Problemy s pravami
Napsal: 25 dub 2015 22:20
Zdravim pani,
vcera mi zacal blbnut komp, vzdy ked som chcel nieco kopirovat na C alebo stahovat tak to chcelo aby som to robil ako admin (pritom som...), tak myslim ze sa mi nejaky cervik zavrtal do systemu...
skuste mi niekto na to mrknut
vdaka moc
vcera mi zacal blbnut komp, vzdy ked som chcel nieco kopirovat na C alebo stahovat tak to chcelo aby som to robil ako admin (pritom som...), tak myslim ze sa mi nejaky cervik zavrtal do systemu...
skuste mi niekto na to mrknut
Kód: Vybrat vše
Logfile of random's system information tool 1.10 (written by random/random)
Run by Piccolo at 2015-04-25 23:07:48
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 85 GB (9%) free of 954 GB
Total RAM: 3999 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:07:49, on 25. 4. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
C:\Program Files\trend micro\Piccolo.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Microsoft Web Test Recorder 10.0 Helper - {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe"
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MIF5BA~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{C3BF2F46-5EBC-45F3-83C1-2ED48274C9ED}: NameServer = 8.8.8.8
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10431 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe"
taskeng.exe {F15790D5-B64C-458E-946F-71731A6C8D4C}
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {CE4F9DE2-BBFF-4FA8-9715-2729B76A6D44}
"C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe" -open
"C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe"
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\RocketDock\RocketDock.exe"
"C:\Program Files (x86)\Winamp\winampa.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2056
"C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe" /TUStart /pid:2968
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\svchost.exe -k HPService
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe" -hide
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\Windows\system32\wbem\wmiprvse.exe
"C:\totalcmd\TOTALCMD.EXE"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\sysWOW64\wbem\wmiprvse.exe -secured -Embedding
"C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe" -hide
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\AutoKMS.job - C:\Windows\AutoKMS\AutoKMS.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-01-19 553896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~4\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-01-19 211880]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-05-21 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-25 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-25 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DDA57003-0068-4ed2-9D32-4D1EC707D94D}]
Microsoft Web Test Recorder 10.0 Helper - C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2010-03-19 61360]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-05-21 509496]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-08-07 6827664]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2015-01-30 1332296]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"RocketDock"=C:\Program Files (x86)\RocketDock\RocketDock.exe [2007-09-02 495616]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster]
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2009-04-22 37888]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-04-25 22:33:10 ----D---- C:\rsit
2015-04-25 22:33:10 ----D---- C:\Program Files\trend micro
2015-04-25 20:47:10 ----SHD---- C:\$RECYCLE.BIN
2015-04-25 20:46:33 ----A---- C:\ComboFix.txt
2015-04-25 17:23:53 ----HD---- C:\Config.Msi
2015-04-25 17:03:41 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-04-25 17:03:41 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-04-25 17:03:41 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-25 17:03:40 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-04-25 17:03:40 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-04-25 17:03:40 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-25 17:03:39 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-04-25 17:03:39 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-04-25 17:03:39 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-04-25 17:03:39 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-04-25 17:03:39 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-04-25 17:03:39 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-04-25 17:03:39 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-25 17:03:39 ----A---- C:\Windows\system32\iernonce.dll
2015-04-25 17:03:39 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-25 17:03:38 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-04-25 17:03:38 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-04-25 17:03:38 ----A---- C:\Windows\system32\urlmon.dll
2015-04-25 17:03:38 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-25 17:03:37 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-04-25 17:03:37 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-04-25 17:03:37 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-04-25 17:03:37 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-04-25 17:03:37 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-04-25 17:03:37 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-04-25 17:03:37 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-25 17:03:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-25 17:03:37 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-25 17:03:36 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-04-25 17:03:36 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-25 17:03:36 ----A---- C:\Windows\system32\iesetup.dll
2015-04-25 17:03:36 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-25 17:03:35 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-04-25 17:03:35 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-04-25 17:03:35 ----A---- C:\Windows\system32\iertutil.dll
2015-04-25 17:03:34 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-04-25 17:03:34 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-04-25 17:03:34 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-04-25 17:03:34 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-25 17:03:34 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-25 17:03:34 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-25 17:03:33 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-25 17:03:33 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-25 17:03:33 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-25 17:03:33 ----A---- C:\Windows\system32\jscript9.dll
2015-04-25 17:03:33 ----A---- C:\Windows\system32\ieui.dll
2015-04-25 17:03:33 ----A---- C:\Windows\system32\ieframe.dll
2015-04-25 17:03:32 ----A---- C:\Windows\system32\wininet.dll
2015-04-25 17:03:32 ----A---- C:\Windows\system32\vbscript.dll
2015-04-25 17:03:32 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-25 17:03:31 ----A---- C:\Windows\system32\msrating.dll
2015-04-25 17:03:31 ----A---- C:\Windows\system32\mshtml.dll
2015-04-25 17:03:26 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2015-04-25 17:03:26 ----A---- C:\Windows\system32\drmv2clt.dll
2015-04-25 17:03:26 ----A---- C:\Windows\system32\blackbox.dll
2015-04-25 17:03:25 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2015-04-25 17:03:24 ----A---- C:\Windows\system32\wmp.dll
2015-04-25 17:03:23 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2015-04-25 17:03:23 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-04-25 17:03:23 ----A---- C:\Windows\system32\mf.dll
2015-04-25 17:03:22 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-04-25 17:03:22 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-04-25 17:03:21 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2015-04-25 17:03:21 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-04-25 17:03:21 ----A---- C:\Windows\system32\crypt32.dll
2015-04-25 17:03:20 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-04-25 17:03:20 ----A---- C:\Windows\system32\winload.exe
2015-04-25 17:03:20 ----A---- C:\Windows\system32\quartz.dll
2015-04-25 17:03:20 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2015-04-25 17:03:20 ----A---- C:\Windows\system32\cryptsvc.dll
2015-04-25 17:03:20 ----A---- C:\Windows\system32\ci.dll
2015-04-25 17:03:19 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-04-25 17:03:19 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-04-25 17:03:19 ----A---- C:\Windows\system32\wintrust.dll
2015-04-25 17:03:19 ----A---- C:\Windows\system32\winresume.exe
2015-04-25 17:03:19 ----A---- C:\Windows\system32\evr.dll
2015-04-25 17:03:18 ----A---- C:\Windows\SYSWOW64\quartz.dll
2015-04-25 17:03:18 ----A---- C:\Windows\SYSWOW64\evr.dll
2015-04-25 17:03:18 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2015-04-25 17:03:18 ----A---- C:\Windows\system32\pcasvc.dll
2015-04-25 17:03:18 ----A---- C:\Windows\system32\mfplat.dll
2015-04-25 17:03:18 ----A---- C:\Windows\system32\cryptui.dll
2015-04-25 17:03:17 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-04-25 17:03:17 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2015-04-25 17:03:17 ----A---- C:\Windows\system32\msscp.dll
2015-04-25 17:03:17 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-04-25 17:03:17 ----A---- C:\Windows\system32\cryptsp.dll
2015-04-25 17:03:16 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2015-04-25 17:03:16 ----A---- C:\Windows\SYSWOW64\msscp.dll
2015-04-25 17:03:16 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-04-25 17:03:16 ----A---- C:\Windows\system32\msnetobj.dll
2015-04-25 17:03:16 ----A---- C:\Windows\system32\drivers\appid.sys
2015-04-25 17:03:16 ----A---- C:\Windows\system32\cryptnet.dll
2015-04-25 17:03:16 ----A---- C:\Windows\system32\audiosrv.dll
2015-04-25 17:03:16 ----A---- C:\Windows\system32\audiodg.exe
2015-04-25 17:03:16 ----A---- C:\Windows\system32\appidsvc.dll
2015-04-25 17:03:16 ----A---- C:\Windows\system32\appidapi.dll
2015-04-25 17:03:15 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2015-04-25 17:03:15 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2015-04-25 17:03:15 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-04-25 17:03:15 ----A---- C:\Windows\system32\rrinstaller.exe
2015-04-25 17:03:15 ----A---- C:\Windows\system32\qdvd.dll
2015-04-25 17:03:15 ----A---- C:\Windows\system32\AudioSes.dll
2015-04-25 17:03:15 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-04-25 17:03:14 ----A---- C:\Windows\SYSWOW64\mfps.dll
2015-04-25 17:03:14 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-04-25 17:03:14 ----A---- C:\Windows\system32\pcadm.dll
2015-04-25 17:03:14 ----A---- C:\Windows\system32\mfps.dll
2015-04-25 17:03:14 ----A---- C:\Windows\system32\AudioEng.dll
2015-04-25 17:03:14 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-04-25 17:03:12 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2015-04-25 17:03:12 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-04-25 17:03:12 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-04-25 17:03:12 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-04-25 17:03:12 ----A---- C:\Windows\system32\pcawrk.exe
2015-04-25 17:03:12 ----A---- C:\Windows\system32\pcalua.exe
2015-04-25 17:03:12 ----A---- C:\Windows\system32\msmmsp.dll
2015-04-25 17:03:12 ----A---- C:\Windows\system32\mfpmp.exe
2015-04-25 17:03:12 ----A---- C:\Windows\system32\EncDump.dll
2015-04-25 17:03:11 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-04-25 17:03:08 ----A---- C:\Windows\system32\spwmp.dll
2015-04-25 17:03:06 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-04-25 17:03:06 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-04-25 17:03:06 ----A---- C:\Windows\system32\dxmasf.dll
2015-04-25 17:03:05 ----A---- C:\Windows\SYSWOW64\mferror.dll
2015-04-25 17:03:05 ----A---- C:\Windows\system32\pcaevts.dll
2015-04-25 17:03:05 ----A---- C:\Windows\system32\mferror.dll
2015-04-25 17:03:04 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-04-25 17:03:04 ----A---- C:\Windows\system32\wmploc.DLL
2015-04-25 17:02:55 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-04-25 17:02:55 ----A---- C:\Windows\system32\pku2u.dll
2015-04-25 17:02:50 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-04-25 17:02:50 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-04-25 17:02:49 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-04-25 17:02:49 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-04-25 17:02:49 ----A---- C:\Windows\system32\wuapp.exe
2015-04-25 17:02:48 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-04-25 17:02:48 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-25 17:02:48 ----A---- C:\Windows\system32\wups2.dll
2015-04-25 17:02:48 ----A---- C:\Windows\system32\wups.dll
2015-04-25 17:02:48 ----A---- C:\Windows\system32\wudriver.dll
2015-04-25 17:02:48 ----A---- C:\Windows\system32\wucltux.dll
2015-04-25 17:02:48 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-25 17:02:48 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-25 17:02:48 ----A---- C:\Windows\system32\wuapi.dll
2015-04-25 17:02:48 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-25 17:02:48 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-25 17:02:27 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-25 17:02:27 ----A---- C:\Windows\system32\ntdll.dll
2015-04-25 17:02:27 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-25 17:02:26 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-04-25 17:02:26 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-04-25 17:02:26 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-04-25 17:02:26 ----A---- C:\Windows\system32\schannel.dll
2015-04-25 17:02:26 ----A---- C:\Windows\system32\kerberos.dll
2015-04-25 17:02:25 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-04-25 17:02:25 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-04-25 17:02:25 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-04-25 17:02:25 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-25 17:02:25 ----A---- C:\Windows\system32\KernelBase.dll
2015-04-25 17:02:25 ----A---- C:\Windows\system32\kernel32.dll
2015-04-25 17:02:25 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-25 17:02:25 ----A---- C:\Windows\system32\drivers\cng.sys
2015-04-25 17:02:24 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-04-25 17:02:24 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-04-25 17:02:24 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-04-25 17:02:24 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-04-25 17:02:24 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-04-25 17:02:24 ----A---- C:\Windows\system32\wow64win.dll
2015-04-25 17:02:24 ----A---- C:\Windows\system32\wow64.dll
2015-04-25 17:02:24 ----A---- C:\Windows\system32\wdigest.dll
2015-04-25 17:02:24 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-25 17:02:24 ----A---- C:\Windows\system32\srcore.dll
2015-04-25 17:02:24 ----A---- C:\Windows\system32\smss.exe
2015-04-25 17:02:24 ----A---- C:\Windows\system32\rstrui.exe
2015-04-25 17:02:24 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-25 17:02:24 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-25 17:02:24 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-25 17:02:24 ----A---- C:\Windows\system32\conhost.exe
2015-04-25 17:02:24 ----A---- C:\Windows\system32\adtschema.dll
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-04-25 17:02:23 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\wow64cpu.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\winsrv.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\sspicli.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\srclient.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\secur32.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\ntvdm64.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\msaudite.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\lsass.exe
2015-04-25 17:02:23 ----A---- C:\Windows\system32\credssp.dll
2015-04-25 17:02:23 ----A---- C:\Windows\system32\auditpol.exe
2015-04-25 17:02:23 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-04-25 17:02:22 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-04-25 17:02:22 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-04-25 17:02:22 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-04-25 17:02:22 ----A---- C:\Windows\system32\msobjs.dll
2015-04-25 17:02:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-04-25 17:02:21 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-04-25 17:02:21 ----A---- C:\Windows\SYSWOW64\user.exe
2015-04-25 17:02:21 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-04-25 17:02:08 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-04-25 17:02:08 ----A---- C:\Windows\system32\shell32.dll
2015-04-25 17:02:06 ----A---- C:\Windows\system32\nlasvc.dll
2015-04-25 17:02:05 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-04-25 17:02:05 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2015-04-25 17:02:05 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-04-25 17:02:05 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-04-25 17:02:05 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-04-25 17:02:05 ----A---- C:\Windows\system32\lpk.dll
2015-04-25 17:02:05 ----A---- C:\Windows\system32\dciman32.dll
2015-04-25 17:02:05 ----A---- C:\Windows\system32\atmlib.dll
2015-04-25 17:02:05 ----A---- C:\Windows\system32\atmfd.dll
2015-04-25 17:02:04 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-04-25 17:02:04 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-04-25 17:02:04 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-04-25 17:02:04 ----A---- C:\Windows\system32\profsvc.dll
2015-04-25 17:02:04 ----A---- C:\Windows\system32\gdi32.dll
2015-04-25 17:02:04 ----A---- C:\Windows\system32\fontsub.dll
2015-04-25 17:02:04 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-04-25 17:02:03 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-04-25 17:02:02 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-04-25 17:02:02 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-04-25 17:02:01 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-04-25 17:02:01 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-04-25 17:02:01 ----A---- C:\Windows\system32\msxml3.dll
2015-04-25 17:02:01 ----A---- C:\Windows\system32\msctf.dll
2015-04-25 17:02:00 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-04-25 17:02:00 ----A---- C:\Windows\system32\rdpudd.dll
2015-04-25 17:02:00 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-04-25 17:02:00 ----A---- C:\Windows\system32\rdpcorets.dll
2015-04-25 17:02:00 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-25 17:01:59 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2015-04-25 17:01:59 ----A---- C:\Windows\system32\ubpm.dll
2015-04-25 17:01:57 ----A---- C:\Windows\system32\win32k.sys
2015-04-25 17:01:52 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-04-25 17:01:52 ----A---- C:\Windows\system32\scesrv.dll
2015-04-25 17:01:41 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-25 17:01:41 ----A---- C:\Windows\system32\clfs.sys
2015-04-25 17:01:40 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-04-25 17:01:40 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-25 16:56:07 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-04-25 16:56:07 ----A---- C:\Windows\system32\WMPhoto.dll
2015-04-25 16:24:28 ----D---- C:\ProgramData\Malwarebytes
2015-04-23 22:39:12 ----A---- C:\Windows\zip.exe
2015-04-23 22:39:12 ----A---- C:\Windows\SWSC.exe
2015-04-23 22:39:12 ----A---- C:\Windows\SWREG.exe
2015-04-23 22:39:12 ----A---- C:\Windows\sed.exe
2015-04-23 22:39:12 ----A---- C:\Windows\PEV.exe
2015-04-23 22:39:12 ----A---- C:\Windows\NIRCMD.exe
2015-04-23 22:39:12 ----A---- C:\Windows\MBR.exe
2015-04-23 22:39:12 ----A---- C:\Windows\grep.exe
2015-04-23 22:37:34 ----D---- C:\Windows\ERDNT
2015-04-23 22:37:01 ----D---- C:\Qoobox
2015-04-22 13:42:41 ----D---- C:\Program Files\Rockstar Games
2015-04-14 19:45:37 ----D---- C:\Program Files (x86)\Hearthstone
2015-04-11 16:37:37 ----D---- C:\Users\Piccolo\AppData\Roaming\Kalypso Media
2015-04-11 16:22:04 ----D---- C:\Program Files (x86)\Kalypso Media
2015-04-11 12:10:37 ----D---- C:\Users\Piccolo\AppData\Roaming\Running with rifles
2015-04-11 11:59:16 ----D---- C:\Program Files (x86)\Modulaatio Games
======List of files/folders modified in the last 1 month======
2015-04-25 23:07:23 ----D---- C:\Windows\Tasks
2015-04-25 23:06:59 ----D---- C:\Windows\Temp
2015-04-25 23:06:26 ----D---- C:\Windows\system32\config
2015-04-25 22:33:10 ----RD---- C:\Program Files
2015-04-25 22:06:37 ----D---- C:\Users\Piccolo\AppData\Roaming\Skype
2015-04-25 21:01:51 ----D---- C:\Program Files (x86)\Heroes of the Storm
2015-04-25 20:58:23 ----D---- C:\Windows\System32
2015-04-25 20:58:23 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-04-25 20:36:01 ----D---- C:\Windows
2015-04-25 20:36:01 ----A---- C:\Windows\system.ini
2015-04-25 20:27:59 ----D---- C:\Windows\SYSWOW64\drivers
2015-04-25 20:27:59 ----D---- C:\Windows\SysWOW64
2015-04-25 20:27:59 ----D---- C:\Windows\AppPatch
2015-04-25 20:27:58 ----D---- C:\Program Files (x86)\Common Files
2015-04-25 20:17:46 ----D---- C:\Windows\system32\drivers
2015-04-25 20:15:01 ----D---- C:\Windows\system32\Tasks
2015-04-25 20:13:25 ----D---- C:\Windows\Minidump
2015-04-25 18:30:45 ----D---- C:\Windows\Microsoft.NET
2015-04-25 18:14:19 ----RSD---- C:\Windows\assembly
2015-04-25 17:42:03 ----D---- C:\Windows\system32\catroot2
2015-04-25 17:35:00 ----D---- C:\Windows\winsxs
2015-04-25 17:30:42 ----D---- C:\Windows\system32\catroot
2015-04-25 17:30:02 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-04-25 17:30:02 ----D---- C:\Windows\SYSWOW64\Dism
2015-04-25 17:30:02 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-04-25 17:30:02 ----D---- C:\Program Files\Windows Media Player
2015-04-25 17:30:02 ----D---- C:\Program Files (x86)\Windows Media Player
2015-04-25 17:30:01 ----D---- C:\Windows\system32\sk-SK
2015-04-25 17:30:01 ----D---- C:\Windows\system32\en-US
2015-04-25 17:30:01 ----D---- C:\Windows\system32\Dism
2015-04-25 17:30:01 ----D---- C:\Windows\system32\cs-CZ
2015-04-25 17:30:01 ----D---- C:\Windows\system32\CodeIntegrity
2015-04-25 17:30:01 ----D---- C:\Windows\system32\Boot
2015-04-25 17:29:58 ----D---- C:\Windows\SYSWOW64\en-US
2015-04-25 17:29:57 ----D---- C:\Program Files\Internet Explorer
2015-04-25 17:29:56 ----D---- C:\Windows\PolicyDefinitions
2015-04-25 17:29:55 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-25 17:28:47 ----SHD---- C:\Windows\Installer
2015-04-25 17:28:46 ----D---- C:\ProgramData\Microsoft Help
2015-04-25 17:27:29 ----D---- C:\Program Files\SharePoint Client Components
2015-04-25 17:18:01 ----D---- C:\Windows\system32\MRT
2015-04-25 17:13:46 ----D---- C:\Windows\debug
2015-04-25 17:13:38 ----A---- C:\Windows\win.ini
2015-04-25 17:10:18 ----D---- C:\Program Files\Microsoft Security Client
2015-04-25 17:10:17 ----D---- C:\Program Files (x86)\Microsoft Security Client
2015-04-25 17:05:14 ----SHD---- C:\System Volume Information
2015-04-25 16:49:30 ----RD---- C:\Program Files (x86)
2015-04-25 16:46:21 ----D---- C:\Windows\Downloaded Program Files
2015-04-25 16:44:22 ----D---- C:\Downloads
2015-04-25 16:24:28 ----D---- C:\ProgramData
2015-04-25 16:06:08 ----D---- C:\Windows\system32\drivers\etc
2015-04-25 15:55:22 ----D---- C:\Windows\Prefetch
2015-04-24 19:18:59 ----D---- C:\Users\Piccolo\AppData\Roaming\Winamp
2015-04-24 17:36:19 ----D---- C:\Users\Piccolo\AppData\Roaming\uTorrent
2015-04-23 22:36:49 ----D---- C:\Windows\inf
2015-04-23 22:35:16 ----D---- C:\Users\Piccolo\AppData\Roaming\DAEMON Tools Lite
2015-04-23 22:35:15 ----D---- C:\Users\Piccolo\AppData\Roaming\Media Player Classic
2015-04-23 22:35:15 ----D---- C:\Program Files (x86)\Steam
2015-04-23 22:35:04 ----D---- C:\Windows\Panther
2015-04-23 22:34:56 ----D---- C:\Windows\SoftwareDistribution
2015-04-23 22:34:46 ----D---- C:\Windows\Logs
2015-04-23 22:33:33 ----D---- C:\Program Files (x86)\GMT-MAX.ORG
2015-04-22 13:42:48 ----D---- C:\Program Files (x86)\Rockstar Games
2015-04-21 18:48:32 ----D---- C:\Program Files (x86)\Freight Tycoon
2015-04-20 21:30:28 ----D---- C:\ProgramData\Epic
2015-04-17 18:29:52 ----D---- C:\Program Files (x86)\Battle.net
2015-04-14 22:56:48 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-04-10 19:06:39 ----D---- C:\Games
2015-04-09 19:55:07 ----D---- C:\Program Files (x86)\FTL
2015-04-09 18:01:21 ----D---- C:\VYMAZ
2015-04-09 17:53:42 ----D---- C:\Program Files (x86)\F1 2013
2015-04-09 17:46:40 ----D---- C:\Program Files (x86)\Age of Mythology Extended Edition
2015-04-06 14:09:27 ----D---- C:\Windows\system32\wdi
2015-04-02 16:48:48 ----D---- C:\Program Files (x86)\Sid Meier's Civilization V
2015-04-01 11:16:02 ----A---- C:\Windows\system32\MRT.exe
2015-03-30 13:00:24 ----D---- C:\aaa
2015-03-30 12:55:37 ----D---- C:\ProgramData\Unity
2015-03-27 23:37:06 ----D---- C:\Users\Piccolo\AppData\Roaming\.minecraft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2012-04-11 82560]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2012-04-11 42624]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-11-15 274696]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2013-03-02 834544]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-10-12 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2012-10-12 14464]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R2 AODDriver4.3;AODDriver4.3; \??\C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-11-15 124560]
R2 Sentinel64;Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [2009-09-17 145448]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [2011-11-03 130536]
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2011-11-03 395752]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2014-06-21 94720]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-08-07 4102928]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-06-12 726160]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [2012-09-19 11880]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
S1 MpKsl4f960931;MpKsl4f960931; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8B9AB968-2383-4DF4-9C4C-56D40DF67A5B}\MpKsl4f960931.sys []
S1 PQNTDrv;PQNTDrv; C:\Windows\system32\drivers\PQNTDrv.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-03-08 48488]
S3 ivusb;Initio Driver for USB Default Controller; C:\Windows\system32\DRIVERS\ivusb.sys [2010-07-29 29720]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 taphss6;Anchorfree HSS VPN Adapter; C:\Windows\system32\DRIVERS\taphss6.sys [2013-02-22 42184]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 VSPerfDrv100;Performance Tools Driver 10.0; \??\C:\Program Files (x86)\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\x64\VSPerfDrv100.sys [2011-01-18 68440]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
S4 RsFx0105;RsFx0105 Driver; C:\Windows\system32\DRIVERS\RsFx0105.sys [2011-09-22 311144]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-11-21 244736]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [2014-11-20 344064]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [2012-10-12 920736]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2012-10-12 951936]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2012-10-12 149120]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-01-30 23784]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2014-07-12 58387104]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-20 130024]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2012-11-02 2365792]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-01-30 366512]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-14 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2014-12-03 448384]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2010-02-03 15768]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2015-01-01 182304]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [2013-08-22 142336]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-03-13 114688]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-18 833728]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-22 119808]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2013-10-04 87728]
S4 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2014-07-18 9216]
S4 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-22 61976]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2014-12-03 1900400]
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2014-07-12 441504]
S4 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2011-09-22 255336]
S4 TunngleService;TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [2015-01-17 762320]
-----------------EOF-----------------