Prevence
Napsal: 14 bře 2015 11:11
Dobrý den,můžu poprosit o kontrolu logu?
Logfile of random's system information tool 1.10 (written by random/random)
Run by mixer at 2015-03-14 11:08:14
Microsoft Windows 8.1 Pro
System drive C: has 51 GB (71%) free of 71 GB
Total RAM: 2046 MB (33% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:08:19, on 14. 3. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhostex.exe
C:\Windows\Explorer.EXE
C:\Program Files\Launch Manager\LManager.exe
C:\Users\mixer\AppData\Roaming\uTorrent\utorrent.exe
C:\Program Files\Rainlendar2\Rainlendar2.exe
C:\Program Files\r2 Studios\HideOE\HideOE.exe
C:\Program Files\USB Safely Remove\USBSafelyRemove.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x86__8wekyb3d8bbwe\glcnd.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\System32\msdt.exe
C:\Windows\System32\sdiagnhost.exe
C:\Windows\system32\conhost.exe
C:\Users\mixer\Downloads\RSIT.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\mixer.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\Run: [uTorrent] "C:\Users\mixer\AppData\Roaming\uTorrent\utorrent.exe"
O4 - HKCU\..\Run: [Rainlendar2] C:\Program Files\Rainlendar2\Rainlendar2.exe
O4 - HKCU\..\Run: [HideOE] "C:\Program Files\r2 Studios\HideOE\HideOE.exe"
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE"
O4 - HKCU\..\Run: [USB Safely Remove] C:\Program Files\USB Safely Remove\USBSafelyRemove.exe /startup
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{CCDCC26D-3994-4C29-BB22-D1769C215134}: NameServer = 8.8.8.8,213.191.100.3
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: USB Safely Remove Assistant (USBSafelyRemoveService) - Unknown owner - C:\Program Files\USB Safely Remove\USBSRService.exe
--
End of file - 3965 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\mixer\AppData\Roaming\Mozilla\Firefox\Profiles\8qdr6k85.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Users\mixer\AppData\Roaming\Mozilla\Firefox\Profiles\8qdr6k85.default\extensions\
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
C:\Users\mixer\AppData\Roaming\Mozilla\Firefox\Profiles\8qdr6k85.default\searchplugins\
seznam-avast.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2007-06-14 850704]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2015-02-19 5503768]
"uTorrent"=C:\Users\mixer\AppData\Roaming\uTorrent\utorrent.exe [2014-04-14 398760]
"Rainlendar2"=C:\Program Files\Rainlendar2\Rainlendar2.exe [2014-03-14 2611808]
"HideOE"=C:\Program Files\r2 Studios\HideOE\HideOE.exe [2003-07-24 32768]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE [2014-12-19 458456]
"USB Safely Remove"=C:\Program Files\USB Safely Remove\USBSafelyRemove.exe [2012-01-30 6061056]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-14 10:40:01 ----DC---- C:\Program Files\trend micro
2015-03-14 10:39:59 ----DC---- C:\rsit
2015-03-10 20:26:42 ----AC---- C:\Windows\system32\WindowsCodecs.dll
2015-03-10 20:26:35 ----AC---- C:\Windows\system32\msctf.dll
2015-03-10 20:26:35 ----AC---- C:\Windows\system32\dwmcore.dll
2015-03-10 20:26:24 ----AC---- C:\Windows\system32\SHCore.dll
2015-03-10 20:26:23 ----AC---- C:\Windows\system32\MrmCoreR.dll
2015-03-10 20:26:09 ----AC---- C:\Windows\system32\ubpm.dll
2015-03-10 20:26:04 ----AC---- C:\Windows\system32\WSShared.dll
2015-03-10 20:26:04 ----AC---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-10 20:25:49 ----AC---- C:\Windows\system32\msftedit.dll
2015-03-10 20:25:42 ----AC---- C:\Windows\system32\photowiz.dll
2015-03-10 20:25:41 ----AC---- C:\Windows\system32\LockScreenContentServer.exe
2015-03-10 20:25:35 ----AC---- C:\Windows\system32\shell32.dll
2015-03-10 20:25:22 ----AC---- C:\Windows\system32\drivers\hidbth.sys
2015-03-10 20:25:12 ----AC---- C:\Windows\system32\schannel.dll
2015-03-10 20:25:07 ----AC---- C:\Windows\system32\win32spl.dll
2015-03-10 20:25:07 ----AC---- C:\Windows\system32\mfc42u.dll
2015-03-10 20:25:07 ----AC---- C:\Windows\system32\mfc42.dll
2015-03-10 20:25:07 ----AC---- C:\Windows\system32\localspl.dll
2015-03-10 20:25:06 ----AC---- C:\Windows\system32\D3DCompiler_47.dll
2015-03-10 20:24:55 ----AC---- C:\Windows\explorer.exe
2015-03-10 20:24:44 ----AC---- C:\Windows\system32\calc.exe
2015-03-10 20:24:41 ----AC---- C:\Windows\system32\mshtml.dll
2015-03-10 20:24:33 ----AC---- C:\Windows\system32\ieframe.dll
2015-03-10 20:24:31 ----AC---- C:\Windows\system32\jscript9.dll
2015-03-10 20:24:30 ----AC---- C:\Windows\system32\wininet.dll
2015-03-10 20:24:30 ----AC---- C:\Windows\system32\urlmon.dll
2015-03-10 20:24:30 ----AC---- C:\Windows\system32\inetcomm.dll
2015-03-10 20:24:30 ----AC---- C:\Windows\system32\iertutil.dll
2015-03-10 20:24:29 ----AC---- C:\Windows\system32\vbscript.dll
2015-03-10 20:24:29 ----AC---- C:\Windows\system32\msfeeds.dll
2015-03-10 20:24:27 ----AC---- C:\Windows\system32\dxtrans.dll
2015-03-10 20:24:26 ----AC---- C:\Windows\system32\webcheck.dll
2015-03-10 20:24:26 ----AC---- C:\Windows\system32\mshtmled.dll
2015-03-10 20:24:26 ----AC---- C:\Windows\system32\MshtmlDac.dll
2015-03-10 20:24:26 ----AC---- C:\Windows\system32\ie4uinit.exe
2015-03-10 20:24:25 ----AC---- C:\Windows\system32\iepeers.dll
2015-03-10 20:24:24 ----AC---- C:\Windows\system32\jscript.dll
2015-03-10 20:24:24 ----AC---- C:\Windows\system32\ieapfltr.dll
2015-03-10 20:23:31 ----AC---- C:\Windows\system32\eapphost.dll
2015-03-10 20:23:31 ----AC---- C:\Windows\system32\eappgnui.dll
2015-03-10 20:23:31 ----AC---- C:\Windows\system32\eappcfg.dll
2015-03-10 20:23:31 ----AC---- C:\Windows\system32\eapp3hst.dll
2015-03-10 20:23:19 ----AC---- C:\Windows\system32\win32k.sys
2015-03-10 20:23:12 ----AC---- C:\Windows\system32\rdpcorets.dll
2015-03-10 20:23:11 ----AC---- C:\Windows\system32\rdpudd.dll
2015-03-10 20:23:10 ----AC---- C:\Windows\system32\WMPhoto.dll
2015-03-10 20:22:59 ----AC---- C:\Windows\system32\StorageContextHandler.dll
2015-03-10 20:22:59 ----AC---- C:\Windows\system32\atmfd.dll
2015-03-10 20:22:58 ----AC---- C:\Windows\system32\ntoskrnl.exe
2015-03-10 20:22:58 ----AC---- C:\Windows\system32\atmlib.dll
2015-03-10 20:22:57 ----AC---- C:\Windows\system32\ntdll.dll
2015-03-10 20:20:52 ----AC---- C:\Windows\system32\drivers\ndis.sys
2015-03-10 20:20:40 ----AC---- C:\Windows\system32\drivers\WdFilter.sys
2015-03-10 20:20:40 ----AC---- C:\Windows\system32\drivers\WdBoot.sys
2015-03-10 20:20:36 ----AC---- C:\Windows\system32\drivers\WdNisDrv.sys
2015-03-10 20:20:34 ----AC---- C:\Windows\system32\winshfhc.dll
2015-03-10 20:18:26 ----AC---- C:\Windows\system32\authui.dll
2015-03-08 17:41:42 ----DC---- C:\Program Files\Common Files\DESIGNER
2015-03-08 14:20:38 ----DC---- C:\Program Files\Puran Delete Empty Folders
2015-03-07 00:18:10 ----AC---- C:\Windows\system32\drivers\1DFB1891.sys
2015-03-06 21:22:04 ----DC---- C:\Users\mixer\AppData\Roaming\USBSafelyRemove
2015-03-06 21:09:39 ----DC---- C:\Program Files\Medieval Software
2015-03-06 16:22:12 ----DC---- C:\ProgramData\Malwarebytes
2015-03-04 17:18:56 ----AC---- C:\Windows\Setup.INI
2015-03-04 17:18:20 ----DC---- C:\Program Files\Launch Manager
2015-03-03 21:00:22 ----DC---- C:\Program Files\4KDownload
2015-03-01 18:09:54 ----DC---- C:\Program Files\r2 Studios
2015-03-01 16:30:01 ----DC---- C:\Users\mixer\AppData\Roaming\vlc
2015-03-01 16:12:12 ----DC---- C:\Program Files\VideoLAN
2015-03-01 09:55:11 ----DC---- C:\Users\mixer\AppData\Roaming\Zoner
2015-03-01 09:54:38 ----DC---- C:\ProgramData\Zoner
2015-03-01 09:53:49 ----DC---- C:\Program Files\Zoner
2015-03-01 09:52:05 ----DC---- C:\Windows\AutoKMS
2015-03-01 09:43:37 ----DC---- C:\Program Files\Microsoft Synchronization Services
2015-03-01 09:42:58 ----DC---- C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-01 09:36:44 ----DC---- C:\Program Files\Microsoft Analysis Services
2015-03-01 09:35:31 ----DC---- C:\Program Files\Microsoft Office
2015-03-01 09:35:29 ----DC---- C:\ProgramData\Microsoft Help
2015-03-01 09:34:37 ----RHDC---- C:\MSOCache
2015-03-01 09:25:08 ----DC---- C:\ProgramData\USBSRService
2015-03-01 09:24:57 ----DC---- C:\Program Files\USB Safely Remove
2015-03-01 09:20:22 ----DC---- C:\Program Files\Rainlendar2
2015-02-27 15:20:55 ----DC---- C:\Users\mixer\AppData\Roaming\WinRAR
2015-02-27 15:19:38 ----DC---- C:\Program Files\WinRAR
2015-02-27 14:12:52 ----AC---- C:\Windows\system32\pwNative.exe
2015-02-27 14:12:41 ----C---- C:\Windows\system32\pwdrvio.sys
2015-02-27 14:11:47 ----C---- C:\Windows\system32\pwdspio.sys
2015-02-27 14:10:09 ----DC---- C:\Program Files\MiniTool Partition Wizard Professional Edition 8.1
2015-02-26 22:47:39 ----DC---- C:\ProgramData\SP_FT_Logs
2015-02-26 21:59:24 ----DC---- C:\Users\mixer\AppData\Roaming\mgyun
2015-02-26 21:59:20 ----DC---- C:\Program Files\VROOT
2015-02-26 21:53:00 ----DC---- C:\Program Files\ClockworkMod
2015-02-26 21:37:20 ----AC---- C:\Windows\system32\WdfCoInstaller01007.dll
2015-02-26 21:37:20 ----AC---- C:\Windows\system32\drivers\WdfCoInstaller01007.dll
2015-02-26 21:37:20 ----AC---- C:\Windows\system32\drivers\ssudeadb.sys
2015-02-26 21:36:15 ----DC---- C:\Program Files\SAMSUNG
2015-02-26 21:34:59 ----DC---- C:\ProgramData\Samsung
2015-02-26 21:00:13 ----AC---- C:\Windows\system32\drivers\pneteth.sys
2015-02-26 20:58:52 ----DC---- C:\Program Files\InstallShield Installation Information
2015-02-26 20:55:51 ----DC---- C:\Windows\tiinst
2015-02-26 20:37:32 ----DC---- C:\Windows\Profiles
2015-02-26 20:37:32 ----DC---- C:\Users\mixer\AppData\Roaming\URSoft
2015-02-26 20:37:30 ----ADC---- C:\ProgramData\TEMP
2015-02-26 20:37:10 ----DC---- C:\Program Files\Your Uninstaller
2015-02-26 20:18:16 ----DC---- C:\ProgramData\ProductData
2015-02-26 20:17:59 ----DC---- C:\ProgramData\IObit
2015-02-26 20:17:59 ----AC---- C:\Windows\system32\drivers\HWiNFO32.SYS
2015-02-26 20:17:58 ----DC---- C:\Users\mixer\AppData\Roaming\IObit
2015-02-26 19:56:59 ----DC---- C:\Users\mixer\AppData\Roaming\Mozilla
2015-02-26 19:56:24 ----DC---- C:\Program Files\Mozilla Firefox
2015-02-26 19:31:36 ----AC---- C:\Windows\system32\aspnet_counters.dll
2015-02-26 19:30:19 ----AC---- C:\Windows\system32\TSWbPrxy.exe
2015-02-26 19:30:19 ----AC---- C:\Windows\system32\nlasvc.dll
2015-02-26 19:30:19 ----AC---- C:\Windows\system32\ncsi.dll
2015-02-26 19:30:11 ----AC---- C:\Windows\system32\sppobjs.dll
2015-02-26 19:30:11 ----AC---- C:\Windows\system32\drivers\ahcache.sys
2015-02-26 19:29:32 ----AC---- C:\Windows\system32\iedkcs32.dll
2015-02-26 19:29:32 ----AC---- C:\Windows\system32\dxtmsft.dll
2015-02-26 19:29:20 ----AC---- C:\Windows\system32\oleaut32.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\WerFaultSecure.exe
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\wer.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\Faultrep.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\EncDump.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\ci.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-02-26 19:28:22 ----AC---- C:\Windows\system32\profsvc.dll
2015-02-26 19:28:04 ----AC---- C:\Windows\system32\drivers\ksecpkg.sys
2015-02-26 19:28:04 ----AC---- C:\Windows\system32\drivers\cng.sys
2015-02-26 19:27:53 ----AC---- C:\Windows\system32\drivers\mrxdav.sys
2015-02-26 19:27:35 ----AC---- C:\Windows\system32\scesrv.dll
2015-02-26 19:10:30 ----ASH---- C:\pagefile.sys
2015-02-26 19:10:24 ----ASH---- C:\hiberfil.sys
2015-02-17 15:26:28 ----AC---- C:\Windows\system32\FM20.DLL
======List of files/folders modified in the last 1 month======
2015-03-14 11:08:08 ----DC---- C:\Users\mixer\AppData\Roaming\uTorrent
2015-03-14 11:00:37 ----DC---- C:\Windows\Prefetch
2015-03-14 11:00:00 ----DC---- C:\Windows\system32\sru
2015-03-14 10:40:01 ----RDC---- C:\Program Files
2015-03-14 10:27:17 ----DC---- C:\Windows\Temp
2015-03-14 09:46:34 ----SHDC---- C:\Windows\Installer
2015-03-14 09:29:56 ----SHD---- C:\System Volume Information
2015-03-14 09:26:31 ----RDC---- C:\Windows\System32
2015-03-14 09:26:31 ----AC---- C:\Windows\system32\PerfStringBackup.INI
2015-03-14 09:26:30 ----DC---- C:\Windows\inf
2015-03-14 09:22:18 ----DC---- C:\Windows\system32\catroot
2015-03-14 09:22:18 ----D---- C:\Windows\system32\DriverStore
2015-03-13 22:05:08 ----DC---- C:\Windows\Microsoft.NET
2015-03-13 22:04:33 ----DC---- C:\Windows\system32\config
2015-03-12 19:43:36 ----DC---- C:\Windows\system32\Drivers
2015-03-12 19:16:36 ----DC---- C:\Windows\debug
2015-03-12 16:31:55 ----DC---- C:\Windows\SoftwareDistribution
2015-03-12 16:25:52 ----DC---- C:\Windows
2015-03-10 20:58:30 ----D---- C:\Windows\WinSxS
2015-03-10 20:54:31 ----DC---- C:\Program Files\Internet Explorer
2015-03-10 20:54:30 ----D---- C:\Program Files\Windows Defender
2015-03-10 20:54:29 ----DC---- C:\Windows\WinStore
2015-03-10 20:54:29 ----DC---- C:\Windows\PolicyDefinitions
2015-03-10 20:54:28 ----RD---- C:\Windows\ToastData
2015-03-10 20:54:28 ----DC---- C:\Windows\system32\cs-CZ
2015-03-10 20:49:01 ----DC---- C:\Windows\CbsTemp
2015-03-10 20:47:04 ----DC---- C:\Windows\system32\MRT
2015-03-10 20:38:16 ----AC---- C:\Windows\system32\MRT.exe
2015-03-10 20:25:31 ----DC---- C:\Windows\system32\catroot2
2015-03-10 19:20:40 ----DC---- C:\Windows\system32\Tasks
2015-03-08 18:21:51 ----DC---- C:\Windows\Panther
2015-03-08 17:41:42 ----DC---- C:\Program Files\Common Files
2015-03-08 17:40:29 ----RSDC---- C:\Windows\Fonts
2015-03-08 14:21:22 ----SDC---- C:\Users\mixer\AppData\Roaming\Microsoft
2015-03-06 17:08:19 ----RSDC---- C:\Windows\assembly
2015-03-06 16:22:12 ----HDC---- C:\ProgramData
2015-03-04 22:24:42 ----AC---- C:\Windows\system32\FlashPlayerApp.exe
2015-03-04 17:13:54 ----DC---- C:\Program Files\Common Files\microsoft shared
2015-03-03 14:16:52 ----C---- C:\Windows\system32\MpSigStub.exe
2015-03-01 09:44:52 ----DC---- C:\Windows\ShellNew
2015-03-01 09:42:58 ----SDC---- C:\ProgramData\Microsoft
2015-03-01 09:42:58 ----DC---- C:\Program Files\Microsoft.NET
2015-02-28 17:39:25 ----DC---- C:\Windows\system32\drivers\etc
2015-02-27 14:00:46 ----DC---- C:\Users\mixer\AppData\Roaming\Windows Live Writer
2015-02-27 13:31:13 ----DC---- C:\Windows\system32\LogFiles
2015-02-27 09:10:22 ----D---- C:\Windows\rescache
2015-02-26 21:21:14 ----SHDC---- C:\$Recycle.Bin
2015-02-26 20:39:49 ----DC---- C:\Windows\Tasks
2015-02-26 20:31:57 ----DC---- C:\Windows\system32\wbem
2015-02-26 20:29:29 ----HD---- C:\Program Files\WindowsApps
2015-02-26 20:26:49 ----DC---- C:\Windows\registration
2015-02-26 20:25:33 ----DC---- C:\Windows\Logs
2015-02-26 19:47:39 ----DC---- C:\Windows\system32\CodeIntegrity
2015-02-26 19:17:33 ----DC---- C:\Program Files\CCleaner
2015-02-26 19:14:28 ----DC---- C:\Windows\system32\wdi
2015-02-26 19:08:27 ----DC---- C:\Windows\system32\MsDtc
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 Wof;Windows Overlay File System Filter Driver; C:\Windows\system32\drivers\Wof.sys [2014-09-24 138584]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2015-02-26 23840]
R1 MpKslaa3afb2c;MpKslaa3afb2c; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{8E6C32EB-B694-46AB-B2A2-AB2BB9273791}\MpKslaa3afb2c.sys []
R2 irda;@netirda.inf,%IrDA.DisplayName%;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2013-08-22 95232]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-06-19 10071040]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-06-19 290304]
R3 b57nd60x;@netb57vx.inf,%SvcDispName%;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2013-06-18 376832]
R3 netwlv32;@netwlv32.inf, %NIC_Service_DispName_VISTA%; Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netwlv32.sys [2013-06-18 6637056]
R3 NSCIRDA;@oem7.inf,%NSCIRDA.ServiceDesc%;NSC Infrared Device Driver; C:\Windows\system32\DRIVERS\nscirda.sys [2008-01-19 30720]
R3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2013-06-18 207360]
R3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2013-06-18 980992]
R3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2013-06-18 661504]
R3 tifm21;tifm21; C:\Windows\system32\drivers\tifm21.sys [2007-05-02 290816]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 177152]
S3 dg_ssudbus;@oem2.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 88576]
S3 dot4;@oem3.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2012-10-19 137632]
S3 Dot4Print;@oem4.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\Windows\System32\drivers\Dot4Prt.sys [2012-10-19 22432]
S3 dot4usb;@oem3.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2012-10-19 42912]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\Windows\System32\drivers\iaiogpio.sys [2013-07-23 22016]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\Windows\System32\drivers\iaioi2c.sys [2013-07-23 61936]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 pneteth;@oem15.inf,%pneteth.Service.DispName%;PdaNet Broadband; C:\Windows\system32\DRIVERS\pneteth.sys [2011-11-25 13440]
S3 pwdrvio;pwdrvio; \??\C:\Windows\system32\pwdrvio.sys [2013-08-26 15576]
S3 pwdspio;pwdspio; \??\C:\Windows\system32\pwdspio.sys [2013-08-26 10200]
S3 ssudeadb;@oem49.inf,%ssud.Service.DeviceDesc%;SAMSUNG Android Composite ADB(V1.5) Interface Driver ; C:\Windows\System32\Drivers\ssudeadb.sys [2013-12-26 34744]
S3 ssudmdm;@oem10.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 184192]
S3 usb_rndisx;@netrndis.inf,%usb_rndis.Service.DispName%;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-08-22 15872]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\Windows\System32\drivers\usbscan.sys [2014-10-29 37888]
S3 usbser;@oem16.inf,%Serial.SvcDesc%;USB Serial emulation modem driver; C:\Windows\system32\DRIVERS\usbser.sys [2014-11-04 26624]
S3 WinUSB;@winusb.inf,%WinUSB_SvcDesc%;Ovladač WinUsb; C:\Windows\System32\drivers\WinUSB.sys [2013-08-22 64000]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2014-10-29 33088]
R2 USBSafelyRemoveService;USB Safely Remove Assistant; C:\Program Files\USB Safely Remove\USBSRService.exe [2012-01-31 742744]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-01-05 107912]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 33088]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-01-05 107912]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by mixer at 2015-03-14 11:08:14
Microsoft Windows 8.1 Pro
System drive C: has 51 GB (71%) free of 71 GB
Total RAM: 2046 MB (33% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:08:19, on 14. 3. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhostex.exe
C:\Windows\Explorer.EXE
C:\Program Files\Launch Manager\LManager.exe
C:\Users\mixer\AppData\Roaming\uTorrent\utorrent.exe
C:\Program Files\Rainlendar2\Rainlendar2.exe
C:\Program Files\r2 Studios\HideOE\HideOE.exe
C:\Program Files\USB Safely Remove\USBSafelyRemove.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x86__8wekyb3d8bbwe\glcnd.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\System32\msdt.exe
C:\Windows\System32\sdiagnhost.exe
C:\Windows\system32\conhost.exe
C:\Users\mixer\Downloads\RSIT.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\mixer.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\Run: [uTorrent] "C:\Users\mixer\AppData\Roaming\uTorrent\utorrent.exe"
O4 - HKCU\..\Run: [Rainlendar2] C:\Program Files\Rainlendar2\Rainlendar2.exe
O4 - HKCU\..\Run: [HideOE] "C:\Program Files\r2 Studios\HideOE\HideOE.exe"
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE"
O4 - HKCU\..\Run: [USB Safely Remove] C:\Program Files\USB Safely Remove\USBSafelyRemove.exe /startup
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{CCDCC26D-3994-4C29-BB22-D1769C215134}: NameServer = 8.8.8.8,213.191.100.3
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: USB Safely Remove Assistant (USBSafelyRemoveService) - Unknown owner - C:\Program Files\USB Safely Remove\USBSRService.exe
--
End of file - 3965 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\mixer\AppData\Roaming\Mozilla\Firefox\Profiles\8qdr6k85.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Users\mixer\AppData\Roaming\Mozilla\Firefox\Profiles\8qdr6k85.default\extensions\
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
C:\Users\mixer\AppData\Roaming\Mozilla\Firefox\Profiles\8qdr6k85.default\searchplugins\
seznam-avast.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2007-06-14 850704]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2015-02-19 5503768]
"uTorrent"=C:\Users\mixer\AppData\Roaming\uTorrent\utorrent.exe [2014-04-14 398760]
"Rainlendar2"=C:\Program Files\Rainlendar2\Rainlendar2.exe [2014-03-14 2611808]
"HideOE"=C:\Program Files\r2 Studios\HideOE\HideOE.exe [2003-07-24 32768]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE [2014-12-19 458456]
"USB Safely Remove"=C:\Program Files\USB Safely Remove\USBSafelyRemove.exe [2012-01-30 6061056]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-14 10:40:01 ----DC---- C:\Program Files\trend micro
2015-03-14 10:39:59 ----DC---- C:\rsit
2015-03-10 20:26:42 ----AC---- C:\Windows\system32\WindowsCodecs.dll
2015-03-10 20:26:35 ----AC---- C:\Windows\system32\msctf.dll
2015-03-10 20:26:35 ----AC---- C:\Windows\system32\dwmcore.dll
2015-03-10 20:26:24 ----AC---- C:\Windows\system32\SHCore.dll
2015-03-10 20:26:23 ----AC---- C:\Windows\system32\MrmCoreR.dll
2015-03-10 20:26:09 ----AC---- C:\Windows\system32\ubpm.dll
2015-03-10 20:26:04 ----AC---- C:\Windows\system32\WSShared.dll
2015-03-10 20:26:04 ----AC---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-10 20:25:49 ----AC---- C:\Windows\system32\msftedit.dll
2015-03-10 20:25:42 ----AC---- C:\Windows\system32\photowiz.dll
2015-03-10 20:25:41 ----AC---- C:\Windows\system32\LockScreenContentServer.exe
2015-03-10 20:25:35 ----AC---- C:\Windows\system32\shell32.dll
2015-03-10 20:25:22 ----AC---- C:\Windows\system32\drivers\hidbth.sys
2015-03-10 20:25:12 ----AC---- C:\Windows\system32\schannel.dll
2015-03-10 20:25:07 ----AC---- C:\Windows\system32\win32spl.dll
2015-03-10 20:25:07 ----AC---- C:\Windows\system32\mfc42u.dll
2015-03-10 20:25:07 ----AC---- C:\Windows\system32\mfc42.dll
2015-03-10 20:25:07 ----AC---- C:\Windows\system32\localspl.dll
2015-03-10 20:25:06 ----AC---- C:\Windows\system32\D3DCompiler_47.dll
2015-03-10 20:24:55 ----AC---- C:\Windows\explorer.exe
2015-03-10 20:24:44 ----AC---- C:\Windows\system32\calc.exe
2015-03-10 20:24:41 ----AC---- C:\Windows\system32\mshtml.dll
2015-03-10 20:24:33 ----AC---- C:\Windows\system32\ieframe.dll
2015-03-10 20:24:31 ----AC---- C:\Windows\system32\jscript9.dll
2015-03-10 20:24:30 ----AC---- C:\Windows\system32\wininet.dll
2015-03-10 20:24:30 ----AC---- C:\Windows\system32\urlmon.dll
2015-03-10 20:24:30 ----AC---- C:\Windows\system32\inetcomm.dll
2015-03-10 20:24:30 ----AC---- C:\Windows\system32\iertutil.dll
2015-03-10 20:24:29 ----AC---- C:\Windows\system32\vbscript.dll
2015-03-10 20:24:29 ----AC---- C:\Windows\system32\msfeeds.dll
2015-03-10 20:24:27 ----AC---- C:\Windows\system32\dxtrans.dll
2015-03-10 20:24:26 ----AC---- C:\Windows\system32\webcheck.dll
2015-03-10 20:24:26 ----AC---- C:\Windows\system32\mshtmled.dll
2015-03-10 20:24:26 ----AC---- C:\Windows\system32\MshtmlDac.dll
2015-03-10 20:24:26 ----AC---- C:\Windows\system32\ie4uinit.exe
2015-03-10 20:24:25 ----AC---- C:\Windows\system32\iepeers.dll
2015-03-10 20:24:24 ----AC---- C:\Windows\system32\jscript.dll
2015-03-10 20:24:24 ----AC---- C:\Windows\system32\ieapfltr.dll
2015-03-10 20:23:31 ----AC---- C:\Windows\system32\eapphost.dll
2015-03-10 20:23:31 ----AC---- C:\Windows\system32\eappgnui.dll
2015-03-10 20:23:31 ----AC---- C:\Windows\system32\eappcfg.dll
2015-03-10 20:23:31 ----AC---- C:\Windows\system32\eapp3hst.dll
2015-03-10 20:23:19 ----AC---- C:\Windows\system32\win32k.sys
2015-03-10 20:23:12 ----AC---- C:\Windows\system32\rdpcorets.dll
2015-03-10 20:23:11 ----AC---- C:\Windows\system32\rdpudd.dll
2015-03-10 20:23:10 ----AC---- C:\Windows\system32\WMPhoto.dll
2015-03-10 20:22:59 ----AC---- C:\Windows\system32\StorageContextHandler.dll
2015-03-10 20:22:59 ----AC---- C:\Windows\system32\atmfd.dll
2015-03-10 20:22:58 ----AC---- C:\Windows\system32\ntoskrnl.exe
2015-03-10 20:22:58 ----AC---- C:\Windows\system32\atmlib.dll
2015-03-10 20:22:57 ----AC---- C:\Windows\system32\ntdll.dll
2015-03-10 20:20:52 ----AC---- C:\Windows\system32\drivers\ndis.sys
2015-03-10 20:20:40 ----AC---- C:\Windows\system32\drivers\WdFilter.sys
2015-03-10 20:20:40 ----AC---- C:\Windows\system32\drivers\WdBoot.sys
2015-03-10 20:20:36 ----AC---- C:\Windows\system32\drivers\WdNisDrv.sys
2015-03-10 20:20:34 ----AC---- C:\Windows\system32\winshfhc.dll
2015-03-10 20:18:26 ----AC---- C:\Windows\system32\authui.dll
2015-03-08 17:41:42 ----DC---- C:\Program Files\Common Files\DESIGNER
2015-03-08 14:20:38 ----DC---- C:\Program Files\Puran Delete Empty Folders
2015-03-07 00:18:10 ----AC---- C:\Windows\system32\drivers\1DFB1891.sys
2015-03-06 21:22:04 ----DC---- C:\Users\mixer\AppData\Roaming\USBSafelyRemove
2015-03-06 21:09:39 ----DC---- C:\Program Files\Medieval Software
2015-03-06 16:22:12 ----DC---- C:\ProgramData\Malwarebytes
2015-03-04 17:18:56 ----AC---- C:\Windows\Setup.INI
2015-03-04 17:18:20 ----DC---- C:\Program Files\Launch Manager
2015-03-03 21:00:22 ----DC---- C:\Program Files\4KDownload
2015-03-01 18:09:54 ----DC---- C:\Program Files\r2 Studios
2015-03-01 16:30:01 ----DC---- C:\Users\mixer\AppData\Roaming\vlc
2015-03-01 16:12:12 ----DC---- C:\Program Files\VideoLAN
2015-03-01 09:55:11 ----DC---- C:\Users\mixer\AppData\Roaming\Zoner
2015-03-01 09:54:38 ----DC---- C:\ProgramData\Zoner
2015-03-01 09:53:49 ----DC---- C:\Program Files\Zoner
2015-03-01 09:52:05 ----DC---- C:\Windows\AutoKMS
2015-03-01 09:43:37 ----DC---- C:\Program Files\Microsoft Synchronization Services
2015-03-01 09:42:58 ----DC---- C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-01 09:36:44 ----DC---- C:\Program Files\Microsoft Analysis Services
2015-03-01 09:35:31 ----DC---- C:\Program Files\Microsoft Office
2015-03-01 09:35:29 ----DC---- C:\ProgramData\Microsoft Help
2015-03-01 09:34:37 ----RHDC---- C:\MSOCache
2015-03-01 09:25:08 ----DC---- C:\ProgramData\USBSRService
2015-03-01 09:24:57 ----DC---- C:\Program Files\USB Safely Remove
2015-03-01 09:20:22 ----DC---- C:\Program Files\Rainlendar2
2015-02-27 15:20:55 ----DC---- C:\Users\mixer\AppData\Roaming\WinRAR
2015-02-27 15:19:38 ----DC---- C:\Program Files\WinRAR
2015-02-27 14:12:52 ----AC---- C:\Windows\system32\pwNative.exe
2015-02-27 14:12:41 ----C---- C:\Windows\system32\pwdrvio.sys
2015-02-27 14:11:47 ----C---- C:\Windows\system32\pwdspio.sys
2015-02-27 14:10:09 ----DC---- C:\Program Files\MiniTool Partition Wizard Professional Edition 8.1
2015-02-26 22:47:39 ----DC---- C:\ProgramData\SP_FT_Logs
2015-02-26 21:59:24 ----DC---- C:\Users\mixer\AppData\Roaming\mgyun
2015-02-26 21:59:20 ----DC---- C:\Program Files\VROOT
2015-02-26 21:53:00 ----DC---- C:\Program Files\ClockworkMod
2015-02-26 21:37:20 ----AC---- C:\Windows\system32\WdfCoInstaller01007.dll
2015-02-26 21:37:20 ----AC---- C:\Windows\system32\drivers\WdfCoInstaller01007.dll
2015-02-26 21:37:20 ----AC---- C:\Windows\system32\drivers\ssudeadb.sys
2015-02-26 21:36:15 ----DC---- C:\Program Files\SAMSUNG
2015-02-26 21:34:59 ----DC---- C:\ProgramData\Samsung
2015-02-26 21:00:13 ----AC---- C:\Windows\system32\drivers\pneteth.sys
2015-02-26 20:58:52 ----DC---- C:\Program Files\InstallShield Installation Information
2015-02-26 20:55:51 ----DC---- C:\Windows\tiinst
2015-02-26 20:37:32 ----DC---- C:\Windows\Profiles
2015-02-26 20:37:32 ----DC---- C:\Users\mixer\AppData\Roaming\URSoft
2015-02-26 20:37:30 ----ADC---- C:\ProgramData\TEMP
2015-02-26 20:37:10 ----DC---- C:\Program Files\Your Uninstaller
2015-02-26 20:18:16 ----DC---- C:\ProgramData\ProductData
2015-02-26 20:17:59 ----DC---- C:\ProgramData\IObit
2015-02-26 20:17:59 ----AC---- C:\Windows\system32\drivers\HWiNFO32.SYS
2015-02-26 20:17:58 ----DC---- C:\Users\mixer\AppData\Roaming\IObit
2015-02-26 19:56:59 ----DC---- C:\Users\mixer\AppData\Roaming\Mozilla
2015-02-26 19:56:24 ----DC---- C:\Program Files\Mozilla Firefox
2015-02-26 19:31:36 ----AC---- C:\Windows\system32\aspnet_counters.dll
2015-02-26 19:30:19 ----AC---- C:\Windows\system32\TSWbPrxy.exe
2015-02-26 19:30:19 ----AC---- C:\Windows\system32\nlasvc.dll
2015-02-26 19:30:19 ----AC---- C:\Windows\system32\ncsi.dll
2015-02-26 19:30:11 ----AC---- C:\Windows\system32\sppobjs.dll
2015-02-26 19:30:11 ----AC---- C:\Windows\system32\drivers\ahcache.sys
2015-02-26 19:29:32 ----AC---- C:\Windows\system32\iedkcs32.dll
2015-02-26 19:29:32 ----AC---- C:\Windows\system32\dxtmsft.dll
2015-02-26 19:29:20 ----AC---- C:\Windows\system32\oleaut32.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\WerFaultSecure.exe
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\wer.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\Faultrep.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\EncDump.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\ci.dll
2015-02-26 19:28:34 ----AC---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-02-26 19:28:22 ----AC---- C:\Windows\system32\profsvc.dll
2015-02-26 19:28:04 ----AC---- C:\Windows\system32\drivers\ksecpkg.sys
2015-02-26 19:28:04 ----AC---- C:\Windows\system32\drivers\cng.sys
2015-02-26 19:27:53 ----AC---- C:\Windows\system32\drivers\mrxdav.sys
2015-02-26 19:27:35 ----AC---- C:\Windows\system32\scesrv.dll
2015-02-26 19:10:30 ----ASH---- C:\pagefile.sys
2015-02-26 19:10:24 ----ASH---- C:\hiberfil.sys
2015-02-17 15:26:28 ----AC---- C:\Windows\system32\FM20.DLL
======List of files/folders modified in the last 1 month======
2015-03-14 11:08:08 ----DC---- C:\Users\mixer\AppData\Roaming\uTorrent
2015-03-14 11:00:37 ----DC---- C:\Windows\Prefetch
2015-03-14 11:00:00 ----DC---- C:\Windows\system32\sru
2015-03-14 10:40:01 ----RDC---- C:\Program Files
2015-03-14 10:27:17 ----DC---- C:\Windows\Temp
2015-03-14 09:46:34 ----SHDC---- C:\Windows\Installer
2015-03-14 09:29:56 ----SHD---- C:\System Volume Information
2015-03-14 09:26:31 ----RDC---- C:\Windows\System32
2015-03-14 09:26:31 ----AC---- C:\Windows\system32\PerfStringBackup.INI
2015-03-14 09:26:30 ----DC---- C:\Windows\inf
2015-03-14 09:22:18 ----DC---- C:\Windows\system32\catroot
2015-03-14 09:22:18 ----D---- C:\Windows\system32\DriverStore
2015-03-13 22:05:08 ----DC---- C:\Windows\Microsoft.NET
2015-03-13 22:04:33 ----DC---- C:\Windows\system32\config
2015-03-12 19:43:36 ----DC---- C:\Windows\system32\Drivers
2015-03-12 19:16:36 ----DC---- C:\Windows\debug
2015-03-12 16:31:55 ----DC---- C:\Windows\SoftwareDistribution
2015-03-12 16:25:52 ----DC---- C:\Windows
2015-03-10 20:58:30 ----D---- C:\Windows\WinSxS
2015-03-10 20:54:31 ----DC---- C:\Program Files\Internet Explorer
2015-03-10 20:54:30 ----D---- C:\Program Files\Windows Defender
2015-03-10 20:54:29 ----DC---- C:\Windows\WinStore
2015-03-10 20:54:29 ----DC---- C:\Windows\PolicyDefinitions
2015-03-10 20:54:28 ----RD---- C:\Windows\ToastData
2015-03-10 20:54:28 ----DC---- C:\Windows\system32\cs-CZ
2015-03-10 20:49:01 ----DC---- C:\Windows\CbsTemp
2015-03-10 20:47:04 ----DC---- C:\Windows\system32\MRT
2015-03-10 20:38:16 ----AC---- C:\Windows\system32\MRT.exe
2015-03-10 20:25:31 ----DC---- C:\Windows\system32\catroot2
2015-03-10 19:20:40 ----DC---- C:\Windows\system32\Tasks
2015-03-08 18:21:51 ----DC---- C:\Windows\Panther
2015-03-08 17:41:42 ----DC---- C:\Program Files\Common Files
2015-03-08 17:40:29 ----RSDC---- C:\Windows\Fonts
2015-03-08 14:21:22 ----SDC---- C:\Users\mixer\AppData\Roaming\Microsoft
2015-03-06 17:08:19 ----RSDC---- C:\Windows\assembly
2015-03-06 16:22:12 ----HDC---- C:\ProgramData
2015-03-04 22:24:42 ----AC---- C:\Windows\system32\FlashPlayerApp.exe
2015-03-04 17:13:54 ----DC---- C:\Program Files\Common Files\microsoft shared
2015-03-03 14:16:52 ----C---- C:\Windows\system32\MpSigStub.exe
2015-03-01 09:44:52 ----DC---- C:\Windows\ShellNew
2015-03-01 09:42:58 ----SDC---- C:\ProgramData\Microsoft
2015-03-01 09:42:58 ----DC---- C:\Program Files\Microsoft.NET
2015-02-28 17:39:25 ----DC---- C:\Windows\system32\drivers\etc
2015-02-27 14:00:46 ----DC---- C:\Users\mixer\AppData\Roaming\Windows Live Writer
2015-02-27 13:31:13 ----DC---- C:\Windows\system32\LogFiles
2015-02-27 09:10:22 ----D---- C:\Windows\rescache
2015-02-26 21:21:14 ----SHDC---- C:\$Recycle.Bin
2015-02-26 20:39:49 ----DC---- C:\Windows\Tasks
2015-02-26 20:31:57 ----DC---- C:\Windows\system32\wbem
2015-02-26 20:29:29 ----HD---- C:\Program Files\WindowsApps
2015-02-26 20:26:49 ----DC---- C:\Windows\registration
2015-02-26 20:25:33 ----DC---- C:\Windows\Logs
2015-02-26 19:47:39 ----DC---- C:\Windows\system32\CodeIntegrity
2015-02-26 19:17:33 ----DC---- C:\Program Files\CCleaner
2015-02-26 19:14:28 ----DC---- C:\Windows\system32\wdi
2015-02-26 19:08:27 ----DC---- C:\Windows\system32\MsDtc
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 Wof;Windows Overlay File System Filter Driver; C:\Windows\system32\drivers\Wof.sys [2014-09-24 138584]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2015-02-26 23840]
R1 MpKslaa3afb2c;MpKslaa3afb2c; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{8E6C32EB-B694-46AB-B2A2-AB2BB9273791}\MpKslaa3afb2c.sys []
R2 irda;@netirda.inf,%IrDA.DisplayName%;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2013-08-22 95232]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-06-19 10071040]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-06-19 290304]
R3 b57nd60x;@netb57vx.inf,%SvcDispName%;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2013-06-18 376832]
R3 netwlv32;@netwlv32.inf, %NIC_Service_DispName_VISTA%; Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netwlv32.sys [2013-06-18 6637056]
R3 NSCIRDA;@oem7.inf,%NSCIRDA.ServiceDesc%;NSC Infrared Device Driver; C:\Windows\system32\DRIVERS\nscirda.sys [2008-01-19 30720]
R3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2013-06-18 207360]
R3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2013-06-18 980992]
R3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2013-06-18 661504]
R3 tifm21;tifm21; C:\Windows\system32\drivers\tifm21.sys [2007-05-02 290816]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 177152]
S3 dg_ssudbus;@oem2.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 88576]
S3 dot4;@oem3.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2012-10-19 137632]
S3 Dot4Print;@oem4.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\Windows\System32\drivers\Dot4Prt.sys [2012-10-19 22432]
S3 dot4usb;@oem3.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2012-10-19 42912]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\Windows\System32\drivers\iaiogpio.sys [2013-07-23 22016]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\Windows\System32\drivers\iaioi2c.sys [2013-07-23 61936]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 pneteth;@oem15.inf,%pneteth.Service.DispName%;PdaNet Broadband; C:\Windows\system32\DRIVERS\pneteth.sys [2011-11-25 13440]
S3 pwdrvio;pwdrvio; \??\C:\Windows\system32\pwdrvio.sys [2013-08-26 15576]
S3 pwdspio;pwdspio; \??\C:\Windows\system32\pwdspio.sys [2013-08-26 10200]
S3 ssudeadb;@oem49.inf,%ssud.Service.DeviceDesc%;SAMSUNG Android Composite ADB(V1.5) Interface Driver ; C:\Windows\System32\Drivers\ssudeadb.sys [2013-12-26 34744]
S3 ssudmdm;@oem10.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 184192]
S3 usb_rndisx;@netrndis.inf,%usb_rndis.Service.DispName%;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-08-22 15872]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\Windows\System32\drivers\usbscan.sys [2014-10-29 37888]
S3 usbser;@oem16.inf,%Serial.SvcDesc%;USB Serial emulation modem driver; C:\Windows\system32\DRIVERS\usbser.sys [2014-11-04 26624]
S3 WinUSB;@winusb.inf,%WinUSB_SvcDesc%;Ovladač WinUsb; C:\Windows\System32\drivers\WinUSB.sys [2013-08-22 64000]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2014-10-29 33088]
R2 USBSafelyRemoveService;USB Safely Remove Assistant; C:\Program Files\USB Safely Remove\USBSRService.exe [2012-01-31 742744]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-01-05 107912]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 33088]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-01-05 107912]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
-----------------EOF-----------------