Preventívka PC
Napsal: 15 lis 2014 17:19
Dobrý den, prosím o kontrolu logu RSIT. Dik
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2014-11-15 17:11:18
Microsoft Windows 8.1
System drive C: has 370 GB (78%) free of 477 GB
Total RAM: 2814 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:11:33, on 15.11.2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\skydrive.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmW.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\pptd40nt.exe
C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\PdfPro7Hook.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Creative\Shared Files\CamTray.exe
C:\Windows\System32\rundll32.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Garmin\Express Tray\ExpressTray.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\xdcla.exe
C:\Windows\System32\SettingSyncHost.exe
C:\Program Files\WindowsApps\Microsoft.Taptiles_2.3.1409.1802_x86__8wekyb3d8bbwe\Taptiles.exe
C:\WINDOWS\system32\DllHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20605_x86__8wekyb3d8bbwe\LiveComm.exe
C:\Users\Admin\AppData\Local\Microsoft\Windows\INetCache\IE\RJM2QEZC\RSIT.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - (no file)
R3 - URLSearchHook: (no name) - {93a3111f-4f74-4ed8-895e-d9708497629e} - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll
O2 - BHO: (no name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - (no file)
O2 - BHO: (no name) - {312f84fb-8970-4fd3-bddb-7012eac4afc9} - (no file)
O2 - BHO: Speed - {48A789BF-F6D6-4930-9C8B-77855A63EDE1} - C:\PROGRA~1\Secure Speed Dial\IE\SpeedDial.dll
O2 - BHO: PlusIEEventHelper Class - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\Bin\PlusIEContextMenu.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: (no name) - {c547c6c2-561b-4169-a2a5-20ba771ca93b} - (no file)
O2 - BHO: Adblock - {EF5F59BA-B2AB-48D8-9747-54DF806C73B8} - C:\Program Files\Secure Speed Dial\IE\ADBlock\IE\Adblock.dll
O3 - Toolbar: (no name) - {48586425-6bb7-4f51-8dc6-38c88e3ebb58} - (no file)
O3 - Toolbar: (no name) - {82E1477C-B154-48D3-9891-33D83C26BCD3} - (no file)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: (no name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - (no file)
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HPUsageTrackingLEDM] "C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files\HP\HP UT LEDM\"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [Launcher6015N] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe" /S Xerox WorkCentre 6015N
O4 - HKLM\..\Run: [6015N RUN] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe"
O4 - HKLM\..\Run: [StatusAutoRun6015N] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe" Xerox WorkCentre 6015N,hide,\S
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\IndexSearch.exe"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\pptd40nt.exe"
O4 - HKLM\..\Run: [PPort14reminder] "C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\14\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [PDFProHook] "C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\pdfpro7hook.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [V0260Cfg.exe] V0260Cfg.exe /d:2
O4 - HKCU\..\Run: [Creative WebCam Tray] "C:\Program Files\Creative\Shared Files\CamTray.exe"
O4 - HKCU\..\Run: [NTRedirect] C:\WINDOWS\system32\rundll32.exe "C:\Users\Admin\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [NokiaSuite.exe] C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe -tray
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [GarminExpressTrayApp] "C:\Program Files\Garmin\Express Tray\ExpressTray.exe" (User 'Default user')
O4 - Global Startup: ImageRetriever.lnk = C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\xdcla.exe
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: SmartPrint - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\Microsoft Office\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/4.1 ... rol_32.CAB
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} (Creative Software AutoUpdate Support Package 2) - http://ccfiles.creative.com/Web/softwar ... PIDPDE.cab
O16 - DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} (Creative Software AutoUpdate 2) - http://ccfiles.creative.com/Web/softwar ... TSUEng.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Sentinel LDK License Manager (hasplms) - SafeNet Inc. - C:\WINDOWS\system32\hasplms.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\Windows\system32\HPSIsvc.exe
O23 - Service: PDFProFiltSrvPP - Nuance Communications, Inc. - C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\PDFProFiltSrvPP.exe
O23 - Service: SecureUpdate (SecureUpdateSvc) - Unknown owner - C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: XRcnStatutsDatabase (XRNADB) - Unknown owner - C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
--
End of file - 10049 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\FTdownloader V4.0-codedownloader.job - C:\Program Files\FTdownloader V4.0\FTdownloader V4.0-codedownloader.exe /reinstallapp /agentregpath='FTdownloader V4.0' /appid=35574 /srcid='000179' /subid='0' /zdata='0' /bic=1BE83554FB2F412A864BB791E51AD441IE /verifier=9a105ce763f57e1808e42d9c18e678c1 /installerversion=1_27_153 /installerfullversion=1.27.153.8 /installationtime=1376218404 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /codedownloaddomain=http://cr.install-daddy.com /allusers /externallog=''
C:\WINDOWS\tasks\FTdownloader V4.0-enabler.job - C:\Program Files\FTdownloader V4.0\FTdownloader V4.0-enabler.exe /enablebho /agentregpath='FTdownloader V4.0' /appid=35574 /srcid='000179' /subid='0' /zdata='0' /bic=1BE83554FB2F412A864BB791E51AD441IE /verifier=9a105ce763f57e1808e42d9c18e678c1 /installerversion=1_27_153 /installationtime=1376218404 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /bhoguid=11111111-1111-1111-1111-110311551174 /allusers /externallog=''
C:\WINDOWS\tasks\FTdownloader V4.0-updater.job - C:\Program Files\FTdownloader V4.0\FTdownloader V4.0-updater.exe /runupdater /agentregpath='FTdownloader V4.0' /appid=35574 /srcid='000179' /subid='0' /zdata='0' /bic=1BE83554FB2F412A864BB791E51AD441IE /verifier=9a105ce763f57e1808e42d9c18e678c1 /installerversion=1_27_153 /installationtime=1376218404 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /geoserviceurl=http://ipgeoapi.com/ /updatejsondomain=http://update.datasrvstats.com /updaterversion=2 /externallog=''
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312f84fb-8970-4fd3-bddb-7012eac4afc9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{48A789BF-F6D6-4930-9C8B-77855A63EDE1}]
AccelerateTab - C:\PROGRA~1\Secure Speed Dial\IE\SpeedDial.dll [2014-05-26 994128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{551A852F-39A6-44A7-9C13-AFBEC9185A9D}]
PlusIEEventHelper Class - C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\Bin\PlusIEContextMenu.dll [2011-06-30 245016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-09-29 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-27 194504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c547c6c2-561b-4169-a2a5-20ba771ca93b}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF5F59BA-B2AB-48D8-9747-54DF806C73B8}]
Adblock - C:\Program Files\Secure Speed Dial\IE\ADBlock\IE\Adblock.dll [2014-06-17 464720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{48586425-6bb7-4f51-8dc6-38c88e3ebb58}
{82E1477C-B154-48D3-9891-33D83C26BCD3}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-27 194504]
{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"HPUsageTrackingLEDM"=C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe [2009-10-15 30264]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files\AMD AVT\bin\kdbsync.exe aml []
"Launcher6015N"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2011-05-19 2571264]
"6015N RUN"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [2012-01-03 357376]
"StatusAutoRun6015N"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [2012-01-03 3658240]
"IndexSearch"=C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\IndexSearch.exe [2013-02-26 51616]
"PaperPort PTD"=C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\pptd40nt.exe [2013-02-26 39328]
"PPort14reminder"=C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\Ereg\Ereg.exe [2013-01-14 334152]
"PDFProHook"=C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\pdfpro7hook.exe [2012-11-05 641424]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe [2014-04-17 748256]
""= []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-09-29 4085896]
"V0260Cfg.exe"=V0260Cfg.exe /d:2 []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Creative WebCam Tray"=C:\Program Files\Creative\Shared Files\CamTray.exe [2005-10-27 299008]
"NTRedirect"= C:\Users\Admin\AppData\Roaming\BabSolution\Shared\enhancedNT.dll,Run []
"GarminExpressTrayApp"=C:\Program Files\Garmin\Express Tray\ExpressTray.exe [2014-08-07 688984]
""= []
"NokiaSuite.exe"=C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe [2013-10-02 1090912]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2014-10-29 4826904]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2014-10-01 22065760]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
ImageRetriever.lnk - C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\xdcla.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.cvid"=iccvid.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
"VIDC.I420"=msh263.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-11-15 17:11:18 ----D---- C:\rsit
2014-11-15 17:11:18 ----D---- C:\Program Files\trend micro
2014-11-12 10:26:18 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-11-12 07:13:21 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-11-12 07:13:21 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-11-12 07:13:21 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-12 07:13:20 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-11-12 07:13:20 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-11-12 07:13:20 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-12 07:13:20 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-11-12 07:13:19 ----A---- C:\WINDOWS\system32\win32k.sys
2014-11-12 07:13:17 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-11-12 07:13:17 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-11-12 07:13:17 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-11-12 07:13:16 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-11-12 07:13:02 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-11-12 07:11:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-11-12 07:11:22 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-11-12 07:11:19 ----A---- C:\WINDOWS\system32\wininet.dll
2014-11-12 07:11:19 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-11-12 07:11:18 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-11-12 07:11:18 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-11-12 07:11:17 ----A---- C:\WINDOWS\system32\jscript.dll
2014-11-12 07:11:16 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-11-12 07:11:16 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-11-12 07:11:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-11-12 07:11:16 ----A---- C:\WINDOWS\system32\ieui.dll
2014-11-12 07:11:15 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-11-12 07:11:15 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-11-12 07:11:15 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-11-12 07:11:14 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-11-12 07:11:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-11-12 07:11:13 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-12 07:11:13 ----A---- C:\WINDOWS\system32\hlink.dll
2014-11-12 07:11:12 ----A---- C:\WINDOWS\system32\msrating.dll
2014-11-12 07:11:12 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\inseng.dll
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\occache.dll
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-11-12 07:11:09 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-12 07:11:09 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-11-12 07:11:09 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-11-12 07:11:08 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-11-12 07:11:08 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-11-12 07:11:08 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-11-12 07:11:08 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-11-12 07:11:07 ----A---- C:\WINDOWS\system32\wextract.exe
2014-11-12 07:11:07 ----A---- C:\WINDOWS\system32\url.dll
2014-11-12 07:11:07 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-11-12 07:11:07 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-11-12 07:11:06 ----A---- C:\WINDOWS\system32\mshta.exe
2014-11-12 07:11:06 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-11-12 07:10:25 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-11-12 07:10:24 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-11-12 07:10:23 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-11-12 07:10:22 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-11-12 07:09:57 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-11-12 07:09:55 ----A---- C:\WINDOWS\system32\schannel.dll
2014-11-12 07:09:55 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-11-12 07:09:55 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-11-12 07:09:53 ----A---- C:\WINDOWS\system32\packager.dll
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\msi.dll
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\consent.exe
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\authui.dll
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-11-12 07:09:49 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-11-12 07:09:49 ----A---- C:\WINDOWS\system32\devinv.dll
2014-11-12 07:09:49 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-11-12 07:09:49 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-11-12 07:09:48 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-11-12 07:09:48 ----A---- C:\WINDOWS\system32\aepic.dll
2014-11-12 07:09:46 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wups2.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wups.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuaext.dll
2014-10-22 19:41:59 ----D---- C:\Program Files\Common Files\Skype
2014-10-20 11:52:14 ----A---- C:\WINDOWS\system32\shell32.dll
2014-10-20 11:52:13 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-10-20 11:52:12 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-10-20 11:52:12 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-10-20 11:52:11 ----A---- C:\WINDOWS\system32\twinui.dll
2014-10-20 11:52:10 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-10-20 11:52:10 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-10-20 11:52:10 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-10-20 11:52:10 ----A---- C:\WINDOWS\system32\localspl.dll
2014-10-20 11:52:09 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-10-20 11:52:09 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-10-20 11:52:09 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-10-20 11:52:08 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-10-20 11:52:07 ----A---- C:\WINDOWS\system32\untfs.dll
2014-10-20 11:52:07 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-10-20 11:52:06 ----A---- C:\WINDOWS\system32\WofTasks.dll
2014-10-20 11:52:06 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-10-16 20:26:50 ----A---- C:\WINDOWS\system32\rastls.dll
2014-10-16 20:11:46 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-10-16 20:11:44 ----A---- C:\WINDOWS\system32\winbici.dll
======List of files/folders modified in the last 1 month======
2014-11-15 17:11:25 ----D---- C:\WINDOWS\Prefetch
2014-11-15 17:11:18 ----RD---- C:\Program Files
2014-11-15 17:00:00 ----D---- C:\WINDOWS\system32\sru
2014-11-15 16:41:35 ----RD---- C:\WINDOWS\System32
2014-11-15 16:41:35 ----D---- C:\WINDOWS\inf
2014-11-15 16:41:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-15 12:51:57 ----D---- C:\Users\Admin\AppData\Roaming\Skype
2014-11-15 11:54:21 ----D---- C:\WINDOWS\Temp
2014-11-14 15:33:24 ----D---- C:\WINDOWS\Microsoft.NET
2014-11-14 08:58:04 ----D---- C:\Windows
2014-11-14 07:10:34 ----HD---- C:\Program Files\WindowsApps
2014-11-14 07:10:34 ----D---- C:\WINDOWS\AppReadiness
2014-11-13 07:28:06 ----D---- C:\WINDOWS\system32\config
2014-11-12 14:23:29 ----D---- C:\WINDOWS\rescache
2014-11-12 14:13:07 ----D---- C:\WINDOWS\WinSxS
2014-11-12 13:57:26 ----RSD---- C:\WINDOWS\assembly
2014-11-12 10:33:43 ----D---- C:\WINDOWS\debug
2014-11-12 10:30:29 ----D---- C:\WINDOWS\system32\en-US
2014-11-12 10:30:29 ----D---- C:\WINDOWS\system32\Drivers
2014-11-12 10:30:28 ----D---- C:\WINDOWS\system32\migration
2014-11-12 10:30:28 ----D---- C:\Program Files\Windows Defender
2014-11-12 10:30:28 ----D---- C:\Program Files\Internet Explorer
2014-11-12 10:30:27 ----SD---- C:\WINDOWS\system32\CompatTel
2014-11-12 10:30:27 ----D---- C:\WINDOWS\system32\sk-SK
2014-11-12 10:30:25 ----D---- C:\WINDOWS\CbsTemp
2014-11-12 10:30:14 ----D---- C:\WINDOWS\system32\MRT
2014-11-12 10:28:25 ----A---- C:\WINDOWS\system32\MRT.exe
2014-11-12 10:28:12 ----SHD---- C:\WINDOWS\Installer
2014-11-12 10:28:11 ----HD---- C:\Config.Msi
2014-11-12 10:28:11 ----D---- C:\ProgramData\Microsoft Help
2014-11-12 10:26:20 ----D---- C:\WINDOWS\system32\wbem
2014-11-10 20:34:08 ----D---- C:\Servis
2014-11-10 18:22:44 ----SHD---- C:\System Volume Information
2014-11-10 15:00:38 ----D---- C:\Program Files\ATI Technologies
2014-11-10 14:52:54 ----SD---- C:\ProgramData\Microsoft
2014-11-10 14:52:54 ----D---- C:\Program Files\Microsoft
2014-11-09 08:14:59 ----D---- C:\WINDOWS\SoftwareDistribution
2014-11-01 07:42:12 ----D---- C:\Program Files\CCleaner
2014-10-30 21:40:04 ----D---- C:\WINDOWS\system32\Tasks
2014-10-30 21:40:04 ----D---- C:\Program Files\Opera
2014-10-22 19:42:02 ----D---- C:\ProgramData\Skype
2014-10-22 19:41:59 ----RD---- C:\Program Files\Skype
2014-10-22 19:41:59 ----D---- C:\Program Files\Common Files
2014-10-22 19:41:00 ----A---- C:\WINDOWS\system32\sqlite3.dll
2014-10-20 13:21:33 ----D---- C:\WINDOWS\system32\DriverStore
2014-10-20 12:50:12 ----RD---- C:\WINDOWS\ToastData
2014-10-20 12:50:12 ----D---- C:\WINDOWS\apppatch
2014-10-20 11:51:08 ----D---- C:\WINDOWS\system32\catroot2
2014-10-19 17:39:43 ----D---- C:\WINDOWS\Tasks
2014-10-16 21:31:35 ----D---- C:\WINDOWS\MediaViewer
2014-10-16 21:31:35 ----D---- C:\WINDOWS\FileManager
2014-10-16 21:31:35 ----D---- C:\WINDOWS\Camera
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-09-29 49944]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-09-29 192352]
R0 Wof;Windows Overlay File System Filter Driver; C:\WINDOWS\system32\drivers\Wof.sys [2014-03-13 138584]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-09-29 81768]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-09-29 779536]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-09-29 414520]
R2 aksfridge;aksfridge; \??\C:\WINDOWS\system32\drivers\aksfridge.sys [2014-04-29 425352]
R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\i386\AODDriver2.sys [2014-02-11 50400]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-09-29 24184]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-09-29 67824]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-09-29 71944]
R2 hardlock;hardlock; \??\C:\WINDOWS\system32\drivers\hardlock.sys [2014-04-29 609624]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2012-07-04 10070016]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2012-07-04 290304]
R3 RTL8168;@netrt630x86.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x86.sys [2013-06-18 490496]
R3 V0260VID;@oem68.inf,%szDeviceDesc%;Live! Cam Vista IM; C:\WINDOWS\system32\DRIVERS\V0260Vid.sys [2006-11-03 178913]
S2 AODDriver4.3;AODDriver4.3; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\i386\AODDriver2.sys [2014-02-11 50400]
S3 dot4;@oem2.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2012-09-25 137632]
S3 Dot4Print;@oem13.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\WINDOWS\System32\drivers\Dot4Prt.sys [2012-09-25 22432]
S3 dot4usb;@oem2.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2012-09-25 42912]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2013-02-02 17488]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2013-07-23 22016]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2013-07-23 61936]
S3 mvusbews;@oem5.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-12-24 17408]
S3 nmwcd;@oem72.inf,%MFG% %SVC%;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2013-01-23 18560]
S3 nmwcdc;@oem75.inf,%MFG% %SVC%;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2013-01-23 23168]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 37888]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2013-08-22 27136]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192]
S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\WINDOWS\system32\DRIVERS\WinUsb.sys [2013-08-22 64000]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2012-07-04 217088]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-04-17 276992]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-09-29 50344]
R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2014-08-07 438616]
R2 hasplms;Sentinel LDK License Manager; C:\WINDOWS\system32\hasplms.exe [2014-04-29 4683144]
R2 HPSIService;HP SI Service; C:\Windows\system32\HPSIsvc.exe [2012-11-08 100232]
R2 PDFProFiltSrvPP;PDFProFiltSrvPP; C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\PDFProFiltSrvPP.exe [2013-02-26 220488]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-02-02 116648]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2013-08-22 31552]
S2 SecureUpdateSvc;SecureUpdate; C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe [2014-05-28 2580304]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12 267440]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-02-02 116648]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-02-02 194032]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2014-11-15 17:11:18
Microsoft Windows 8.1
System drive C: has 370 GB (78%) free of 477 GB
Total RAM: 2814 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:11:33, on 15.11.2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\skydrive.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmW.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\pptd40nt.exe
C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\PdfPro7Hook.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Creative\Shared Files\CamTray.exe
C:\Windows\System32\rundll32.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Garmin\Express Tray\ExpressTray.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\xdcla.exe
C:\Windows\System32\SettingSyncHost.exe
C:\Program Files\WindowsApps\Microsoft.Taptiles_2.3.1409.1802_x86__8wekyb3d8bbwe\Taptiles.exe
C:\WINDOWS\system32\DllHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20605_x86__8wekyb3d8bbwe\LiveComm.exe
C:\Users\Admin\AppData\Local\Microsoft\Windows\INetCache\IE\RJM2QEZC\RSIT.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - (no file)
R3 - URLSearchHook: (no name) - {93a3111f-4f74-4ed8-895e-d9708497629e} - C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll
O2 - BHO: (no name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - (no file)
O2 - BHO: (no name) - {312f84fb-8970-4fd3-bddb-7012eac4afc9} - (no file)
O2 - BHO: Speed - {48A789BF-F6D6-4930-9C8B-77855A63EDE1} - C:\PROGRA~1\Secure Speed Dial\IE\SpeedDial.dll
O2 - BHO: PlusIEEventHelper Class - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\Bin\PlusIEContextMenu.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: (no name) - {c547c6c2-561b-4169-a2a5-20ba771ca93b} - (no file)
O2 - BHO: Adblock - {EF5F59BA-B2AB-48D8-9747-54DF806C73B8} - C:\Program Files\Secure Speed Dial\IE\ADBlock\IE\Adblock.dll
O3 - Toolbar: (no name) - {48586425-6bb7-4f51-8dc6-38c88e3ebb58} - (no file)
O3 - Toolbar: (no name) - {82E1477C-B154-48D3-9891-33D83C26BCD3} - (no file)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: (no name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - (no file)
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HPUsageTrackingLEDM] "C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files\HP\HP UT LEDM\"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [Launcher6015N] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe" /S Xerox WorkCentre 6015N
O4 - HKLM\..\Run: [6015N RUN] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe"
O4 - HKLM\..\Run: [StatusAutoRun6015N] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe" Xerox WorkCentre 6015N,hide,\S
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\IndexSearch.exe"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\pptd40nt.exe"
O4 - HKLM\..\Run: [PPort14reminder] "C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\14\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [PDFProHook] "C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\pdfpro7hook.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [V0260Cfg.exe] V0260Cfg.exe /d:2
O4 - HKCU\..\Run: [Creative WebCam Tray] "C:\Program Files\Creative\Shared Files\CamTray.exe"
O4 - HKCU\..\Run: [NTRedirect] C:\WINDOWS\system32\rundll32.exe "C:\Users\Admin\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [NokiaSuite.exe] C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe -tray
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [GarminExpressTrayApp] "C:\Program Files\Garmin\Express Tray\ExpressTray.exe" (User 'Default user')
O4 - Global Startup: ImageRetriever.lnk = C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\xdcla.exe
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: SmartPrint - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\Microsoft Office\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/4.1 ... rol_32.CAB
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} (Creative Software AutoUpdate Support Package 2) - http://ccfiles.creative.com/Web/softwar ... PIDPDE.cab
O16 - DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} (Creative Software AutoUpdate 2) - http://ccfiles.creative.com/Web/softwar ... TSUEng.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Sentinel LDK License Manager (hasplms) - SafeNet Inc. - C:\WINDOWS\system32\hasplms.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\Windows\system32\HPSIsvc.exe
O23 - Service: PDFProFiltSrvPP - Nuance Communications, Inc. - C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\PDFProFiltSrvPP.exe
O23 - Service: SecureUpdate (SecureUpdateSvc) - Unknown owner - C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: XRcnStatutsDatabase (XRNADB) - Unknown owner - C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
--
End of file - 10049 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\FTdownloader V4.0-codedownloader.job - C:\Program Files\FTdownloader V4.0\FTdownloader V4.0-codedownloader.exe /reinstallapp /agentregpath='FTdownloader V4.0' /appid=35574 /srcid='000179' /subid='0' /zdata='0' /bic=1BE83554FB2F412A864BB791E51AD441IE /verifier=9a105ce763f57e1808e42d9c18e678c1 /installerversion=1_27_153 /installerfullversion=1.27.153.8 /installationtime=1376218404 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /codedownloaddomain=http://cr.install-daddy.com /allusers /externallog=''
C:\WINDOWS\tasks\FTdownloader V4.0-enabler.job - C:\Program Files\FTdownloader V4.0\FTdownloader V4.0-enabler.exe /enablebho /agentregpath='FTdownloader V4.0' /appid=35574 /srcid='000179' /subid='0' /zdata='0' /bic=1BE83554FB2F412A864BB791E51AD441IE /verifier=9a105ce763f57e1808e42d9c18e678c1 /installerversion=1_27_153 /installationtime=1376218404 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /bhoguid=11111111-1111-1111-1111-110311551174 /allusers /externallog=''
C:\WINDOWS\tasks\FTdownloader V4.0-updater.job - C:\Program Files\FTdownloader V4.0\FTdownloader V4.0-updater.exe /runupdater /agentregpath='FTdownloader V4.0' /appid=35574 /srcid='000179' /subid='0' /zdata='0' /bic=1BE83554FB2F412A864BB791E51AD441IE /verifier=9a105ce763f57e1808e42d9c18e678c1 /installerversion=1_27_153 /installationtime=1376218404 /statsdomain=http://stats.datasrvstats.com /errorsdomain=http://errors.datasrvstats.com /geoserviceurl=http://ipgeoapi.com/ /updatejsondomain=http://update.datasrvstats.com /updaterversion=2 /externallog=''
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312f84fb-8970-4fd3-bddb-7012eac4afc9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{48A789BF-F6D6-4930-9C8B-77855A63EDE1}]
AccelerateTab - C:\PROGRA~1\Secure Speed Dial\IE\SpeedDial.dll [2014-05-26 994128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{551A852F-39A6-44A7-9C13-AFBEC9185A9D}]
PlusIEEventHelper Class - C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\Bin\PlusIEContextMenu.dll [2011-06-30 245016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-09-29 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-27 194504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c547c6c2-561b-4169-a2a5-20ba771ca93b}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF5F59BA-B2AB-48D8-9747-54DF806C73B8}]
Adblock - C:\Program Files\Secure Speed Dial\IE\ADBlock\IE\Adblock.dll [2014-06-17 464720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{48586425-6bb7-4f51-8dc6-38c88e3ebb58}
{82E1477C-B154-48D3-9891-33D83C26BCD3}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-27 194504]
{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"HPUsageTrackingLEDM"=C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe [2009-10-15 30264]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files\AMD AVT\bin\kdbsync.exe aml []
"Launcher6015N"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2011-05-19 2571264]
"6015N RUN"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [2012-01-03 357376]
"StatusAutoRun6015N"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [2012-01-03 3658240]
"IndexSearch"=C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\IndexSearch.exe [2013-02-26 51616]
"PaperPort PTD"=C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\pptd40nt.exe [2013-02-26 39328]
"PPort14reminder"=C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\Ereg\Ereg.exe [2013-01-14 334152]
"PDFProHook"=C:\Program Files\Xerox Scan To PC Desktop 12\PDF Viewer 7\pdfpro7hook.exe [2012-11-05 641424]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe [2014-04-17 748256]
""= []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-09-29 4085896]
"V0260Cfg.exe"=V0260Cfg.exe /d:2 []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Creative WebCam Tray"=C:\Program Files\Creative\Shared Files\CamTray.exe [2005-10-27 299008]
"NTRedirect"= C:\Users\Admin\AppData\Roaming\BabSolution\Shared\enhancedNT.dll,Run []
"GarminExpressTrayApp"=C:\Program Files\Garmin\Express Tray\ExpressTray.exe [2014-08-07 688984]
""= []
"NokiaSuite.exe"=C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe [2013-10-02 1090912]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2014-10-29 4826904]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2014-10-01 22065760]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
ImageRetriever.lnk - C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\xdcla.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.cvid"=iccvid.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
"VIDC.I420"=msh263.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-11-15 17:11:18 ----D---- C:\rsit
2014-11-15 17:11:18 ----D---- C:\Program Files\trend micro
2014-11-12 10:26:18 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-11-12 07:13:21 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-11-12 07:13:21 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-11-12 07:13:21 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-12 07:13:20 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-11-12 07:13:20 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-11-12 07:13:20 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-12 07:13:20 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-11-12 07:13:19 ----A---- C:\WINDOWS\system32\win32k.sys
2014-11-12 07:13:17 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-11-12 07:13:17 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-11-12 07:13:17 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-11-12 07:13:16 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-11-12 07:13:15 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-11-12 07:13:02 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-11-12 07:11:33 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-11-12 07:11:22 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-11-12 07:11:19 ----A---- C:\WINDOWS\system32\wininet.dll
2014-11-12 07:11:19 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-11-12 07:11:18 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-11-12 07:11:18 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-11-12 07:11:17 ----A---- C:\WINDOWS\system32\jscript.dll
2014-11-12 07:11:16 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-11-12 07:11:16 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-11-12 07:11:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-11-12 07:11:16 ----A---- C:\WINDOWS\system32\ieui.dll
2014-11-12 07:11:15 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-11-12 07:11:15 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-11-12 07:11:15 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-11-12 07:11:14 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-11-12 07:11:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-11-12 07:11:13 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-12 07:11:13 ----A---- C:\WINDOWS\system32\hlink.dll
2014-11-12 07:11:12 ----A---- C:\WINDOWS\system32\msrating.dll
2014-11-12 07:11:12 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\inseng.dll
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-11-12 07:11:11 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\occache.dll
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-11-12 07:11:10 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-11-12 07:11:09 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-12 07:11:09 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-11-12 07:11:09 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-11-12 07:11:08 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-11-12 07:11:08 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-11-12 07:11:08 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-11-12 07:11:08 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-11-12 07:11:07 ----A---- C:\WINDOWS\system32\wextract.exe
2014-11-12 07:11:07 ----A---- C:\WINDOWS\system32\url.dll
2014-11-12 07:11:07 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-11-12 07:11:07 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-11-12 07:11:06 ----A---- C:\WINDOWS\system32\mshta.exe
2014-11-12 07:11:06 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-11-12 07:10:25 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-11-12 07:10:24 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-11-12 07:10:23 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-11-12 07:10:22 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-11-12 07:09:57 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-11-12 07:09:55 ----A---- C:\WINDOWS\system32\schannel.dll
2014-11-12 07:09:55 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-11-12 07:09:55 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-11-12 07:09:53 ----A---- C:\WINDOWS\system32\packager.dll
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\msi.dll
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\consent.exe
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\authui.dll
2014-11-12 07:09:50 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-11-12 07:09:49 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-11-12 07:09:49 ----A---- C:\WINDOWS\system32\devinv.dll
2014-11-12 07:09:49 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-11-12 07:09:49 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-11-12 07:09:48 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-11-12 07:09:48 ----A---- C:\WINDOWS\system32\aepic.dll
2014-11-12 07:09:46 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wups2.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wups.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-11-12 07:09:45 ----A---- C:\WINDOWS\system32\wuaext.dll
2014-10-22 19:41:59 ----D---- C:\Program Files\Common Files\Skype
2014-10-20 11:52:14 ----A---- C:\WINDOWS\system32\shell32.dll
2014-10-20 11:52:13 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-10-20 11:52:12 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-10-20 11:52:12 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-10-20 11:52:11 ----A---- C:\WINDOWS\system32\twinui.dll
2014-10-20 11:52:10 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-10-20 11:52:10 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-10-20 11:52:10 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-10-20 11:52:10 ----A---- C:\WINDOWS\system32\localspl.dll
2014-10-20 11:52:09 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-10-20 11:52:09 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-10-20 11:52:09 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-10-20 11:52:08 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-10-20 11:52:07 ----A---- C:\WINDOWS\system32\untfs.dll
2014-10-20 11:52:07 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-10-20 11:52:06 ----A---- C:\WINDOWS\system32\WofTasks.dll
2014-10-20 11:52:06 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-10-16 20:26:50 ----A---- C:\WINDOWS\system32\rastls.dll
2014-10-16 20:11:46 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-10-16 20:11:44 ----A---- C:\WINDOWS\system32\winbici.dll
======List of files/folders modified in the last 1 month======
2014-11-15 17:11:25 ----D---- C:\WINDOWS\Prefetch
2014-11-15 17:11:18 ----RD---- C:\Program Files
2014-11-15 17:00:00 ----D---- C:\WINDOWS\system32\sru
2014-11-15 16:41:35 ----RD---- C:\WINDOWS\System32
2014-11-15 16:41:35 ----D---- C:\WINDOWS\inf
2014-11-15 16:41:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-15 12:51:57 ----D---- C:\Users\Admin\AppData\Roaming\Skype
2014-11-15 11:54:21 ----D---- C:\WINDOWS\Temp
2014-11-14 15:33:24 ----D---- C:\WINDOWS\Microsoft.NET
2014-11-14 08:58:04 ----D---- C:\Windows
2014-11-14 07:10:34 ----HD---- C:\Program Files\WindowsApps
2014-11-14 07:10:34 ----D---- C:\WINDOWS\AppReadiness
2014-11-13 07:28:06 ----D---- C:\WINDOWS\system32\config
2014-11-12 14:23:29 ----D---- C:\WINDOWS\rescache
2014-11-12 14:13:07 ----D---- C:\WINDOWS\WinSxS
2014-11-12 13:57:26 ----RSD---- C:\WINDOWS\assembly
2014-11-12 10:33:43 ----D---- C:\WINDOWS\debug
2014-11-12 10:30:29 ----D---- C:\WINDOWS\system32\en-US
2014-11-12 10:30:29 ----D---- C:\WINDOWS\system32\Drivers
2014-11-12 10:30:28 ----D---- C:\WINDOWS\system32\migration
2014-11-12 10:30:28 ----D---- C:\Program Files\Windows Defender
2014-11-12 10:30:28 ----D---- C:\Program Files\Internet Explorer
2014-11-12 10:30:27 ----SD---- C:\WINDOWS\system32\CompatTel
2014-11-12 10:30:27 ----D---- C:\WINDOWS\system32\sk-SK
2014-11-12 10:30:25 ----D---- C:\WINDOWS\CbsTemp
2014-11-12 10:30:14 ----D---- C:\WINDOWS\system32\MRT
2014-11-12 10:28:25 ----A---- C:\WINDOWS\system32\MRT.exe
2014-11-12 10:28:12 ----SHD---- C:\WINDOWS\Installer
2014-11-12 10:28:11 ----HD---- C:\Config.Msi
2014-11-12 10:28:11 ----D---- C:\ProgramData\Microsoft Help
2014-11-12 10:26:20 ----D---- C:\WINDOWS\system32\wbem
2014-11-10 20:34:08 ----D---- C:\Servis
2014-11-10 18:22:44 ----SHD---- C:\System Volume Information
2014-11-10 15:00:38 ----D---- C:\Program Files\ATI Technologies
2014-11-10 14:52:54 ----SD---- C:\ProgramData\Microsoft
2014-11-10 14:52:54 ----D---- C:\Program Files\Microsoft
2014-11-09 08:14:59 ----D---- C:\WINDOWS\SoftwareDistribution
2014-11-01 07:42:12 ----D---- C:\Program Files\CCleaner
2014-10-30 21:40:04 ----D---- C:\WINDOWS\system32\Tasks
2014-10-30 21:40:04 ----D---- C:\Program Files\Opera
2014-10-22 19:42:02 ----D---- C:\ProgramData\Skype
2014-10-22 19:41:59 ----RD---- C:\Program Files\Skype
2014-10-22 19:41:59 ----D---- C:\Program Files\Common Files
2014-10-22 19:41:00 ----A---- C:\WINDOWS\system32\sqlite3.dll
2014-10-20 13:21:33 ----D---- C:\WINDOWS\system32\DriverStore
2014-10-20 12:50:12 ----RD---- C:\WINDOWS\ToastData
2014-10-20 12:50:12 ----D---- C:\WINDOWS\apppatch
2014-10-20 11:51:08 ----D---- C:\WINDOWS\system32\catroot2
2014-10-19 17:39:43 ----D---- C:\WINDOWS\Tasks
2014-10-16 21:31:35 ----D---- C:\WINDOWS\MediaViewer
2014-10-16 21:31:35 ----D---- C:\WINDOWS\FileManager
2014-10-16 21:31:35 ----D---- C:\WINDOWS\Camera
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-09-29 49944]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-09-29 192352]
R0 Wof;Windows Overlay File System Filter Driver; C:\WINDOWS\system32\drivers\Wof.sys [2014-03-13 138584]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-09-29 81768]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-09-29 779536]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-09-29 414520]
R2 aksfridge;aksfridge; \??\C:\WINDOWS\system32\drivers\aksfridge.sys [2014-04-29 425352]
R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\i386\AODDriver2.sys [2014-02-11 50400]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-09-29 24184]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-09-29 67824]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-09-29 71944]
R2 hardlock;hardlock; \??\C:\WINDOWS\system32\drivers\hardlock.sys [2014-04-29 609624]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2012-07-04 10070016]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2012-07-04 290304]
R3 RTL8168;@netrt630x86.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x86.sys [2013-06-18 490496]
R3 V0260VID;@oem68.inf,%szDeviceDesc%;Live! Cam Vista IM; C:\WINDOWS\system32\DRIVERS\V0260Vid.sys [2006-11-03 178913]
S2 AODDriver4.3;AODDriver4.3; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\i386\AODDriver2.sys [2014-02-11 50400]
S3 dot4;@oem2.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2012-09-25 137632]
S3 Dot4Print;@oem13.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\WINDOWS\System32\drivers\Dot4Prt.sys [2012-09-25 22432]
S3 dot4usb;@oem2.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2012-09-25 42912]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2013-02-02 17488]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2013-07-23 22016]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2013-07-23 61936]
S3 mvusbews;@oem5.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-12-24 17408]
S3 nmwcd;@oem72.inf,%MFG% %SVC%;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2013-01-23 18560]
S3 nmwcdc;@oem75.inf,%MFG% %SVC%;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2013-01-23 23168]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 37888]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2013-08-22 27136]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192]
S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\WINDOWS\system32\DRIVERS\WinUsb.sys [2013-08-22 64000]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2012-07-04 217088]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-04-17 276992]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-09-29 50344]
R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2014-08-07 438616]
R2 hasplms;Sentinel LDK License Manager; C:\WINDOWS\system32\hasplms.exe [2014-04-29 4683144]
R2 HPSIService;HP SI Service; C:\Windows\system32\HPSIsvc.exe [2012-11-08 100232]
R2 PDFProFiltSrvPP;PDFProFiltSrvPP; C:\Program Files\Xerox Scan To PC Desktop 12\PaperPort 14\PDFProFiltSrvPP.exe [2013-02-26 220488]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-02-02 116648]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2013-08-22 31552]
S2 SecureUpdateSvc;SecureUpdate; C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe [2014-05-28 2580304]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12 267440]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-02-02 116648]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-02-02 194032]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
-----------------EOF-----------------