26 ----A---- C:\WINDOWS\system32\clusapi.dll
2014-05-05 16:06:21 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe
2014-05-05 16:06:20 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-05-05 16:06:20 ----A---- C:\WINDOWS\system32\dafWfdProvider.dll
2014-05-05 16:06:19 ----A---- C:\WINDOWS\system32\WinTypes.dll
2014-05-05 16:06:19 ----A---- C:\WINDOWS\system32\combase.dll
2014-05-05 16:06:18 ----A---- C:\WINDOWS\system32\wincorlib.dll
2014-05-05 16:06:18 ----A---- C:\WINDOWS\explorer.exe
2014-05-05 16:06:17 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
2014-05-05 16:06:17 ----A---- C:\WINDOWS\system32\drvcfg.exe
2014-05-05 16:06:16 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-05-05 16:06:13 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-05-05 16:06:12 ----A---- C:\WINDOWS\system32\shimeng.dll
2014-05-05 16:06:12 ----A---- C:\WINDOWS\system32\apphelp.dll
2014-05-05 16:06:11 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-05-05 16:06:10 ----A---- C:\WINDOWS\system32\mfps.dll
2014-05-05 16:06:10 ----A---- C:\WINDOWS\system32\mfcore.dll
2014-05-05 16:06:08 ----A---- C:\WINDOWS\system32\wbengine.exe
2014-05-05 16:06:06 ----A---- C:\WINDOWS\system32\rpcss.dll
2014-05-05 16:06:03 ----A---- C:\WINDOWS\system32\ole32.dll
2014-05-05 16:06:03 ----A---- C:\WINDOWS\system32\Dism.exe
2014-05-05 16:06:01 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-05-05 16:06:00 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2014-05-05 16:06:00 ----A---- C:\WINDOWS\system32\aclui.dll
2014-05-05 16:05:59 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-05-05 16:05:57 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-05-05 16:05:57 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-05-05 16:05:57 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-05-05 16:05:57 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2014-05-05 16:05:55 ----A---- C:\WINDOWS\system32\setbcdlocale.dll
2014-05-05 16:05:55 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2014-05-05 16:05:54 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2014-05-05 16:05:53 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2014-05-05 16:05:53 ----A---- C:\WINDOWS\system32\bcrypt.dll
2014-05-05 16:05:52 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2014-05-05 16:05:51 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-05-05 16:05:51 ----A---- C:\WINDOWS\system32\fhsvcctl.dll
2014-05-05 16:05:51 ----A---- C:\WINDOWS\system32\fhevents.dll
2014-05-05 16:05:51 ----A---- C:\WINDOWS\system32\fhcfg.dll
2014-05-05 16:05:49 ----A---- C:\WINDOWS\system32\gpsvc.dll
2014-05-05 16:05:48 ----A---- C:\WINDOWS\system32\drivers\fileinfo.sys
2014-05-05 16:05:47 ----A---- C:\WINDOWS\system32\wininet.dll
2014-05-05 16:05:47 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-05-05 16:05:45 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-05-05 16:05:41 ----A---- C:\WINDOWS\system32\winsku.dll
2014-05-05 16:05:41 ----A---- C:\WINDOWS\system32\winbrand.dll
2014-05-05 16:05:37 ----A---- C:\WINDOWS\system32\wermgr.exe
2014-05-05 16:05:37 ----A---- C:\WINDOWS\system32\wer.dll
2014-05-05 16:05:36 ----A---- C:\WINDOWS\system32\netid.dll
2014-05-05 16:05:36 ----A---- C:\WINDOWS\system32\dwmcore.dll
2014-05-05 16:05:34 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgradeResults.exe
2014-05-05 16:05:34 ----A---- C:\WINDOWS\system32\dfpinc.dat
2014-05-05 16:05:34 ----A---- C:\WINDOWS\system32\DfpCommon.dll
2014-05-05 16:05:34 ----A---- C:\WINDOWS\system32\dfp.exe
2014-05-05 16:05:33 ----AC---- C:\WINDOWS\system32\drivers\acpi.sys
2014-05-05 16:05:31 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2014-05-05 16:05:31 ----A---- C:\WINDOWS\system32\WerFault.exe
2014-05-05 16:05:31 ----A---- C:\WINDOWS\system32\Faultrep.dll
2014-05-05 16:05:30 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2014-05-05 16:05:30 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
2014-05-05 16:05:27 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2014-05-05 16:05:26 ----A---- C:\WINDOWS\system32\fhcpl.dll
2014-05-05 16:05:25 ----A---- C:\WINDOWS\system32\LocationApi.dll
2014-05-05 16:05:25 ----A---- C:\WINDOWS\system32\GlobCollationHost.dll
2014-05-05 16:05:24 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2014-05-05 16:05:24 ----A---- C:\WINDOWS\system32\werui.dll
2014-05-05 16:05:24 ----A---- C:\WINDOWS\system32\bcd.dll
2014-05-05 16:05:24 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2014-05-05 16:05:24 ----A---- C:\WINDOWS\system32\aitagent.exe
2014-05-05 16:05:21 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2014-05-05 16:05:19 ----A---- C:\WINDOWS\system32\mf3216.dll
2014-05-05 16:05:18 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2014-05-05 16:05:18 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2014-05-05 16:05:12 ----A---- C:\WINDOWS\system32\dwmapi.dll
2014-05-05 16:05:11 ----A---- C:\WINDOWS\system32\wbadmin.exe
2014-05-05 16:05:09 ----A---- C:\WINDOWS\system32\drvinst.exe
2014-05-05 16:05:08 ----AC---- C:\WINDOWS\system32\drivers\pci.sys
2014-05-05 16:05:08 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-05-05 16:05:07 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-05-05 16:05:07 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-05-05 16:05:07 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-05-05 16:05:07 ----A---- C:\WINDOWS\system32\diskpart.exe
2014-05-05 16:05:05 ----A---- C:\WINDOWS\system32\iuilp.dll
2014-05-05 16:05:04 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2014-05-05 16:05:02 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2014-05-05 16:05:02 ----A---- C:\WINDOWS\system32\dataclen.dll
2014-05-05 16:05:01 ----A---- C:\WINDOWS\system32\advapi32.dll
2014-05-05 16:04:53 ----A---- C:\WINDOWS\system32\SndVolSSO.dll
2014-05-05 16:04:53 ----A---- C:\WINDOWS\system32\SndVol.exe
2014-05-05 16:04:52 ----A---- C:\WINDOWS\system32\untfs.dll
2014-05-05 16:04:51 ----A---- C:\WINDOWS\system32\d3d11.dll
2014-05-05 16:04:51 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2014-05-05 16:04:50 ----A---- C:\WINDOWS\system32\gameux.dll
2014-05-05 16:04:49 ----A---- C:\WINDOWS\system32\mfreadwrite.dll
2014-05-05 16:04:49 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-05-05 16:04:49 ----A---- C:\WINDOWS\system32\dcomp.dll
2014-05-04 12:53:27 ----A---- C:\WINDOWS\SYSWOW64\winsku.dll
2014-05-04 12:53:27 ----A---- C:\WINDOWS\SYSWOW64\winbrand.dll
2014-05-04 12:53:14 ----A---- C:\WINDOWS\system32\spbcd.dll
2014-05-04 12:53:10 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2014-05-04 12:53:08 ----A---- C:\WINDOWS\SYSWOW64\netid.dll
2014-05-04 12:53:06 ----A---- C:\WINDOWS\system32\RelPost.exe
2014-05-04 12:53:05 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2014-05-04 12:53:04 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2014-05-04 12:53:03 ----A---- C:\WINDOWS\system32\drivers\refs.sys
2014-05-04 12:52:50 ----A---- C:\WINDOWS\system32\spwizeng.dll
2014-05-04 12:52:48 ----A---- C:\WINDOWS\SYSWOW64\osk.exe
2014-05-04 12:52:46 ----A---- C:\WINDOWS\SYSWOW64\imm32.dll
2014-05-04 12:52:45 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2014-05-04 12:52:34 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-05-04 12:52:33 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2014-05-04 12:52:33 ----A---- C:\WINDOWS\system32\wow64win.dll
2014-05-04 12:52:32 ----AC---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2014-05-04 12:52:32 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-05-04 12:52:30 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-05-04 12:52:30 ----A---- C:\WINDOWS\system32\fvewiz.dll
2014-05-04 12:52:29 ----A---- C:\WINDOWS\SYSWOW64\dmdskmgr.dll
2014-05-04 12:52:28 ----A---- C:\WINDOWS\system32\vdsutil.dll
2014-05-04 12:52:28 ----A---- C:\WINDOWS\system32\vds.exe
2014-05-04 12:52:21 ----AC---- C:\WINDOWS\system32\drivers\UCX01000.SYS
2014-05-04 12:52:21 ----A---- C:\WINDOWS\system32\PkgMgr.exe
2014-05-04 12:52:20 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2014-05-04 12:52:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2014-05-04 12:52:16 ----A---- C:\WINDOWS\system32\nettrace.dll
2014-05-04 12:52:15 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2014-05-04 12:52:15 ----A---- C:\WINDOWS\system32\wlidprov.dll
2014-05-04 12:52:14 ----A---- C:\WINDOWS\system32\WSDApi.dll
2014-05-04 12:52:12 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2014-05-04 12:52:12 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2014-05-04 12:52:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2014-05-04 12:52:11 ----A---- C:\WINDOWS\SYSWOW64\wlanmsm.dll
2014-05-04 12:52:10 ----A---- C:\WINDOWS\SYSWOW64\acppage.dll
2014-05-04 12:52:09 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-05-04 12:52:08 ----A---- C:\WINDOWS\system32\RMapi.dll
2014-05-04 12:52:02 ----A---- C:\WINDOWS\system32\pdh.dll
2014-05-04 12:52:02 ----A---- C:\WINDOWS\system32\netlogon.dll
2014-05-04 12:51:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2014-05-04 12:51:53 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2014-05-04 12:51:52 ----A---- C:\WINDOWS\system32\netcfgx.dll
2014-05-04 12:51:51 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2014-05-04 12:51:51 ----A---- C:\WINDOWS\system32\WofTasks.dll
2014-05-04 12:51:51 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2014-05-04 12:51:50 ----A---- C:\WINDOWS\system32\msctf.dll
2014-05-04 12:51:47 ----A---- C:\WINDOWS\system32\SrTasks.exe
2014-05-04 12:51:46 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-05-04 12:51:46 ----A---- C:\WINDOWS\system32\swprv.dll
2014-05-04 12:51:46 ----A---- C:\WINDOWS\system32\SettingMonitor.dll
2014-05-04 12:51:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2014-05-04 12:51:45 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-05-04 12:51:44 ----A---- C:\WINDOWS\SYSWOW64\diskpart.exe
2014-05-04 12:51:44 ----A---- C:\WINDOWS\system32\storagewmi.dll
2014-05-04 12:51:43 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2014-05-04 12:51:43 ----A---- C:\WINDOWS\system32\sppc.dll
2014-05-04 12:51:43 ----A---- C:\WINDOWS\system32\slc.dll
2014-05-04 12:51:42 ----A---- C:\WINDOWS\system32\webservices.dll
2014-05-04 12:51:40 ----A---- C:\WINDOWS\system32\SetNetworkLocation.dll
2014-05-04 12:51:38 ----A---- C:\WINDOWS\SYSWOW64\dataclen.dll
2014-05-04 12:51:37 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-05-04 12:51:36 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-05-04 12:51:36 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2014-05-04 12:51:35 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-05-04 12:51:33 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2014-05-04 12:51:32 ----A---- C:\WINDOWS\system32\wpnprv.dll
2014-05-04 12:51:32 ----A---- C:\WINDOWS\system32\wlidcredprov.dll
2014-05-04 12:51:29 ----A---- C:\WINDOWS\system32\ActionQueue.dll
2014-05-04 12:51:25 ----A---- C:\WINDOWS\system32\qedit.dll
2014-05-04 12:51:22 ----A---- C:\WINDOWS\system32\WSService.dll
2014-05-04 12:51:20 ----A---- C:\WINDOWS\system32\WofUtil.dll
2014-05-04 12:51:18 ----A---- C:\WINDOWS\system32\RASMM.dll
2014-05-04 12:51:17 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-05-04 12:51:17 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-05-04 12:51:17 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-05-04 12:51:17 ----A---- C:\WINDOWS\system32\winsrv.dll
2014-05-04 12:51:16 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2014-05-04 12:51:15 ----A---- C:\WINDOWS\system32\rascustom.dll
2014-05-04 12:51:14 ----A---- C:\WINDOWS\SYSWOW64\SndVolSSO.dll
2014-05-04 12:51:14 ----A---- C:\WINDOWS\SYSWOW64\SndVol.exe
2014-05-04 12:51:13 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2014-05-04 12:51:12 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2014-05-04 12:51:12 ----A---- C:\WINDOWS\system32\localspl.dll
2014-05-04 12:51:11 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-05-04 12:51:10 ----AC---- C:\WINDOWS\system32\drivers\sdstor.sys
2014-05-04 12:51:10 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2014-05-04 12:51:09 ----A---- C:\WINDOWS\system32\Windows.Media.Renewal.dll
2014-05-04 12:51:08 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-05-04 12:51:02 ----A---- C:\WINDOWS\SYSWOW64\provsvc.dll
2014-05-04 12:51:02 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2014-05-04 12:51:01 ----A---- C:\WINDOWS\SYSWOW64\pdh.dll
2014-05-04 12:51:01 ----A---- C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2014-05-04 12:51:00 ----A---- C:\WINDOWS\system32\sysmain.dll
2014-05-04 12:50:59 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2014-05-04 12:50:59 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2014-05-04 12:50:58 ----A---- C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2014-05-04 12:50:56 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2014-05-04 12:50:55 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2014-05-04 12:50:53 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2014-05-04 12:50:51 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2014-05-04 12:50:50 ----A---- C:\WINDOWS\system32\wlangpui.dll
2014-05-04 12:50:43 ----A---- C:\WINDOWS\system32\authz.dll
2014-05-04 12:50:41 ----A---- C:\WINDOWS\SYSWOW64\f3ahvoas.dll
2014-05-04 12:50:40 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-05-04 12:50:40 ----A---- C:\WINDOWS\SYSWOW64\dfrgui.exe
2014-05-04 12:50:40 ----A---- C:\WINDOWS\SYSWOW64\CredentialMigrationHandler.dll
2014-05-04 12:50:40 ----A---- C:\WINDOWS\system32\wpncore.dll
2014-05-04 12:50:39 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2014-05-04 12:50:38 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2014-05-04 12:50:38 ----A---- C:\WINDOWS\system32\scavengeui.dll
2014-05-04 12:50:37 ----A---- C:\WINDOWS\system32\srcore.dll
2014-05-04 12:50:37 ----A---- C:\WINDOWS\system32\srclient.dll
2014-05-04 12:50:37 ----A---- C:\WINDOWS\system32\rstrui.exe
2014-05-04 12:50:35 ----A---- C:\WINDOWS\SYSWOW64\wlidcredprov.dll
2014-05-04 12:50:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2014-05-04 12:50:32 ----A---- C:\WINDOWS\SYSWOW64\srchadmin.dll
2014-05-04 12:50:32 ----A---- C:\WINDOWS\system32\winbici.dll
2014-05-04 12:50:30 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2014-05-04 12:50:30 ----A---- C:\WINDOWS\system32\sppobjs.dll
2014-05-04 12:50:27 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2014-05-04 12:50:27 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2014-05-04 12:50:26 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2014-05-04 12:50:26 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2014-05-04 12:50:25 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2014-05-04 12:50:22 ----A---- C:\WINDOWS\system32\twinapi.dll
2014-05-04 12:50:20 ----A---- C:\WINDOWS\system32\sppwinob.dll
2014-05-04 12:50:19 ----A---- C:\WINDOWS\system32\msxml6.dll
2014-05-04 12:50:19 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2014-05-04 12:50:18 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-05-04 12:50:18 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-05-04 12:50:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2014-05-04 12:50:16 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2014-05-04 12:50:16 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-05-04 12:50:15 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2014-05-04 12:50:07 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-05-04 12:50:07 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-05-04 12:50:07 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-05-04 12:50:06 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2014-05-04 12:50:04 ----A---- C:\WINDOWS\system32\sqmapi.dll
2014-05-04 12:50:03 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-05-04 12:50:03 ----A---- C:\WINDOWS\system32\clrhost.dll
2014-05-04 12:50:02 ----A---- C:\WINDOWS\system32\netiohlp.dll
2014-05-04 12:50:02 ----A---- C:\WINDOWS\system32\finger.exe
2014-05-04 12:49:59 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2014-05-04 12:49:58 ----A---- C:\WINDOWS\SYSWOW64\wlangpui.dll
2014-05-04 12:49:55 ----A---- C:\WINDOWS\system32\easwrt.dll
2014-05-04 12:49:52 ----A---- C:\WINDOWS\system32\themeui.dll
2014-05-04 12:49:52 ----A---- C:\WINDOWS\system32\ninput.dll
2014-05-04 12:49:50 ----A---- C:\WINDOWS\SYSWOW64\srclient.dll
2014-05-04 12:49:50 ----A---- C:\WINDOWS\system32\AuthHost.exe
2014-05-04 12:49:50 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2014-05-04 12:49:49 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2014-05-04 12:49:48 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2014-05-04 12:49:48 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2014-05-04 12:49:48 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-05-04 12:49:47 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2014-05-04 12:49:47 ----A---- C:\WINDOWS\system32\sdclt.exe
2014-05-04 12:49:46 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-05-04 12:49:45 ----A---- C:\WINDOWS\SYSWOW64\Display.dll
2014-05-04 12:49:45 ----A---- C:\WINDOWS\system32\drivers\PEAuth.sys
2014-05-04 12:49:42 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-05-04 12:49:39 ----A---- C:\WINDOWS\system32\offreg.dll
2014-05-04 12:49:39 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2014-05-04 12:49:38 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2014-05-04 12:49:38 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2014-05-04 12:49:36 ----A---- C:\WINDOWS\system32\rdpcore.dll
2014-05-04 12:49:34 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2014-05-04 12:49:31 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2014-05-04 12:49:30 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2014-05-04 12:49:30 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2014-05-04 12:49:29 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2014-05-04 12:49:27 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll
2014-05-04 12:49:27 ----A---- C:\WINDOWS\system32\thumbcache.dll
2014-05-04 12:49:26 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2014-05-04 12:49:25 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-05-04 12:49:24 ----A---- C:\WINDOWS\system32\wpccpl.dll
2014-05-04 12:49:24 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2014-05-04 12:49:23 ----A---- C:\WINDOWS\system32\WlanMM.dll
2014-05-04 12:49:22 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-05-04 12:49:21 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2014-05-04 12:49:19 ----A---- C:\WINDOWS\SYSWOW64\fsutil.exe
2014-05-04 12:49:18 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2014-05-04 12:49:16 ----A---- C:\WINDOWS\system32\shsetup.dll
2014-05-04 12:49:15 ----A---- C:\WINDOWS\system32\profsvc.dll
2014-05-04 12:49:10 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-05-04 12:49:02 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll
2014-05-04 12:49:02 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2014-05-04 12:49:02 ----A---- C:\WINDOWS\system32\user32.dll
2014-05-04 12:49:01 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-05-04 12:48:59 ----A---- C:\WINDOWS\system32\ReInfo.dll
2014-05-04 12:48:59 ----A---- C:\WINDOWS\system32\ReAgent.dll
2014-05-04 12:48:58 ----A---- C:\WINDOWS\SYSWOW64\themeui.dll
2014-05-04 12:48:58 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2014-05-04 12:48:56 ----A---- C:\WINDOWS\system32\WLanConn.dll
2014-05-04 12:48:56 ----A---- C:\WINDOWS\system32\wintrust.dll
2014-05-04 12:48:55 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
2014-05-04 12:48:55 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2014-05-04 12:48:55 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2014-05-04 12:48:54 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2014-05-04 12:48:53 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2014-05-04 12:48:53 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2014-05-04 12:48:52 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2014-05-04 12:48:50 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2014-05-04 12:48:47 ----A---- C:\WINDOWS\system32\rdbui.dll
2014-05-04 12:48:46 ----A---- C:\WINDOWS\system32\nshwfp.dll
2014-05-04 12:48:46 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2014-05-04 12:48:46 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2014-05-04 12:48:45 ----A---- C:\WINDOWS\system32\ocsetapi.dll
2014-05-04 12:48:45 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-05-04 12:48:45 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-05-04 12:48:44 ----A---- C:\WINDOWS\system32\userenv.dll
2014-05-04 12:48:44 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2014-05-04 12:48:43 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-05-04 12:48:43 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-05-04 12:48:42 ----A---- C:\WINDOWS\system32\syncui.dll
2014-05-04 12:48:41 ----A---- C:\WINDOWS\system32\winlogon.exe
2014-05-04 12:48:41 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2014-05-04 12:48:40 ----A---- C:\WINDOWS\system32\rasapi32.dll
2014-05-04 12:48:35 ----A---- C:\WINDOWS\system32\SessEnv.dll
2014-05-04 12:48:33 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-05-04 12:48:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2014-05-04 12:48:29 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-05-04 12:48:29 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-05-04 12:48:28 ----A---- C:\WINDOWS\system32\netplwiz.dll
2014-05-04 12:48:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2014-05-04 12:48:25 ----A---- C:\WINDOWS\SYSWOW64\dmvdsitf.dll
2014-05-04 12:48:25 ----A---- C:\WINDOWS\system32\ploptin.dll
2014-05-04 12:48:24 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
2014-05-04 12:48:21 ----A---- C:\WINDOWS\system32\stobject.dll
2014-05-04 12:48:19 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-05-04 12:48:17 ----A---- C:\WINDOWS\system32\smss.exe
2014-05-04 12:48:17 ----A---- C:\WINDOWS\system32\powercfg.exe
2014-05-04 12:48:16 ----A---- C:\WINDOWS\system32\propsys.dll
2014-05-04 12:48:16 ----A---- C:\WINDOWS\system32\korwbrkr.dll
2014-05-04 12:48:03 ----A---- C:\WINDOWS\system32\drivers\watchdog.sys
2014-05-04 12:48:02 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-05-04 12:48:01 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-05-04 12:48:01 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll
2014-05-04 12:48:00 ----A---- C:\WINDOWS\system32\ntshrui.dll
2014-05-04 12:47:58 ----A---- C:\WINDOWS\system32\setupapi.dll
2014-05-04 12:47:58 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-05-04 12:47:57 ----A---- C:\WINDOWS\SYSWOW64\autoconv.exe
2014-05-04 12:47:53 ----A---- C:\WINDOWS\system32\wwanmm.dll
2014-05-04 12:47:53 ----A---- C:\WINDOWS\system32\wwanconn.dll
2014-05-04 12:47:51 ----A---- C:\WINDOWS\system32\powrprof.dll
2014-05-04 12:47:51 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2014-05-04 12:47:50 ----A---- C:\WINDOWS\system32\BioCredProv.dll
2014-05-04 12:47:49 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2014-05-04 12:47:49 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2014-05-04 12:47:47 ----A---- C:\WINDOWS\SYSWOW64\cleanmgr.exe
2014-05-04 12:47:47 ----A---- C:\WINDOWS\system32\uxtheme.dll
2014-05-04 12:47:46 ----A---- C:\WINDOWS\SYSWOW64\korwbrkr.dll
2014-05-04 12:47:44 ----A---- C:\WINDOWS\system32\VAN.dll
2014-05-04 12:47:42 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2014-05-04 12:47:42 ----A---- C:\WINDOWS\system32\usercpl.dll
2014-05-04 12:47:41 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2014-05-04 12:47:41 ----A---- C:\WINDOWS\system32\WSDMon.dll
2014-05-04 12:47:35 ----A---- C:\WINDOWS\SYSWOW64\SessEnv.dll
2014-05-04 12:47:34 ----A---- C:\WINDOWS\SYSWOW64\LocationApi.dll
2014-05-04 12:47:32 ----A---- C:\WINDOWS\system32\msftedit.dll
2014-05-04 12:47:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2014-05-04 12:47:31 ----A---- C:\WINDOWS\SYSWOW64\GlobCollationHost.dll
2014-05-04 12:47:29 ----A---- C:\WINDOWS\system32\win32k.sys
2014-05-04 12:47:26 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2014-05-04 12:47:25 ----A---- C:\WINDOWS\system32\taskeng.exe
2014-05-04 12:47:24 ----A---- C:\WINDOWS\system32\fveskybackup.dll
2014-05-04 12:47:23 ----A---- C:\WINDOWS\system32\mssprxy.dll
2014-05-04 12:47:23 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2014-05-04 12:47:22 ----A---- C:\WINDOWS\system32\tquery.dll
2014-05-04 12:47:22 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2014-05-04 12:47:21 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2014-05-04 12:47:21 ----A---- C:\WINDOWS\system32\mssph.dll
2014-05-04 12:47:21 ----A---- C:\WINDOWS\system32\msshooks.dll
2014-05-04 12:47:20 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2014-05-04 12:47:20 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2014-05-04 12:47:20 ----A---- C:\WINDOWS\system32\mssvp.dll
2014-05-04 12:47:20 ----A---- C:\WINDOWS\system32\mssrch.dll
2014-05-04 12:47:17 ----A---- C:\WINDOWS\system32\RestoreOptIn.exe
2014-05-04 12:47:17 ----A---- C:\WINDOWS\system32\printui.dll
2014-05-04 12:47:17 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2014-05-04 12:47:16 ----A---- C:\WINDOWS\system32\winmde.dll
2014-05-04 12:47:14 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-05-04 12:47:13 ----A---- C:\WINDOWS\SYSWOW64\CloudNotifications.exe
2014-05-04 12:47:12 ----A---- C:\WINDOWS\SYSWOW64\autofmt.exe
2014-05-04 12:47:11 ----AC---- C:\WINDOWS\system32\drivers\spaceport.sys
2014-05-04 12:47:11 ----A---- C:\WINDOWS\system32\wscinterop.dll
2014-05-04 12:47:10 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2014-05-04 12:47:09 ----AC---- C:\WINDOWS\system32\drivers\volsnap.sys
2014-05-04 12:47:08 ----A---- C:\WINDOWS\system32\VSSVC.exe
2014-05-04 12:47:07 ----A---- C:\WINDOWS\system32\srrstr.dll
2014-05-04 12:47:06 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-05-04 12:46:55 ----A---- C:\WINDOWS\system32\msvproc.dll
2014-05-04 12:46:54 ----A---- C:\WINDOWS\SYSWOW64\DismApi.dll
2014-05-04 12:46:53 ----A---- C:\WINDOWS\system32\vdsbas.dll
2014-05-04 12:46:53 ----A---- C:\WINDOWS\system32\schannel.dll
2014-05-04 12:46:52 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2014-05-04 12:46:52 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2014-05-04 12:46:52 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-05-04 12:46:51 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2014-05-04 12:46:46 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2014-05-04 12:46:43 ----A---- C:\WINDOWS\system32\rasgcw.dll
2014-05-02 12:32:31 ----D---- C:\Users\Michael Pfann\AppData\Roaming\LSC
2014-05-02 12:28:45 ----D---- C:\drivers

======List of files/folders modified in the last 1 month======

2014-05-28 21:01:02 ----D---- C:\WINDOWS\Temp
2014-05-28 21:00:02 ----D---- C:\WINDOWS\system32\sru
2014-05-28 20:53:42 ----D---- C:\WINDOWS\Prefetch
2014-05-28 20:53:31 ----RD---- C:\Program Files
2014-05-28 19:28:23 ----HD---- C:\Program Files\WindowsApps
2014-05-28 19:28:21 ----D---- C:\WINDOWS\AppReadiness
2014-05-28 00:29:22 ----D---- C:\WINDOWS\Tasks
2014-05-28 00:01:06 ----D---- C:\WINDOWS\system32\config
2014-05-27 16:45:30 ----D---- C:\WINDOWS\Microsoft.NET
2014-05-27 00:28:45 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-05-26 16:03:19 ----SHD---- C:\System Volume Information
2014-05-26 14:51:36 ----D---- C:\WINDOWS\Inf
2014-05-20 20:49:17 ----RD---- C:\WINDOWS\System32
2014-05-20 20:49:17 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-05-20 20:45:24 ----D---- C:\WINDOWS\system32\Tasks
2014-05-19 11:15:04 ----D---- C:\WINDOWS\system32\drivers
2014-05-19 11:01:52 ----SHD---- C:\WINDOWS\Installer
2014-05-19 11:01:32 ----RSD---- C:\WINDOWS\assembly
2014-05-19 11:01:06 ----D---- C:\Program Files\Lenovo
2014-05-19 10:59:10 ----D---- C:\WINDOWS\Downloaded Installations
2014-05-18 18:21:31 ----D---- C:\WINDOWS\rescache
2014-05-16 10:29:05 ----D---- C:\WINDOWS\AutoKMS
2014-05-15 21:58:31 ----D---- C:\WINDOWS\WinSxS
2014-05-15 10:57:04 ----D---- C:\WINDOWS\SysWOW64
2014-05-15 10:08:35 ----D---- C:\WINDOWS\system32\wdi
2014-05-15 09:51:03 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-05-15 00:27:24 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2014-05-15 00:27:23 ----RD---- C:\WINDOWS\ToastData
2014-05-15 00:27:23 ----D---- C:\Program Files\Windows Defender
2014-05-15 00:27:23 ----D---- C:\Program Files (x86)\Windows Defender
2014-05-15 00:27:22 ----D---- C:\WINDOWS\WinStore
2014-05-15 00:27:22 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-05-15 00:27:22 ----D---- C:\WINDOWS\system32\cs-CZ
2014-05-15 00:27:22 ----D---- C:\WINDOWS\apppatch
2014-05-15 00:27:08 ----D---- C:\Users\Michael Pfann\AppData\Roaming\uTorrent
2014-05-14 23:52:48 ----D---- C:\ProgramData\Microsoft Help
2014-05-14 23:50:16 ----D---- C:\Windows
2014-05-14 23:50:16 ----D---- C:\Program Files\Common Files
2014-05-14 23:48:46 ----D---- C:\WINDOWS\CbsTemp
2014-05-14 23:48:42 ----D---- C:\WINDOWS\system32\MRT
2014-05-14 23:44:22 ----A---- C:\WINDOWS\system32\MRT.exe
2014-05-14 23:15:44 ----D---- C:\WINDOWS\system32\catroot2
2014-05-12 22:40:29 ----RD---- C:\Program Files (x86)
2014-05-09 16:25:03 ----D---- C:\WINDOWS\system32\DriverStore
2014-05-07 00:08:36 ----D---- C:\Program Files\Windows Multimedia Platform
2014-05-07 00:08:36 ----D---- C:\Program Files\Internet Explorer
2014-05-07 00:08:32 ----D---- C:\Program Files\Windows Portable Devices
2014-05-07 00:08:32 ----D---- C:\Program Files\Windows Media Player
2014-05-07 00:08:31 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2014-05-07 00:08:31 ----D---- C:\Program Files (x86)\Internet Explorer
2014-05-07 00:08:30 ----D---- C:\WINDOWS\MediaViewer
2014-05-07 00:08:30 ----D---- C:\Program Files (x86)\Windows Portable Devices
2014-05-07 00:08:30 ----D---- C:\Program Files (x86)\Windows Media Player
2014-05-07 00:08:29 ----D---- C:\WINDOWS\servicing
2014-05-07 00:08:28 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-05-07 00:08:28 ----D---- C:\WINDOWS\SYSWOW64\Dism
2014-05-07 00:08:27 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-05-07 00:08:25 ----D---- C:\WINDOWS\SYSWOW64\oobe
2014-05-07 00:08:25 ----D---- C:\WINDOWS\SYSWOW64\en-US
2014-05-07 00:08:09 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-05-07 00:08:09 ----D---- C:\WINDOWS\cs-CZ
2014-05-07 00:08:05 ----D---- C:\WINDOWS\PolicyDefinitions
2014-05-07 00:08:04 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-05-07 00:08:04 ----D---- C:\WINDOWS\system32\lv-LV
2014-05-07 00:08:04 ----D---- C:\WINDOWS\system32\hr-HR
2014-05-07 00:08:04 ----D---- C:\WINDOWS\system32\et-EE
2014-05-07 00:08:04 ----D---- C:\WINDOWS\system32\da-DK
2014-05-07 00:08:03 ----D---- C:\WINDOWS\system32\sk-SK
2014-05-07 00:08:03 ----D---- C:\WINDOWS\system32\ko-KR
2014-05-07 00:08:03 ----D---- C:\WINDOWS\system32\it-IT
2014-05-07 00:08:03 ----D---- C:\WINDOWS\system32\en-US
2014-05-07 00:08:03 ----D---- C:\WINDOWS\system32\en-GB
2014-05-07 00:08:03 ----D---- C:\WINDOWS\system32\el-GR
2014-05-07 00:08:03 ----D---- C:\WINDOWS\system32\de-DE
2014-05-07 00:08:02 ----D---- C:\WINDOWS\system32\Sysprep
2014-05-07 00:08:02 ----D---- C:\WINDOWS\system32\oobe
2014-05-07 00:08:02 ----D---- C:\WINDOWS\system32\migration
2014-05-07 00:08:01 ----D---- C:\WINDOWS\system32\sv-SE
2014-05-07 00:08:01 ----D---- C:\WINDOWS\system32\setup
2014-05-07 00:08:01 ----D---- C:\WINDOWS\system32\ru-RU
2014-05-07 00:08:01 ----D---- C:\WINDOWS\system32\he-IL
2014-05-07 00:08:01 ----D---- C:\WINDOWS\system32\fr-FR
2014-05-07 00:08:01 ----D---- C:\WINDOWS\system32\fi-FI
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\zh-TW
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\zh-CN
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\uk-UA
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\sl-SI
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\pt-PT
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\pl-PL
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\ja-JP
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\hu-HU
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\es-ES
2014-05-07 00:07:57 ----D---- C:\WINDOWS\system32\bg-BG
2014-05-07 00:07:56 ----D---- C:\WINDOWS\system32\ro-RO
2014-05-07 00:07:55 ----D---- C:\WINDOWS\system32\zh-HK
2014-05-07 00:07:55 ----D---- C:\WINDOWS\system32\tr-TR
2014-05-07 00:07:55 ----D---- C:\WINDOWS\system32\th-TH
2014-05-07 00:07:55 ----D---- C:\WINDOWS\system32\drivers\en-US
2014-05-07 00:07:55 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2014-05-07 00:07:54 ----D---- C:\WINDOWS\system32\wbem
2014-05-07 00:07:54 ----D---- C:\WINDOWS\system32\nl-NL
2014-05-07 00:07:54 ----D---- C:\WINDOWS\system32\nb-NO
2014-05-07 00:07:54 ----D---- C:\WINDOWS\system32\lt-LT
2014-05-07 00:07:53 ----D---- C:\WINDOWS\system32\migwiz
2014-05-07 00:07:53 ----D---- C:\WINDOWS\system32\ar-SA
2014-05-07 00:07:52 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2014-05-07 00:07:52 ----D---- C:\WINDOWS\system32\pt-BR
2014-05-07 00:07:52 ----D---- C:\WINDOWS\system32\Dism
2014-05-07 00:07:51 ----D---- C:\WINDOWS\system32\Boot
2014-05-07 00:07:20 ----D---- C:\WINDOWS\Camera
2014-05-07 00:07:19 ----RSD---- C:\WINDOWS\Fonts
2014-05-07 00:07:16 ----D---- C:\WINDOWS\FileManager
2014-05-07 00:06:48 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-05-06 16:43:31 ----SH---- C:\WINDOWS\system32\desktop.ini
2014-05-06 12:56:23 ----D---- C:\WINDOWS\LiveKernelReports
2014-05-04 17:47:25 ----D---- C:\WINDOWS\system32\NDF
2014-05-02 12:36:06 ----D---- C:\WINDOWS\system32\LogFiles
2014-05-02 12:31:43 ----D---- C:\ProgramData\Lenovo
2014-04-29 23:38:13 ----HD---- C:\ProgramData

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\WINDOWS\system32\DRIVERS\edevmon.sys [2012-07-10 179920]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-09 645952]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2012-10-20 39008]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2008-06-16 55024]
R0 Wof;Windows Overlay File System Filter Driver; C:\WINDOWS\system32\drivers\Wof.sys [2014-05-04 157016]
R1 dtsoftbus01;@oem7.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2013-03-24 283200]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2012-07-10 213416]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2012-03-29 152136]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 epfwwfpr;epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [2012-03-29 140752]
R2 SSPORT;SSPORT; \??\C:\windows\system32\Drivers\SSPORT.sys [2010-12-23 11576]
R3 ACPIVPC;@oem4.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2012-10-20 33560]
R3 AmUStor;@oem27.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2012-06-13 100992]
R3 athr;@netathrx.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athwnx.sys [2013-06-18 3680256]
R3 ETD;@oem3.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2012-08-09 315216]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-07-03 4074256]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem20.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 SPUVCbv;@oem30.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2012-08-24 1059064]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 dot4;@oem23.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2013-06-04 146856]
S3 Dot4Print;@oem24.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\WINDOWS\System32\drivers\Dot4Prt.sys [2013-06-04 21928]
S3 dot4usb;@oem23.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2013-06-04 43944]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2014-04-05 121088]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe [2012-07-04 999704]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-17 128896]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-17 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 276864]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 364416]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-14 116648]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2013-08-22 37768]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Endpoint Antivirus\EHttpSrv.exe [2012-07-04 35720]
S3 ESHASRV;ESET SHA Service; C:\Program Files\ESET\ESET Endpoint Antivirus\EShaSrv.exe [2012-07-04 190208]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-14 116648]
S3 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2014-05-06 1663880]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-05-10 119408]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o pomoc, vir na fcb.

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Muzete problem prosim vice popsat?

:arrow: Jedna se o domaci PC nebo nejake pracovni\firemni??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

mikepf2n
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 28 kvě 2014 20:13

Re: Prosím o pomoc, vir na fcb.

#3 Příspěvek od mikepf2n »

Omlouvám se. Je to můj osobní notebook. Z mého účtu na facebooku odchází v chatových konverzacích téměř všem mým přátelům krátký soubor se slovy hahaha, který prý nelze otevřít. Co dělá, když se to podaří, netuším.

28 kvě 2014, 21:28
Všiml jsem si, že tu někdo již řešil stejný problém na jiném místě.
Naposledy upravil(a) vyosek dne 28 kvě 2014 20:54, celkem upraveno 1 x.
Důvod: Prispevky slouceny

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o pomoc, vir na fcb.

#4 Příspěvek od vyosek »

:arrow: Proc pouzivate na osobnim ntb ESET EndPoint, ktery je urcen pro firemni klientelu?? Licenci na nej mate zakoupenou nebo nejak "osetrenou"???

:arrow: Office tez maji medicinu misto legalne zkoupene licence co??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

mikepf2n
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 28 kvě 2014 20:13

Re: Prosím o pomoc, vir na fcb.

#5 Příspěvek od mikepf2n »

Eset mám přes tátovu firmu, ten je v pohodě. A s officama je to tak, jak říkáte.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o pomoc, vir na fcb.

#6 Příspěvek od vyosek »

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

mikepf2n
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 28 kvě 2014 20:13

Re: Prosím o pomoc, vir na fcb.

#7 Příspěvek od mikepf2n »

Děkuji! A mám použít obojí postupně, nebo si vybrat?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o pomoc, vir na fcb.

#8 Příspěvek od vyosek »

Kdybyste si mel vybrat, tak to napisu...delejte vsechny kroky :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

mikepf2n
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 28 kvě 2014 20:13

Re: Prosím o pomoc, vir na fcb.

#9 Příspěvek od mikepf2n »

Tady je prvni log:
# AdwCleaner v3.211 - Report created 28/05/2014 at 23:37:04
# Updated 26/05/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Michael Pfann - MICHAEL
# Running from : C:\Users\Michael Pfann\Desktop\adwcleaner_3.211.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\AppDataLow\Software
Key Deleted : HKLM\Software\PIP

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17037


-\\ Mozilla Firefox v29.0.1 (cs)

[ File : C:\Users\Michael Pfann\AppData\Roaming\Mozilla\Firefox\Profiles\6c2lg6oy.default\prefs.js ]


-\\ Google Chrome v35.0.1916.114

[ File : C:\Users\Michael Pfann\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [1061 octets] - [28/05/2014 23:35:23]
AdwCleaner[S0].txt - [949 octets] - [28/05/2014 23:37:04]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1008 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o pomoc, vir na fcb.

#10 Příspěvek od vyosek »

Na druhy mrknu rano :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

mikepf2n
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 28 kvě 2014 20:13

Re: Prosím o pomoc, vir na fcb.

#11 Příspěvek od mikepf2n »

Díky. Zatím to pořád pracuje. Tak to nechám jet a pošlu to ráno. Dobrou noc!

mikepf2n
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 28 kvě 2014 20:13

Re: Prosím o pomoc, vir na fcb.

#12 Příspěvek od mikepf2n »

Tady je druhý log:
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.05.28.08

Windows 8 x64 NTFS
Internet Explorer 11.0.9600.17107
Michael Pfann :: MICHAEL [administrátor]

Ochrana: Povolena

28. 5. 2014 23:52:21
MBAM-log-2014-05-29 (08-25-37).txt

Typ: Kompletní kontrola (C:\|D:\|E:\|F:\|G:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 458046
Uplynulý čas: 1 hodin, 48 minut, 46 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 4
C:\Users\Michael Pfann\Downloads\GotClip_Setup.exe (PUP.Optional.Remarkit) -> Nebyla provedena žádná instrukce.
C:\Users\Michael Pfann\Downloads\InstallRarZilla.exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Michael Pfann\Videos\Nová složka\Fruity Loops Studio Producer Edition v11.0.3 RC3 Signature bundle-Ghost0507\fl.studio.producer.edition.v11.0.3.rc3.(signature.bundle)-patch.exe (PUP.Riskware.Patcher) -> Nebyla provedena žádná instrukce.
C:\Windows\AutoKMS\AutoKMS.exe (Trojan.AutoKMS) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o pomoc, vir na fcb.

#13 Příspěvek od vyosek »

:arrow: Omlouvam se za zdrzeni, pracovni povinnosti me sem nepustily

:arrow: Nalezy MBAMu smazte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

mikepf2n
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 28 kvě 2014 20:13

Re: Prosím o pomoc, vir na fcb.

#14 Příspěvek od mikepf2n »

Provedl jsem vše podle pokynů. Teď už by to mělo být čisté? Díky!

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o pomoc, vir na fcb.

#15 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno