
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu - zpomalený login a chyby v .NET Runt
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu logu - zpomalený login a chyby v .NET Runt
Logfile of random's system information tool 1.10 (written by random/random)
Run by Milos at 2014-06-03 21:25:04
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 38 GB (34%) free of 114 GB
Total RAM: 16332 MB (79% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:25:06, on 3.6.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe
C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
C:\Program Files (x86)\GIGABYTE\GHOST\GHOSTOPEN.exe
D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\PROGRA~2\Raptr\raptr.exe
D:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
D:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
C:\PROGRA~2\Raptr\raptr_im.exe
D:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
D:\Program Files (x86)\Mozilla Firefox\firefox.exe
D:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Milos.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\Java\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\Java\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Tilt] C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe
O4 - HKLM\..\Run: [Nástroj WD Drive Unlocker] C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
O4 - HKLM\..\Run: [WD Quick View] C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
O4 - HKLM\..\Run: [ghost] C:\Program Files (x86)\GIGABYTE\GHOST\ghostopen.exe
O4 - HKLM\..\Run: [PMBVolumeWatcher] D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [OfficeSyncProcess] "D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKCU\..\Run: [GrooveMonitor] D:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE
O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
O4 - Startup: Dropbox.lnk = Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe
O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WD Backup (WDBackup) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
O23 - Service: WD Drive Manager (WDDriveService) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11431 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k apphost
"C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe"
C:\Windows\system32\CISVC.EXE
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files\Logitech\Gaming Software\LWEMon.exe" /noui
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe"
"C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe"
"C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe"
"C:\Program Files (x86)\GIGABYTE\GHOST\GHOSTOPEN.exe"
"D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
taskeng.exe {FA5E8FFE-8335-4FA0-9AC8-FF3CFC616D1F}
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"D:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe"
"D:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe" -open
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
raptr_im.exe
"D:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe"
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
"D:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe" -hide
"D:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe"
"C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe"
"D:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe" -hide
"D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=5528.1825aad0.951849425 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" -greomni "D:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "D:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "D:\Program Files (x86)\Mozilla Firefox\browser" 260915DCF3A62DA7 5528 "\\.\pipe\gecko-crash-server-pipe.5528" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --proxy-stub-channel=Flash6612.5E0C6010.17526 --host-broker-channel=Flash6612.5E0C6010.20191 --host-pid=6612 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --channel=6648.001CF7C0.528670779 --proxy-stub-channel=Flash6612.5E0C6010.17526 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" --host-npapi-version=27 --type=renderer
"D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=5528.81adbc0.647687636 "C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll" -greomni "D:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "D:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "D:\Program Files (x86)\Mozilla Firefox\browser" 260915DCF3A62DA7 5528 "\\.\pipe\gecko-crash-server-pipe.5528" plugin
"C:\Windows\system32\mmc.exe" "C:\Windows\system32\eventvwr.msc" /s
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
taskeng.exe {5A2E2F6C-CDD6-4C15-931F-6B9B8686806D}
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"D:\Users\Milos\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.google.cz/#hl=cs&source=hp&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.1.4]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.3.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.4.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=D:\Program Files (x86)\Java\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=D:\Program Files (x86)\Java\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=D:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=D:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=D:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.5.0]
"Description"=
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
D:\Program Files (x86)\Mozilla Firefox\components\
npwachk.xpt
D:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.DEU
nppdf32.dll
nppdf32.FRA
nppdf32.JPN
npwachk.dll
C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\extensions\
cs@dictionaries.addons.mozilla.org
ietab@ip.cn
info@djzig.com
jid1-qQSMEVsYTOjgYA@jetpack
{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
RoboForm Toolbar Helper - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2013-09-15 24462040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files (x86)\Java\bin\ssv.dll [2013-12-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files (x86)\Java\bin\jp2ssv.dll [2013-12-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2013-09-15 24462040]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"=C:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-30 7541976]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 1271072]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OfficeSyncProcess"=D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]
"GrooveMonitor"=D:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE [2013-03-06 945856]
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2014-05-15 55360]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2000-01-01 292088]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-11-29 284440]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
""= []
"Tilt"=C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe [2011-04-20 729088]
"Nástroj WD Drive Unlocker"=C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [2012-06-13 1688008]
"WD Quick View"=C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [2014-05-09 5562736]
"ghost"=C:\Program Files (x86)\GIGABYTE\GHOST\ghostopen.exe [2010-02-08 192000]
"PMBVolumeWatcher"=D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2014-03-12 2534936]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-05-22 767200]
C:\Users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2459-05-11 01:51:37 ----A---- C:\Windows\system32\drivers\HECIx64.sys
2014-06-03 21:25:04 ----D---- C:\rsit
2014-06-03 18:53:33 ----A---- C:\Windows\SYSWOW64\WDPABKP.dat
2014-06-02 20:29:47 ----D---- C:\ProgramData\RogueKiller
2014-06-02 20:24:26 ----D---- C:\AdwCleaner
2014-05-30 21:49:59 ----A---- C:\Windows\system32\drivers\TeeDriverx64.sys
2014-05-30 21:46:30 ----A---- C:\Windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 21:45:08 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2014-05-30 21:45:04 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2014-05-30 21:45:04 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys
2014-05-30 21:28:24 ----A---- C:\Windows\system32\YamahaAE.dll
2014-05-30 21:28:23 ----A---- C:\Windows\system32\WavesGUILib64.dll
2014-05-30 21:28:22 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2014-05-30 21:28:21 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtkAPO64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtkApi64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtDataProc64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RTCOM64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2014-05-30 21:28:19 ----A---- C:\Windows\system32\RCoRes64.dat
2014-05-30 21:28:19 ----A---- C:\Windows\system32\RCoInstII64.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxVoiceAPO3064.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxVoiceAPO2064.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxSpeechAPO64.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxAudioVnN64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioVnA64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO6064.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO5064.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO4064.dll
2014-05-30 21:28:17 ----A---- C:\Windows\system32\FMAPO64.dll
2014-05-30 21:27:33 ----A---- C:\Windows\system32\RtNicProp64.dll
2014-05-30 21:27:33 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2014-05-30 21:22:00 ----D---- C:\ProgramData\ATI
2014-05-30 21:21:59 ----D---- C:\Program Files (x86)\AMD AVT
2014-05-29 21:27:22 ----D---- C:\Users\Milos\AppData\Roaming\ATI
2014-05-29 21:18:02 ----D---- C:\Program Files\ATI Technologies
2014-05-23 04:28:16 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2014-05-23 04:28:16 ----A---- C:\Windows\system32\amdhcp64.dll
2014-05-23 04:28:14 ----A---- C:\Windows\system32\atimpc64.dll
2014-05-23 04:28:14 ----A---- C:\Windows\system32\amdpcom64.dll
2014-05-23 04:28:12 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2014-05-23 04:28:12 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2014-05-23 04:28:06 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2014-05-23 04:28:06 ----A---- C:\Windows\system32\atiu9p64.dll
2014-05-23 04:28:04 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2014-05-23 04:28:02 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2014-05-23 04:27:54 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2014-05-23 04:27:48 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2014-05-23 04:27:42 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2014-05-23 04:27:38 ----A---- C:\Windows\system32\atiumd6a.dll
2014-05-23 04:27:34 ----A---- C:\Windows\system32\atiumd64.dll
2014-05-23 04:24:24 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2014-05-23 04:22:08 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2014-05-23 03:55:58 ----A---- C:\Windows\system32\atio6axx.dll
2014-05-23 03:47:48 ----A---- C:\Windows\system32\clinfo.exe
2014-05-23 03:47:36 ----A---- C:\Windows\system32\OpenVideo64.dll
2014-05-23 03:47:30 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2014-05-23 03:47:26 ----A---- C:\Windows\system32\OVDecode64.dll
2014-05-23 03:47:22 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2014-05-23 03:47:18 ----A---- C:\Windows\system32\amdocl64.dll
2014-05-23 03:46:06 ----A---- C:\Windows\system32\mantle64.dll
2014-05-23 03:45:54 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2014-05-23 03:45:38 ----A---- C:\Windows\system32\amdmantle64.dll
2014-05-23 03:45:26 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2014-05-23 03:43:48 ----A---- C:\Windows\system32\OpenCL.dll
2014-05-23 03:43:44 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-05-23 03:40:52 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2014-05-23 03:38:08 ----A---- C:\Windows\system32\atiapfxx.exe
2014-05-23 03:38:02 ----A---- C:\Windows\system32\aticalrt64.dll
2014-05-23 03:38:00 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2014-05-23 03:37:52 ----A---- C:\Windows\system32\aticalcl64.dll
2014-05-23 03:37:50 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2014-05-23 03:37:44 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2014-05-23 03:37:34 ----A---- C:\Windows\system32\aticaldd64.dll
2014-05-23 03:35:18 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2014-05-23 03:31:00 ----A---- C:\Windows\system32\mantleaxl64.dll
2014-05-23 03:30:50 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2014-05-23 03:27:46 ----A---- C:\Windows\system32\amdmmcl6.dll
2014-05-23 03:27:42 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2014-05-23 03:25:46 ----A---- C:\Windows\system32\atidemgy.dll
2014-05-23 03:25:38 ----A---- C:\Windows\system32\atimuixx.dll
2014-05-23 03:25:32 ----A---- C:\Windows\system32\atieclxx.exe
2014-05-23 03:25:16 ----A---- C:\Windows\system32\atiesrxx.exe
2014-05-23 03:24:34 ----A---- C:\Windows\system32\atitmm64.dll
2014-05-23 03:18:54 ----A---- C:\Windows\system32\coinst_14.200.dll
2014-05-23 03:12:34 ----A---- C:\Windows\system32\atiadlxx.dll
2014-05-23 03:12:26 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2014-05-23 03:12:16 ----A---- C:\Windows\system32\atig6pxx.dll
2014-05-23 03:12:12 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2014-05-23 03:12:12 ----A---- C:\Windows\system32\atiglpxx.dll
2014-05-23 03:12:10 ----A---- C:\Windows\system32\atig6txx.dll
2014-05-23 03:12:00 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2014-05-23 03:11:52 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2014-05-23 03:11:36 ----A---- C:\Windows\system32\amdave64.dll
2014-05-23 03:11:32 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2014-05-23 03:11:24 ----A---- C:\Windows\system32\atisamu64.dll
2014-05-23 03:11:20 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2014-05-23 03:05:52 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2014-05-22 21:56:56 ----A---- C:\Windows\system32\kdbsdk64.dll
2014-05-22 21:52:44 ----A---- C:\Windows\SYSWOW64\kdbsdk32.dll
2014-05-18 19:55:38 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 19:55:38 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-05-18 19:55:37 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-05-18 19:55:37 ----A---- C:\Windows\system32\rdpudd.dll
2014-05-18 19:55:37 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-05-18 19:55:36 ----A---- C:\Windows\system32\rdpcorets.dll
2014-05-18 18:04:02 ----D---- C:\Analytics
2014-05-15 22:03:46 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-05-15 22:03:46 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-05-15 22:03:46 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-15 22:03:46 ----A---- C:\Windows\system32\mshtml.dll
2014-05-15 21:53:44 ----A---- C:\Windows\system32\shell32.dll
2014-05-15 21:53:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-05-15 21:53:43 ----A---- C:\Windows\system32\aepdu.dll
2014-05-15 21:53:43 ----A---- C:\Windows\system32\aeinv.dll
2014-05-15 21:53:39 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-05-15 21:53:39 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-05-15 21:53:39 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-15 21:53:39 ----A---- C:\Windows\system32\kerberos.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\winlogon.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\wdigest.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\sspicli.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\schannel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\objsel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\lsass.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-15 21:53:38 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-15 21:53:38 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\adprovider.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\secur32.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\credssp.dll
2014-05-09 21:02:48 ----A---- C:\Windows\system32\ativvaxy_cik.dat
2014-05-09 21:00:54 ----A---- C:\Windows\system32\ativvaxy_cik_nd.dat
2014-05-06 18:03:37 ----SD---- C:\Windows\system32\CompatTel
======List of files/folders modified in the last 1 month======
2014-06-03 21:25:04 ----D---- C:\Program Files\trend micro
2014-06-03 21:24:38 ----D---- C:\Windows\temp
2014-06-03 18:54:02 ----D---- C:\Windows\SysWOW64
2014-06-03 18:51:50 ----D---- C:\Windows\System32
2014-06-03 18:51:50 ----D---- C:\Windows\inf
2014-06-03 18:51:50 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-06-03 18:46:53 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2014-06-03 18:46:15 ----D---- C:\Users\Milos\AppData\Roaming\Raptr
2014-06-03 18:46:02 ----D---- C:\Users\Milos\AppData\Roaming\Dropbox
2014-06-03 18:46:00 ----D---- C:\Users\Milos\AppData\Roaming\DropboxMaster
2014-06-03 08:34:44 ----D---- C:\Windows\winsxs
2014-06-03 08:34:43 ----D---- C:\Windows\system32\catroot2
2014-06-03 08:34:43 ----D---- C:\Windows\system32\catroot
2014-06-03 08:33:29 ----D---- C:\Windows\system32\config
2014-06-03 08:33:28 ----D---- C:\Windows
2014-06-03 08:28:40 ----D---- C:\ProgramData\Origin
2014-06-03 08:26:11 ----SHD---- C:\System Volume Information
2014-06-03 08:26:07 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-06-03 08:26:03 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-06-03 08:25:51 ----SHD---- C:\Windows\Installer
2014-06-03 08:25:51 ----D---- C:\ProgramData\Package Cache
2014-06-03 08:25:51 ----D---- C:\Config.Msi
2014-06-03 08:20:00 ----RSD---- C:\Windows\assembly
2014-06-03 08:17:48 ----D---- C:\Windows\Logs
2014-06-03 07:10:10 ----D---- C:\Windows\Tasks
2014-06-03 07:10:10 ----D---- C:\Windows\system32\wfp
2014-06-03 07:10:10 ----D---- C:\Windows\system32\wbem
2014-06-03 07:09:39 ----D---- C:\Windows\system32\Tasks
2014-06-03 07:09:39 ----D---- C:\Windows\system32\DriverStore
2014-06-03 07:09:39 ----D---- C:\Windows\system32\CodeIntegrity
2014-06-03 07:09:38 ----D---- C:\Windows\AppCompat
2014-06-03 07:09:36 ----D---- C:\Windows\registration
2014-06-03 07:09:35 ----D---- C:\ProgramData
2014-06-03 07:09:34 ----RHD---- C:\MSOCache
2014-06-02 21:20:22 ----D---- C:\Windows\Prefetch
2014-06-02 07:41:55 ----D---- C:\Windows\SoftwareDistribution
2014-06-02 07:39:53 ----D---- C:\Windows\Minidump
2014-05-30 23:30:20 ----D---- C:\Windows\Microsoft.NET
2014-05-30 22:49:13 ----D---- C:\Users\Milos\AppData\Roaming\TeamViewer
2014-05-30 21:50:12 ----D---- C:\Windows\system32\drivers
2014-05-30 21:38:31 ----D---- C:\AMD
2014-05-30 21:28:53 ----D---- C:\Windows\SYSWOW64\RTCOM
2014-05-30 21:27:36 ----A---- C:\Windows\system32\RTNUninst64.dll
2014-05-30 21:22:00 ----D---- C:\ProgramData\AMD
2014-05-30 21:21:59 ----D---- C:\Program Files (x86)
2014-05-30 21:02:37 ----D---- C:\Windows\security
2014-05-30 21:02:37 ----D---- C:\Users\Milos\AppData\Roaming\Winamp
2014-05-30 21:02:37 ----D---- C:\Program Files (x86)\Raptr
2014-05-30 21:02:12 ----RD---- C:\Program Files
2014-05-30 21:02:12 ----D---- C:\Program Files\Realtek
2014-05-30 21:02:12 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-05-30 21:02:12 ----D---- C:\Program Files\Common Files
2014-05-30 21:02:12 ----D---- C:\Program Files\AMD
2014-05-30 21:02:11 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-05-30 21:02:11 ----D---- C:\Program Files (x86)\Common Files
2014-05-30 21:02:10 ----D---- C:\Program Files (x86)\ATI Technologies
2014-05-29 23:22:08 ----HD---- C:\Program Files (x86)\Temp
2014-05-25 13:52:21 ----D---- C:\Windows\rescache
2014-05-23 04:28:08 ----A---- C:\Windows\system32\atiuxp64.dll
2014-05-23 04:28:04 ----A---- C:\Windows\system32\aticfx64.dll
2014-05-23 04:27:56 ----A---- C:\Windows\system32\atidxx64.dll
2014-05-18 20:00:06 ----D---- C:\Windows\SYSWOW64\en-US
2014-05-18 20:00:06 ----D---- C:\Windows\system32\en-US
2014-05-18 20:00:06 ----D---- C:\Windows\system32\cs-CZ
2014-05-18 20:00:06 ----D---- C:\Windows\PolicyDefinitions
2014-05-16 08:01:42 ----D---- C:\Windows\debug
2014-05-15 22:04:18 ----D---- C:\ProgramData\Microsoft Help
2014-05-15 22:03:14 ----D---- C:\Windows\system32\MRT
2014-05-15 22:01:00 ----A---- C:\Windows\system32\MRT.exe
2014-05-15 21:53:45 ----D---- C:\Program Files\Common Files\Western Digital
2014-05-14 07:23:21 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-29 568600]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2000-01-01 20464]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-01-25 268512]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-08-22 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2010-08-03 14464]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-12-07 283064]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2014-05-30 31648]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-03-11 133928]
R2 RtNdPt60;Realtek NDIS Protocol Driver; C:\Windows\system32\DRIVERS\RtNdPt60.sys [2011-06-15 32544]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-05-23 15950336]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-05-23 557056]
R3 ASUSFILTER;ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [2011-09-20 46152]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2014-04-08 94720]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2012-08-03 26136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-05-30 3872984]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2000-01-01 358896]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2000-01-01 795632]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2000-01-01 100312]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-05-30 901848]
R3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2009-02-13 14464]
R4 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [2012-10-26 23680]
S3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver); C:\Windows\system32\DRIVERS\ASUSstpt.sys [2011-09-15 24648]
S3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM); C:\Windows\system32\DRIVERS\ASUSumsc.sys [2011-09-15 141896]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 cpuz130;cpuz130; \??\D:\Temp\cpuz130\cpuz_x64.sys []
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2013-06-04 103448]
S3 dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-21 19968]
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 DrvAgent64;DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [2013-12-23 21712]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2013-01-23 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2013-01-23 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 48416]
S3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVlan620.sys [2011-09-16 32360]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2013-06-04 203672]
S3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 48416]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2013-01-23 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2013-01-23 9216]
S3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVLAN620.sys [2011-09-16 32360]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-05-23 239616]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [2012-06-01 920736]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2012-02-02 951936]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2012-02-17 149120]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [2012-10-12 2005504]
R2 CISVC;@%systemroot%\system32\CISVC.EXE,-1; C:\Windows\system32\CISVC.EXE [2009-07-14 19456]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-11-29 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2000-01-01 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2000-01-01 390616]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 23808]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider; D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [2014-03-12 481816]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-06-03 76888]
R2 SOHDms;Sony Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-01-16 495248]
R2 TeamViewer9;TeamViewer 9; D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-04-25 5024576]
R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2013-08-27 93072]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 WDBackup;WD Backup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [2014-05-09 1042808]
R2 WDDriveService;WD Drive Manager; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [2014-05-09 295800]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-03-11 347872]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 SpfService;VAIO Entertainment Common Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-01 289952]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2011-05-27 160768]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 111616]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; D:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-11-17 119408]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SOHDs;Sony Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-12-03 79000]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-04-22 572096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-29 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Run by Milos at 2014-06-03 21:25:04
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 38 GB (34%) free of 114 GB
Total RAM: 16332 MB (79% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:25:06, on 3.6.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe
C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
C:\Program Files (x86)\GIGABYTE\GHOST\GHOSTOPEN.exe
D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\PROGRA~2\Raptr\raptr.exe
D:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
D:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
C:\PROGRA~2\Raptr\raptr_im.exe
D:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
D:\Program Files (x86)\Mozilla Firefox\firefox.exe
D:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Milos.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\Java\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\Java\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Tilt] C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe
O4 - HKLM\..\Run: [Nástroj WD Drive Unlocker] C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
O4 - HKLM\..\Run: [WD Quick View] C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
O4 - HKLM\..\Run: [ghost] C:\Program Files (x86)\GIGABYTE\GHOST\ghostopen.exe
O4 - HKLM\..\Run: [PMBVolumeWatcher] D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [OfficeSyncProcess] "D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKCU\..\Run: [GrooveMonitor] D:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE
O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
O4 - Startup: Dropbox.lnk = Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe
O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WD Backup (WDBackup) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
O23 - Service: WD Drive Manager (WDDriveService) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11431 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k apphost
"C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe"
C:\Windows\system32\CISVC.EXE
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files\Logitech\Gaming Software\LWEMon.exe" /noui
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe"
"C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe"
"C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe"
"C:\Program Files (x86)\GIGABYTE\GHOST\GHOSTOPEN.exe"
"D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
taskeng.exe {FA5E8FFE-8335-4FA0-9AC8-FF3CFC616D1F}
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"D:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe"
"D:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe" -open
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
raptr_im.exe
"D:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe"
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
"D:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe" -hide
"D:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe"
"C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe"
"D:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe" -hide
"D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=5528.1825aad0.951849425 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" -greomni "D:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "D:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "D:\Program Files (x86)\Mozilla Firefox\browser" 260915DCF3A62DA7 5528 "\\.\pipe\gecko-crash-server-pipe.5528" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --proxy-stub-channel=Flash6612.5E0C6010.17526 --host-broker-channel=Flash6612.5E0C6010.20191 --host-pid=6612 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --channel=6648.001CF7C0.528670779 --proxy-stub-channel=Flash6612.5E0C6010.17526 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" --host-npapi-version=27 --type=renderer
"D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=5528.81adbc0.647687636 "C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll" -greomni "D:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "D:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "D:\Program Files (x86)\Mozilla Firefox\browser" 260915DCF3A62DA7 5528 "\\.\pipe\gecko-crash-server-pipe.5528" plugin
"C:\Windows\system32\mmc.exe" "C:\Windows\system32\eventvwr.msc" /s
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
taskeng.exe {5A2E2F6C-CDD6-4C15-931F-6B9B8686806D}
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"D:\Users\Milos\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.google.cz/#hl=cs&source=hp&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.1.4]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.3.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.4.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=D:\Program Files (x86)\Java\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=D:\Program Files (x86)\Java\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=D:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=D:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=D:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.5.0]
"Description"=
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
D:\Program Files (x86)\Mozilla Firefox\components\
npwachk.xpt
D:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.DEU
nppdf32.dll
nppdf32.FRA
nppdf32.JPN
npwachk.dll
C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\extensions\
cs@dictionaries.addons.mozilla.org
ietab@ip.cn
info@djzig.com
jid1-qQSMEVsYTOjgYA@jetpack
{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
RoboForm Toolbar Helper - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2013-09-15 24462040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files (x86)\Java\bin\ssv.dll [2013-12-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files (x86)\Java\bin\jp2ssv.dll [2013-12-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2013-09-15 24462040]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"=C:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-30 7541976]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 1271072]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OfficeSyncProcess"=D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]
"GrooveMonitor"=D:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE [2013-03-06 945856]
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2014-05-15 55360]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2000-01-01 292088]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-11-29 284440]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
""= []
"Tilt"=C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe [2011-04-20 729088]
"Nástroj WD Drive Unlocker"=C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [2012-06-13 1688008]
"WD Quick View"=C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [2014-05-09 5562736]
"ghost"=C:\Program Files (x86)\GIGABYTE\GHOST\ghostopen.exe [2010-02-08 192000]
"PMBVolumeWatcher"=D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2014-03-12 2534936]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-05-22 767200]
C:\Users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2459-05-11 01:51:37 ----A---- C:\Windows\system32\drivers\HECIx64.sys
2014-06-03 21:25:04 ----D---- C:\rsit
2014-06-03 18:53:33 ----A---- C:\Windows\SYSWOW64\WDPABKP.dat
2014-06-02 20:29:47 ----D---- C:\ProgramData\RogueKiller
2014-06-02 20:24:26 ----D---- C:\AdwCleaner
2014-05-30 21:49:59 ----A---- C:\Windows\system32\drivers\TeeDriverx64.sys
2014-05-30 21:46:30 ----A---- C:\Windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 21:45:08 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2014-05-30 21:45:04 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2014-05-30 21:45:04 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys
2014-05-30 21:28:24 ----A---- C:\Windows\system32\YamahaAE.dll
2014-05-30 21:28:23 ----A---- C:\Windows\system32\WavesGUILib64.dll
2014-05-30 21:28:22 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2014-05-30 21:28:21 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtkAPO64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtkApi64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtDataProc64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RTCOM64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2014-05-30 21:28:19 ----A---- C:\Windows\system32\RCoRes64.dat
2014-05-30 21:28:19 ----A---- C:\Windows\system32\RCoInstII64.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxVoiceAPO3064.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxVoiceAPO2064.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxSpeechAPO64.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxAudioVnN64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioVnA64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO6064.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO5064.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO4064.dll
2014-05-30 21:28:17 ----A---- C:\Windows\system32\FMAPO64.dll
2014-05-30 21:27:33 ----A---- C:\Windows\system32\RtNicProp64.dll
2014-05-30 21:27:33 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2014-05-30 21:22:00 ----D---- C:\ProgramData\ATI
2014-05-30 21:21:59 ----D---- C:\Program Files (x86)\AMD AVT
2014-05-29 21:27:22 ----D---- C:\Users\Milos\AppData\Roaming\ATI
2014-05-29 21:18:02 ----D---- C:\Program Files\ATI Technologies
2014-05-23 04:28:16 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2014-05-23 04:28:16 ----A---- C:\Windows\system32\amdhcp64.dll
2014-05-23 04:28:14 ----A---- C:\Windows\system32\atimpc64.dll
2014-05-23 04:28:14 ----A---- C:\Windows\system32\amdpcom64.dll
2014-05-23 04:28:12 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2014-05-23 04:28:12 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2014-05-23 04:28:06 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2014-05-23 04:28:06 ----A---- C:\Windows\system32\atiu9p64.dll
2014-05-23 04:28:04 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2014-05-23 04:28:02 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2014-05-23 04:27:54 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2014-05-23 04:27:48 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2014-05-23 04:27:42 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2014-05-23 04:27:38 ----A---- C:\Windows\system32\atiumd6a.dll
2014-05-23 04:27:34 ----A---- C:\Windows\system32\atiumd64.dll
2014-05-23 04:24:24 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2014-05-23 04:22:08 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2014-05-23 03:55:58 ----A---- C:\Windows\system32\atio6axx.dll
2014-05-23 03:47:48 ----A---- C:\Windows\system32\clinfo.exe
2014-05-23 03:47:36 ----A---- C:\Windows\system32\OpenVideo64.dll
2014-05-23 03:47:30 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2014-05-23 03:47:26 ----A---- C:\Windows\system32\OVDecode64.dll
2014-05-23 03:47:22 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2014-05-23 03:47:18 ----A---- C:\Windows\system32\amdocl64.dll
2014-05-23 03:46:06 ----A---- C:\Windows\system32\mantle64.dll
2014-05-23 03:45:54 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2014-05-23 03:45:38 ----A---- C:\Windows\system32\amdmantle64.dll
2014-05-23 03:45:26 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2014-05-23 03:43:48 ----A---- C:\Windows\system32\OpenCL.dll
2014-05-23 03:43:44 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-05-23 03:40:52 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2014-05-23 03:38:08 ----A---- C:\Windows\system32\atiapfxx.exe
2014-05-23 03:38:02 ----A---- C:\Windows\system32\aticalrt64.dll
2014-05-23 03:38:00 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2014-05-23 03:37:52 ----A---- C:\Windows\system32\aticalcl64.dll
2014-05-23 03:37:50 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2014-05-23 03:37:44 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2014-05-23 03:37:34 ----A---- C:\Windows\system32\aticaldd64.dll
2014-05-23 03:35:18 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2014-05-23 03:31:00 ----A---- C:\Windows\system32\mantleaxl64.dll
2014-05-23 03:30:50 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2014-05-23 03:27:46 ----A---- C:\Windows\system32\amdmmcl6.dll
2014-05-23 03:27:42 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2014-05-23 03:25:46 ----A---- C:\Windows\system32\atidemgy.dll
2014-05-23 03:25:38 ----A---- C:\Windows\system32\atimuixx.dll
2014-05-23 03:25:32 ----A---- C:\Windows\system32\atieclxx.exe
2014-05-23 03:25:16 ----A---- C:\Windows\system32\atiesrxx.exe
2014-05-23 03:24:34 ----A---- C:\Windows\system32\atitmm64.dll
2014-05-23 03:18:54 ----A---- C:\Windows\system32\coinst_14.200.dll
2014-05-23 03:12:34 ----A---- C:\Windows\system32\atiadlxx.dll
2014-05-23 03:12:26 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2014-05-23 03:12:16 ----A---- C:\Windows\system32\atig6pxx.dll
2014-05-23 03:12:12 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2014-05-23 03:12:12 ----A---- C:\Windows\system32\atiglpxx.dll
2014-05-23 03:12:10 ----A---- C:\Windows\system32\atig6txx.dll
2014-05-23 03:12:00 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2014-05-23 03:11:52 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2014-05-23 03:11:36 ----A---- C:\Windows\system32\amdave64.dll
2014-05-23 03:11:32 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2014-05-23 03:11:24 ----A---- C:\Windows\system32\atisamu64.dll
2014-05-23 03:11:20 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2014-05-23 03:05:52 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2014-05-22 21:56:56 ----A---- C:\Windows\system32\kdbsdk64.dll
2014-05-22 21:52:44 ----A---- C:\Windows\SYSWOW64\kdbsdk32.dll
2014-05-18 19:55:38 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 19:55:38 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-05-18 19:55:37 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-05-18 19:55:37 ----A---- C:\Windows\system32\rdpudd.dll
2014-05-18 19:55:37 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-05-18 19:55:36 ----A---- C:\Windows\system32\rdpcorets.dll
2014-05-18 18:04:02 ----D---- C:\Analytics
2014-05-15 22:03:46 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-05-15 22:03:46 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-05-15 22:03:46 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-15 22:03:46 ----A---- C:\Windows\system32\mshtml.dll
2014-05-15 21:53:44 ----A---- C:\Windows\system32\shell32.dll
2014-05-15 21:53:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-05-15 21:53:43 ----A---- C:\Windows\system32\aepdu.dll
2014-05-15 21:53:43 ----A---- C:\Windows\system32\aeinv.dll
2014-05-15 21:53:39 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-05-15 21:53:39 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-05-15 21:53:39 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-15 21:53:39 ----A---- C:\Windows\system32\kerberos.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\winlogon.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\wdigest.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\sspicli.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\schannel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\objsel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\lsass.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-15 21:53:38 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-15 21:53:38 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\adprovider.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\secur32.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\credssp.dll
2014-05-09 21:02:48 ----A---- C:\Windows\system32\ativvaxy_cik.dat
2014-05-09 21:00:54 ----A---- C:\Windows\system32\ativvaxy_cik_nd.dat
2014-05-06 18:03:37 ----SD---- C:\Windows\system32\CompatTel
======List of files/folders modified in the last 1 month======
2014-06-03 21:25:04 ----D---- C:\Program Files\trend micro
2014-06-03 21:24:38 ----D---- C:\Windows\temp
2014-06-03 18:54:02 ----D---- C:\Windows\SysWOW64
2014-06-03 18:51:50 ----D---- C:\Windows\System32
2014-06-03 18:51:50 ----D---- C:\Windows\inf
2014-06-03 18:51:50 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-06-03 18:46:53 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2014-06-03 18:46:15 ----D---- C:\Users\Milos\AppData\Roaming\Raptr
2014-06-03 18:46:02 ----D---- C:\Users\Milos\AppData\Roaming\Dropbox
2014-06-03 18:46:00 ----D---- C:\Users\Milos\AppData\Roaming\DropboxMaster
2014-06-03 08:34:44 ----D---- C:\Windows\winsxs
2014-06-03 08:34:43 ----D---- C:\Windows\system32\catroot2
2014-06-03 08:34:43 ----D---- C:\Windows\system32\catroot
2014-06-03 08:33:29 ----D---- C:\Windows\system32\config
2014-06-03 08:33:28 ----D---- C:\Windows
2014-06-03 08:28:40 ----D---- C:\ProgramData\Origin
2014-06-03 08:26:11 ----SHD---- C:\System Volume Information
2014-06-03 08:26:07 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-06-03 08:26:03 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-06-03 08:25:51 ----SHD---- C:\Windows\Installer
2014-06-03 08:25:51 ----D---- C:\ProgramData\Package Cache
2014-06-03 08:25:51 ----D---- C:\Config.Msi
2014-06-03 08:20:00 ----RSD---- C:\Windows\assembly
2014-06-03 08:17:48 ----D---- C:\Windows\Logs
2014-06-03 07:10:10 ----D---- C:\Windows\Tasks
2014-06-03 07:10:10 ----D---- C:\Windows\system32\wfp
2014-06-03 07:10:10 ----D---- C:\Windows\system32\wbem
2014-06-03 07:09:39 ----D---- C:\Windows\system32\Tasks
2014-06-03 07:09:39 ----D---- C:\Windows\system32\DriverStore
2014-06-03 07:09:39 ----D---- C:\Windows\system32\CodeIntegrity
2014-06-03 07:09:38 ----D---- C:\Windows\AppCompat
2014-06-03 07:09:36 ----D---- C:\Windows\registration
2014-06-03 07:09:35 ----D---- C:\ProgramData
2014-06-03 07:09:34 ----RHD---- C:\MSOCache
2014-06-02 21:20:22 ----D---- C:\Windows\Prefetch
2014-06-02 07:41:55 ----D---- C:\Windows\SoftwareDistribution
2014-06-02 07:39:53 ----D---- C:\Windows\Minidump
2014-05-30 23:30:20 ----D---- C:\Windows\Microsoft.NET
2014-05-30 22:49:13 ----D---- C:\Users\Milos\AppData\Roaming\TeamViewer
2014-05-30 21:50:12 ----D---- C:\Windows\system32\drivers
2014-05-30 21:38:31 ----D---- C:\AMD
2014-05-30 21:28:53 ----D---- C:\Windows\SYSWOW64\RTCOM
2014-05-30 21:27:36 ----A---- C:\Windows\system32\RTNUninst64.dll
2014-05-30 21:22:00 ----D---- C:\ProgramData\AMD
2014-05-30 21:21:59 ----D---- C:\Program Files (x86)
2014-05-30 21:02:37 ----D---- C:\Windows\security
2014-05-30 21:02:37 ----D---- C:\Users\Milos\AppData\Roaming\Winamp
2014-05-30 21:02:37 ----D---- C:\Program Files (x86)\Raptr
2014-05-30 21:02:12 ----RD---- C:\Program Files
2014-05-30 21:02:12 ----D---- C:\Program Files\Realtek
2014-05-30 21:02:12 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-05-30 21:02:12 ----D---- C:\Program Files\Common Files
2014-05-30 21:02:12 ----D---- C:\Program Files\AMD
2014-05-30 21:02:11 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-05-30 21:02:11 ----D---- C:\Program Files (x86)\Common Files
2014-05-30 21:02:10 ----D---- C:\Program Files (x86)\ATI Technologies
2014-05-29 23:22:08 ----HD---- C:\Program Files (x86)\Temp
2014-05-25 13:52:21 ----D---- C:\Windows\rescache
2014-05-23 04:28:08 ----A---- C:\Windows\system32\atiuxp64.dll
2014-05-23 04:28:04 ----A---- C:\Windows\system32\aticfx64.dll
2014-05-23 04:27:56 ----A---- C:\Windows\system32\atidxx64.dll
2014-05-18 20:00:06 ----D---- C:\Windows\SYSWOW64\en-US
2014-05-18 20:00:06 ----D---- C:\Windows\system32\en-US
2014-05-18 20:00:06 ----D---- C:\Windows\system32\cs-CZ
2014-05-18 20:00:06 ----D---- C:\Windows\PolicyDefinitions
2014-05-16 08:01:42 ----D---- C:\Windows\debug
2014-05-15 22:04:18 ----D---- C:\ProgramData\Microsoft Help
2014-05-15 22:03:14 ----D---- C:\Windows\system32\MRT
2014-05-15 22:01:00 ----A---- C:\Windows\system32\MRT.exe
2014-05-15 21:53:45 ----D---- C:\Program Files\Common Files\Western Digital
2014-05-14 07:23:21 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-29 568600]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2000-01-01 20464]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-01-25 268512]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-08-22 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2010-08-03 14464]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-12-07 283064]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2014-05-30 31648]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-03-11 133928]
R2 RtNdPt60;Realtek NDIS Protocol Driver; C:\Windows\system32\DRIVERS\RtNdPt60.sys [2011-06-15 32544]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-05-23 15950336]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-05-23 557056]
R3 ASUSFILTER;ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [2011-09-20 46152]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2014-04-08 94720]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2012-08-03 26136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-05-30 3872984]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2000-01-01 358896]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2000-01-01 795632]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2000-01-01 100312]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-05-30 901848]
R3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2009-02-13 14464]
R4 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [2012-10-26 23680]
S3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver); C:\Windows\system32\DRIVERS\ASUSstpt.sys [2011-09-15 24648]
S3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM); C:\Windows\system32\DRIVERS\ASUSumsc.sys [2011-09-15 141896]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 cpuz130;cpuz130; \??\D:\Temp\cpuz130\cpuz_x64.sys []
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2013-06-04 103448]
S3 dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-21 19968]
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 DrvAgent64;DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [2013-12-23 21712]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2013-01-23 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2013-01-23 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 48416]
S3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVlan620.sys [2011-09-16 32360]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2013-06-04 203672]
S3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 48416]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2013-01-23 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2013-01-23 9216]
S3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVLAN620.sys [2011-09-16 32360]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-05-23 239616]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [2012-06-01 920736]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2012-02-02 951936]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2012-02-17 149120]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [2012-10-12 2005504]
R2 CISVC;@%systemroot%\system32\CISVC.EXE,-1; C:\Windows\system32\CISVC.EXE [2009-07-14 19456]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-11-29 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2000-01-01 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2000-01-01 390616]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 23808]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider; D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [2014-03-12 481816]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-06-03 76888]
R2 SOHDms;Sony Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-01-16 495248]
R2 TeamViewer9;TeamViewer 9; D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-04-25 5024576]
R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2013-08-27 93072]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 WDBackup;WD Backup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [2014-05-09 1042808]
R2 WDDriveService;WD Drive Manager; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [2014-05-09 295800]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-03-11 347872]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 SpfService;VAIO Entertainment Common Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-01 289952]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2011-05-27 160768]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 111616]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; D:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-11-17 119408]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SOHDs;Sony Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-12-03 79000]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-04-22 572096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-29 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
a rovnou přikládám:
# AdwCleaner v3.211 - Report created 02/06/2014 at 20:26:37
# Updated 26/05/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Milos - MILOS-PC
# Running from : D:\Users\Milos\Desktop\adwcleaner_3.211.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
File Deleted : C:\Windows\System32\Tasks\Driver Booster Update
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\AppDataLow\Software
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Mozilla Firefox v29.0.1 (cs)
[ File : C:\Users\Ivanka\AppData\Roaming\Mozilla\Firefox\Profiles\j8qnks6y.default\prefs.js ]
[ File : C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\prefs.js ]
-\\ Google Chrome v33.0.1750.117
[ File : C:\Users\Ivanka\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ File : C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
*************************
AdwCleaner[R0].txt - [1281 octets] - [02/06/2014 20:24:30]
AdwCleaner[S0].txt - [1208 octets] - [02/06/2014 20:26:37]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1268 octets] ##########
# AdwCleaner v3.211 - Report created 03/06/2014 at 21:30:05
# Updated 26/05/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Milos - MILOS-PC
# Running from : D:\Users\Milos\Desktop\adwcleaner_3.211.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
File Deleted : C:\Windows\System32\Tasks\Driver Booster Update
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\AppDataLow\Software
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Mozilla Firefox v29.0.1 (cs)
[ File : C:\Users\Ivanka\AppData\Roaming\Mozilla\Firefox\Profiles\j8qnks6y.default\prefs.js ]
[ File : C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\prefs.js ]
-\\ Google Chrome v33.0.1750.117
[ File : C:\Users\Ivanka\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ File : C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
*************************
AdwCleaner[R0].txt - [2742 octets] - [02/06/2014 20:24:30]
AdwCleaner[R1].txt - [1226 octets] - [02/06/2014 20:50:48]
AdwCleaner[S0].txt - [2616 octets] - [02/06/2014 20:26:37]
AdwCleaner[S1].txt - [1287 octets] - [02/06/2014 20:51:18]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2736 octets] ##########
# AdwCleaner v3.211 - Report created 02/06/2014 at 20:26:37
# Updated 26/05/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Milos - MILOS-PC
# Running from : D:\Users\Milos\Desktop\adwcleaner_3.211.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
File Deleted : C:\Windows\System32\Tasks\Driver Booster Update
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\AppDataLow\Software
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Mozilla Firefox v29.0.1 (cs)
[ File : C:\Users\Ivanka\AppData\Roaming\Mozilla\Firefox\Profiles\j8qnks6y.default\prefs.js ]
[ File : C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\prefs.js ]
-\\ Google Chrome v33.0.1750.117
[ File : C:\Users\Ivanka\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ File : C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
*************************
AdwCleaner[R0].txt - [1281 octets] - [02/06/2014 20:24:30]
AdwCleaner[S0].txt - [1208 octets] - [02/06/2014 20:26:37]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1268 octets] ##########
# AdwCleaner v3.211 - Report created 03/06/2014 at 21:30:05
# Updated 26/05/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Milos - MILOS-PC
# Running from : D:\Users\Milos\Desktop\adwcleaner_3.211.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
File Deleted : C:\Windows\System32\Tasks\Driver Booster Update
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\AppDataLow\Software
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Mozilla Firefox v29.0.1 (cs)
[ File : C:\Users\Ivanka\AppData\Roaming\Mozilla\Firefox\Profiles\j8qnks6y.default\prefs.js ]
[ File : C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\prefs.js ]
-\\ Google Chrome v33.0.1750.117
[ File : C:\Users\Ivanka\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ File : C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
*************************
AdwCleaner[R0].txt - [2742 octets] - [02/06/2014 20:24:30]
AdwCleaner[R1].txt - [1226 octets] - [02/06/2014 20:50:48]
AdwCleaner[S0].txt - [2616 octets] - [02/06/2014 20:26:37]
AdwCleaner[S1].txt - [1287 octets] - [02/06/2014 20:51:18]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2736 octets] ##########
- Rudy
- Site Admin
- Příspěvky: 119541
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Zdravím!
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Logfile of random's system information tool 1.10 (written by random/random)
Run by Milos at 2014-06-03 22:36:20
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 47 GB (41%) free of 114 GB
Total RAM: 16332 MB (80% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:36:23, on 3.6.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
D:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
D:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
D:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
D:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
D:\Program Files (x86)\ASUS\APRP\aprp.exe
D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\PROGRA~2\Raptr\raptr.exe
C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe
D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\GIGABYTE\GHOST\GHOSTOPEN.exe
C:\PROGRA~2\Raptr\raptr_im.exe
D:\Program Files (x86)\Mozilla Firefox\firefox.exe
D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Program Files\trend micro\Milos.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\Java\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\Java\bin\jp2ssv.dll
O4 - HKLM\..\Run: [WD Quick View] C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Tilt] C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [PMBVolumeWatcher] D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [Nástroj WD Drive Unlocker] C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [ghost] C:\Program Files (x86)\GIGABYTE\GHOST\ghostopen.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
O4 - HKCU\..\Run: [OfficeSyncProcess] "D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKCU\..\Run: [GrooveMonitor] D:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE
O4 - Startup: Dropbox.lnk = Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe
O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WD Backup (WDBackup) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
O23 - Service: WD Drive Manager (WDDriveService) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11413 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k apphost
"C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe"
C:\Windows\system32\CISVC.EXE
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
"D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
C:\Windows\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe"
"C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
"taskhost.exe"
taskeng.exe {737B1DB1-6B34-4F7E-82A9-53E459AAAFB1}
taskeng.exe {CAF29141-7644-45BC-A8E1-A6BE4621E4AC}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"D:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe"
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"D:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe" -open
"D:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe" -hide
"D:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"D:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe" -hide
"D:\Program Files (x86)\ASUS\APRP\aprp.exe"
"C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe"
"C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Program Files\Logitech\Gaming Software\LWEMon.exe" /noui
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
C:\Windows\explorer.exe /factory,{ceff45ee-c862-41de-aee2-a022c81eda92} -Embedding
"D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup
"C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe"
"C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\GIGABYTE\GHOST\GHOSTOPEN.exe"
raptr_im.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
"D:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=6408.1a9ee690.1339833742 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" -greomni "D:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "D:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "D:\Program Files (x86)\Mozilla Firefox\browser" 260915DCF3A62DA7 6408 "\\.\pipe\gecko-crash-server-pipe.6408" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --proxy-stub-channel=Flash2672.5BDE6010.9194 --host-broker-channel=Flash2672.5BDE6010.4646 --host-pid=2672 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --channel=6388.001AF730.1930153342 --proxy-stub-channel=Flash2672.5BDE6010.9194 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files\Microsoft Security Client\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 33BFA143-1FEB-82E4-4284-79B7FF94443C -Reinvoke
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe"
"D:\Users\Milos\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.google.cz/#hl=cs&source=hp&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.1.4]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.3.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.4.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=D:\Program Files (x86)\Java\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=D:\Program Files (x86)\Java\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=D:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=D:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=D:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.5.0]
"Description"=
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
D:\Program Files (x86)\Mozilla Firefox\components\
npwachk.xpt
D:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.DEU
nppdf32.dll
nppdf32.FRA
nppdf32.JPN
npwachk.dll
C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\extensions\
cs@dictionaries.addons.mozilla.org
ietab@ip.cn
info@djzig.com
jid1-qQSMEVsYTOjgYA@jetpack
{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
RoboForm Toolbar Helper - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2013-09-15 24462040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files (x86)\Java\bin\ssv.dll [2013-12-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files (x86)\Java\bin\jp2ssv.dll [2013-12-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2013-09-15 24462040]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"=C:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-30 7541976]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 1266912]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2014-05-15 55360]
"OfficeSyncProcess"=D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]
"GrooveMonitor"=D:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE [2013-03-06 945856]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"WD Quick View"=C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [2014-05-09 5562736]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2000-01-01 292088]
"Tilt"=C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe [2011-04-20 729088]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-05-22 767200]
"PMBVolumeWatcher"=D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2014-03-12 2534936]
"Nástroj WD Drive Unlocker"=C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [2012-06-13 1688008]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-11-29 284440]
"ghost"=C:\Program Files (x86)\GIGABYTE\GHOST\ghostopen.exe [2010-02-08 192000]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
C:\Users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2459-05-11 01:51:37 ----A---- C:\Windows\system32\drivers\HECIx64.sys
2014-06-03 22:18:22 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-06-03 22:18:21 ----D---- C:\Program Files\Microsoft Security Client
2014-06-03 21:48:21 ----A---- C:\Windows\SYSWOW64\WDPABKP.dat
2014-06-03 21:29:58 ----A---- C:\Windows\SYSWOW64\sqlite3.dll
2014-06-03 21:25:04 ----D---- C:\rsit
2014-06-02 20:29:47 ----D---- C:\ProgramData\RogueKiller
2014-06-02 20:24:26 ----D---- C:\AdwCleaner
2014-05-30 21:49:59 ----A---- C:\Windows\system32\drivers\TeeDriverx64.sys
2014-05-30 21:46:30 ----A---- C:\Windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 21:45:08 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2014-05-30 21:45:04 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2014-05-30 21:45:04 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys
2014-05-30 21:28:24 ----A---- C:\Windows\system32\YamahaAE.dll
2014-05-30 21:28:23 ----A---- C:\Windows\system32\WavesGUILib64.dll
2014-05-30 21:28:22 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2014-05-30 21:28:21 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtkAPO64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtkApi64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtDataProc64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RTCOM64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2014-05-30 21:28:19 ----A---- C:\Windows\system32\RCoRes64.dat
2014-05-30 21:28:19 ----A---- C:\Windows\system32\RCoInstII64.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxVoiceAPO3064.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxVoiceAPO2064.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxSpeechAPO64.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxAudioVnN64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioVnA64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO6064.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO5064.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO4064.dll
2014-05-30 21:28:17 ----A---- C:\Windows\system32\FMAPO64.dll
2014-05-30 21:27:33 ----A---- C:\Windows\system32\RtNicProp64.dll
2014-05-30 21:27:33 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2014-05-30 21:22:00 ----D---- C:\ProgramData\ATI
2014-05-30 21:21:59 ----D---- C:\Program Files (x86)\AMD AVT
2014-05-29 21:27:22 ----D---- C:\Users\Milos\AppData\Roaming\ATI
2014-05-29 21:18:02 ----D---- C:\Program Files\ATI Technologies
2014-05-23 04:28:16 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2014-05-23 04:28:16 ----A---- C:\Windows\system32\amdhcp64.dll
2014-05-23 04:28:14 ----A---- C:\Windows\system32\atimpc64.dll
2014-05-23 04:28:14 ----A---- C:\Windows\system32\amdpcom64.dll
2014-05-23 04:28:12 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2014-05-23 04:28:12 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2014-05-23 04:28:06 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2014-05-23 04:28:06 ----A---- C:\Windows\system32\atiu9p64.dll
2014-05-23 04:28:04 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2014-05-23 04:28:02 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2014-05-23 04:27:54 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2014-05-23 04:27:48 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2014-05-23 04:27:42 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2014-05-23 04:27:38 ----A---- C:\Windows\system32\atiumd6a.dll
2014-05-23 04:27:34 ----A---- C:\Windows\system32\atiumd64.dll
2014-05-23 04:24:24 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2014-05-23 04:22:08 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2014-05-23 03:55:58 ----A---- C:\Windows\system32\atio6axx.dll
2014-05-23 03:47:48 ----A---- C:\Windows\system32\clinfo.exe
2014-05-23 03:47:36 ----A---- C:\Windows\system32\OpenVideo64.dll
2014-05-23 03:47:30 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2014-05-23 03:47:26 ----A---- C:\Windows\system32\OVDecode64.dll
2014-05-23 03:47:22 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2014-05-23 03:47:18 ----A---- C:\Windows\system32\amdocl64.dll
2014-05-23 03:46:06 ----A---- C:\Windows\system32\mantle64.dll
2014-05-23 03:45:54 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2014-05-23 03:45:38 ----A---- C:\Windows\system32\amdmantle64.dll
2014-05-23 03:45:26 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2014-05-23 03:43:48 ----A---- C:\Windows\system32\OpenCL.dll
2014-05-23 03:43:44 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-05-23 03:40:52 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2014-05-23 03:38:08 ----A---- C:\Windows\system32\atiapfxx.exe
2014-05-23 03:38:02 ----A---- C:\Windows\system32\aticalrt64.dll
2014-05-23 03:38:00 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2014-05-23 03:37:52 ----A---- C:\Windows\system32\aticalcl64.dll
2014-05-23 03:37:50 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2014-05-23 03:37:44 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2014-05-23 03:37:34 ----A---- C:\Windows\system32\aticaldd64.dll
2014-05-23 03:35:18 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2014-05-23 03:31:00 ----A---- C:\Windows\system32\mantleaxl64.dll
2014-05-23 03:30:50 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2014-05-23 03:27:46 ----A---- C:\Windows\system32\amdmmcl6.dll
2014-05-23 03:27:42 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2014-05-23 03:25:46 ----A---- C:\Windows\system32\atidemgy.dll
2014-05-23 03:25:38 ----A---- C:\Windows\system32\atimuixx.dll
2014-05-23 03:25:32 ----A---- C:\Windows\system32\atieclxx.exe
2014-05-23 03:25:16 ----A---- C:\Windows\system32\atiesrxx.exe
2014-05-23 03:24:34 ----A---- C:\Windows\system32\atitmm64.dll
2014-05-23 03:18:54 ----A---- C:\Windows\system32\coinst_14.200.dll
2014-05-23 03:12:34 ----A---- C:\Windows\system32\atiadlxx.dll
2014-05-23 03:12:26 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2014-05-23 03:12:16 ----A---- C:\Windows\system32\atig6pxx.dll
2014-05-23 03:12:12 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2014-05-23 03:12:12 ----A---- C:\Windows\system32\atiglpxx.dll
2014-05-23 03:12:10 ----A---- C:\Windows\system32\atig6txx.dll
2014-05-23 03:12:00 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2014-05-23 03:11:52 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2014-05-23 03:11:36 ----A---- C:\Windows\system32\amdave64.dll
2014-05-23 03:11:32 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2014-05-23 03:11:24 ----A---- C:\Windows\system32\atisamu64.dll
2014-05-23 03:11:20 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2014-05-23 03:05:52 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2014-05-22 21:56:56 ----A---- C:\Windows\system32\kdbsdk64.dll
2014-05-22 21:52:44 ----A---- C:\Windows\SYSWOW64\kdbsdk32.dll
2014-05-18 19:55:38 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 19:55:38 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-05-18 19:55:37 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-05-18 19:55:37 ----A---- C:\Windows\system32\rdpudd.dll
2014-05-18 19:55:37 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-05-18 19:55:36 ----A---- C:\Windows\system32\rdpcorets.dll
2014-05-18 18:04:02 ----D---- C:\Analytics
2014-05-15 22:03:46 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-05-15 22:03:46 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-05-15 22:03:46 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-15 22:03:46 ----A---- C:\Windows\system32\mshtml.dll
2014-05-15 21:53:44 ----A---- C:\Windows\system32\shell32.dll
2014-05-15 21:53:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-05-15 21:53:43 ----A---- C:\Windows\system32\aepdu.dll
2014-05-15 21:53:43 ----A---- C:\Windows\system32\aeinv.dll
2014-05-15 21:53:39 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-05-15 21:53:39 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-05-15 21:53:39 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-15 21:53:39 ----A---- C:\Windows\system32\kerberos.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\winlogon.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\wdigest.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\sspicli.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\schannel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\objsel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\lsass.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-15 21:53:38 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-15 21:53:38 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\adprovider.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\secur32.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\credssp.dll
2014-05-09 21:02:48 ----A---- C:\Windows\system32\ativvaxy_cik.dat
2014-05-09 21:00:54 ----A---- C:\Windows\system32\ativvaxy_cik_nd.dat
2014-05-06 18:03:37 ----SD---- C:\Windows\system32\CompatTel
======List of files/folders modified in the last 1 month======
2014-06-03 22:36:23 ----D---- C:\Windows\temp
2014-06-03 22:36:23 ----D---- C:\Windows\Prefetch
2014-06-03 22:36:21 ----D---- C:\Program Files\trend micro
2014-06-03 22:35:07 ----D---- C:\Users\Milos\AppData\Roaming\Raptr
2014-06-03 22:34:57 ----D---- C:\Users\Milos\AppData\Roaming\Dropbox
2014-06-03 22:34:55 ----D---- C:\Users\Milos\AppData\Roaming\DropboxMaster
2014-06-03 22:34:06 ----D---- C:\Windows\SysWOW64
2014-06-03 22:34:01 ----D---- C:\Windows
2014-06-03 22:33:15 ----D---- C:\Windows\system32\catroot
2014-06-03 22:29:10 ----D---- C:\Windows\system32\config
2014-06-03 22:20:28 ----D---- C:\Windows\System32
2014-06-03 22:20:28 ----D---- C:\Windows\inf
2014-06-03 22:20:28 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-06-03 22:18:24 ----SHD---- C:\Windows\Installer
2014-06-03 22:18:24 ----D---- C:\Config.Msi
2014-06-03 22:18:22 ----D---- C:\Windows\system32\drivers
2014-06-03 22:18:22 ----D---- C:\Program Files (x86)
2014-06-03 22:18:21 ----RD---- C:\Program Files
2014-06-03 22:17:47 ----D---- C:\Windows\SoftwareDistribution
2014-06-03 22:04:06 ----D---- C:\Windows\Logs
2014-06-03 21:57:38 ----D---- C:\Windows\pss
2014-06-03 21:30:06 ----D---- C:\Windows\system32\Tasks
2014-06-03 18:46:53 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2014-06-03 08:34:44 ----D---- C:\Windows\winsxs
2014-06-03 08:34:43 ----D---- C:\Windows\system32\catroot2
2014-06-03 08:28:40 ----D---- C:\ProgramData\Origin
2014-06-03 08:26:11 ----SHD---- C:\System Volume Information
2014-06-03 08:26:07 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-06-03 08:26:03 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-06-03 08:25:51 ----D---- C:\ProgramData\Package Cache
2014-06-03 08:20:00 ----RSD---- C:\Windows\assembly
2014-06-03 07:10:10 ----D---- C:\Windows\Tasks
2014-06-03 07:10:10 ----D---- C:\Windows\system32\wfp
2014-06-03 07:10:10 ----D---- C:\Windows\system32\wbem
2014-06-03 07:09:39 ----D---- C:\Windows\system32\DriverStore
2014-06-03 07:09:39 ----D---- C:\Windows\system32\CodeIntegrity
2014-06-03 07:09:38 ----D---- C:\Windows\AppCompat
2014-06-03 07:09:36 ----D---- C:\Windows\registration
2014-06-03 07:09:35 ----D---- C:\ProgramData
2014-06-03 07:09:34 ----RHD---- C:\MSOCache
2014-06-02 07:39:53 ----D---- C:\Windows\Minidump
2014-05-30 23:30:20 ----D---- C:\Windows\Microsoft.NET
2014-05-30 22:49:13 ----D---- C:\Users\Milos\AppData\Roaming\TeamViewer
2014-05-30 21:38:31 ----D---- C:\AMD
2014-05-30 21:28:53 ----D---- C:\Windows\SYSWOW64\RTCOM
2014-05-30 21:27:36 ----A---- C:\Windows\system32\RTNUninst64.dll
2014-05-30 21:22:00 ----D---- C:\ProgramData\AMD
2014-05-30 21:02:37 ----D---- C:\Windows\security
2014-05-30 21:02:37 ----D---- C:\Users\Milos\AppData\Roaming\Winamp
2014-05-30 21:02:37 ----D---- C:\Program Files (x86)\Raptr
2014-05-30 21:02:12 ----D---- C:\Program Files\Realtek
2014-05-30 21:02:12 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-05-30 21:02:12 ----D---- C:\Program Files\Common Files
2014-05-30 21:02:12 ----D---- C:\Program Files\AMD
2014-05-30 21:02:11 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-05-30 21:02:11 ----D---- C:\Program Files (x86)\Common Files
2014-05-30 21:02:10 ----D---- C:\Program Files (x86)\ATI Technologies
2014-05-29 23:22:08 ----HD---- C:\Program Files (x86)\Temp
2014-05-25 13:52:21 ----D---- C:\Windows\rescache
2014-05-23 04:28:08 ----A---- C:\Windows\system32\atiuxp64.dll
2014-05-23 04:28:04 ----A---- C:\Windows\system32\aticfx64.dll
2014-05-23 04:27:56 ----A---- C:\Windows\system32\atidxx64.dll
2014-05-18 20:00:06 ----D---- C:\Windows\SYSWOW64\en-US
2014-05-18 20:00:06 ----D---- C:\Windows\system32\en-US
2014-05-18 20:00:06 ----D---- C:\Windows\system32\cs-CZ
2014-05-18 20:00:06 ----D---- C:\Windows\PolicyDefinitions
2014-05-16 08:01:42 ----D---- C:\Windows\debug
2014-05-15 22:04:18 ----D---- C:\ProgramData\Microsoft Help
2014-05-15 22:03:14 ----D---- C:\Windows\system32\MRT
2014-05-15 22:01:00 ----A---- C:\Windows\system32\MRT.exe
2014-05-15 21:53:45 ----D---- C:\Program Files\Common Files\Western Digital
2014-05-14 07:23:21 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-29 568600]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2000-01-01 20464]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 248240]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-08-22 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2010-08-03 14464]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-12-07 283064]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2014-05-30 31648]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 134944]
R2 RtNdPt60;Realtek NDIS Protocol Driver; C:\Windows\system32\DRIVERS\RtNdPt60.sys [2011-06-15 32544]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-05-23 15950336]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-05-23 557056]
R3 ASUSFILTER;ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [2011-09-20 46152]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2014-04-08 94720]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2012-08-03 26136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-05-30 3872984]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2000-01-01 358896]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2000-01-01 795632]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2000-01-01 100312]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-05-30 901848]
R3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2009-02-13 14464]
S3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver); C:\Windows\system32\DRIVERS\ASUSstpt.sys [2011-09-15 24648]
S3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM); C:\Windows\system32\DRIVERS\ASUSumsc.sys [2011-09-15 141896]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 cpuz130;cpuz130; \??\D:\Temp\cpuz130\cpuz_x64.sys []
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2013-06-04 103448]
S3 dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-21 19968]
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 DrvAgent64;DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [2013-12-23 21712]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2013-01-23 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2013-01-23 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 48416]
S3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVlan620.sys [2011-09-16 32360]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2013-06-04 203672]
S3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 48416]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2013-01-23 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2013-01-23 9216]
S3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVLAN620.sys [2011-09-16 32360]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-05-23 239616]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [2012-06-01 920736]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2012-02-02 951936]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2012-02-17 149120]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [2012-10-12 2005504]
R2 CISVC;@%systemroot%\system32\CISVC.EXE,-1; C:\Windows\system32\CISVC.EXE [2009-07-14 19456]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-11-29 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2000-01-01 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2000-01-01 390616]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 23808]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider; D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [2014-03-12 481816]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-06-03 76888]
R2 SOHDms;Sony Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-01-16 495248]
R2 TeamViewer9;TeamViewer 9; D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-04-25 5024576]
R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2013-08-27 93072]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 WDBackup;WD Backup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [2014-05-09 1042808]
R2 WDDriveService;WD Drive Manager; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [2014-05-09 295800]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 348376]
R3 SpfService;VAIO Entertainment Common Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-01 289952]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2011-05-27 160768]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 111616]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; D:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-11-17 119408]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SOHDs;Sony Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-12-03 79000]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-04-22 572096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-29 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Run by Milos at 2014-06-03 22:36:20
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 47 GB (41%) free of 114 GB
Total RAM: 16332 MB (80% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:36:23, on 3.6.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
D:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
D:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
D:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
D:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
D:\Program Files (x86)\ASUS\APRP\aprp.exe
D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\PROGRA~2\Raptr\raptr.exe
C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe
D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\GIGABYTE\GHOST\GHOSTOPEN.exe
C:\PROGRA~2\Raptr\raptr_im.exe
D:\Program Files (x86)\Mozilla Firefox\firefox.exe
D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Program Files\trend micro\Milos.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\Java\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\Java\bin\jp2ssv.dll
O4 - HKLM\..\Run: [WD Quick View] C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Tilt] C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [PMBVolumeWatcher] D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [Nástroj WD Drive Unlocker] C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [ghost] C:\Program Files (x86)\GIGABYTE\GHOST\ghostopen.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
O4 - HKCU\..\Run: [OfficeSyncProcess] "D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKCU\..\Run: [GrooveMonitor] D:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE
O4 - Startup: Dropbox.lnk = Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe
O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WD Backup (WDBackup) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
O23 - Service: WD Drive Manager (WDDriveService) - Western Digital Technologies, Inc. - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11413 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k apphost
"C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe"
C:\Windows\system32\CISVC.EXE
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
"D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
C:\Windows\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe"
"C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
"taskhost.exe"
taskeng.exe {737B1DB1-6B34-4F7E-82A9-53E459AAAFB1}
taskeng.exe {CAF29141-7644-45BC-A8E1-A6BE4621E4AC}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"D:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe"
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"D:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe" -open
"D:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe" -hide
"D:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"D:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe" -hide
"D:\Program Files (x86)\ASUS\APRP\aprp.exe"
"C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe"
"C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Program Files\Logitech\Gaming Software\LWEMon.exe" /noui
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
C:\Windows\explorer.exe /factory,{ceff45ee-c862-41de-aee2-a022c81eda92} -Embedding
"D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup
"C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe"
"C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\GIGABYTE\GHOST\GHOSTOPEN.exe"
raptr_im.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
"D:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=6408.1a9ee690.1339833742 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" -greomni "D:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "D:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "D:\Program Files (x86)\Mozilla Firefox\browser" 260915DCF3A62DA7 6408 "\\.\pipe\gecko-crash-server-pipe.6408" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --proxy-stub-channel=Flash2672.5BDE6010.9194 --host-broker-channel=Flash2672.5BDE6010.4646 --host-pid=2672 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --channel=6388.001AF730.1930153342 --proxy-stub-channel=Flash2672.5BDE6010.9194 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files\Microsoft Security Client\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 33BFA143-1FEB-82E4-4284-79B7FF94443C -Reinvoke
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe"
"D:\Users\Milos\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.google.cz/#hl=cs&source=hp&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.1.4]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.3.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.4.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=D:\Program Files (x86)\Java\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=D:\Program Files (x86)\Java\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=D:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=D:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=D:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.5.0]
"Description"=
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
D:\Program Files (x86)\Mozilla Firefox\components\
npwachk.xpt
D:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.DEU
nppdf32.dll
nppdf32.FRA
nppdf32.JPN
npwachk.dll
C:\Users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\extensions\
cs@dictionaries.addons.mozilla.org
ietab@ip.cn
info@djzig.com
jid1-qQSMEVsYTOjgYA@jetpack
{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
RoboForm Toolbar Helper - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2013-09-15 24462040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files (x86)\Java\bin\ssv.dll [2013-12-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files (x86)\Java\bin\jp2ssv.dll [2013-12-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2013-09-15 24462040]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"=C:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-30 7541976]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 1266912]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2014-05-15 55360]
"OfficeSyncProcess"=D:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]
"GrooveMonitor"=D:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE [2013-03-06 945856]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"WD Quick View"=C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [2014-05-09 5562736]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2000-01-01 292088]
"Tilt"=C:\Program Files (x86)\GIGABYTE\GHOST\Tilt.exe [2011-04-20 729088]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-05-22 767200]
"PMBVolumeWatcher"=D:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2014-03-12 2534936]
"Nástroj WD Drive Unlocker"=C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [2012-06-13 1688008]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-11-29 284440]
"ghost"=C:\Program Files (x86)\GIGABYTE\GHOST\ghostopen.exe [2010-02-08 192000]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
C:\Users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"vidc.x264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2459-05-11 01:51:37 ----A---- C:\Windows\system32\drivers\HECIx64.sys
2014-06-03 22:18:22 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-06-03 22:18:21 ----D---- C:\Program Files\Microsoft Security Client
2014-06-03 21:48:21 ----A---- C:\Windows\SYSWOW64\WDPABKP.dat
2014-06-03 21:29:58 ----A---- C:\Windows\SYSWOW64\sqlite3.dll
2014-06-03 21:25:04 ----D---- C:\rsit
2014-06-02 20:29:47 ----D---- C:\ProgramData\RogueKiller
2014-06-02 20:24:26 ----D---- C:\AdwCleaner
2014-05-30 21:49:59 ----A---- C:\Windows\system32\drivers\TeeDriverx64.sys
2014-05-30 21:46:30 ----A---- C:\Windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 21:45:08 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2014-05-30 21:45:04 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2014-05-30 21:45:04 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys
2014-05-30 21:28:24 ----A---- C:\Windows\system32\YamahaAE.dll
2014-05-30 21:28:23 ----A---- C:\Windows\system32\WavesGUILib64.dll
2014-05-30 21:28:22 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2014-05-30 21:28:21 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtkAPO64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtkApi64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RtDataProc64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\RTCOM64.dll
2014-05-30 21:28:20 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2014-05-30 21:28:19 ----A---- C:\Windows\system32\RCoRes64.dat
2014-05-30 21:28:19 ----A---- C:\Windows\system32\RCoInstII64.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxVoiceAPO3064.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxVoiceAPO2064.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxSpeechAPO64.dll
2014-05-30 21:28:19 ----A---- C:\Windows\system32\MaxxAudioVnN64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioVnA64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO6064.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO5064.dll
2014-05-30 21:28:18 ----A---- C:\Windows\system32\MaxxAudioAPO4064.dll
2014-05-30 21:28:17 ----A---- C:\Windows\system32\FMAPO64.dll
2014-05-30 21:27:33 ----A---- C:\Windows\system32\RtNicProp64.dll
2014-05-30 21:27:33 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2014-05-30 21:22:00 ----D---- C:\ProgramData\ATI
2014-05-30 21:21:59 ----D---- C:\Program Files (x86)\AMD AVT
2014-05-29 21:27:22 ----D---- C:\Users\Milos\AppData\Roaming\ATI
2014-05-29 21:18:02 ----D---- C:\Program Files\ATI Technologies
2014-05-23 04:28:16 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2014-05-23 04:28:16 ----A---- C:\Windows\system32\amdhcp64.dll
2014-05-23 04:28:14 ----A---- C:\Windows\system32\atimpc64.dll
2014-05-23 04:28:14 ----A---- C:\Windows\system32\amdpcom64.dll
2014-05-23 04:28:12 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2014-05-23 04:28:12 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2014-05-23 04:28:06 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2014-05-23 04:28:06 ----A---- C:\Windows\system32\atiu9p64.dll
2014-05-23 04:28:04 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2014-05-23 04:28:02 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2014-05-23 04:27:54 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2014-05-23 04:27:48 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2014-05-23 04:27:42 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2014-05-23 04:27:38 ----A---- C:\Windows\system32\atiumd6a.dll
2014-05-23 04:27:34 ----A---- C:\Windows\system32\atiumd64.dll
2014-05-23 04:24:24 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2014-05-23 04:22:08 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2014-05-23 03:55:58 ----A---- C:\Windows\system32\atio6axx.dll
2014-05-23 03:47:48 ----A---- C:\Windows\system32\clinfo.exe
2014-05-23 03:47:36 ----A---- C:\Windows\system32\OpenVideo64.dll
2014-05-23 03:47:30 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2014-05-23 03:47:26 ----A---- C:\Windows\system32\OVDecode64.dll
2014-05-23 03:47:22 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2014-05-23 03:47:18 ----A---- C:\Windows\system32\amdocl64.dll
2014-05-23 03:46:06 ----A---- C:\Windows\system32\mantle64.dll
2014-05-23 03:45:54 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2014-05-23 03:45:38 ----A---- C:\Windows\system32\amdmantle64.dll
2014-05-23 03:45:26 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2014-05-23 03:43:48 ----A---- C:\Windows\system32\OpenCL.dll
2014-05-23 03:43:44 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-05-23 03:40:52 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2014-05-23 03:38:08 ----A---- C:\Windows\system32\atiapfxx.exe
2014-05-23 03:38:02 ----A---- C:\Windows\system32\aticalrt64.dll
2014-05-23 03:38:00 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2014-05-23 03:37:52 ----A---- C:\Windows\system32\aticalcl64.dll
2014-05-23 03:37:50 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2014-05-23 03:37:44 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2014-05-23 03:37:34 ----A---- C:\Windows\system32\aticaldd64.dll
2014-05-23 03:35:18 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2014-05-23 03:31:00 ----A---- C:\Windows\system32\mantleaxl64.dll
2014-05-23 03:30:50 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2014-05-23 03:27:46 ----A---- C:\Windows\system32\amdmmcl6.dll
2014-05-23 03:27:42 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2014-05-23 03:25:46 ----A---- C:\Windows\system32\atidemgy.dll
2014-05-23 03:25:38 ----A---- C:\Windows\system32\atimuixx.dll
2014-05-23 03:25:32 ----A---- C:\Windows\system32\atieclxx.exe
2014-05-23 03:25:16 ----A---- C:\Windows\system32\atiesrxx.exe
2014-05-23 03:24:34 ----A---- C:\Windows\system32\atitmm64.dll
2014-05-23 03:18:54 ----A---- C:\Windows\system32\coinst_14.200.dll
2014-05-23 03:12:34 ----A---- C:\Windows\system32\atiadlxx.dll
2014-05-23 03:12:26 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2014-05-23 03:12:16 ----A---- C:\Windows\system32\atig6pxx.dll
2014-05-23 03:12:12 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2014-05-23 03:12:12 ----A---- C:\Windows\system32\atiglpxx.dll
2014-05-23 03:12:10 ----A---- C:\Windows\system32\atig6txx.dll
2014-05-23 03:12:00 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2014-05-23 03:11:52 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2014-05-23 03:11:36 ----A---- C:\Windows\system32\amdave64.dll
2014-05-23 03:11:32 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2014-05-23 03:11:24 ----A---- C:\Windows\system32\atisamu64.dll
2014-05-23 03:11:20 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2014-05-23 03:05:52 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2014-05-22 21:56:56 ----A---- C:\Windows\system32\kdbsdk64.dll
2014-05-22 21:52:44 ----A---- C:\Windows\SYSWOW64\kdbsdk32.dll
2014-05-18 19:55:38 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 19:55:38 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-05-18 19:55:37 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-05-18 19:55:37 ----A---- C:\Windows\system32\rdpudd.dll
2014-05-18 19:55:37 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-05-18 19:55:36 ----A---- C:\Windows\system32\rdpcorets.dll
2014-05-18 18:04:02 ----D---- C:\Analytics
2014-05-15 22:03:46 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-05-15 22:03:46 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-05-15 22:03:46 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-15 22:03:46 ----A---- C:\Windows\system32\mshtml.dll
2014-05-15 21:53:44 ----A---- C:\Windows\system32\shell32.dll
2014-05-15 21:53:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-05-15 21:53:43 ----A---- C:\Windows\system32\aepdu.dll
2014-05-15 21:53:43 ----A---- C:\Windows\system32\aeinv.dll
2014-05-15 21:53:39 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-05-15 21:53:39 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-05-15 21:53:39 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-15 21:53:39 ----A---- C:\Windows\system32\kerberos.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\winlogon.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\wdigest.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\sspicli.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\schannel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\objsel.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\lsass.exe
2014-05-15 21:53:38 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-15 21:53:38 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-15 21:53:38 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-15 21:53:38 ----A---- C:\Windows\system32\adprovider.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-05-15 21:53:37 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\secur32.dll
2014-05-15 21:53:37 ----A---- C:\Windows\system32\credssp.dll
2014-05-09 21:02:48 ----A---- C:\Windows\system32\ativvaxy_cik.dat
2014-05-09 21:00:54 ----A---- C:\Windows\system32\ativvaxy_cik_nd.dat
2014-05-06 18:03:37 ----SD---- C:\Windows\system32\CompatTel
======List of files/folders modified in the last 1 month======
2014-06-03 22:36:23 ----D---- C:\Windows\temp
2014-06-03 22:36:23 ----D---- C:\Windows\Prefetch
2014-06-03 22:36:21 ----D---- C:\Program Files\trend micro
2014-06-03 22:35:07 ----D---- C:\Users\Milos\AppData\Roaming\Raptr
2014-06-03 22:34:57 ----D---- C:\Users\Milos\AppData\Roaming\Dropbox
2014-06-03 22:34:55 ----D---- C:\Users\Milos\AppData\Roaming\DropboxMaster
2014-06-03 22:34:06 ----D---- C:\Windows\SysWOW64
2014-06-03 22:34:01 ----D---- C:\Windows
2014-06-03 22:33:15 ----D---- C:\Windows\system32\catroot
2014-06-03 22:29:10 ----D---- C:\Windows\system32\config
2014-06-03 22:20:28 ----D---- C:\Windows\System32
2014-06-03 22:20:28 ----D---- C:\Windows\inf
2014-06-03 22:20:28 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-06-03 22:18:24 ----SHD---- C:\Windows\Installer
2014-06-03 22:18:24 ----D---- C:\Config.Msi
2014-06-03 22:18:22 ----D---- C:\Windows\system32\drivers
2014-06-03 22:18:22 ----D---- C:\Program Files (x86)
2014-06-03 22:18:21 ----RD---- C:\Program Files
2014-06-03 22:17:47 ----D---- C:\Windows\SoftwareDistribution
2014-06-03 22:04:06 ----D---- C:\Windows\Logs
2014-06-03 21:57:38 ----D---- C:\Windows\pss
2014-06-03 21:30:06 ----D---- C:\Windows\system32\Tasks
2014-06-03 18:46:53 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2014-06-03 08:34:44 ----D---- C:\Windows\winsxs
2014-06-03 08:34:43 ----D---- C:\Windows\system32\catroot2
2014-06-03 08:28:40 ----D---- C:\ProgramData\Origin
2014-06-03 08:26:11 ----SHD---- C:\System Volume Information
2014-06-03 08:26:07 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-06-03 08:26:03 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-06-03 08:25:51 ----D---- C:\ProgramData\Package Cache
2014-06-03 08:20:00 ----RSD---- C:\Windows\assembly
2014-06-03 07:10:10 ----D---- C:\Windows\Tasks
2014-06-03 07:10:10 ----D---- C:\Windows\system32\wfp
2014-06-03 07:10:10 ----D---- C:\Windows\system32\wbem
2014-06-03 07:09:39 ----D---- C:\Windows\system32\DriverStore
2014-06-03 07:09:39 ----D---- C:\Windows\system32\CodeIntegrity
2014-06-03 07:09:38 ----D---- C:\Windows\AppCompat
2014-06-03 07:09:36 ----D---- C:\Windows\registration
2014-06-03 07:09:35 ----D---- C:\ProgramData
2014-06-03 07:09:34 ----RHD---- C:\MSOCache
2014-06-02 07:39:53 ----D---- C:\Windows\Minidump
2014-05-30 23:30:20 ----D---- C:\Windows\Microsoft.NET
2014-05-30 22:49:13 ----D---- C:\Users\Milos\AppData\Roaming\TeamViewer
2014-05-30 21:38:31 ----D---- C:\AMD
2014-05-30 21:28:53 ----D---- C:\Windows\SYSWOW64\RTCOM
2014-05-30 21:27:36 ----A---- C:\Windows\system32\RTNUninst64.dll
2014-05-30 21:22:00 ----D---- C:\ProgramData\AMD
2014-05-30 21:02:37 ----D---- C:\Windows\security
2014-05-30 21:02:37 ----D---- C:\Users\Milos\AppData\Roaming\Winamp
2014-05-30 21:02:37 ----D---- C:\Program Files (x86)\Raptr
2014-05-30 21:02:12 ----D---- C:\Program Files\Realtek
2014-05-30 21:02:12 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-05-30 21:02:12 ----D---- C:\Program Files\Common Files
2014-05-30 21:02:12 ----D---- C:\Program Files\AMD
2014-05-30 21:02:11 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-05-30 21:02:11 ----D---- C:\Program Files (x86)\Common Files
2014-05-30 21:02:10 ----D---- C:\Program Files (x86)\ATI Technologies
2014-05-29 23:22:08 ----HD---- C:\Program Files (x86)\Temp
2014-05-25 13:52:21 ----D---- C:\Windows\rescache
2014-05-23 04:28:08 ----A---- C:\Windows\system32\atiuxp64.dll
2014-05-23 04:28:04 ----A---- C:\Windows\system32\aticfx64.dll
2014-05-23 04:27:56 ----A---- C:\Windows\system32\atidxx64.dll
2014-05-18 20:00:06 ----D---- C:\Windows\SYSWOW64\en-US
2014-05-18 20:00:06 ----D---- C:\Windows\system32\en-US
2014-05-18 20:00:06 ----D---- C:\Windows\system32\cs-CZ
2014-05-18 20:00:06 ----D---- C:\Windows\PolicyDefinitions
2014-05-16 08:01:42 ----D---- C:\Windows\debug
2014-05-15 22:04:18 ----D---- C:\ProgramData\Microsoft Help
2014-05-15 22:03:14 ----D---- C:\Windows\system32\MRT
2014-05-15 22:01:00 ----A---- C:\Windows\system32\MRT.exe
2014-05-15 21:53:45 ----D---- C:\Program Files\Common Files\Western Digital
2014-05-14 07:23:21 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-29 568600]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2000-01-01 20464]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 248240]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-08-22 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2010-08-03 14464]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-12-07 283064]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2014-05-30 31648]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 134944]
R2 RtNdPt60;Realtek NDIS Protocol Driver; C:\Windows\system32\DRIVERS\RtNdPt60.sys [2011-06-15 32544]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-05-23 15950336]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-05-23 557056]
R3 ASUSFILTER;ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [2011-09-20 46152]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2014-04-08 94720]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2012-08-03 26136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-05-30 3872984]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2000-01-01 358896]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2000-01-01 795632]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2000-01-01 100312]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-05-30 901848]
R3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2009-02-13 14464]
S3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver); C:\Windows\system32\DRIVERS\ASUSstpt.sys [2011-09-15 24648]
S3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM); C:\Windows\system32\DRIVERS\ASUSumsc.sys [2011-09-15 141896]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 cpuz130;cpuz130; \??\D:\Temp\cpuz130\cpuz_x64.sys []
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2013-06-04 103448]
S3 dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-21 19968]
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 DrvAgent64;DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [2013-12-23 21712]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2013-01-23 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2013-01-23 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 48416]
S3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVlan620.sys [2011-09-16 32360]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2013-06-04 203672]
S3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 48416]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2013-01-23 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2013-01-23 9216]
S3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVLAN620.sys [2011-09-16 32360]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-05-23 239616]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [2012-06-01 920736]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2012-02-02 951936]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2012-02-17 149120]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [2012-10-12 2005504]
R2 CISVC;@%systemroot%\system32\CISVC.EXE,-1; C:\Windows\system32\CISVC.EXE [2009-07-14 19456]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-11-29 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2000-01-01 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2000-01-01 390616]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 23808]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider; D:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [2014-03-12 481816]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-06-03 76888]
R2 SOHDms;Sony Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-01-16 495248]
R2 TeamViewer9;TeamViewer 9; D:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-04-25 5024576]
R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2013-08-27 93072]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 WDBackup;WD Backup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [2014-05-09 1042808]
R2 WDDriveService;WD Drive Manager; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [2014-05-09 295800]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 348376]
R3 SpfService;VAIO Entertainment Common Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-01 289952]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2011-05-27 160768]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 111616]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; D:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-11-17 119408]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SOHDs;Sony Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-12-03 79000]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-04-22 572096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-29 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119541
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Log je již OK. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Dobrý den,
bohužel, ke zlepšení nedošlo.
Stále systém nabíhá s mezipauzou, kdy se nějaký čas nic neděje a služby včetně antiviru nenaběhnou.
V logu událostí jsou pak tyto hlášky:
Při čekání na odezvu transakce služby IPBusEnum bylo dosaženo časového limitu (30000 ms). ID události 7011
Při čekání na odezvu transakce služby AudioEndpointBuilder bylo dosaženo časového limitu (30000 ms). ID události 7011
Při čekání na odezvu transakce služby TrkWks bylo dosaženo časového limitu (30000 ms). ID události 7011
Služba Klient služby Sledování distribuovaných odkazů neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
bohužel, ke zlepšení nedošlo.
Stále systém nabíhá s mezipauzou, kdy se nějaký čas nic neděje a služby včetně antiviru nenaběhnou.
V logu událostí jsou pak tyto hlášky:
Při čekání na odezvu transakce služby IPBusEnum bylo dosaženo časového limitu (30000 ms). ID události 7011
Při čekání na odezvu transakce služby AudioEndpointBuilder bylo dosaženo časového limitu (30000 ms). ID události 7011
Při čekání na odezvu transakce služby TrkWks bylo dosaženo časového limitu (30000 ms). ID události 7011
Služba Klient služby Sledování distribuovaných odkazů neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
- Rudy
- Site Admin
- Příspěvky: 119541
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Ještě poprosím o log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se
jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine
aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,
pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k
nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
ComboFix 14-06-04.01 - Milos 05.06.2014 20:59:17.11.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.16332.13884 [GMT 2:00]
Spuštěný z: d:\users\Milos\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-05 do 2014-06-05 )))))))))))))))))))))))))))))))
.
.
2459-05-10 23:51 . 2459-05-10 23:51 64624 ----a-w- c:\windows\system32\drivers\HECIx64.sys
2014-06-05 19:01 . 2014-06-05 19:01 -------- d-----w- c:\users\Milos\AppData\Local\temp
2014-06-04 20:01 . 2014-06-04 20:01 -------- d-----w- c:\users\Milos\AppData\Local\ATI
2014-06-04 05:13 . 2014-06-04 05:13 -------- d-----w- C:\rsit
2014-06-03 20:18 . 2014-05-19 23:18 10702536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F78EDCD9-4DEE-4F2C-B1BF-99651B0FB138}\mpengine.dll
2014-06-03 19:29 . 2010-08-30 06:34 536576 ----a-w- c:\windows\SysWow64\sqlite3.dll
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieUserList
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieSiteList
2014-06-02 18:29 . 2014-06-05 18:37 -------- d-----w- c:\programdata\RogueKiller
2014-06-02 18:24 . 2014-06-05 18:27 -------- d-----w- C:\AdwCleaner
2014-05-30 19:49 . 2000-01-01 00:00 100312 ----a-w- c:\windows\system32\drivers\TeeDriverx64.sys
2014-05-30 19:46 . 2014-05-30 19:46 31648 ----a-w- c:\windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 19:45 . 2000-01-01 00:00 795632 ----a-w- c:\windows\system32\drivers\iusb3xhc.sys
2014-05-30 19:45 . 2000-01-01 00:00 358896 ----a-w- c:\windows\system32\drivers\iusb3hub.sys
2014-05-30 19:45 . 2000-01-01 00:00 20464 ----a-w- c:\windows\system32\drivers\iusb3hcs.sys
2014-05-30 19:27 . 2014-05-30 19:27 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
2014-05-30 19:27 . 2014-05-30 19:27 901848 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2014-05-30 19:22 . 2014-05-30 19:22 -------- d-----w- c:\programdata\ATI
2014-05-30 19:21 . 2014-05-30 19:21 -------- d-----w- c:\program files (x86)\AMD AVT
2014-05-30 14:39 . 2014-05-30 14:39 -------- d-----w- c:\users\Ivanka\AppData\Roaming\ATI
2014-05-29 19:27 . 2014-05-29 19:27 -------- d-----w- c:\users\Milos\AppData\Roaming\ATI
2014-05-29 19:18 . 2014-05-30 19:21 -------- d-----w- c:\program files\ATI Technologies
2014-05-23 02:28 . 2014-05-23 02:28 127872 ----a-w- c:\windows\system32\amdhcp64.dll
2014-05-23 02:28 . 2014-05-23 02:28 117560 ----a-w- c:\windows\SysWow64\amdhcp32.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\atimpc64.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\amdpcom64.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2014-05-23 02:28 . 2014-05-23 02:28 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2014-05-23 02:28 . 2014-05-23 02:28 117584 ----a-w- c:\windows\system32\atiu9p64.dll
2014-05-23 02:28 . 2014-05-23 02:28 99520 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2014-05-23 02:28 . 2014-05-23 02:28 1108432 ----a-w- c:\windows\SysWow64\aticfx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 9015224 ----a-w- c:\windows\SysWow64\atidxx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 7102496 ----a-w- c:\windows\SysWow64\atiumdva.dll
2014-05-23 02:27 . 2014-05-23 02:27 6879016 ----a-w- c:\windows\SysWow64\atiumdag.dll
2014-05-23 02:27 . 2014-05-23 02:27 7892000 ----a-w- c:\windows\system32\atiumd6a.dll
2014-05-23 02:27 . 2014-05-23 02:27 8108312 ----a-w- c:\windows\system32\atiumd64.dll
2014-05-23 02:24 . 2014-05-23 02:24 276192 ----a-w- c:\windows\system32\drivers\amdacpksd.sys
2014-05-23 02:22 . 2014-05-23 02:22 15950336 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2014-05-23 01:55 . 2014-05-23 01:55 27529216 ----a-w- c:\windows\system32\atio6axx.dll
2014-05-23 01:47 . 2014-05-23 01:47 231424 ----a-w- c:\windows\system32\clinfo.exe
2014-05-23 01:47 . 2014-05-23 01:47 98816 ----a-w- c:\windows\system32\OpenVideo64.dll
2014-05-23 01:47 . 2014-05-23 01:47 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2014-05-23 01:47 . 2014-05-23 01:47 86528 ----a-w- c:\windows\system32\OVDecode64.dll
2014-05-23 01:47 . 2014-05-23 01:47 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll
2014-05-23 01:47 . 2014-05-23 01:47 32874496 ----a-w- c:\windows\system32\amdocl64.dll
2014-05-23 01:46 . 2014-05-23 01:46 127488 ----a-w- c:\windows\system32\mantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 113664 ----a-w- c:\windows\SysWow64\mantle32.dll
2014-05-23 01:45 . 2014-05-23 01:45 5224960 ----a-w- c:\windows\system32\amdmantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 27841024 ----a-w- c:\windows\SysWow64\amdocl.dll
2014-05-23 01:43 . 2014-05-23 01:43 65024 ----a-w- c:\windows\system32\OpenCL.dll
2014-05-23 01:43 . 2014-05-23 01:43 58880 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-05-23 01:40 . 2014-05-23 01:40 23028224 ----a-w- c:\windows\SysWow64\atioglxx.dll
2014-05-23 01:38 . 2014-05-23 01:38 366592 ----a-w- c:\windows\system32\atiapfxx.exe
2014-05-23 01:38 . 2014-05-23 01:38 62464 ----a-w- c:\windows\system32\aticalrt64.dll
2014-05-23 01:38 . 2014-05-23 01:38 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll
2014-05-23 01:37 . 2014-05-23 01:37 55808 ----a-w- c:\windows\system32\aticalcl64.dll
2014-05-23 01:37 . 2014-05-23 01:37 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll
2014-05-23 01:37 . 2014-05-23 01:37 4180992 ----a-w- c:\windows\SysWow64\amdmantle32.dll
2014-05-23 01:37 . 2014-05-23 01:37 15716352 ----a-w- c:\windows\system32\aticaldd64.dll
2014-05-23 01:35 . 2014-05-23 01:35 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll
2014-05-23 01:31 . 2014-05-23 01:31 91648 ----a-w- c:\windows\system32\mantleaxl64.dll
2014-05-23 01:30 . 2014-05-23 01:30 85504 ----a-w- c:\windows\SysWow64\mantleaxl32.dll
2014-05-23 01:27 . 2014-05-23 01:27 48128 ----a-w- c:\windows\system32\amdmmcl6.dll
2014-05-23 01:27 . 2014-05-23 01:27 37888 ----a-w- c:\windows\SysWow64\amdmmcl.dll
2014-05-23 01:25 . 2014-05-23 01:25 442368 ----a-w- c:\windows\system32\atidemgy.dll
2014-05-23 01:25 . 2014-05-23 01:25 31232 ----a-w- c:\windows\system32\atimuixx.dll
2014-05-23 01:25 . 2014-05-23 01:25 588800 ----a-w- c:\windows\system32\atieclxx.exe
2014-05-23 01:25 . 2014-05-23 01:25 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2014-05-23 01:24 . 2014-05-23 01:24 190976 ----a-w- c:\windows\system32\atitmm64.dll
2014-05-23 01:18 . 2014-05-23 01:18 826368 ----a-w- c:\windows\system32\coinst_14.200.dll
2014-05-23 01:12 . 2014-05-23 01:12 1207296 ----a-w- c:\windows\system32\atiadlxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 898560 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2014-05-23 01:12 . 2014-05-23 01:12 75264 ----a-w- c:\windows\system32\atig6pxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\system32\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 146944 ----a-w- c:\windows\system32\atig6txx.dll
2014-05-23 01:12 . 2014-05-23 01:12 133632 ----a-w- c:\windows\SysWow64\atigktxx.dll
2014-05-23 01:11 . 2014-05-23 01:11 557056 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2014-05-23 01:11 . 2014-05-23 01:11 95744 ----a-w- c:\windows\system32\amdave64.dll
2014-05-23 01:11 . 2014-05-23 01:11 90112 ----a-w- c:\windows\SysWow64\amdave32.dll
2014-05-23 01:11 . 2014-05-23 01:11 89088 ----a-w- c:\windows\system32\atisamu64.dll
2014-05-23 01:11 . 2014-05-23 01:11 80896 ----a-w- c:\windows\SysWow64\atisamu32.dll
2014-05-23 01:05 . 2014-05-23 01:05 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2014-05-22 19:56 . 2014-05-22 19:56 51200 ----a-w- c:\windows\system32\kdbsdk64.dll
2014-05-22 19:52 . 2014-05-22 19:52 38912 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2014-05-18 17:55 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2014-05-18 17:55 . 2012-08-23 13:24 15360 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 17:55 . 2012-08-23 14:13 243200 ----a-w- c:\windows\system32\rdpudd.dll
2014-05-18 17:55 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 09:51 3174912 ----a-w- c:\windows\system32\rdpcorets.dll
2014-05-18 16:04 . 2014-05-18 16:04 -------- d-----w- C:\Analytics
2014-05-15 20:03 . 2014-05-06 04:40 23544320 ----a-w- c:\windows\system32\mshtml.dll
2014-05-15 20:03 . 2014-05-06 04:17 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:07 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:00 84992 ----a-w- c:\windows\system32\mshtmled.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-06-04 20:44 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2014-06-04 20:24 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2014-06-03 06:26 . 2012-12-14 19:01 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2014-05-30 19:27 . 2012-08-29 21:46 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2014-05-23 02:28 . 2013-11-22 16:26 143304 ----a-w- c:\windows\system32\atiuxp64.dll
2014-05-23 02:28 . 2013-11-22 16:26 1328352 ----a-w- c:\windows\system32\aticfx64.dll
2014-05-23 02:27 . 2013-11-22 16:26 10516488 ----a-w- c:\windows\system32\atidxx64.dll
2014-05-15 20:01 . 2012-08-29 18:56 93223848 ----a-w- c:\windows\system32\MRT.exe
2014-05-14 05:23 . 2012-08-29 20:14 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-14 05:23 . 2012-08-29 20:14 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-13 18:59 . 2013-01-05 20:43 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2014-04-15 00:34 . 2014-04-15 00:34 1070232 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2014-04-08 14:20 . 2014-04-08 14:20 94720 ----a-w- c:\windows\system32\drivers\AtihdW76.sys
2014-04-08 14:18 . 2014-04-08 14:18 110080 ----a-w- c:\windows\system32\DelayAPO.dll
2014-03-31 07:35 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-20 20:10 . 2014-03-20 20:10 899320 ----a-w- c:\windows\system32\sl3apo64.dll
2014-03-20 20:10 . 2014-03-20 20:10 724728 ----a-w- c:\windows\system32\sltech64.dll
2014-03-20 20:10 . 2014-03-20 20:10 2825432 ----a-w- c:\windows\system32\RtPgEx64.dll
2014-03-20 20:10 . 2014-03-20 20:10 245496 ----a-w- c:\windows\system32\slprp64.dll
2014-03-20 20:10 . 2014-03-20 20:10 1045752 ----a-w- c:\windows\system32\slcnt64.dll
2014-03-20 20:10 . 2014-03-20 20:10 942384 ----a-w- c:\windows\system32\NAHIMICAPOSettingsIPC.dll
2014-03-20 20:10 . 2014-03-20 20:10 5752072 ----a-w- c:\windows\system32\NAHIMICAPOlfx.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Raptr"="c:\progra~2\Raptr\raptrstub.exe" [2014-05-14 55360]
"OfficeSyncProcess"="d:\program files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" [2013-04-22 720064]
"GrooveMonitor"="d:\program files (x86)\Microsoft Office\Office14\GROOVEMN.EXE" [2013-03-06 945856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"WD Quick View"="c:\program files (x86)\Western Digital\WD Quick View\WDDMStatus.exe" [2014-05-09 5562736]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2000-01-01 292088]
"Tilt"="c:\program files (x86)\GIGABYTE\GHOST\Tilt.exe" [2011-04-20 729088]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2014-05-22 767200]
"PMBVolumeWatcher"="d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" [2014-03-12 2534936]
"Nástroj WD Drive Unlocker"="c:\program files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe" [2012-06-13 1688008]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-29 284440]
"ghost"="c:\program files (x86)\GIGABYTE\GHOST\ghostopen.exe" [2010-02-08 192000]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
.
c:\users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-20 33322312]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled]
"CHotkey"=mHotkey.exe
"PMBVolumeWatcher"=d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
"Adobe Reader Speed Launcher"="d:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver);c:\windows\system32\DRIVERS\ASUSstpt.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSstpt.sys [x]
R3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM);c:\windows\system32\DRIVERS\ASUSumsc.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSumsc.sys [x]
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys;c:\windows\SYSNATIVE\DRIVERS\BthAvrcp.sys [x]
R3 cpuz130;cpuz130;d:\temp\cpuz130\cpuz_x64.sys;d:\temp\cpuz130\cpuz_x64.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x]
R3 DrvAgent64;DrvAgent64;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVlan620.sys [x]
R3 SOHDs;Sony Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVLAN620.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys;SysWow64\drivers\AsUpIO.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO64A.SYS;c:\windows\SYSNATIVE\drivers\HWiNFO64A.SYS [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 asComSvc;ASUS Com Service;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [x]
S2 asHmComSvc;ASUS HM Com Service;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [x]
S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [x]
S2 AsusFanControlService;AsusFanControlService;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [x]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [x]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys;c:\windows\SYSNATIVE\DRIVERS\RtNdPt60.sys [x]
S2 SOHDms;Sony Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [x]
S2 TeamViewer9;TeamViewer 9;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x]
S2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [x]
S2 WDBackup;WD Backup;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [x]
S2 WDDriveService;WD Drive Manager;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [x]
S3 ASUSFILTER;ASUSFILTER;SysWow64\drivers\ASUSFILTER.sys;SysWow64\drivers\ASUSFILTER.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
S4 IOMap;IOMap;c:\windows\system32\drivers\IOMap64.sys;c:\windows\SYSNATIVE\drivers\IOMap64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
iissvcs REG_MULTI_SZ w3svc was
apphost REG_MULTI_SZ apphostsvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-02-21 17:21 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.117\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-06-05 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-29 05:23]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2014-05-30 7541976]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mDefault_Search_URL = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
mSearch Bar = hxxp://www.google.com
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.google.cz/#hl=cs&source=hp&q=
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QImageIOHandlerFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"qgif4.dll"=multi:"2011-10-10T17:42\00gif\00\00"
"qico4.dll"=multi:"2011-10-10T17:42\00ico\00\00"
"qjpeg4.dll"=multi:"2011-10-10T17:42\00jpeg\00jpg\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QTextCodecFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"2011-10-10T17:42\00GB18030\00GBK\00GB2312\00CP936\00MS936\00windows-936\00MIB: 114\00MIB: 113\00MIB: 2025\00\00"
"qkrcodecs4.dll"=multi:"2011-10-10T17:42\00EUC-KR\00cp949\00MIB: 38\00MIB: -949\00\00"
"qtwcodecs4.dll"=multi:"2011-10-10T17:42\00Big5\00Big5-HKSCS\00Big5-ETen\00CP950\00MIB: 2026\00MIB: 2101\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpcodecs4.dll"=multi:"40602\000\00Windows msvc release full-config\002011-10-10T17:42\00\00"
"qjpcodecsd4.dll"=multi:"40703\001\00Windows msvc debug full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qkrcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qtwcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"Microsoft.VC80.CRT.manifest"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"msvcr80.dll"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"qgif4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qico4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpeg4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
Celkový čas: 2014-06-05 21:02:34
ComboFix-quarantined-files.txt 2014-06-05 19:02
.
Před spuštěním: Volných bajtů: 46 881 820 672
Po spuštění: Volných bajtů: 46 627 155 968
.
- - End Of File - - D0D58C36E06017DAD2670A6F76854167
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.16332.13884 [GMT 2:00]
Spuštěný z: d:\users\Milos\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-05 do 2014-06-05 )))))))))))))))))))))))))))))))
.
.
2459-05-10 23:51 . 2459-05-10 23:51 64624 ----a-w- c:\windows\system32\drivers\HECIx64.sys
2014-06-05 19:01 . 2014-06-05 19:01 -------- d-----w- c:\users\Milos\AppData\Local\temp
2014-06-04 20:01 . 2014-06-04 20:01 -------- d-----w- c:\users\Milos\AppData\Local\ATI
2014-06-04 05:13 . 2014-06-04 05:13 -------- d-----w- C:\rsit
2014-06-03 20:18 . 2014-05-19 23:18 10702536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F78EDCD9-4DEE-4F2C-B1BF-99651B0FB138}\mpengine.dll
2014-06-03 19:29 . 2010-08-30 06:34 536576 ----a-w- c:\windows\SysWow64\sqlite3.dll
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieUserList
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieSiteList
2014-06-02 18:29 . 2014-06-05 18:37 -------- d-----w- c:\programdata\RogueKiller
2014-06-02 18:24 . 2014-06-05 18:27 -------- d-----w- C:\AdwCleaner
2014-05-30 19:49 . 2000-01-01 00:00 100312 ----a-w- c:\windows\system32\drivers\TeeDriverx64.sys
2014-05-30 19:46 . 2014-05-30 19:46 31648 ----a-w- c:\windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 19:45 . 2000-01-01 00:00 795632 ----a-w- c:\windows\system32\drivers\iusb3xhc.sys
2014-05-30 19:45 . 2000-01-01 00:00 358896 ----a-w- c:\windows\system32\drivers\iusb3hub.sys
2014-05-30 19:45 . 2000-01-01 00:00 20464 ----a-w- c:\windows\system32\drivers\iusb3hcs.sys
2014-05-30 19:27 . 2014-05-30 19:27 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
2014-05-30 19:27 . 2014-05-30 19:27 901848 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2014-05-30 19:22 . 2014-05-30 19:22 -------- d-----w- c:\programdata\ATI
2014-05-30 19:21 . 2014-05-30 19:21 -------- d-----w- c:\program files (x86)\AMD AVT
2014-05-30 14:39 . 2014-05-30 14:39 -------- d-----w- c:\users\Ivanka\AppData\Roaming\ATI
2014-05-29 19:27 . 2014-05-29 19:27 -------- d-----w- c:\users\Milos\AppData\Roaming\ATI
2014-05-29 19:18 . 2014-05-30 19:21 -------- d-----w- c:\program files\ATI Technologies
2014-05-23 02:28 . 2014-05-23 02:28 127872 ----a-w- c:\windows\system32\amdhcp64.dll
2014-05-23 02:28 . 2014-05-23 02:28 117560 ----a-w- c:\windows\SysWow64\amdhcp32.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\atimpc64.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\amdpcom64.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2014-05-23 02:28 . 2014-05-23 02:28 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2014-05-23 02:28 . 2014-05-23 02:28 117584 ----a-w- c:\windows\system32\atiu9p64.dll
2014-05-23 02:28 . 2014-05-23 02:28 99520 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2014-05-23 02:28 . 2014-05-23 02:28 1108432 ----a-w- c:\windows\SysWow64\aticfx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 9015224 ----a-w- c:\windows\SysWow64\atidxx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 7102496 ----a-w- c:\windows\SysWow64\atiumdva.dll
2014-05-23 02:27 . 2014-05-23 02:27 6879016 ----a-w- c:\windows\SysWow64\atiumdag.dll
2014-05-23 02:27 . 2014-05-23 02:27 7892000 ----a-w- c:\windows\system32\atiumd6a.dll
2014-05-23 02:27 . 2014-05-23 02:27 8108312 ----a-w- c:\windows\system32\atiumd64.dll
2014-05-23 02:24 . 2014-05-23 02:24 276192 ----a-w- c:\windows\system32\drivers\amdacpksd.sys
2014-05-23 02:22 . 2014-05-23 02:22 15950336 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2014-05-23 01:55 . 2014-05-23 01:55 27529216 ----a-w- c:\windows\system32\atio6axx.dll
2014-05-23 01:47 . 2014-05-23 01:47 231424 ----a-w- c:\windows\system32\clinfo.exe
2014-05-23 01:47 . 2014-05-23 01:47 98816 ----a-w- c:\windows\system32\OpenVideo64.dll
2014-05-23 01:47 . 2014-05-23 01:47 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2014-05-23 01:47 . 2014-05-23 01:47 86528 ----a-w- c:\windows\system32\OVDecode64.dll
2014-05-23 01:47 . 2014-05-23 01:47 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll
2014-05-23 01:47 . 2014-05-23 01:47 32874496 ----a-w- c:\windows\system32\amdocl64.dll
2014-05-23 01:46 . 2014-05-23 01:46 127488 ----a-w- c:\windows\system32\mantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 113664 ----a-w- c:\windows\SysWow64\mantle32.dll
2014-05-23 01:45 . 2014-05-23 01:45 5224960 ----a-w- c:\windows\system32\amdmantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 27841024 ----a-w- c:\windows\SysWow64\amdocl.dll
2014-05-23 01:43 . 2014-05-23 01:43 65024 ----a-w- c:\windows\system32\OpenCL.dll
2014-05-23 01:43 . 2014-05-23 01:43 58880 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-05-23 01:40 . 2014-05-23 01:40 23028224 ----a-w- c:\windows\SysWow64\atioglxx.dll
2014-05-23 01:38 . 2014-05-23 01:38 366592 ----a-w- c:\windows\system32\atiapfxx.exe
2014-05-23 01:38 . 2014-05-23 01:38 62464 ----a-w- c:\windows\system32\aticalrt64.dll
2014-05-23 01:38 . 2014-05-23 01:38 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll
2014-05-23 01:37 . 2014-05-23 01:37 55808 ----a-w- c:\windows\system32\aticalcl64.dll
2014-05-23 01:37 . 2014-05-23 01:37 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll
2014-05-23 01:37 . 2014-05-23 01:37 4180992 ----a-w- c:\windows\SysWow64\amdmantle32.dll
2014-05-23 01:37 . 2014-05-23 01:37 15716352 ----a-w- c:\windows\system32\aticaldd64.dll
2014-05-23 01:35 . 2014-05-23 01:35 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll
2014-05-23 01:31 . 2014-05-23 01:31 91648 ----a-w- c:\windows\system32\mantleaxl64.dll
2014-05-23 01:30 . 2014-05-23 01:30 85504 ----a-w- c:\windows\SysWow64\mantleaxl32.dll
2014-05-23 01:27 . 2014-05-23 01:27 48128 ----a-w- c:\windows\system32\amdmmcl6.dll
2014-05-23 01:27 . 2014-05-23 01:27 37888 ----a-w- c:\windows\SysWow64\amdmmcl.dll
2014-05-23 01:25 . 2014-05-23 01:25 442368 ----a-w- c:\windows\system32\atidemgy.dll
2014-05-23 01:25 . 2014-05-23 01:25 31232 ----a-w- c:\windows\system32\atimuixx.dll
2014-05-23 01:25 . 2014-05-23 01:25 588800 ----a-w- c:\windows\system32\atieclxx.exe
2014-05-23 01:25 . 2014-05-23 01:25 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2014-05-23 01:24 . 2014-05-23 01:24 190976 ----a-w- c:\windows\system32\atitmm64.dll
2014-05-23 01:18 . 2014-05-23 01:18 826368 ----a-w- c:\windows\system32\coinst_14.200.dll
2014-05-23 01:12 . 2014-05-23 01:12 1207296 ----a-w- c:\windows\system32\atiadlxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 898560 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2014-05-23 01:12 . 2014-05-23 01:12 75264 ----a-w- c:\windows\system32\atig6pxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\system32\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 146944 ----a-w- c:\windows\system32\atig6txx.dll
2014-05-23 01:12 . 2014-05-23 01:12 133632 ----a-w- c:\windows\SysWow64\atigktxx.dll
2014-05-23 01:11 . 2014-05-23 01:11 557056 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2014-05-23 01:11 . 2014-05-23 01:11 95744 ----a-w- c:\windows\system32\amdave64.dll
2014-05-23 01:11 . 2014-05-23 01:11 90112 ----a-w- c:\windows\SysWow64\amdave32.dll
2014-05-23 01:11 . 2014-05-23 01:11 89088 ----a-w- c:\windows\system32\atisamu64.dll
2014-05-23 01:11 . 2014-05-23 01:11 80896 ----a-w- c:\windows\SysWow64\atisamu32.dll
2014-05-23 01:05 . 2014-05-23 01:05 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2014-05-22 19:56 . 2014-05-22 19:56 51200 ----a-w- c:\windows\system32\kdbsdk64.dll
2014-05-22 19:52 . 2014-05-22 19:52 38912 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2014-05-18 17:55 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2014-05-18 17:55 . 2012-08-23 13:24 15360 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 17:55 . 2012-08-23 14:13 243200 ----a-w- c:\windows\system32\rdpudd.dll
2014-05-18 17:55 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 09:51 3174912 ----a-w- c:\windows\system32\rdpcorets.dll
2014-05-18 16:04 . 2014-05-18 16:04 -------- d-----w- C:\Analytics
2014-05-15 20:03 . 2014-05-06 04:40 23544320 ----a-w- c:\windows\system32\mshtml.dll
2014-05-15 20:03 . 2014-05-06 04:17 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:07 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:00 84992 ----a-w- c:\windows\system32\mshtmled.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-06-04 20:44 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2014-06-04 20:24 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2014-06-03 06:26 . 2012-12-14 19:01 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2014-05-30 19:27 . 2012-08-29 21:46 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2014-05-23 02:28 . 2013-11-22 16:26 143304 ----a-w- c:\windows\system32\atiuxp64.dll
2014-05-23 02:28 . 2013-11-22 16:26 1328352 ----a-w- c:\windows\system32\aticfx64.dll
2014-05-23 02:27 . 2013-11-22 16:26 10516488 ----a-w- c:\windows\system32\atidxx64.dll
2014-05-15 20:01 . 2012-08-29 18:56 93223848 ----a-w- c:\windows\system32\MRT.exe
2014-05-14 05:23 . 2012-08-29 20:14 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-14 05:23 . 2012-08-29 20:14 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-13 18:59 . 2013-01-05 20:43 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2014-04-15 00:34 . 2014-04-15 00:34 1070232 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2014-04-08 14:20 . 2014-04-08 14:20 94720 ----a-w- c:\windows\system32\drivers\AtihdW76.sys
2014-04-08 14:18 . 2014-04-08 14:18 110080 ----a-w- c:\windows\system32\DelayAPO.dll
2014-03-31 07:35 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-20 20:10 . 2014-03-20 20:10 899320 ----a-w- c:\windows\system32\sl3apo64.dll
2014-03-20 20:10 . 2014-03-20 20:10 724728 ----a-w- c:\windows\system32\sltech64.dll
2014-03-20 20:10 . 2014-03-20 20:10 2825432 ----a-w- c:\windows\system32\RtPgEx64.dll
2014-03-20 20:10 . 2014-03-20 20:10 245496 ----a-w- c:\windows\system32\slprp64.dll
2014-03-20 20:10 . 2014-03-20 20:10 1045752 ----a-w- c:\windows\system32\slcnt64.dll
2014-03-20 20:10 . 2014-03-20 20:10 942384 ----a-w- c:\windows\system32\NAHIMICAPOSettingsIPC.dll
2014-03-20 20:10 . 2014-03-20 20:10 5752072 ----a-w- c:\windows\system32\NAHIMICAPOlfx.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Raptr"="c:\progra~2\Raptr\raptrstub.exe" [2014-05-14 55360]
"OfficeSyncProcess"="d:\program files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" [2013-04-22 720064]
"GrooveMonitor"="d:\program files (x86)\Microsoft Office\Office14\GROOVEMN.EXE" [2013-03-06 945856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"WD Quick View"="c:\program files (x86)\Western Digital\WD Quick View\WDDMStatus.exe" [2014-05-09 5562736]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2000-01-01 292088]
"Tilt"="c:\program files (x86)\GIGABYTE\GHOST\Tilt.exe" [2011-04-20 729088]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2014-05-22 767200]
"PMBVolumeWatcher"="d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" [2014-03-12 2534936]
"Nástroj WD Drive Unlocker"="c:\program files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe" [2012-06-13 1688008]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-29 284440]
"ghost"="c:\program files (x86)\GIGABYTE\GHOST\ghostopen.exe" [2010-02-08 192000]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
.
c:\users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-20 33322312]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled]
"CHotkey"=mHotkey.exe
"PMBVolumeWatcher"=d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
"Adobe Reader Speed Launcher"="d:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver);c:\windows\system32\DRIVERS\ASUSstpt.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSstpt.sys [x]
R3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM);c:\windows\system32\DRIVERS\ASUSumsc.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSumsc.sys [x]
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys;c:\windows\SYSNATIVE\DRIVERS\BthAvrcp.sys [x]
R3 cpuz130;cpuz130;d:\temp\cpuz130\cpuz_x64.sys;d:\temp\cpuz130\cpuz_x64.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x]
R3 DrvAgent64;DrvAgent64;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVlan620.sys [x]
R3 SOHDs;Sony Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVLAN620.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys;SysWow64\drivers\AsUpIO.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO64A.SYS;c:\windows\SYSNATIVE\drivers\HWiNFO64A.SYS [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 asComSvc;ASUS Com Service;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [x]
S2 asHmComSvc;ASUS HM Com Service;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [x]
S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [x]
S2 AsusFanControlService;AsusFanControlService;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [x]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [x]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys;c:\windows\SYSNATIVE\DRIVERS\RtNdPt60.sys [x]
S2 SOHDms;Sony Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [x]
S2 TeamViewer9;TeamViewer 9;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x]
S2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [x]
S2 WDBackup;WD Backup;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [x]
S2 WDDriveService;WD Drive Manager;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [x]
S3 ASUSFILTER;ASUSFILTER;SysWow64\drivers\ASUSFILTER.sys;SysWow64\drivers\ASUSFILTER.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
S4 IOMap;IOMap;c:\windows\system32\drivers\IOMap64.sys;c:\windows\SYSNATIVE\drivers\IOMap64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
iissvcs REG_MULTI_SZ w3svc was
apphost REG_MULTI_SZ apphostsvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-02-21 17:21 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.117\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-06-05 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-29 05:23]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2014-05-30 7541976]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mDefault_Search_URL = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
mSearch Bar = hxxp://www.google.com
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.google.cz/#hl=cs&source=hp&q=
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QImageIOHandlerFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"qgif4.dll"=multi:"2011-10-10T17:42\00gif\00\00"
"qico4.dll"=multi:"2011-10-10T17:42\00ico\00\00"
"qjpeg4.dll"=multi:"2011-10-10T17:42\00jpeg\00jpg\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QTextCodecFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"2011-10-10T17:42\00GB18030\00GBK\00GB2312\00CP936\00MS936\00windows-936\00MIB: 114\00MIB: 113\00MIB: 2025\00\00"
"qkrcodecs4.dll"=multi:"2011-10-10T17:42\00EUC-KR\00cp949\00MIB: 38\00MIB: -949\00\00"
"qtwcodecs4.dll"=multi:"2011-10-10T17:42\00Big5\00Big5-HKSCS\00Big5-ETen\00CP950\00MIB: 2026\00MIB: 2101\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpcodecs4.dll"=multi:"40602\000\00Windows msvc release full-config\002011-10-10T17:42\00\00"
"qjpcodecsd4.dll"=multi:"40703\001\00Windows msvc debug full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qkrcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qtwcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"Microsoft.VC80.CRT.manifest"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"msvcr80.dll"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"qgif4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qico4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpeg4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
Celkový čas: 2014-06-05 21:02:34
ComboFix-quarantined-files.txt 2014-06-05 19:02
.
Před spuštěním: Volných bajtů: 46 881 820 672
Po spuštění: Volných bajtů: 46 627 155 968
.
- - End Of File - - D0D58C36E06017DAD2670A6F76854167
- Rudy
- Site Admin
- Příspěvky: 119541
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:

Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.RegLock::
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QImageIOHandlerFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QTextCodecFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
Reboot::

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
ComboFix 14-06-04.01 - Milos 05.06.2014 23:14:36.12.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.16332.13439 [GMT 2:00]
Spuštěný z: d:\users\Milos\Desktop\ComboFix.exe
Použité ovládací přepínače :: d:\users\Milos\Desktop\CFScript.txt.txt
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-05 do 2014-06-05 )))))))))))))))))))))))))))))))
.
.
2459-05-10 23:51 . 2459-05-10 23:51 64624 ----a-w- c:\windows\system32\drivers\HECIx64.sys
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Public\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Milos\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Mcx1-MILOS-PC\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Ivanka\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-06-05 19:12 . 2014-06-05 19:12 1031560 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{0D8F971B-DA6C-48F6-A419-4CD4E1EA3CFC}\gapaengine.dll
2014-06-05 19:12 . 2014-04-30 14:20 10702536 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7AC41BF-4E3D-46AD-AC73-5A49D2682640}\mpengine.dll
2014-06-05 19:12 . 2014-06-05 19:25 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2014-06-05 19:12 . 2014-06-05 19:25 -------- d-----w- c:\program files\Microsoft Security Client
2014-06-04 20:01 . 2014-06-04 20:01 -------- d-----w- c:\users\Milos\AppData\Local\ATI
2014-06-04 05:13 . 2014-06-04 05:13 -------- d-----w- C:\rsit
2014-06-03 20:18 . 2014-05-19 23:18 10702536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F78EDCD9-4DEE-4F2C-B1BF-99651B0FB138}\mpengine.dll
2014-06-03 19:29 . 2010-08-30 06:34 536576 ----a-w- c:\windows\SysWow64\sqlite3.dll
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieUserList
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieSiteList
2014-06-02 18:29 . 2014-06-05 18:37 -------- d-----w- c:\programdata\RogueKiller
2014-06-02 18:24 . 2014-06-05 18:27 -------- d-----w- C:\AdwCleaner
2014-05-30 19:49 . 2000-01-01 00:00 100312 ----a-w- c:\windows\system32\drivers\TeeDriverx64.sys
2014-05-30 19:46 . 2014-05-30 19:46 31648 ----a-w- c:\windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 19:45 . 2000-01-01 00:00 795632 ----a-w- c:\windows\system32\drivers\iusb3xhc.sys
2014-05-30 19:45 . 2000-01-01 00:00 358896 ----a-w- c:\windows\system32\drivers\iusb3hub.sys
2014-05-30 19:45 . 2000-01-01 00:00 20464 ----a-w- c:\windows\system32\drivers\iusb3hcs.sys
2014-05-30 19:27 . 2014-05-30 19:27 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
2014-05-30 19:27 . 2014-05-30 19:27 901848 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2014-05-30 19:22 . 2014-05-30 19:22 -------- d-----w- c:\programdata\ATI
2014-05-30 19:21 . 2014-05-30 19:21 -------- d-----w- c:\program files (x86)\AMD AVT
2014-05-30 14:39 . 2014-05-30 14:39 -------- d-----w- c:\users\Ivanka\AppData\Roaming\ATI
2014-05-29 19:27 . 2014-05-29 19:27 -------- d-----w- c:\users\Milos\AppData\Roaming\ATI
2014-05-29 19:18 . 2014-05-30 19:21 -------- d-----w- c:\program files\ATI Technologies
2014-05-23 02:28 . 2014-05-23 02:28 127872 ----a-w- c:\windows\system32\amdhcp64.dll
2014-05-23 02:28 . 2014-05-23 02:28 117560 ----a-w- c:\windows\SysWow64\amdhcp32.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\atimpc64.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\amdpcom64.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2014-05-23 02:28 . 2014-05-23 02:28 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2014-05-23 02:28 . 2014-05-23 02:28 117584 ----a-w- c:\windows\system32\atiu9p64.dll
2014-05-23 02:28 . 2014-05-23 02:28 99520 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2014-05-23 02:28 . 2014-05-23 02:28 1108432 ----a-w- c:\windows\SysWow64\aticfx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 9015224 ----a-w- c:\windows\SysWow64\atidxx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 7102496 ----a-w- c:\windows\SysWow64\atiumdva.dll
2014-05-23 02:27 . 2014-05-23 02:27 6879016 ----a-w- c:\windows\SysWow64\atiumdag.dll
2014-05-23 02:27 . 2014-05-23 02:27 7892000 ----a-w- c:\windows\system32\atiumd6a.dll
2014-05-23 02:27 . 2014-05-23 02:27 8108312 ----a-w- c:\windows\system32\atiumd64.dll
2014-05-23 02:24 . 2014-05-23 02:24 276192 ----a-w- c:\windows\system32\drivers\amdacpksd.sys
2014-05-23 02:22 . 2014-05-23 02:22 15950336 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2014-05-23 01:55 . 2014-05-23 01:55 27529216 ----a-w- c:\windows\system32\atio6axx.dll
2014-05-23 01:47 . 2014-05-23 01:47 231424 ----a-w- c:\windows\system32\clinfo.exe
2014-05-23 01:47 . 2014-05-23 01:47 98816 ----a-w- c:\windows\system32\OpenVideo64.dll
2014-05-23 01:47 . 2014-05-23 01:47 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2014-05-23 01:47 . 2014-05-23 01:47 86528 ----a-w- c:\windows\system32\OVDecode64.dll
2014-05-23 01:47 . 2014-05-23 01:47 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll
2014-05-23 01:47 . 2014-05-23 01:47 32874496 ----a-w- c:\windows\system32\amdocl64.dll
2014-05-23 01:46 . 2014-05-23 01:46 127488 ----a-w- c:\windows\system32\mantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 113664 ----a-w- c:\windows\SysWow64\mantle32.dll
2014-05-23 01:45 . 2014-05-23 01:45 5224960 ----a-w- c:\windows\system32\amdmantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 27841024 ----a-w- c:\windows\SysWow64\amdocl.dll
2014-05-23 01:43 . 2014-05-23 01:43 65024 ----a-w- c:\windows\system32\OpenCL.dll
2014-05-23 01:43 . 2014-05-23 01:43 58880 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-05-23 01:40 . 2014-05-23 01:40 23028224 ----a-w- c:\windows\SysWow64\atioglxx.dll
2014-05-23 01:38 . 2014-05-23 01:38 366592 ----a-w- c:\windows\system32\atiapfxx.exe
2014-05-23 01:38 . 2014-05-23 01:38 62464 ----a-w- c:\windows\system32\aticalrt64.dll
2014-05-23 01:38 . 2014-05-23 01:38 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll
2014-05-23 01:37 . 2014-05-23 01:37 55808 ----a-w- c:\windows\system32\aticalcl64.dll
2014-05-23 01:37 . 2014-05-23 01:37 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll
2014-05-23 01:37 . 2014-05-23 01:37 4180992 ----a-w- c:\windows\SysWow64\amdmantle32.dll
2014-05-23 01:37 . 2014-05-23 01:37 15716352 ----a-w- c:\windows\system32\aticaldd64.dll
2014-05-23 01:35 . 2014-05-23 01:35 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll
2014-05-23 01:31 . 2014-05-23 01:31 91648 ----a-w- c:\windows\system32\mantleaxl64.dll
2014-05-23 01:30 . 2014-05-23 01:30 85504 ----a-w- c:\windows\SysWow64\mantleaxl32.dll
2014-05-23 01:27 . 2014-05-23 01:27 48128 ----a-w- c:\windows\system32\amdmmcl6.dll
2014-05-23 01:27 . 2014-05-23 01:27 37888 ----a-w- c:\windows\SysWow64\amdmmcl.dll
2014-05-23 01:25 . 2014-05-23 01:25 442368 ----a-w- c:\windows\system32\atidemgy.dll
2014-05-23 01:25 . 2014-05-23 01:25 31232 ----a-w- c:\windows\system32\atimuixx.dll
2014-05-23 01:25 . 2014-05-23 01:25 588800 ----a-w- c:\windows\system32\atieclxx.exe
2014-05-23 01:25 . 2014-05-23 01:25 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2014-05-23 01:24 . 2014-05-23 01:24 190976 ----a-w- c:\windows\system32\atitmm64.dll
2014-05-23 01:18 . 2014-05-23 01:18 826368 ----a-w- c:\windows\system32\coinst_14.200.dll
2014-05-23 01:12 . 2014-05-23 01:12 1207296 ----a-w- c:\windows\system32\atiadlxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 898560 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2014-05-23 01:12 . 2014-05-23 01:12 75264 ----a-w- c:\windows\system32\atig6pxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\system32\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 146944 ----a-w- c:\windows\system32\atig6txx.dll
2014-05-23 01:12 . 2014-05-23 01:12 133632 ----a-w- c:\windows\SysWow64\atigktxx.dll
2014-05-23 01:11 . 2014-05-23 01:11 557056 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2014-05-23 01:11 . 2014-05-23 01:11 95744 ----a-w- c:\windows\system32\amdave64.dll
2014-05-23 01:11 . 2014-05-23 01:11 90112 ----a-w- c:\windows\SysWow64\amdave32.dll
2014-05-23 01:11 . 2014-05-23 01:11 89088 ----a-w- c:\windows\system32\atisamu64.dll
2014-05-23 01:11 . 2014-05-23 01:11 80896 ----a-w- c:\windows\SysWow64\atisamu32.dll
2014-05-23 01:05 . 2014-05-23 01:05 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2014-05-22 19:56 . 2014-05-22 19:56 51200 ----a-w- c:\windows\system32\kdbsdk64.dll
2014-05-22 19:52 . 2014-05-22 19:52 38912 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2014-05-18 17:55 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2014-05-18 17:55 . 2012-08-23 13:24 15360 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 17:55 . 2012-08-23 14:13 243200 ----a-w- c:\windows\system32\rdpudd.dll
2014-05-18 17:55 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 09:51 3174912 ----a-w- c:\windows\system32\rdpcorets.dll
2014-05-18 16:04 . 2014-05-18 16:04 -------- d-----w- C:\Analytics
2014-05-15 20:03 . 2014-05-06 04:40 23544320 ----a-w- c:\windows\system32\mshtml.dll
2014-05-15 20:03 . 2014-05-06 04:17 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:07 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:00 84992 ----a-w- c:\windows\system32\mshtmled.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-06-05 19:30 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2014-06-04 20:44 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2014-06-03 06:26 . 2012-12-14 19:01 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2014-05-30 19:27 . 2012-08-29 21:46 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2014-05-23 02:28 . 2013-11-22 16:26 143304 ----a-w- c:\windows\system32\atiuxp64.dll
2014-05-23 02:28 . 2013-11-22 16:26 1328352 ----a-w- c:\windows\system32\aticfx64.dll
2014-05-23 02:27 . 2013-11-22 16:26 10516488 ----a-w- c:\windows\system32\atidxx64.dll
2014-05-15 20:01 . 2012-08-29 18:56 93223848 ----a-w- c:\windows\system32\MRT.exe
2014-05-14 05:23 . 2012-08-29 20:14 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-14 05:23 . 2012-08-29 20:14 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-13 18:59 . 2013-01-05 20:43 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2014-04-15 00:34 . 2014-04-15 00:34 1070232 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2014-04-08 14:20 . 2014-04-08 14:20 94720 ----a-w- c:\windows\system32\drivers\AtihdW76.sys
2014-04-08 14:18 . 2014-04-08 14:18 110080 ----a-w- c:\windows\system32\DelayAPO.dll
2014-03-31 07:35 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-20 20:10 . 2014-03-20 20:10 899320 ----a-w- c:\windows\system32\sl3apo64.dll
2014-03-20 20:10 . 2014-03-20 20:10 724728 ----a-w- c:\windows\system32\sltech64.dll
2014-03-20 20:10 . 2014-03-20 20:10 2825432 ----a-w- c:\windows\system32\RtPgEx64.dll
2014-03-20 20:10 . 2014-03-20 20:10 245496 ----a-w- c:\windows\system32\slprp64.dll
2014-03-20 20:10 . 2014-03-20 20:10 1045752 ----a-w- c:\windows\system32\slcnt64.dll
2014-03-20 20:10 . 2014-03-20 20:10 942384 ----a-w- c:\windows\system32\NAHIMICAPOSettingsIPC.dll
2014-03-20 20:10 . 2014-03-20 20:10 5752072 ----a-w- c:\windows\system32\NAHIMICAPOlfx.dll
2014-03-11 07:52 . 2013-09-27 07:53 133928 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Raptr"="c:\progra~2\Raptr\raptrstub.exe" [2014-05-14 55360]
"OfficeSyncProcess"="d:\program files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" [2013-04-22 720064]
"GrooveMonitor"="d:\program files (x86)\Microsoft Office\Office14\GROOVEMN.EXE" [2013-03-06 945856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"WD Quick View"="c:\program files (x86)\Western Digital\WD Quick View\WDDMStatus.exe" [2014-05-09 5562736]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2000-01-01 292088]
"Tilt"="c:\program files (x86)\GIGABYTE\GHOST\Tilt.exe" [2011-04-20 729088]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2014-05-22 767200]
"PMBVolumeWatcher"="d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" [2014-03-12 2534936]
"Nástroj WD Drive Unlocker"="c:\program files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe" [2012-06-13 1688008]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-29 284440]
"ghost"="c:\program files (x86)\GIGABYTE\GHOST\ghostopen.exe" [2010-02-08 192000]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
.
c:\users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-20 33322312]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled]
"CHotkey"=mHotkey.exe
"PMBVolumeWatcher"=d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
"Adobe Reader Speed Launcher"="d:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver);c:\windows\system32\DRIVERS\ASUSstpt.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSstpt.sys [x]
R3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM);c:\windows\system32\DRIVERS\ASUSumsc.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSumsc.sys [x]
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys;c:\windows\SYSNATIVE\DRIVERS\BthAvrcp.sys [x]
R3 cpuz130;cpuz130;d:\temp\cpuz130\cpuz_x64.sys;d:\temp\cpuz130\cpuz_x64.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x]
R3 DrvAgent64;DrvAgent64;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVlan620.sys [x]
R3 SOHDs;Sony Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVLAN620.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys;SysWow64\drivers\AsUpIO.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO64A.SYS;c:\windows\SYSNATIVE\drivers\HWiNFO64A.SYS [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 asComSvc;ASUS Com Service;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [x]
S2 asHmComSvc;ASUS HM Com Service;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [x]
S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [x]
S2 AsusFanControlService;AsusFanControlService;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [x]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [x]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys;c:\windows\SYSNATIVE\DRIVERS\RtNdPt60.sys [x]
S2 SOHDms;Sony Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [x]
S2 TeamViewer9;TeamViewer 9;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x]
S2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [x]
S2 WDBackup;WD Backup;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [x]
S2 WDDriveService;WD Drive Manager;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [x]
S3 ASUSFILTER;ASUSFILTER;SysWow64\drivers\ASUSFILTER.sys;SysWow64\drivers\ASUSFILTER.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - NISDRV
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
iissvcs REG_MULTI_SZ w3svc was
apphost REG_MULTI_SZ apphostsvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-02-21 17:21 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.117\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-06-05 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-29 05:23]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2014-05-30 7541976]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2014-03-11 1271072]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mDefault_Search_URL = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
mSearch Bar = hxxp://www.google.com
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.google.cz/#hl=cs&source=hp&q=
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QImageIOHandlerFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"qgif4.dll"=multi:"2011-10-10T17:42\00gif\00\00"
"qico4.dll"=multi:"2011-10-10T17:42\00ico\00\00"
"qjpeg4.dll"=multi:"2011-10-10T17:42\00jpeg\00jpg\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QTextCodecFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"2011-10-10T17:42\00GB18030\00GBK\00GB2312\00CP936\00MS936\00windows-936\00MIB: 114\00MIB: 113\00MIB: 2025\00\00"
"qkrcodecs4.dll"=multi:"2011-10-10T17:42\00EUC-KR\00cp949\00MIB: 38\00MIB: -949\00\00"
"qtwcodecs4.dll"=multi:"2011-10-10T17:42\00Big5\00Big5-HKSCS\00Big5-ETen\00CP950\00MIB: 2026\00MIB: 2101\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpcodecs4.dll"=multi:"40602\000\00Windows msvc release full-config\002011-10-10T17:42\00\00"
"qjpcodecsd4.dll"=multi:"40703\001\00Windows msvc debug full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qkrcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qtwcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"Microsoft.VC80.CRT.manifest"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"msvcr80.dll"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"qgif4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qico4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpeg4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
d:\program files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
d:\program files (x86)\ASUS\AI Suite II\AsRoutineController.exe
d:\program files (x86)\ASUS\APRP\aprp.exe
.
**************************************************************************
.
Celkový čas: 2014-06-05 23:22:40 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-06-05 21:22
ComboFix2.txt 2014-06-05 19:02
.
Před spuštěním: Volných bajtů: 44 215 074 816
Po spuštění: Volných bajtů: 44 293 435 392
.
- - End Of File - - 774C60F189CB2072290B99BA21147D4B
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.16332.13439 [GMT 2:00]
Spuštěný z: d:\users\Milos\Desktop\ComboFix.exe
Použité ovládací přepínače :: d:\users\Milos\Desktop\CFScript.txt.txt
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-05 do 2014-06-05 )))))))))))))))))))))))))))))))
.
.
2459-05-10 23:51 . 2459-05-10 23:51 64624 ----a-w- c:\windows\system32\drivers\HECIx64.sys
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Public\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Milos\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Mcx1-MILOS-PC\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Ivanka\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp
2014-06-05 21:17 . 2014-06-05 21:17 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-06-05 19:12 . 2014-06-05 19:12 1031560 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{0D8F971B-DA6C-48F6-A419-4CD4E1EA3CFC}\gapaengine.dll
2014-06-05 19:12 . 2014-04-30 14:20 10702536 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7AC41BF-4E3D-46AD-AC73-5A49D2682640}\mpengine.dll
2014-06-05 19:12 . 2014-06-05 19:25 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2014-06-05 19:12 . 2014-06-05 19:25 -------- d-----w- c:\program files\Microsoft Security Client
2014-06-04 20:01 . 2014-06-04 20:01 -------- d-----w- c:\users\Milos\AppData\Local\ATI
2014-06-04 05:13 . 2014-06-04 05:13 -------- d-----w- C:\rsit
2014-06-03 20:18 . 2014-05-19 23:18 10702536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F78EDCD9-4DEE-4F2C-B1BF-99651B0FB138}\mpengine.dll
2014-06-03 19:29 . 2010-08-30 06:34 536576 ----a-w- c:\windows\SysWow64\sqlite3.dll
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieUserList
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieSiteList
2014-06-02 18:29 . 2014-06-05 18:37 -------- d-----w- c:\programdata\RogueKiller
2014-06-02 18:24 . 2014-06-05 18:27 -------- d-----w- C:\AdwCleaner
2014-05-30 19:49 . 2000-01-01 00:00 100312 ----a-w- c:\windows\system32\drivers\TeeDriverx64.sys
2014-05-30 19:46 . 2014-05-30 19:46 31648 ----a-w- c:\windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 19:45 . 2000-01-01 00:00 795632 ----a-w- c:\windows\system32\drivers\iusb3xhc.sys
2014-05-30 19:45 . 2000-01-01 00:00 358896 ----a-w- c:\windows\system32\drivers\iusb3hub.sys
2014-05-30 19:45 . 2000-01-01 00:00 20464 ----a-w- c:\windows\system32\drivers\iusb3hcs.sys
2014-05-30 19:27 . 2014-05-30 19:27 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
2014-05-30 19:27 . 2014-05-30 19:27 901848 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2014-05-30 19:22 . 2014-05-30 19:22 -------- d-----w- c:\programdata\ATI
2014-05-30 19:21 . 2014-05-30 19:21 -------- d-----w- c:\program files (x86)\AMD AVT
2014-05-30 14:39 . 2014-05-30 14:39 -------- d-----w- c:\users\Ivanka\AppData\Roaming\ATI
2014-05-29 19:27 . 2014-05-29 19:27 -------- d-----w- c:\users\Milos\AppData\Roaming\ATI
2014-05-29 19:18 . 2014-05-30 19:21 -------- d-----w- c:\program files\ATI Technologies
2014-05-23 02:28 . 2014-05-23 02:28 127872 ----a-w- c:\windows\system32\amdhcp64.dll
2014-05-23 02:28 . 2014-05-23 02:28 117560 ----a-w- c:\windows\SysWow64\amdhcp32.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\atimpc64.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\amdpcom64.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2014-05-23 02:28 . 2014-05-23 02:28 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2014-05-23 02:28 . 2014-05-23 02:28 117584 ----a-w- c:\windows\system32\atiu9p64.dll
2014-05-23 02:28 . 2014-05-23 02:28 99520 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2014-05-23 02:28 . 2014-05-23 02:28 1108432 ----a-w- c:\windows\SysWow64\aticfx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 9015224 ----a-w- c:\windows\SysWow64\atidxx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 7102496 ----a-w- c:\windows\SysWow64\atiumdva.dll
2014-05-23 02:27 . 2014-05-23 02:27 6879016 ----a-w- c:\windows\SysWow64\atiumdag.dll
2014-05-23 02:27 . 2014-05-23 02:27 7892000 ----a-w- c:\windows\system32\atiumd6a.dll
2014-05-23 02:27 . 2014-05-23 02:27 8108312 ----a-w- c:\windows\system32\atiumd64.dll
2014-05-23 02:24 . 2014-05-23 02:24 276192 ----a-w- c:\windows\system32\drivers\amdacpksd.sys
2014-05-23 02:22 . 2014-05-23 02:22 15950336 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2014-05-23 01:55 . 2014-05-23 01:55 27529216 ----a-w- c:\windows\system32\atio6axx.dll
2014-05-23 01:47 . 2014-05-23 01:47 231424 ----a-w- c:\windows\system32\clinfo.exe
2014-05-23 01:47 . 2014-05-23 01:47 98816 ----a-w- c:\windows\system32\OpenVideo64.dll
2014-05-23 01:47 . 2014-05-23 01:47 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2014-05-23 01:47 . 2014-05-23 01:47 86528 ----a-w- c:\windows\system32\OVDecode64.dll
2014-05-23 01:47 . 2014-05-23 01:47 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll
2014-05-23 01:47 . 2014-05-23 01:47 32874496 ----a-w- c:\windows\system32\amdocl64.dll
2014-05-23 01:46 . 2014-05-23 01:46 127488 ----a-w- c:\windows\system32\mantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 113664 ----a-w- c:\windows\SysWow64\mantle32.dll
2014-05-23 01:45 . 2014-05-23 01:45 5224960 ----a-w- c:\windows\system32\amdmantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 27841024 ----a-w- c:\windows\SysWow64\amdocl.dll
2014-05-23 01:43 . 2014-05-23 01:43 65024 ----a-w- c:\windows\system32\OpenCL.dll
2014-05-23 01:43 . 2014-05-23 01:43 58880 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-05-23 01:40 . 2014-05-23 01:40 23028224 ----a-w- c:\windows\SysWow64\atioglxx.dll
2014-05-23 01:38 . 2014-05-23 01:38 366592 ----a-w- c:\windows\system32\atiapfxx.exe
2014-05-23 01:38 . 2014-05-23 01:38 62464 ----a-w- c:\windows\system32\aticalrt64.dll
2014-05-23 01:38 . 2014-05-23 01:38 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll
2014-05-23 01:37 . 2014-05-23 01:37 55808 ----a-w- c:\windows\system32\aticalcl64.dll
2014-05-23 01:37 . 2014-05-23 01:37 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll
2014-05-23 01:37 . 2014-05-23 01:37 4180992 ----a-w- c:\windows\SysWow64\amdmantle32.dll
2014-05-23 01:37 . 2014-05-23 01:37 15716352 ----a-w- c:\windows\system32\aticaldd64.dll
2014-05-23 01:35 . 2014-05-23 01:35 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll
2014-05-23 01:31 . 2014-05-23 01:31 91648 ----a-w- c:\windows\system32\mantleaxl64.dll
2014-05-23 01:30 . 2014-05-23 01:30 85504 ----a-w- c:\windows\SysWow64\mantleaxl32.dll
2014-05-23 01:27 . 2014-05-23 01:27 48128 ----a-w- c:\windows\system32\amdmmcl6.dll
2014-05-23 01:27 . 2014-05-23 01:27 37888 ----a-w- c:\windows\SysWow64\amdmmcl.dll
2014-05-23 01:25 . 2014-05-23 01:25 442368 ----a-w- c:\windows\system32\atidemgy.dll
2014-05-23 01:25 . 2014-05-23 01:25 31232 ----a-w- c:\windows\system32\atimuixx.dll
2014-05-23 01:25 . 2014-05-23 01:25 588800 ----a-w- c:\windows\system32\atieclxx.exe
2014-05-23 01:25 . 2014-05-23 01:25 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2014-05-23 01:24 . 2014-05-23 01:24 190976 ----a-w- c:\windows\system32\atitmm64.dll
2014-05-23 01:18 . 2014-05-23 01:18 826368 ----a-w- c:\windows\system32\coinst_14.200.dll
2014-05-23 01:12 . 2014-05-23 01:12 1207296 ----a-w- c:\windows\system32\atiadlxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 898560 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2014-05-23 01:12 . 2014-05-23 01:12 75264 ----a-w- c:\windows\system32\atig6pxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\system32\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 146944 ----a-w- c:\windows\system32\atig6txx.dll
2014-05-23 01:12 . 2014-05-23 01:12 133632 ----a-w- c:\windows\SysWow64\atigktxx.dll
2014-05-23 01:11 . 2014-05-23 01:11 557056 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2014-05-23 01:11 . 2014-05-23 01:11 95744 ----a-w- c:\windows\system32\amdave64.dll
2014-05-23 01:11 . 2014-05-23 01:11 90112 ----a-w- c:\windows\SysWow64\amdave32.dll
2014-05-23 01:11 . 2014-05-23 01:11 89088 ----a-w- c:\windows\system32\atisamu64.dll
2014-05-23 01:11 . 2014-05-23 01:11 80896 ----a-w- c:\windows\SysWow64\atisamu32.dll
2014-05-23 01:05 . 2014-05-23 01:05 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2014-05-22 19:56 . 2014-05-22 19:56 51200 ----a-w- c:\windows\system32\kdbsdk64.dll
2014-05-22 19:52 . 2014-05-22 19:52 38912 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2014-05-18 17:55 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2014-05-18 17:55 . 2012-08-23 13:24 15360 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 17:55 . 2012-08-23 14:13 243200 ----a-w- c:\windows\system32\rdpudd.dll
2014-05-18 17:55 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 09:51 3174912 ----a-w- c:\windows\system32\rdpcorets.dll
2014-05-18 16:04 . 2014-05-18 16:04 -------- d-----w- C:\Analytics
2014-05-15 20:03 . 2014-05-06 04:40 23544320 ----a-w- c:\windows\system32\mshtml.dll
2014-05-15 20:03 . 2014-05-06 04:17 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:07 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:00 84992 ----a-w- c:\windows\system32\mshtmled.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-06-05 19:30 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2014-06-04 20:44 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2014-06-03 06:26 . 2012-12-14 19:01 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2014-05-30 19:27 . 2012-08-29 21:46 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2014-05-23 02:28 . 2013-11-22 16:26 143304 ----a-w- c:\windows\system32\atiuxp64.dll
2014-05-23 02:28 . 2013-11-22 16:26 1328352 ----a-w- c:\windows\system32\aticfx64.dll
2014-05-23 02:27 . 2013-11-22 16:26 10516488 ----a-w- c:\windows\system32\atidxx64.dll
2014-05-15 20:01 . 2012-08-29 18:56 93223848 ----a-w- c:\windows\system32\MRT.exe
2014-05-14 05:23 . 2012-08-29 20:14 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-14 05:23 . 2012-08-29 20:14 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-13 18:59 . 2013-01-05 20:43 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2014-04-15 00:34 . 2014-04-15 00:34 1070232 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2014-04-08 14:20 . 2014-04-08 14:20 94720 ----a-w- c:\windows\system32\drivers\AtihdW76.sys
2014-04-08 14:18 . 2014-04-08 14:18 110080 ----a-w- c:\windows\system32\DelayAPO.dll
2014-03-31 07:35 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-20 20:10 . 2014-03-20 20:10 899320 ----a-w- c:\windows\system32\sl3apo64.dll
2014-03-20 20:10 . 2014-03-20 20:10 724728 ----a-w- c:\windows\system32\sltech64.dll
2014-03-20 20:10 . 2014-03-20 20:10 2825432 ----a-w- c:\windows\system32\RtPgEx64.dll
2014-03-20 20:10 . 2014-03-20 20:10 245496 ----a-w- c:\windows\system32\slprp64.dll
2014-03-20 20:10 . 2014-03-20 20:10 1045752 ----a-w- c:\windows\system32\slcnt64.dll
2014-03-20 20:10 . 2014-03-20 20:10 942384 ----a-w- c:\windows\system32\NAHIMICAPOSettingsIPC.dll
2014-03-20 20:10 . 2014-03-20 20:10 5752072 ----a-w- c:\windows\system32\NAHIMICAPOlfx.dll
2014-03-11 07:52 . 2013-09-27 07:53 133928 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Raptr"="c:\progra~2\Raptr\raptrstub.exe" [2014-05-14 55360]
"OfficeSyncProcess"="d:\program files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" [2013-04-22 720064]
"GrooveMonitor"="d:\program files (x86)\Microsoft Office\Office14\GROOVEMN.EXE" [2013-03-06 945856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"WD Quick View"="c:\program files (x86)\Western Digital\WD Quick View\WDDMStatus.exe" [2014-05-09 5562736]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2000-01-01 292088]
"Tilt"="c:\program files (x86)\GIGABYTE\GHOST\Tilt.exe" [2011-04-20 729088]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2014-05-22 767200]
"PMBVolumeWatcher"="d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" [2014-03-12 2534936]
"Nástroj WD Drive Unlocker"="c:\program files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe" [2012-06-13 1688008]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-29 284440]
"ghost"="c:\program files (x86)\GIGABYTE\GHOST\ghostopen.exe" [2010-02-08 192000]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
.
c:\users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-20 33322312]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled]
"CHotkey"=mHotkey.exe
"PMBVolumeWatcher"=d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
"Adobe Reader Speed Launcher"="d:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver);c:\windows\system32\DRIVERS\ASUSstpt.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSstpt.sys [x]
R3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM);c:\windows\system32\DRIVERS\ASUSumsc.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSumsc.sys [x]
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys;c:\windows\SYSNATIVE\DRIVERS\BthAvrcp.sys [x]
R3 cpuz130;cpuz130;d:\temp\cpuz130\cpuz_x64.sys;d:\temp\cpuz130\cpuz_x64.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x]
R3 DrvAgent64;DrvAgent64;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVlan620.sys [x]
R3 SOHDs;Sony Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVLAN620.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys;SysWow64\drivers\AsUpIO.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO64A.SYS;c:\windows\SYSNATIVE\drivers\HWiNFO64A.SYS [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 asComSvc;ASUS Com Service;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [x]
S2 asHmComSvc;ASUS HM Com Service;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [x]
S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [x]
S2 AsusFanControlService;AsusFanControlService;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [x]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [x]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys;c:\windows\SYSNATIVE\DRIVERS\RtNdPt60.sys [x]
S2 SOHDms;Sony Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [x]
S2 TeamViewer9;TeamViewer 9;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x]
S2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [x]
S2 WDBackup;WD Backup;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [x]
S2 WDDriveService;WD Drive Manager;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [x]
S3 ASUSFILTER;ASUSFILTER;SysWow64\drivers\ASUSFILTER.sys;SysWow64\drivers\ASUSFILTER.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - NISDRV
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
iissvcs REG_MULTI_SZ w3svc was
apphost REG_MULTI_SZ apphostsvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-02-21 17:21 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.117\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-06-05 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-29 05:23]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2014-05-30 7541976]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2014-03-11 1271072]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mDefault_Search_URL = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
mSearch Bar = hxxp://www.google.com
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.google.cz/#hl=cs&source=hp&q=
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QImageIOHandlerFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"qgif4.dll"=multi:"2011-10-10T17:42\00gif\00\00"
"qico4.dll"=multi:"2011-10-10T17:42\00ico\00\00"
"qjpeg4.dll"=multi:"2011-10-10T17:42\00jpeg\00jpg\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QTextCodecFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"2011-10-10T17:42\00GB18030\00GBK\00GB2312\00CP936\00MS936\00windows-936\00MIB: 114\00MIB: 113\00MIB: 2025\00\00"
"qkrcodecs4.dll"=multi:"2011-10-10T17:42\00EUC-KR\00cp949\00MIB: 38\00MIB: -949\00\00"
"qtwcodecs4.dll"=multi:"2011-10-10T17:42\00Big5\00Big5-HKSCS\00Big5-ETen\00CP950\00MIB: 2026\00MIB: 2101\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpcodecs4.dll"=multi:"40602\000\00Windows msvc release full-config\002011-10-10T17:42\00\00"
"qjpcodecsd4.dll"=multi:"40703\001\00Windows msvc debug full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qkrcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qtwcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"Microsoft.VC80.CRT.manifest"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"msvcr80.dll"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"qgif4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qico4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpeg4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
d:\program files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
d:\program files (x86)\ASUS\AI Suite II\AsRoutineController.exe
d:\program files (x86)\ASUS\APRP\aprp.exe
.
**************************************************************************
.
Celkový čas: 2014-06-05 23:22:40 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-06-05 21:22
ComboFix2.txt 2014-06-05 19:02
.
Před spuštěním: Volných bajtů: 44 215 074 816
Po spuštění: Volných bajtů: 44 293 435 392
.
- - End Of File - - 774C60F189CB2072290B99BA21147D4B
- Rudy
- Site Admin
- Příspěvky: 119541
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Zkuste znovu, skript bylchybně uložen (CFScript.txt.txt). Je třeba jej uložit jako CFScript.txt .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
ComboFix 14-06-04.01 - Milos 06.06.2014 21:28:32.13.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.16332.13444 [GMT 2:00]
Spuštěný z: d:\users\Milos\Desktop\ComboFix.exe
Použité ovládací přepínače :: d:\users\Milos\Desktop\CFScript.txt
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-06 do 2014-06-06 )))))))))))))))))))))))))))))))
.
.
2459-05-10 23:51 . 2459-05-10 23:51 64624 ----a-w- c:\windows\system32\drivers\HECIx64.sys
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Public\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Milos\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Mcx1-MILOS-PC\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Ivanka\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-06-06 19:25 . 2014-04-30 14:20 10702536 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{4AF4CB29-EADD-4C16-AECC-83018E0B91C5}\mpengine.dll
2014-06-05 19:12 . 2014-06-05 19:12 1031560 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{0D8F971B-DA6C-48F6-A419-4CD4E1EA3CFC}\gapaengine.dll
2014-06-05 19:12 . 2014-04-30 14:20 10702536 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2014-06-05 19:12 . 2014-06-05 19:25 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2014-06-05 19:12 . 2014-06-05 19:25 -------- d-----w- c:\program files\Microsoft Security Client
2014-06-04 20:01 . 2014-06-04 20:01 -------- d-----w- c:\users\Milos\AppData\Local\ATI
2014-06-04 05:13 . 2014-06-04 05:13 -------- d-----w- C:\rsit
2014-06-03 20:18 . 2014-05-19 23:18 10702536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F78EDCD9-4DEE-4F2C-B1BF-99651B0FB138}\mpengine.dll
2014-06-03 19:29 . 2010-08-30 06:34 536576 ----a-w- c:\windows\SysWow64\sqlite3.dll
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieUserList
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieSiteList
2014-06-02 18:29 . 2014-06-05 18:37 -------- d-----w- c:\programdata\RogueKiller
2014-06-02 18:24 . 2014-06-05 18:27 -------- d-----w- C:\AdwCleaner
2014-05-30 19:49 . 2000-01-01 00:00 100312 ----a-w- c:\windows\system32\drivers\TeeDriverx64.sys
2014-05-30 19:46 . 2014-05-30 19:46 31648 ----a-w- c:\windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 19:45 . 2000-01-01 00:00 795632 ----a-w- c:\windows\system32\drivers\iusb3xhc.sys
2014-05-30 19:45 . 2000-01-01 00:00 358896 ----a-w- c:\windows\system32\drivers\iusb3hub.sys
2014-05-30 19:45 . 2000-01-01 00:00 20464 ----a-w- c:\windows\system32\drivers\iusb3hcs.sys
2014-05-30 19:27 . 2014-05-30 19:27 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
2014-05-30 19:27 . 2014-05-30 19:27 901848 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2014-05-30 19:22 . 2014-05-30 19:22 -------- d-----w- c:\programdata\ATI
2014-05-30 19:21 . 2014-05-30 19:21 -------- d-----w- c:\program files (x86)\AMD AVT
2014-05-30 14:39 . 2014-05-30 14:39 -------- d-----w- c:\users\Ivanka\AppData\Roaming\ATI
2014-05-29 19:27 . 2014-05-29 19:27 -------- d-----w- c:\users\Milos\AppData\Roaming\ATI
2014-05-29 19:18 . 2014-05-30 19:21 -------- d-----w- c:\program files\ATI Technologies
2014-05-23 02:28 . 2014-05-23 02:28 127872 ----a-w- c:\windows\system32\amdhcp64.dll
2014-05-23 02:28 . 2014-05-23 02:28 117560 ----a-w- c:\windows\SysWow64\amdhcp32.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\atimpc64.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\amdpcom64.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2014-05-23 02:28 . 2014-05-23 02:28 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2014-05-23 02:28 . 2014-05-23 02:28 117584 ----a-w- c:\windows\system32\atiu9p64.dll
2014-05-23 02:28 . 2014-05-23 02:28 99520 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2014-05-23 02:28 . 2014-05-23 02:28 1108432 ----a-w- c:\windows\SysWow64\aticfx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 9015224 ----a-w- c:\windows\SysWow64\atidxx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 7102496 ----a-w- c:\windows\SysWow64\atiumdva.dll
2014-05-23 02:27 . 2014-05-23 02:27 6879016 ----a-w- c:\windows\SysWow64\atiumdag.dll
2014-05-23 02:27 . 2014-05-23 02:27 7892000 ----a-w- c:\windows\system32\atiumd6a.dll
2014-05-23 02:27 . 2014-05-23 02:27 8108312 ----a-w- c:\windows\system32\atiumd64.dll
2014-05-23 02:24 . 2014-05-23 02:24 276192 ----a-w- c:\windows\system32\drivers\amdacpksd.sys
2014-05-23 02:22 . 2014-05-23 02:22 15950336 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2014-05-23 01:55 . 2014-05-23 01:55 27529216 ----a-w- c:\windows\system32\atio6axx.dll
2014-05-23 01:47 . 2014-05-23 01:47 231424 ----a-w- c:\windows\system32\clinfo.exe
2014-05-23 01:47 . 2014-05-23 01:47 98816 ----a-w- c:\windows\system32\OpenVideo64.dll
2014-05-23 01:47 . 2014-05-23 01:47 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2014-05-23 01:47 . 2014-05-23 01:47 86528 ----a-w- c:\windows\system32\OVDecode64.dll
2014-05-23 01:47 . 2014-05-23 01:47 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll
2014-05-23 01:47 . 2014-05-23 01:47 32874496 ----a-w- c:\windows\system32\amdocl64.dll
2014-05-23 01:46 . 2014-05-23 01:46 127488 ----a-w- c:\windows\system32\mantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 113664 ----a-w- c:\windows\SysWow64\mantle32.dll
2014-05-23 01:45 . 2014-05-23 01:45 5224960 ----a-w- c:\windows\system32\amdmantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 27841024 ----a-w- c:\windows\SysWow64\amdocl.dll
2014-05-23 01:43 . 2014-05-23 01:43 65024 ----a-w- c:\windows\system32\OpenCL.dll
2014-05-23 01:43 . 2014-05-23 01:43 58880 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-05-23 01:40 . 2014-05-23 01:40 23028224 ----a-w- c:\windows\SysWow64\atioglxx.dll
2014-05-23 01:38 . 2014-05-23 01:38 366592 ----a-w- c:\windows\system32\atiapfxx.exe
2014-05-23 01:38 . 2014-05-23 01:38 62464 ----a-w- c:\windows\system32\aticalrt64.dll
2014-05-23 01:38 . 2014-05-23 01:38 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll
2014-05-23 01:37 . 2014-05-23 01:37 55808 ----a-w- c:\windows\system32\aticalcl64.dll
2014-05-23 01:37 . 2014-05-23 01:37 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll
2014-05-23 01:37 . 2014-05-23 01:37 4180992 ----a-w- c:\windows\SysWow64\amdmantle32.dll
2014-05-23 01:37 . 2014-05-23 01:37 15716352 ----a-w- c:\windows\system32\aticaldd64.dll
2014-05-23 01:35 . 2014-05-23 01:35 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll
2014-05-23 01:31 . 2014-05-23 01:31 91648 ----a-w- c:\windows\system32\mantleaxl64.dll
2014-05-23 01:30 . 2014-05-23 01:30 85504 ----a-w- c:\windows\SysWow64\mantleaxl32.dll
2014-05-23 01:27 . 2014-05-23 01:27 48128 ----a-w- c:\windows\system32\amdmmcl6.dll
2014-05-23 01:27 . 2014-05-23 01:27 37888 ----a-w- c:\windows\SysWow64\amdmmcl.dll
2014-05-23 01:25 . 2014-05-23 01:25 442368 ----a-w- c:\windows\system32\atidemgy.dll
2014-05-23 01:25 . 2014-05-23 01:25 31232 ----a-w- c:\windows\system32\atimuixx.dll
2014-05-23 01:25 . 2014-05-23 01:25 588800 ----a-w- c:\windows\system32\atieclxx.exe
2014-05-23 01:25 . 2014-05-23 01:25 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2014-05-23 01:24 . 2014-05-23 01:24 190976 ----a-w- c:\windows\system32\atitmm64.dll
2014-05-23 01:18 . 2014-05-23 01:18 826368 ----a-w- c:\windows\system32\coinst_14.200.dll
2014-05-23 01:12 . 2014-05-23 01:12 1207296 ----a-w- c:\windows\system32\atiadlxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 898560 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2014-05-23 01:12 . 2014-05-23 01:12 75264 ----a-w- c:\windows\system32\atig6pxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\system32\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 146944 ----a-w- c:\windows\system32\atig6txx.dll
2014-05-23 01:12 . 2014-05-23 01:12 133632 ----a-w- c:\windows\SysWow64\atigktxx.dll
2014-05-23 01:11 . 2014-05-23 01:11 557056 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2014-05-23 01:11 . 2014-05-23 01:11 95744 ----a-w- c:\windows\system32\amdave64.dll
2014-05-23 01:11 . 2014-05-23 01:11 90112 ----a-w- c:\windows\SysWow64\amdave32.dll
2014-05-23 01:11 . 2014-05-23 01:11 89088 ----a-w- c:\windows\system32\atisamu64.dll
2014-05-23 01:11 . 2014-05-23 01:11 80896 ----a-w- c:\windows\SysWow64\atisamu32.dll
2014-05-23 01:05 . 2014-05-23 01:05 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2014-05-22 19:56 . 2014-05-22 19:56 51200 ----a-w- c:\windows\system32\kdbsdk64.dll
2014-05-22 19:52 . 2014-05-22 19:52 38912 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2014-05-18 17:55 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2014-05-18 17:55 . 2012-08-23 13:24 15360 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 17:55 . 2012-08-23 14:13 243200 ----a-w- c:\windows\system32\rdpudd.dll
2014-05-18 17:55 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 09:51 3174912 ----a-w- c:\windows\system32\rdpcorets.dll
2014-05-18 16:04 . 2014-05-18 16:04 -------- d-----w- C:\Analytics
2014-05-15 20:03 . 2014-05-06 04:40 23544320 ----a-w- c:\windows\system32\mshtml.dll
2014-05-15 20:03 . 2014-05-06 04:17 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:07 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:00 84992 ----a-w- c:\windows\system32\mshtmled.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-06-05 19:30 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2014-06-04 20:44 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2014-06-03 06:26 . 2012-12-14 19:01 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2014-05-30 19:27 . 2012-08-29 21:46 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2014-05-23 02:28 . 2013-11-22 16:26 143304 ----a-w- c:\windows\system32\atiuxp64.dll
2014-05-23 02:28 . 2013-11-22 16:26 1328352 ----a-w- c:\windows\system32\aticfx64.dll
2014-05-23 02:27 . 2013-11-22 16:26 10516488 ----a-w- c:\windows\system32\atidxx64.dll
2014-05-15 20:01 . 2012-08-29 18:56 93223848 ----a-w- c:\windows\system32\MRT.exe
2014-05-14 05:23 . 2012-08-29 20:14 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-14 05:23 . 2012-08-29 20:14 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-13 18:59 . 2013-01-05 20:43 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2014-04-15 00:34 . 2014-04-15 00:34 1070232 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2014-04-08 14:20 . 2014-04-08 14:20 94720 ----a-w- c:\windows\system32\drivers\AtihdW76.sys
2014-04-08 14:18 . 2014-04-08 14:18 110080 ----a-w- c:\windows\system32\DelayAPO.dll
2014-03-31 07:35 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-20 20:10 . 2014-03-20 20:10 899320 ----a-w- c:\windows\system32\sl3apo64.dll
2014-03-20 20:10 . 2014-03-20 20:10 724728 ----a-w- c:\windows\system32\sltech64.dll
2014-03-20 20:10 . 2014-03-20 20:10 2825432 ----a-w- c:\windows\system32\RtPgEx64.dll
2014-03-20 20:10 . 2014-03-20 20:10 245496 ----a-w- c:\windows\system32\slprp64.dll
2014-03-20 20:10 . 2014-03-20 20:10 1045752 ----a-w- c:\windows\system32\slcnt64.dll
2014-03-20 20:10 . 2014-03-20 20:10 942384 ----a-w- c:\windows\system32\NAHIMICAPOSettingsIPC.dll
2014-03-20 20:10 . 2014-03-20 20:10 5752072 ----a-w- c:\windows\system32\NAHIMICAPOlfx.dll
2014-03-11 07:52 . 2013-09-27 07:53 133928 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Raptr"="c:\progra~2\Raptr\raptrstub.exe" [2014-05-14 55360]
"OfficeSyncProcess"="d:\program files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" [2013-04-22 720064]
"GrooveMonitor"="d:\program files (x86)\Microsoft Office\Office14\GROOVEMN.EXE" [2013-03-06 945856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"WD Quick View"="c:\program files (x86)\Western Digital\WD Quick View\WDDMStatus.exe" [2014-05-09 5562736]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2000-01-01 292088]
"Tilt"="c:\program files (x86)\GIGABYTE\GHOST\Tilt.exe" [2011-04-20 729088]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2014-05-22 767200]
"PMBVolumeWatcher"="d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" [2014-03-12 2534936]
"Nástroj WD Drive Unlocker"="c:\program files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe" [2012-06-13 1688008]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-29 284440]
"ghost"="c:\program files (x86)\GIGABYTE\GHOST\ghostopen.exe" [2010-02-08 192000]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
.
c:\users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-20 33322312]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled]
"CHotkey"=mHotkey.exe
"PMBVolumeWatcher"=d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
"Adobe Reader Speed Launcher"="d:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
R2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [x]
R3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver);c:\windows\system32\DRIVERS\ASUSstpt.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSstpt.sys [x]
R3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM);c:\windows\system32\DRIVERS\ASUSumsc.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSumsc.sys [x]
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys;c:\windows\SYSNATIVE\DRIVERS\BthAvrcp.sys [x]
R3 cpuz130;cpuz130;d:\temp\cpuz130\cpuz_x64.sys;d:\temp\cpuz130\cpuz_x64.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x]
R3 DrvAgent64;DrvAgent64;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVlan620.sys [x]
R3 SOHDs;Sony Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVLAN620.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys;SysWow64\drivers\AsUpIO.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO64A.SYS;c:\windows\SYSNATIVE\drivers\HWiNFO64A.SYS [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 asComSvc;ASUS Com Service;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [x]
S2 asHmComSvc;ASUS HM Com Service;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [x]
S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [x]
S2 AsusFanControlService;AsusFanControlService;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [x]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys;c:\windows\SYSNATIVE\DRIVERS\RtNdPt60.sys [x]
S2 SOHDms;Sony Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [x]
S2 TeamViewer9;TeamViewer 9;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x]
S2 WDBackup;WD Backup;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [x]
S2 WDDriveService;WD Drive Manager;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [x]
S3 ASUSFILTER;ASUSFILTER;SysWow64\drivers\ASUSFILTER.sys;SysWow64\drivers\ASUSFILTER.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
iissvcs REG_MULTI_SZ w3svc was
apphost REG_MULTI_SZ apphostsvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-02-21 17:21 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.117\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-06-06 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-29 05:23]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2014-05-30 7541976]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2014-03-11 1271072]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mDefault_Search_URL = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
mSearch Bar = hxxp://www.google.com
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.google.cz/#hl=cs&source=hp&q=
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
SafeBoot-16418661.sys
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QImageIOHandlerFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"qgif4.dll"=multi:"2011-10-10T17:42\00gif\00\00"
"qico4.dll"=multi:"2011-10-10T17:42\00ico\00\00"
"qjpeg4.dll"=multi:"2011-10-10T17:42\00jpeg\00jpg\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QTextCodecFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"2011-10-10T17:42\00GB18030\00GBK\00GB2312\00CP936\00MS936\00windows-936\00MIB: 114\00MIB: 113\00MIB: 2025\00\00"
"qkrcodecs4.dll"=multi:"2011-10-10T17:42\00EUC-KR\00cp949\00MIB: 38\00MIB: -949\00\00"
"qtwcodecs4.dll"=multi:"2011-10-10T17:42\00Big5\00Big5-HKSCS\00Big5-ETen\00CP950\00MIB: 2026\00MIB: 2101\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpcodecs4.dll"=multi:"40602\000\00Windows msvc release full-config\002011-10-10T17:42\00\00"
"qjpcodecsd4.dll"=multi:"40703\001\00Windows msvc debug full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qkrcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qtwcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"Microsoft.VC80.CRT.manifest"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"msvcr80.dll"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"qgif4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qico4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpeg4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\windows\SysWOW64\PnkBstrA.exe
d:\program files (x86)\ASUS\AI Suite II\AsRoutineController.exe
d:\program files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
d:\program files (x86)\ASUS\APRP\aprp.exe
.
**************************************************************************
.
Celkový čas: 2014-06-06 21:33:46 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-06-06 19:33
ComboFix2.txt 2014-06-05 21:22
ComboFix3.txt 2014-06-05 19:02
.
Před spuštěním: Volných bajtů: 42 658 054 144
Po spuštění: Volných bajtů: 43 017 777 152
.
- - End Of File - - 47DB8A1CD7E0DB016AFD82606A6070A1
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.16332.13444 [GMT 2:00]
Spuštěný z: d:\users\Milos\Desktop\ComboFix.exe
Použité ovládací přepínače :: d:\users\Milos\Desktop\CFScript.txt
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-06 do 2014-06-06 )))))))))))))))))))))))))))))))
.
.
2459-05-10 23:51 . 2459-05-10 23:51 64624 ----a-w- c:\windows\system32\drivers\HECIx64.sys
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Public\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Milos\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Mcx1-MILOS-PC\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Ivanka\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp
2014-06-06 19:31 . 2014-06-06 19:31 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-06-06 19:25 . 2014-04-30 14:20 10702536 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{4AF4CB29-EADD-4C16-AECC-83018E0B91C5}\mpengine.dll
2014-06-05 19:12 . 2014-06-05 19:12 1031560 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{0D8F971B-DA6C-48F6-A419-4CD4E1EA3CFC}\gapaengine.dll
2014-06-05 19:12 . 2014-04-30 14:20 10702536 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2014-06-05 19:12 . 2014-06-05 19:25 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2014-06-05 19:12 . 2014-06-05 19:25 -------- d-----w- c:\program files\Microsoft Security Client
2014-06-04 20:01 . 2014-06-04 20:01 -------- d-----w- c:\users\Milos\AppData\Local\ATI
2014-06-04 05:13 . 2014-06-04 05:13 -------- d-----w- C:\rsit
2014-06-03 20:18 . 2014-05-19 23:18 10702536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F78EDCD9-4DEE-4F2C-B1BF-99651B0FB138}\mpengine.dll
2014-06-03 19:29 . 2010-08-30 06:34 536576 ----a-w- c:\windows\SysWow64\sqlite3.dll
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieUserList
2014-06-02 18:57 . 2014-06-02 18:57 -------- d-sh--w- c:\users\Ivanka\AppData\Local\EmieSiteList
2014-06-02 18:29 . 2014-06-05 18:37 -------- d-----w- c:\programdata\RogueKiller
2014-06-02 18:24 . 2014-06-05 18:27 -------- d-----w- C:\AdwCleaner
2014-05-30 19:49 . 2000-01-01 00:00 100312 ----a-w- c:\windows\system32\drivers\TeeDriverx64.sys
2014-05-30 19:46 . 2014-05-30 19:46 31648 ----a-w- c:\windows\system32\drivers\HWiNFO64A.SYS
2014-05-30 19:45 . 2000-01-01 00:00 795632 ----a-w- c:\windows\system32\drivers\iusb3xhc.sys
2014-05-30 19:45 . 2000-01-01 00:00 358896 ----a-w- c:\windows\system32\drivers\iusb3hub.sys
2014-05-30 19:45 . 2000-01-01 00:00 20464 ----a-w- c:\windows\system32\drivers\iusb3hcs.sys
2014-05-30 19:27 . 2014-05-30 19:27 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
2014-05-30 19:27 . 2014-05-30 19:27 901848 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2014-05-30 19:22 . 2014-05-30 19:22 -------- d-----w- c:\programdata\ATI
2014-05-30 19:21 . 2014-05-30 19:21 -------- d-----w- c:\program files (x86)\AMD AVT
2014-05-30 14:39 . 2014-05-30 14:39 -------- d-----w- c:\users\Ivanka\AppData\Roaming\ATI
2014-05-29 19:27 . 2014-05-29 19:27 -------- d-----w- c:\users\Milos\AppData\Roaming\ATI
2014-05-29 19:18 . 2014-05-30 19:21 -------- d-----w- c:\program files\ATI Technologies
2014-05-23 02:28 . 2014-05-23 02:28 127872 ----a-w- c:\windows\system32\amdhcp64.dll
2014-05-23 02:28 . 2014-05-23 02:28 117560 ----a-w- c:\windows\SysWow64\amdhcp32.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\atimpc64.dll
2014-05-23 02:28 . 2014-05-23 02:28 78432 ----a-w- c:\windows\system32\amdpcom64.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll
2014-05-23 02:28 . 2014-05-23 02:28 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2014-05-23 02:28 . 2014-05-23 02:28 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2014-05-23 02:28 . 2014-05-23 02:28 117584 ----a-w- c:\windows\system32\atiu9p64.dll
2014-05-23 02:28 . 2014-05-23 02:28 99520 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2014-05-23 02:28 . 2014-05-23 02:28 1108432 ----a-w- c:\windows\SysWow64\aticfx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 9015224 ----a-w- c:\windows\SysWow64\atidxx32.dll
2014-05-23 02:27 . 2014-05-23 02:27 7102496 ----a-w- c:\windows\SysWow64\atiumdva.dll
2014-05-23 02:27 . 2014-05-23 02:27 6879016 ----a-w- c:\windows\SysWow64\atiumdag.dll
2014-05-23 02:27 . 2014-05-23 02:27 7892000 ----a-w- c:\windows\system32\atiumd6a.dll
2014-05-23 02:27 . 2014-05-23 02:27 8108312 ----a-w- c:\windows\system32\atiumd64.dll
2014-05-23 02:24 . 2014-05-23 02:24 276192 ----a-w- c:\windows\system32\drivers\amdacpksd.sys
2014-05-23 02:22 . 2014-05-23 02:22 15950336 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2014-05-23 01:55 . 2014-05-23 01:55 27529216 ----a-w- c:\windows\system32\atio6axx.dll
2014-05-23 01:47 . 2014-05-23 01:47 231424 ----a-w- c:\windows\system32\clinfo.exe
2014-05-23 01:47 . 2014-05-23 01:47 98816 ----a-w- c:\windows\system32\OpenVideo64.dll
2014-05-23 01:47 . 2014-05-23 01:47 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2014-05-23 01:47 . 2014-05-23 01:47 86528 ----a-w- c:\windows\system32\OVDecode64.dll
2014-05-23 01:47 . 2014-05-23 01:47 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll
2014-05-23 01:47 . 2014-05-23 01:47 32874496 ----a-w- c:\windows\system32\amdocl64.dll
2014-05-23 01:46 . 2014-05-23 01:46 127488 ----a-w- c:\windows\system32\mantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 113664 ----a-w- c:\windows\SysWow64\mantle32.dll
2014-05-23 01:45 . 2014-05-23 01:45 5224960 ----a-w- c:\windows\system32\amdmantle64.dll
2014-05-23 01:45 . 2014-05-23 01:45 27841024 ----a-w- c:\windows\SysWow64\amdocl.dll
2014-05-23 01:43 . 2014-05-23 01:43 65024 ----a-w- c:\windows\system32\OpenCL.dll
2014-05-23 01:43 . 2014-05-23 01:43 58880 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-05-23 01:40 . 2014-05-23 01:40 23028224 ----a-w- c:\windows\SysWow64\atioglxx.dll
2014-05-23 01:38 . 2014-05-23 01:38 366592 ----a-w- c:\windows\system32\atiapfxx.exe
2014-05-23 01:38 . 2014-05-23 01:38 62464 ----a-w- c:\windows\system32\aticalrt64.dll
2014-05-23 01:38 . 2014-05-23 01:38 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll
2014-05-23 01:37 . 2014-05-23 01:37 55808 ----a-w- c:\windows\system32\aticalcl64.dll
2014-05-23 01:37 . 2014-05-23 01:37 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll
2014-05-23 01:37 . 2014-05-23 01:37 4180992 ----a-w- c:\windows\SysWow64\amdmantle32.dll
2014-05-23 01:37 . 2014-05-23 01:37 15716352 ----a-w- c:\windows\system32\aticaldd64.dll
2014-05-23 01:35 . 2014-05-23 01:35 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll
2014-05-23 01:31 . 2014-05-23 01:31 91648 ----a-w- c:\windows\system32\mantleaxl64.dll
2014-05-23 01:30 . 2014-05-23 01:30 85504 ----a-w- c:\windows\SysWow64\mantleaxl32.dll
2014-05-23 01:27 . 2014-05-23 01:27 48128 ----a-w- c:\windows\system32\amdmmcl6.dll
2014-05-23 01:27 . 2014-05-23 01:27 37888 ----a-w- c:\windows\SysWow64\amdmmcl.dll
2014-05-23 01:25 . 2014-05-23 01:25 442368 ----a-w- c:\windows\system32\atidemgy.dll
2014-05-23 01:25 . 2014-05-23 01:25 31232 ----a-w- c:\windows\system32\atimuixx.dll
2014-05-23 01:25 . 2014-05-23 01:25 588800 ----a-w- c:\windows\system32\atieclxx.exe
2014-05-23 01:25 . 2014-05-23 01:25 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2014-05-23 01:24 . 2014-05-23 01:24 190976 ----a-w- c:\windows\system32\atitmm64.dll
2014-05-23 01:18 . 2014-05-23 01:18 826368 ----a-w- c:\windows\system32\coinst_14.200.dll
2014-05-23 01:12 . 2014-05-23 01:12 1207296 ----a-w- c:\windows\system32\atiadlxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 898560 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2014-05-23 01:12 . 2014-05-23 01:12 75264 ----a-w- c:\windows\system32\atig6pxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 69632 ----a-w- c:\windows\system32\atiglpxx.dll
2014-05-23 01:12 . 2014-05-23 01:12 146944 ----a-w- c:\windows\system32\atig6txx.dll
2014-05-23 01:12 . 2014-05-23 01:12 133632 ----a-w- c:\windows\SysWow64\atigktxx.dll
2014-05-23 01:11 . 2014-05-23 01:11 557056 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2014-05-23 01:11 . 2014-05-23 01:11 95744 ----a-w- c:\windows\system32\amdave64.dll
2014-05-23 01:11 . 2014-05-23 01:11 90112 ----a-w- c:\windows\SysWow64\amdave32.dll
2014-05-23 01:11 . 2014-05-23 01:11 89088 ----a-w- c:\windows\system32\atisamu64.dll
2014-05-23 01:11 . 2014-05-23 01:11 80896 ----a-w- c:\windows\SysWow64\atisamu32.dll
2014-05-23 01:05 . 2014-05-23 01:05 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2014-05-22 19:56 . 2014-05-22 19:56 51200 ----a-w- c:\windows\system32\kdbsdk64.dll
2014-05-22 19:52 . 2014-05-22 19:52 38912 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2014-05-18 17:55 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2014-05-18 17:55 . 2012-08-23 13:24 15360 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 17:55 . 2012-08-23 14:13 243200 ----a-w- c:\windows\system32\rdpudd.dll
2014-05-18 17:55 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll
2014-05-18 17:55 . 2012-08-23 09:51 3174912 ----a-w- c:\windows\system32\rdpcorets.dll
2014-05-18 16:04 . 2014-05-18 16:04 -------- d-----w- C:\Analytics
2014-05-15 20:03 . 2014-05-06 04:40 23544320 ----a-w- c:\windows\system32\mshtml.dll
2014-05-15 20:03 . 2014-05-06 04:17 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:07 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-05-15 20:03 . 2014-05-06 03:00 84992 ----a-w- c:\windows\system32\mshtmled.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-06-05 19:30 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2014-06-04 20:44 . 2012-12-14 19:01 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2014-06-03 06:26 . 2012-12-14 19:01 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2014-05-30 19:27 . 2012-08-29 21:46 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2014-05-23 02:28 . 2013-11-22 16:26 143304 ----a-w- c:\windows\system32\atiuxp64.dll
2014-05-23 02:28 . 2013-11-22 16:26 1328352 ----a-w- c:\windows\system32\aticfx64.dll
2014-05-23 02:27 . 2013-11-22 16:26 10516488 ----a-w- c:\windows\system32\atidxx64.dll
2014-05-15 20:01 . 2012-08-29 18:56 93223848 ----a-w- c:\windows\system32\MRT.exe
2014-05-14 05:23 . 2012-08-29 20:14 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-14 05:23 . 2012-08-29 20:14 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-13 18:59 . 2013-01-05 20:43 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2014-04-15 00:34 . 2014-04-15 00:34 1070232 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2014-04-08 14:20 . 2014-04-08 14:20 94720 ----a-w- c:\windows\system32\drivers\AtihdW76.sys
2014-04-08 14:18 . 2014-04-08 14:18 110080 ----a-w- c:\windows\system32\DelayAPO.dll
2014-03-31 07:35 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-20 20:10 . 2014-03-20 20:10 899320 ----a-w- c:\windows\system32\sl3apo64.dll
2014-03-20 20:10 . 2014-03-20 20:10 724728 ----a-w- c:\windows\system32\sltech64.dll
2014-03-20 20:10 . 2014-03-20 20:10 2825432 ----a-w- c:\windows\system32\RtPgEx64.dll
2014-03-20 20:10 . 2014-03-20 20:10 245496 ----a-w- c:\windows\system32\slprp64.dll
2014-03-20 20:10 . 2014-03-20 20:10 1045752 ----a-w- c:\windows\system32\slcnt64.dll
2014-03-20 20:10 . 2014-03-20 20:10 942384 ----a-w- c:\windows\system32\NAHIMICAPOSettingsIPC.dll
2014-03-20 20:10 . 2014-03-20 20:10 5752072 ----a-w- c:\windows\system32\NAHIMICAPOlfx.dll
2014-03-11 07:52 . 2013-09-27 07:53 133928 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Raptr"="c:\progra~2\Raptr\raptrstub.exe" [2014-05-14 55360]
"OfficeSyncProcess"="d:\program files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" [2013-04-22 720064]
"GrooveMonitor"="d:\program files (x86)\Microsoft Office\Office14\GROOVEMN.EXE" [2013-03-06 945856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"WD Quick View"="c:\program files (x86)\Western Digital\WD Quick View\WDDMStatus.exe" [2014-05-09 5562736]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2000-01-01 292088]
"Tilt"="c:\program files (x86)\GIGABYTE\GHOST\Tilt.exe" [2011-04-20 729088]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2014-05-22 767200]
"PMBVolumeWatcher"="d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" [2014-03-12 2534936]
"Nástroj WD Drive Unlocker"="c:\program files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe" [2012-06-13 1688008]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-29 284440]
"ghost"="c:\program files (x86)\GIGABYTE\GHOST\ghostopen.exe" [2010-02-08 192000]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
.
c:\users\Milos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Milos\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-20 33322312]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled]
"CHotkey"=mHotkey.exe
"PMBVolumeWatcher"=d:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
"Adobe Reader Speed Launcher"="d:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
R2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [x]
R3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver);c:\windows\system32\DRIVERS\ASUSstpt.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSstpt.sys [x]
R3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM);c:\windows\system32\DRIVERS\ASUSumsc.sys;c:\windows\SYSNATIVE\DRIVERS\ASUSumsc.sys [x]
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys;c:\windows\SYSNATIVE\DRIVERS\BthAvrcp.sys [x]
R3 cpuz130;cpuz130;d:\temp\cpuz130\cpuz_x64.sys;d:\temp\cpuz130\cpuz_x64.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x]
R3 DrvAgent64;DrvAgent64;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVlan620.sys [x]
R3 SOHDs;Sony Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN620.sys;c:\windows\SYSNATIVE\DRIVERS\RtVLAN620.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys;SysWow64\drivers\AsUpIO.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO64A.SYS;c:\windows\SYSNATIVE\drivers\HWiNFO64A.SYS [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 asComSvc;ASUS Com Service;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [x]
S2 asHmComSvc;ASUS HM Com Service;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [x]
S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [x]
S2 AsusFanControlService;AsusFanControlService;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe;c:\program files (x86)\ASUS\AsusFanControlService\1.02.05\AsusFanControlService.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe;d:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [x]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys;c:\windows\SYSNATIVE\DRIVERS\RtNdPt60.sys [x]
S2 SOHDms;Sony Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [x]
S2 TeamViewer9;TeamViewer 9;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;d:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x]
S2 WDBackup;WD Backup;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [x]
S2 WDDriveService;WD Drive Manager;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [x]
S3 ASUSFILTER;ASUSFILTER;SysWow64\drivers\ASUSFILTER.sys;SysWow64\drivers\ASUSFILTER.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
iissvcs REG_MULTI_SZ w3svc was
apphost REG_MULTI_SZ apphostsvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-02-21 17:21 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.117\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-06-06 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-29 05:23]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2014-05-30 7541976]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2014-03-11 1271072]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mDefault_Search_URL = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
mSearch Bar = hxxp://www.google.com
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\users\Milos\AppData\Roaming\Mozilla\Firefox\Profiles\s1amq8tc.default-1354039466817\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.google.cz/#hl=cs&source=hp&q=
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
SafeBoot-16418661.sys
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QImageIOHandlerFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"qgif4.dll"=multi:"2011-10-10T17:42\00gif\00\00"
"qico4.dll"=multi:"2011-10-10T17:42\00ico\00\00"
"qjpeg4.dll"=multi:"2011-10-10T17:42\00jpeg\00jpg\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Factory Cache 4.7\com.trolltech.Qt.QTextCodecFactoryInterface:\e:\B*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"2011-10-10T17:42\00GB18030\00GBK\00GB2312\00CP936\00MS936\00windows-936\00MIB: 114\00MIB: 113\00MIB: 2025\00\00"
"qkrcodecs4.dll"=multi:"2011-10-10T17:42\00EUC-KR\00cp949\00MIB: 38\00MIB: -949\00\00"
"qtwcodecs4.dll"=multi:"2011-10-10T17:42\00Big5\00Big5-HKSCS\00Big5-ETen\00CP950\00MIB: 2026\00MIB: 2101\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\codecs]
"qcncodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpcodecs4.dll"=multi:"40602\000\00Windows msvc release full-config\002011-10-10T17:42\00\00"
"qjpcodecsd4.dll"=multi:"40703\001\00Windows msvc debug full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qkrcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qtwcodecs4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
[HKEY_USERS\S-1-5-21-1547765992-1640624829-2362379350-1000\Software\Trolltech\OrganizationDefaults\Qt Plugin Cache 4.7.false\e:\b*a*t*t*l*e*f*i*e*l*d* *3*"!\Core\imageformats]
"Microsoft.VC80.CRT.manifest"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"msvcr80.dll"=multi:"0\001\00unknown\002011-10-10T17:42\00\00"
"qgif4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qico4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
"qjpeg4.dll"=multi:"40703\000\00Windows msvc release full-config QT_NO_DRAGANDDROP\002011-10-10T17:42\00\00"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\windows\SysWOW64\PnkBstrA.exe
d:\program files (x86)\ASUS\AI Suite II\AsRoutineController.exe
d:\program files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
d:\program files (x86)\ASUS\APRP\aprp.exe
.
**************************************************************************
.
Celkový čas: 2014-06-06 21:33:46 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-06-06 19:33
ComboFix2.txt 2014-06-05 21:22
ComboFix3.txt 2014-06-05 19:02
.
Před spuštěním: Volných bajtů: 42 658 054 144
Po spuštění: Volných bajtů: 43 017 777 152
.
- - End Of File - - 47DB8A1CD7E0DB016AFD82606A6070A1
- Rudy
- Site Admin
- Příspěvky: 119541
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Teď to proběhlo správně. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Bohužel, stále při startu jsou služby pozastavené na 3000ms. 

- Rudy
- Site Admin
- Příspěvky: 119541
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - zpomalený login a chyby v .NET
Zkuste obnovu systému k datu, kdy korektně fungoval.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.