Prosím o kontrolu
Napsal: 15 úno 2015 01:23
Zdravím vás, prosím o radu. Poslední dobou se mi vypíná počítač. Zobrazí se mi modrá obrazovka
pak se znovu spustí. Ne vždy jsem u toho byla, tak nevím, jestli byl průběh vždy stejný. Dnes se ale nespustil, musela jsem ho zapnou ručně. Můžete mi prosím poradit?
Logfile of random's system information tool 1.10 (written by random/random)
Run by Monika at 2015-02-15 00:59:17
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 145 GB (59%) free of 245 GB
Total RAM: 8175 MB (78% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:59:37, on 15.2.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\ProgramData\HP Photo Creations\Communicator.exe
C:\Program Files\trend micro\Monika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - (no file)
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll
O3 - Toolbar: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - (no file)
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3664780136-2253626204-281063098-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3664780136-2253626204-281063098-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: Download video on this page - res://C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YTVD_IE.dll/300
O8 - Extra context menu item: Download video this links to - res://C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YTVD_IE.dll/301
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Download Video - {B4FECE59-6D0A-4EE6-A07F-E6A94F846E55} - res://C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YTVD_IE.dll/300 (file missing)
O9 - Extra 'Tools' menuitem: Download video on this page - {B4FECE59-6D0A-4EE6-A07F-E6A94F846E55} - res://C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YTVD_IE.dll/300 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10454 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
taskeng.exe {B663D3A9-B516-4D0E-8375-26A7713B7DE2}
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\Windows\system32\wbem\wmiprvse.exe
ngservice.exe pipeserver
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\ProgramData\HP Photo Creations\Communicator.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
taskeng.exe {1F9007A8-3C74-4891-A9EB-4C9E95DB8016}
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
"C:\Windows\system32\wuauclt.exe"
wmiadap.exe /F /T /R
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\Users\Monika\Downloads\RSITx64.exe"
C:\Windows\System32\svchost.exe -k WerSvcGroup
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\HP Photo Creations Communicator.job - C:\ProgramData\HP Photo Creations\Communicator.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\ls6olys8.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\ls6olys8.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\ls6olys8.default\searchplugins\
yahoo_ff.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-21 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-21 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11 1431712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11 1154720]
{B922D405-6D13-4A2B-AE89-08A030DA4402}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11 1431712]
{B922D405-6D13-4A2B-AE89-08A030DA4402}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-01-23 5227112]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2013-07-25 5624784]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
"C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YouTubeVideoDownloader.exe"="C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YouTubeVideoDownloader.exe:*:Enabled:YouTube Video Downloader"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-02-15 00:59:18 ----D---- C:\Program Files\trend micro
2015-02-15 00:59:17 ----D---- C:\rsit
2015-02-01 10:18:32 ----SHD---- C:\found.000
2015-01-29 20:51:31 ----D---- C:\Windows\system32\appraiser
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\mfps.dll
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\mferror.dll
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-01-29 20:44:12 ----A---- C:\Windows\system32\rrinstaller.exe
2015-01-29 20:44:12 ----A---- C:\Windows\system32\mfps.dll
2015-01-29 20:44:12 ----A---- C:\Windows\system32\mfpmp.exe
2015-01-29 20:44:12 ----A---- C:\Windows\system32\mferror.dll
2015-01-29 20:44:11 ----A---- C:\Windows\system32\mf.dll
2015-01-29 20:38:15 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-01-29 20:38:15 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-01-29 20:38:15 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-01-29 20:38:14 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-01-29 20:38:14 ----A---- C:\Windows\system32\iernonce.dll
2015-01-29 20:38:14 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-01-29 20:38:14 ----A---- C:\Windows\system32\ie4uinit.exe
2015-01-29 20:38:13 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-01-29 20:38:13 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-01-29 20:38:12 ----A---- C:\Windows\system32\urlmon.dll
2015-01-29 20:38:12 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-01-29 20:38:12 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-01-29 20:38:12 ----A---- C:\Windows\system32\iedkcs32.dll
2015-01-29 20:38:11 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-01-29 20:38:11 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-01-29 20:38:11 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-01-29 20:38:11 ----A---- C:\Windows\system32\msfeeds.dll
2015-01-29 20:38:11 ----A---- C:\Windows\system32\iesetup.dll
2015-01-29 20:38:11 ----A---- C:\Windows\system32\ieapfltr.dll
2015-01-29 20:38:11 ----A---- C:\Windows\system32\dxtrans.dll
2015-01-29 20:38:10 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-01-29 20:38:10 ----A---- C:\Windows\system32\iertutil.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-01-29 20:38:09 ----A---- C:\Windows\system32\jsproxy.dll
2015-01-29 20:38:09 ----A---- C:\Windows\system32\ieUnatt.exe
2015-01-29 20:38:08 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-01-29 20:38:08 ----A---- C:\Windows\system32\mshtmled.dll
2015-01-29 20:38:08 ----A---- C:\Windows\system32\ieui.dll
2015-01-29 20:38:08 ----A---- C:\Windows\system32\ieframe.dll
2015-01-29 20:38:08 ----A---- C:\Windows\system32\dxtmsft.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\wininet.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\vbscript.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\jscript9diag.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\jscript9.dll
2015-01-29 20:38:06 ----A---- C:\Windows\system32\msrating.dll
2015-01-29 20:38:06 ----A---- C:\Windows\system32\mshtml.dll
2015-01-29 20:26:03 ----D---- C:\Program Files\CCleaner
2015-01-29 20:21:28 ----A---- C:\Windows\system32\invagent.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\generaltel.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\devinv.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\appraiser.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\aitstatic.exe
2015-01-29 20:21:28 ----A---- C:\Windows\system32\aepic.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\aeinv.dll
2015-01-29 20:21:27 ----A---- C:\Windows\system32\aepdu.dll
2015-01-29 20:21:24 ----A---- C:\Windows\system32\rdpcorets.dll
2015-01-29 20:21:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-01-29 20:21:20 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-01-29 20:21:20 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-01-29 20:21:20 ----A---- C:\Windows\system32\srcore.dll
2015-01-29 20:21:19 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-01-29 20:21:19 ----A---- C:\Windows\system32\srclient.dll
2015-01-29 20:21:19 ----A---- C:\Windows\system32\rstrui.exe
2015-01-29 20:21:16 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-01-29 20:21:16 ----A---- C:\Windows\system32\lsasrv.dll
2015-01-29 20:21:16 ----A---- C:\Windows\system32\kerberos.dll
2015-01-29 20:21:15 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-01-29 20:21:15 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-01-29 20:21:15 ----A---- C:\Windows\system32\pku2u.dll
2015-01-29 20:21:15 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-01-29 20:21:14 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-01-29 20:21:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-01-29 20:21:07 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-01-29 20:21:07 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-01-29 20:21:07 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\wdigest.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\TSpkg.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\schannel.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\ncrypt.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\msv1_0.dll
2015-01-29 20:21:06 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-01-29 20:21:06 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-01-29 20:21:06 ----A---- C:\Windows\system32\credssp.dll
2015-01-29 20:21:04 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-01-29 20:20:59 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2015-01-29 20:20:59 ----A---- C:\Windows\system32\qdvd.dll
2015-01-29 20:20:55 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-01-29 20:20:55 ----A---- C:\Windows\system32\termsrv.dll
2015-01-29 20:20:55 ----A---- C:\Windows\system32\adtschema.dll
2015-01-29 20:20:54 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-01-29 20:20:54 ----A---- C:\Windows\system32\msaudite.dll
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\system32\KBDTAT.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\system32\KBDRU1.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\system32\KBDRU.DLL
2015-01-29 20:20:50 ----A---- C:\Windows\system32\KBDYAK.DLL
2015-01-29 20:20:50 ----A---- C:\Windows\system32\KBDBASH.DLL
2015-01-29 20:20:49 ----A---- C:\Windows\system32\WsmSvc.dll
2015-01-29 20:20:48 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2015-01-29 20:20:48 ----A---- C:\Windows\system32\WsmWmiPl.dll
2015-01-29 20:20:48 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2015-01-29 20:20:47 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2015-01-29 20:20:47 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2015-01-29 20:20:47 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2015-01-29 20:20:47 ----A---- C:\Windows\system32\WsmAuto.dll
2015-01-29 20:20:47 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2015-01-29 20:20:46 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2015-01-29 20:20:43 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-01-29 20:20:43 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-01-29 20:20:42 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\EncDump.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\audiosrv.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\AudioSes.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\AudioEng.dll
2015-01-29 20:20:41 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-01-29 20:20:41 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-01-29 20:20:39 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2015-01-29 20:20:39 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2015-01-29 20:20:39 ----A---- C:\Windows\system32\mscorier.dll
2015-01-29 20:20:39 ----A---- C:\Windows\system32\dfshim.dll
2015-01-29 20:20:38 ----A---- C:\Windows\SYSWOW64\mscories.dll
2015-01-29 20:20:38 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2015-01-29 20:20:38 ----A---- C:\Windows\system32\mscories.dll
2015-01-29 20:20:38 ----A---- C:\Windows\system32\IMJP10K.DLL
2015-01-29 20:20:37 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-01-29 20:20:37 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-01-29 20:20:37 ----A---- C:\Windows\system32\msxml3r.dll
2015-01-29 20:20:37 ----A---- C:\Windows\system32\msxml3.dll
2015-01-29 20:20:34 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-01-29 20:20:34 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2015-01-29 20:20:34 ----A---- C:\Windows\system32\nlasvc.dll
2015-01-29 20:20:32 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-01-29 20:20:32 ----A---- C:\Windows\system32\tzres.dll
2015-01-29 20:20:31 ----A---- C:\Windows\system32\profsvc.dll
2015-01-29 20:20:30 ----A---- C:\Windows\SYSWOW64\charmap.exe
2015-01-29 20:20:30 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-01-29 20:20:30 ----A---- C:\Windows\system32\charmap.exe
2015-01-29 20:20:29 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-01-29 20:20:28 ----A---- C:\Windows\SYSWOW64\rastls.dll
2015-01-29 20:20:28 ----A---- C:\Windows\system32\rastls.dll
2015-01-29 20:20:24 ----A---- C:\Windows\SYSWOW64\packager.dll
2015-01-29 20:20:24 ----A---- C:\Windows\system32\packager.dll
2015-01-29 20:20:19 ----A---- C:\Windows\SYSWOW64\winsta.dll
2015-01-29 20:20:19 ----A---- C:\Windows\system32\winsta.dll
2015-01-29 20:20:19 ----A---- C:\Windows\system32\winlogon.exe
2015-01-29 20:20:19 ----A---- C:\Windows\system32\rdpcorekmts.dll
2015-01-29 20:20:19 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2015-01-29 20:20:18 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2015-01-29 20:20:12 ----A---- C:\Windows\system32\msi.dll
2015-01-29 20:20:11 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-01-29 20:15:42 ----A---- C:\Windows\system32\win32k.sys
2015-01-29 20:15:20 ----A---- C:\Windows\system32\mstscax.dll
2015-01-29 20:15:19 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-01-29 20:15:18 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-01-29 20:15:18 ----A---- C:\Windows\system32\oleaut32.dll
2015-01-26 22:15:48 ----D---- C:\Program Files (x86)\Mozilla Firefox
======List of files/folders modified in the last 1 month======
2015-02-15 00:59:29 ----D---- C:\Windows\Prefetch
2015-02-15 00:59:20 ----D---- C:\Windows\Temp
2015-02-15 00:59:18 ----D---- C:\Program Files
2015-02-15 00:59:14 ----D---- C:\Windows\System32
2015-02-15 00:59:14 ----D---- C:\Windows\inf
2015-02-15 00:59:14 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-02-15 00:52:00 ----D---- C:\ProgramData\NVIDIA
2015-02-14 19:08:48 ----D---- C:\Windows\system32\config
2015-02-14 14:34:37 ----D---- C:\Windows\Minidump
2015-02-14 14:34:05 ----D---- C:\Windows
2015-02-10 23:33:38 ----D---- C:\Users\Monika\AppData\Roaming\vlc
2015-02-09 19:46:49 ----SHD---- C:\System Volume Information
2015-02-07 17:25:41 ----D---- C:\Windows\debug
2015-02-07 09:46:51 ----D---- C:\Windows\system32\catroot2
2015-02-05 18:41:09 ----D---- C:\Windows\SysWOW64
2015-02-05 18:41:06 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-01-29 22:58:54 ----D---- C:\Windows\rescache
2015-01-29 22:33:17 ----D---- C:\Windows\Microsoft.NET
2015-01-29 22:03:30 ----RSD---- C:\Windows\assembly
2015-01-29 20:54:31 ----D---- C:\Windows\winsxs
2015-01-29 20:51:31 ----SD---- C:\Windows\system32\CompatTel
2015-01-29 20:51:31 ----SD---- C:\ProgramData\Microsoft
2015-01-29 20:51:31 ----D---- C:\Windows\AppCompat
2015-01-29 20:51:30 ----RSD---- C:\Windows\Fonts
2015-01-29 20:51:30 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-01-29 20:51:30 ----D---- C:\Windows\system32\drivers
2015-01-29 20:51:30 ----D---- C:\Windows\system32\cs-CZ
2015-01-29 20:51:29 ----D---- C:\Windows\SYSWOW64\en-US
2015-01-29 20:51:29 ----D---- C:\Windows\system32\en-US
2015-01-29 20:51:29 ----D---- C:\Windows\PolicyDefinitions
2015-01-29 20:51:29 ----D---- C:\Program Files\Internet Explorer
2015-01-29 20:51:29 ----D---- C:\Program Files (x86)\Internet Explorer
2015-01-29 20:50:25 ----SHD---- C:\Windows\Installer
2015-01-29 20:44:16 ----D---- C:\Windows\system32\catroot
2015-01-29 20:41:25 ----D---- C:\Windows\system32\MRT
2015-01-29 20:28:48 ----D---- C:\Program Files (x86)\PDFCreator
2015-01-29 20:28:29 ----D---- C:\Windows\Panther
2015-01-29 20:28:29 ----D---- C:\Windows\Logs
2015-01-29 20:26:06 ----D---- C:\Windows\system32\Tasks
2015-01-27 19:50:02 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-27 08:34:50 ----RD---- C:\Program Files (x86)
2015-01-22 17:19:36 ----D---- C:\Windows\system32\FxsTmp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-12-21 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-12-21 267632]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-12-21 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-12-21 1050432]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-12-21 436624]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-12-21 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-12-21 83280]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-12-21 116728]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-12-21 271752]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-10-27 196384]
R3 NVNET;NVIDIA nForce 10/100/1000 Mbps Ethernet ; C:\Windows\system32\DRIVERS\nvmf6264.sys [2010-08-12 350952]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-12-21 50344]
R2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.exe [2014-03-11 193696]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-10-23 922912]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-10-27 1364256]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-10-15 3921880]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-09-20 1042272]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-09-13 171416]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-10-23 414496]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-12-21 4012248]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-05 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe [2014-03-11 247968]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-01-26 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-01-21 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Monika at 2015-02-15 00:59:17
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 145 GB (59%) free of 245 GB
Total RAM: 8175 MB (78% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:59:37, on 15.2.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\ProgramData\HP Photo Creations\Communicator.exe
C:\Program Files\trend micro\Monika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - (no file)
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll
O3 - Toolbar: (no name) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - (no file)
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3664780136-2253626204-281063098-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3664780136-2253626204-281063098-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: Download video on this page - res://C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YTVD_IE.dll/300
O8 - Extra context menu item: Download video this links to - res://C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YTVD_IE.dll/301
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Download Video - {B4FECE59-6D0A-4EE6-A07F-E6A94F846E55} - res://C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YTVD_IE.dll/300 (file missing)
O9 - Extra 'Tools' menuitem: Download video on this page - {B4FECE59-6D0A-4EE6-A07F-E6A94F846E55} - res://C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YTVD_IE.dll/300 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10454 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
taskeng.exe {B663D3A9-B516-4D0E-8375-26A7713B7DE2}
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\Windows\system32\wbem\wmiprvse.exe
ngservice.exe pipeserver
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\ProgramData\HP Photo Creations\Communicator.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
taskeng.exe {1F9007A8-3C74-4891-A9EB-4C9E95DB8016}
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
"C:\Windows\system32\wuauclt.exe"
wmiadap.exe /F /T /R
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\Users\Monika\Downloads\RSITx64.exe"
C:\Windows\System32\svchost.exe -k WerSvcGroup
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\HP Photo Creations Communicator.job - C:\ProgramData\HP Photo Creations\Communicator.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\ls6olys8.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\ls6olys8.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\ls6olys8.default\searchplugins\
yahoo_ff.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-21 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-21 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11 1431712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11 1154720]
{B922D405-6D13-4A2B-AE89-08A030DA4402}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11 1431712]
{B922D405-6D13-4A2B-AE89-08A030DA4402}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-01-23 5227112]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2013-07-25 5624784]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
"C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YouTubeVideoDownloader.exe"="C:\Program Files (x86)\Tomabo\YouTube Video Downloader\YouTubeVideoDownloader.exe:*:Enabled:YouTube Video Downloader"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-02-15 00:59:18 ----D---- C:\Program Files\trend micro
2015-02-15 00:59:17 ----D---- C:\rsit
2015-02-01 10:18:32 ----SHD---- C:\found.000
2015-01-29 20:51:31 ----D---- C:\Windows\system32\appraiser
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\mfps.dll
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\mferror.dll
2015-01-29 20:44:12 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-01-29 20:44:12 ----A---- C:\Windows\system32\rrinstaller.exe
2015-01-29 20:44:12 ----A---- C:\Windows\system32\mfps.dll
2015-01-29 20:44:12 ----A---- C:\Windows\system32\mfpmp.exe
2015-01-29 20:44:12 ----A---- C:\Windows\system32\mferror.dll
2015-01-29 20:44:11 ----A---- C:\Windows\system32\mf.dll
2015-01-29 20:38:15 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-01-29 20:38:15 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-01-29 20:38:15 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-01-29 20:38:14 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-01-29 20:38:14 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-01-29 20:38:14 ----A---- C:\Windows\system32\iernonce.dll
2015-01-29 20:38:14 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-01-29 20:38:14 ----A---- C:\Windows\system32\ie4uinit.exe
2015-01-29 20:38:13 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-01-29 20:38:13 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-01-29 20:38:12 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-01-29 20:38:12 ----A---- C:\Windows\system32\urlmon.dll
2015-01-29 20:38:12 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-01-29 20:38:12 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-01-29 20:38:12 ----A---- C:\Windows\system32\iedkcs32.dll
2015-01-29 20:38:11 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-01-29 20:38:11 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-01-29 20:38:11 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-01-29 20:38:11 ----A---- C:\Windows\system32\msfeeds.dll
2015-01-29 20:38:11 ----A---- C:\Windows\system32\iesetup.dll
2015-01-29 20:38:11 ----A---- C:\Windows\system32\ieapfltr.dll
2015-01-29 20:38:11 ----A---- C:\Windows\system32\dxtrans.dll
2015-01-29 20:38:10 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-01-29 20:38:10 ----A---- C:\Windows\system32\iertutil.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-01-29 20:38:09 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-01-29 20:38:09 ----A---- C:\Windows\system32\jsproxy.dll
2015-01-29 20:38:09 ----A---- C:\Windows\system32\ieUnatt.exe
2015-01-29 20:38:08 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-01-29 20:38:08 ----A---- C:\Windows\system32\mshtmled.dll
2015-01-29 20:38:08 ----A---- C:\Windows\system32\ieui.dll
2015-01-29 20:38:08 ----A---- C:\Windows\system32\ieframe.dll
2015-01-29 20:38:08 ----A---- C:\Windows\system32\dxtmsft.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\wininet.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\vbscript.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\jscript9diag.dll
2015-01-29 20:38:07 ----A---- C:\Windows\system32\jscript9.dll
2015-01-29 20:38:06 ----A---- C:\Windows\system32\msrating.dll
2015-01-29 20:38:06 ----A---- C:\Windows\system32\mshtml.dll
2015-01-29 20:26:03 ----D---- C:\Program Files\CCleaner
2015-01-29 20:21:28 ----A---- C:\Windows\system32\invagent.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\generaltel.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\devinv.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\appraiser.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\aitstatic.exe
2015-01-29 20:21:28 ----A---- C:\Windows\system32\aepic.dll
2015-01-29 20:21:28 ----A---- C:\Windows\system32\aeinv.dll
2015-01-29 20:21:27 ----A---- C:\Windows\system32\aepdu.dll
2015-01-29 20:21:24 ----A---- C:\Windows\system32\rdpcorets.dll
2015-01-29 20:21:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-01-29 20:21:20 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-01-29 20:21:20 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-01-29 20:21:20 ----A---- C:\Windows\system32\srcore.dll
2015-01-29 20:21:19 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-01-29 20:21:19 ----A---- C:\Windows\system32\srclient.dll
2015-01-29 20:21:19 ----A---- C:\Windows\system32\rstrui.exe
2015-01-29 20:21:16 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-01-29 20:21:16 ----A---- C:\Windows\system32\lsasrv.dll
2015-01-29 20:21:16 ----A---- C:\Windows\system32\kerberos.dll
2015-01-29 20:21:15 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-01-29 20:21:15 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-01-29 20:21:15 ----A---- C:\Windows\system32\pku2u.dll
2015-01-29 20:21:15 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-01-29 20:21:14 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-01-29 20:21:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-01-29 20:21:07 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-01-29 20:21:07 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-01-29 20:21:07 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\wdigest.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\TSpkg.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\schannel.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\ncrypt.dll
2015-01-29 20:21:07 ----A---- C:\Windows\system32\msv1_0.dll
2015-01-29 20:21:06 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-01-29 20:21:06 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-01-29 20:21:06 ----A---- C:\Windows\system32\credssp.dll
2015-01-29 20:21:04 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-01-29 20:20:59 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2015-01-29 20:20:59 ----A---- C:\Windows\system32\qdvd.dll
2015-01-29 20:20:55 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-01-29 20:20:55 ----A---- C:\Windows\system32\termsrv.dll
2015-01-29 20:20:55 ----A---- C:\Windows\system32\adtschema.dll
2015-01-29 20:20:54 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-01-29 20:20:54 ----A---- C:\Windows\system32\msaudite.dll
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\system32\KBDTAT.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\system32\KBDRU1.DLL
2015-01-29 20:20:51 ----A---- C:\Windows\system32\KBDRU.DLL
2015-01-29 20:20:50 ----A---- C:\Windows\system32\KBDYAK.DLL
2015-01-29 20:20:50 ----A---- C:\Windows\system32\KBDBASH.DLL
2015-01-29 20:20:49 ----A---- C:\Windows\system32\WsmSvc.dll
2015-01-29 20:20:48 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2015-01-29 20:20:48 ----A---- C:\Windows\system32\WsmWmiPl.dll
2015-01-29 20:20:48 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2015-01-29 20:20:47 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2015-01-29 20:20:47 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2015-01-29 20:20:47 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2015-01-29 20:20:47 ----A---- C:\Windows\system32\WsmAuto.dll
2015-01-29 20:20:47 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2015-01-29 20:20:46 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2015-01-29 20:20:43 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-01-29 20:20:43 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-01-29 20:20:42 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\EncDump.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\audiosrv.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\AudioSes.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-01-29 20:20:42 ----A---- C:\Windows\system32\AudioEng.dll
2015-01-29 20:20:41 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-01-29 20:20:41 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-01-29 20:20:39 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2015-01-29 20:20:39 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2015-01-29 20:20:39 ----A---- C:\Windows\system32\mscorier.dll
2015-01-29 20:20:39 ----A---- C:\Windows\system32\dfshim.dll
2015-01-29 20:20:38 ----A---- C:\Windows\SYSWOW64\mscories.dll
2015-01-29 20:20:38 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2015-01-29 20:20:38 ----A---- C:\Windows\system32\mscories.dll
2015-01-29 20:20:38 ----A---- C:\Windows\system32\IMJP10K.DLL
2015-01-29 20:20:37 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-01-29 20:20:37 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-01-29 20:20:37 ----A---- C:\Windows\system32\msxml3r.dll
2015-01-29 20:20:37 ----A---- C:\Windows\system32\msxml3.dll
2015-01-29 20:20:34 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-01-29 20:20:34 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2015-01-29 20:20:34 ----A---- C:\Windows\system32\nlasvc.dll
2015-01-29 20:20:32 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-01-29 20:20:32 ----A---- C:\Windows\system32\tzres.dll
2015-01-29 20:20:31 ----A---- C:\Windows\system32\profsvc.dll
2015-01-29 20:20:30 ----A---- C:\Windows\SYSWOW64\charmap.exe
2015-01-29 20:20:30 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-01-29 20:20:30 ----A---- C:\Windows\system32\charmap.exe
2015-01-29 20:20:29 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-01-29 20:20:28 ----A---- C:\Windows\SYSWOW64\rastls.dll
2015-01-29 20:20:28 ----A---- C:\Windows\system32\rastls.dll
2015-01-29 20:20:24 ----A---- C:\Windows\SYSWOW64\packager.dll
2015-01-29 20:20:24 ----A---- C:\Windows\system32\packager.dll
2015-01-29 20:20:19 ----A---- C:\Windows\SYSWOW64\winsta.dll
2015-01-29 20:20:19 ----A---- C:\Windows\system32\winsta.dll
2015-01-29 20:20:19 ----A---- C:\Windows\system32\winlogon.exe
2015-01-29 20:20:19 ----A---- C:\Windows\system32\rdpcorekmts.dll
2015-01-29 20:20:19 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2015-01-29 20:20:18 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2015-01-29 20:20:12 ----A---- C:\Windows\system32\msi.dll
2015-01-29 20:20:11 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-01-29 20:15:42 ----A---- C:\Windows\system32\win32k.sys
2015-01-29 20:15:20 ----A---- C:\Windows\system32\mstscax.dll
2015-01-29 20:15:19 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-01-29 20:15:18 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-01-29 20:15:18 ----A---- C:\Windows\system32\oleaut32.dll
2015-01-26 22:15:48 ----D---- C:\Program Files (x86)\Mozilla Firefox
======List of files/folders modified in the last 1 month======
2015-02-15 00:59:29 ----D---- C:\Windows\Prefetch
2015-02-15 00:59:20 ----D---- C:\Windows\Temp
2015-02-15 00:59:18 ----D---- C:\Program Files
2015-02-15 00:59:14 ----D---- C:\Windows\System32
2015-02-15 00:59:14 ----D---- C:\Windows\inf
2015-02-15 00:59:14 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-02-15 00:52:00 ----D---- C:\ProgramData\NVIDIA
2015-02-14 19:08:48 ----D---- C:\Windows\system32\config
2015-02-14 14:34:37 ----D---- C:\Windows\Minidump
2015-02-14 14:34:05 ----D---- C:\Windows
2015-02-10 23:33:38 ----D---- C:\Users\Monika\AppData\Roaming\vlc
2015-02-09 19:46:49 ----SHD---- C:\System Volume Information
2015-02-07 17:25:41 ----D---- C:\Windows\debug
2015-02-07 09:46:51 ----D---- C:\Windows\system32\catroot2
2015-02-05 18:41:09 ----D---- C:\Windows\SysWOW64
2015-02-05 18:41:06 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-01-29 22:58:54 ----D---- C:\Windows\rescache
2015-01-29 22:33:17 ----D---- C:\Windows\Microsoft.NET
2015-01-29 22:03:30 ----RSD---- C:\Windows\assembly
2015-01-29 20:54:31 ----D---- C:\Windows\winsxs
2015-01-29 20:51:31 ----SD---- C:\Windows\system32\CompatTel
2015-01-29 20:51:31 ----SD---- C:\ProgramData\Microsoft
2015-01-29 20:51:31 ----D---- C:\Windows\AppCompat
2015-01-29 20:51:30 ----RSD---- C:\Windows\Fonts
2015-01-29 20:51:30 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-01-29 20:51:30 ----D---- C:\Windows\system32\drivers
2015-01-29 20:51:30 ----D---- C:\Windows\system32\cs-CZ
2015-01-29 20:51:29 ----D---- C:\Windows\SYSWOW64\en-US
2015-01-29 20:51:29 ----D---- C:\Windows\system32\en-US
2015-01-29 20:51:29 ----D---- C:\Windows\PolicyDefinitions
2015-01-29 20:51:29 ----D---- C:\Program Files\Internet Explorer
2015-01-29 20:51:29 ----D---- C:\Program Files (x86)\Internet Explorer
2015-01-29 20:50:25 ----SHD---- C:\Windows\Installer
2015-01-29 20:44:16 ----D---- C:\Windows\system32\catroot
2015-01-29 20:41:25 ----D---- C:\Windows\system32\MRT
2015-01-29 20:28:48 ----D---- C:\Program Files (x86)\PDFCreator
2015-01-29 20:28:29 ----D---- C:\Windows\Panther
2015-01-29 20:28:29 ----D---- C:\Windows\Logs
2015-01-29 20:26:06 ----D---- C:\Windows\system32\Tasks
2015-01-27 19:50:02 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-27 08:34:50 ----RD---- C:\Program Files (x86)
2015-01-22 17:19:36 ----D---- C:\Windows\system32\FxsTmp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-12-21 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-12-21 267632]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-12-21 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-12-21 1050432]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-12-21 436624]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-12-21 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-12-21 83280]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-12-21 116728]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-12-21 271752]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-10-27 196384]
R3 NVNET;NVIDIA nForce 10/100/1000 Mbps Ethernet ; C:\Windows\system32\DRIVERS\nvmf6264.sys [2010-08-12 350952]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-12-21 50344]
R2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.exe [2014-03-11 193696]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-10-23 922912]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-10-27 1364256]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-10-15 3921880]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-09-20 1042272]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-09-13 171416]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-10-23 414496]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-12-21 4012248]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-05 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe [2014-03-11 247968]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-01-26 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-01-21 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------