Stránka 1 z 1

Kontrola PC

Napsal: 04 kvě 2015 18:22
od maba345
Zdravím prosím o kontrolu nového PC. Prišlo mi už so systémom, no mám na pozadí 53 procesov v správcovi. Niektoré procesy nepoznám tak či tam niesú nejaké malware a podobné veci.Vďaka :)

Logfile of random's system information tool 1.10 (written by random/random)
Run by Test at 2015-05-04 19:14:54
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 26 GB (43%) free of 61 GB
Total RAM: 8083 MB (79% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:14:59, on 4. 5. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Test.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7650 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\igfxCUIService.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" 2c789d06-f650-455b-b3a7-3c4c52ca2b66 1
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "1308150165-727318694-9403548511562547769892910836-228001198-19810863871419999585
\??\C:\Windows\system32\conhost.exe "529745372213673503414049091161188449718119087440412730419477804015741843236816
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"taskhost.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Sidebar\sidebar.exe" /showGadgets
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3628.0.784253882\1926671606" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,19,42,51 --gpu-vendor-id=0x10de --gpu-device-id=0x1380 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.5012 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="BackgroundRendererProcesses/Disallow/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group10 pct:1a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Manual install/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/StandardR4/*PasswordGeneration/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Default/*SafeBrowsingIncidentReportingService/Default/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_14/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UwSInterstitialStatus/On/*V8CacheOptions/default/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/*Win32kLockdown/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=3628 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="3628.2.1299178117\1005792361" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*BackgroundRendererProcesses/Disallow/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group10 pct:1a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Manual install/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/StandardR4/*PasswordGeneration/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Default/*SafeBrowsingIncidentReportingService/Default/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_14/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UwSInterstitialStatus/On/*V8CacheOptions/default/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/*Win32kLockdown/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=3628 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="3628.3.1074683990\1271180483" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*BackgroundRendererProcesses/Disallow/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group10 pct:1a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Manual install/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/StandardR4/*PasswordGeneration/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Default/*SafeBrowsingIncidentReportingService/Default/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_14/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UwSInterstitialStatus/On/*V8CacheOptions/default/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/*Win32kLockdown/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=3628 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="3628.4.491965588\40513893" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*BackgroundRendererProcesses/Disallow/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group10 pct:1a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Manual install/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/StandardR4/*PasswordGeneration/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Default/*SafeBrowsingIncidentReportingService/Default/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_14/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UwSInterstitialStatus/On/*V8CacheOptions/default/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/*Win32kLockdown/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=3628 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="3628.5.1999061734\341437035" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*BackgroundRendererProcesses/Disallow/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group10 pct:1a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Manual install/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/StandardR4/*PasswordGeneration/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Default/*SafeBrowsingIncidentReportingService/Default/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_14/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UwSInterstitialStatus/On/*V8CacheOptions/default/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/*Win32kLockdown/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=3628 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="3628.9.626056424\1163519358" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*BackgroundRendererProcesses/Disallow/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group10 pct:1a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Manual install/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/StandardR4/*PasswordGeneration/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Default/*SafeBrowsingIncidentReportingService/Default/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_14/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UwSInterstitialStatus/On/*V8CacheOptions/default/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/*Win32kLockdown/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=3628 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="3628.12.1997821943\1732292652" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
"c:\program files\windows defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 85786982-F824-F4D9-95EC-D835D0241F41 -Reinvoke
"C:\Users\Test\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-03-14 13671792]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-04-09 2673296]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-04-09 1570672]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SBAMSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-05-04 19:14:54 ----D---- C:\rsit
2015-05-04 19:14:54 ----D---- C:\Program Files\trend micro
2015-05-04 18:27:06 ----SHD---- C:\Config.Msi
2015-05-04 18:19:50 ----D---- C:\Users\Test\AppData\Roaming\uTorrent
2015-05-04 18:12:26 ----D---- C:\Windows\pss
2015-05-04 18:01:16 ----A---- C:\Windows\system32\drivers\gfiutil.sys
2015-05-04 18:01:16 ----A---- C:\Windows\system32\drivers\gfiark.sys
2015-05-04 17:58:18 ----D---- C:\ProgramData\STOPzilla!
2015-05-04 17:58:17 ----D---- C:\Program Files (x86)\STOPzilla
2015-05-04 17:28:14 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2015-05-04 17:28:04 ----D---- C:\ProgramData\Malwarebytes
2015-05-04 17:28:04 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-05-04 17:28:04 ----A---- C:\Windows\system32\drivers\mwac.sys
2015-05-04 17:28:04 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2015-05-04 17:28:04 ----A---- C:\Windows\system32\drivers\mbam.sys
2015-05-04 16:59:34 ----D---- C:\Users\Test\AppData\Roaming\NVIDIA
2015-05-04 16:55:49 ----D---- C:\Users\Test\AppData\Roaming\WinRAR
2015-05-04 16:55:25 ----D---- C:\Program Files\WinRAR
2015-05-04 16:48:10 ----D---- C:\Users\Test\AppData\Roaming\Adobe
2015-05-04 16:47:23 ----A---- C:\Windows\system32\IEUDINIT.EXE
2015-05-04 16:47:10 ----HD---- C:\Windows\msdownld.tmp
2015-05-04 16:45:41 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2015-05-04 16:45:41 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\wextract.exe
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\url.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\msls31.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\mshta.exe
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\inseng.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\icardie.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-05-04 16:45:40 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\wininet.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\wextract.exe
2015-05-04 16:45:40 ----A---- C:\Windows\system32\webcheck.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\vbscript.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\urlmon.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\url.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2015-05-04 16:45:40 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2015-05-04 16:45:40 ----A---- C:\Windows\system32\pngfilt.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\occache.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\msrating.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\msls31.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\mshtmler.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\mshtmled.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\mshtml.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\mshta.exe
2015-05-04 16:45:40 ----A---- C:\Windows\system32\msfeedssync.exe
2015-05-04 16:45:40 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\msfeeds.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\licmgr10.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\jsproxy.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\jsIntl.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\jscript9diag.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\jscript9.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\jscript.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\inseng.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\imgutil.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\iexpress.exe
2015-05-04 16:45:40 ----A---- C:\Windows\system32\ieUnatt.exe
2015-05-04 16:45:40 ----A---- C:\Windows\system32\ieui.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\iesysprep.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\iesetup.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\iertutil.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\iernonce.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\iepeers.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\ieframe.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-05-04 16:45:40 ----A---- C:\Windows\system32\iedkcs32.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\ieapfltr.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\ieapfltr.dat
2015-05-04 16:45:40 ----A---- C:\Windows\system32\IEAdvpack.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\ie4uinit.exe
2015-05-04 16:45:40 ----A---- C:\Windows\system32\icardie.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\elshyph.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\dxtrans.dll
2015-05-04 16:45:40 ----A---- C:\Windows\system32\dxtmsft.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-05-04 16:45:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\user.exe
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-05-04 16:45:29 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\wow64win.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\wow64cpu.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\wow64.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\winsrv.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\tdh.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\smss.exe
2015-05-04 16:45:29 ----A---- C:\Windows\system32\ntvdm64.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-05-04 16:45:29 ----A---- C:\Windows\system32\ntdll.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\KernelBase.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\kernel32.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\csrsrv.dll
2015-05-04 16:45:29 ----A---- C:\Windows\system32\conhost.exe
2015-05-04 16:45:29 ----A---- C:\Windows\system32\advapi32.dll
2015-05-04 16:45:23 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2015-05-04 16:45:23 ----A---- C:\Windows\system32\mswsock.dll
2015-05-04 16:45:23 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-05-04 16:45:23 ----A---- C:\Windows\system32\drivers\netio.sys
2015-05-04 16:45:23 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-05-04 16:45:23 ----A---- C:\Windows\system32\drivers\afd.sys
2015-05-04 16:45:20 ----A---- C:\Windows\system32\taskhost.exe
2015-05-04 16:44:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-05-04 16:44:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2015-05-04 16:44:49 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\XpsPrint.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\WMPhoto.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\UIAnimation.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\FntCache.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\dxgi.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\DWrite.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\d3d10warp.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\d3d10level9.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\d3d10core.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\d3d10_1core.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\d3d10_1.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\d3d10.dll
2015-05-04 16:44:49 ----A---- C:\Windows\system32\d2d1.dll
2015-05-04 16:44:29 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2015-05-04 16:44:29 ----A---- C:\Windows\system32\d3d11.dll
2015-05-03 15:02:27 ----D---- C:\ProgramData\Ashampoo
2015-05-03 15:02:26 ----A---- C:\Windows\system32\DfSdkBt.exe
2015-05-03 15:02:24 ----D---- C:\Program Files (x86)\Ashampoo
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2015-05-02 20:37:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\XAudio2_7.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\XAudio2_6.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\XAudio2_5.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\xactengine3_7.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\xactengine3_6.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\xactengine3_5.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\d3dcsx_43.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2015-05-02 20:37:42 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2015-05-02 20:37:41 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\XAudio2_4.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\xactengine3_4.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\D3DX9_42.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\D3DX9_41.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\D3DX9_40.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\d3dx11_42.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\d3dx10_42.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\d3dx10_41.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\d3dx10_40.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\d3dcsx_42.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2015-05-02 20:37:41 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2015-05-02 20:37:40 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\XAudio2_3.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\XAudio2_2.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\XAudio2_1.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\XAudio2_0.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\xactengine3_3.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\xactengine3_2.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\xactengine3_1.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\D3DX9_39.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\D3DX9_38.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\d3dx10_39.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\d3dx10_38.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2015-05-02 20:37:40 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2015-05-02 20:37:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\xactengine3_0.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\xactengine2_9.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\xactengine2_8.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\xactengine2_10.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\D3DX9_37.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\d3dx9_36.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\d3dx9_35.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\d3dx10_37.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\d3dx10_36.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\d3dx10_35.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2015-05-02 20:37:39 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2015-05-02 20:37:38 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\xinput1_3.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\xactengine2_7.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\xactengine2_6.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\xactengine2_5.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\xactengine2_4.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\x3daudio1_1.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\d3dx9_34.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\d3dx9_33.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\d3dx9_32.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\d3dx9_31.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\d3dx10_34.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\d3dx10_33.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\d3dx10.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2015-05-02 20:37:38 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2015-05-02 20:37:37 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2015-05-02 20:37:37 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2015-05-02 20:37:37 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2015-05-02 20:37:37 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2015-05-02 20:37:37 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2015-05-02 20:37:37 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2015-05-02 20:37:37 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2015-05-02 20:37:37 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2015-05-02 20:37:37 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2015-05-02 20:37:37 ----A---- C:\Windows\system32\xinput1_2.dll
2015-05-02 20:37:37 ----A---- C:\Windows\system32\xinput1_1.dll
2015-05-02 20:37:37 ----A---- C:\Windows\system32\xactengine2_3.dll
2015-05-02 20:37:37 ----A---- C:\Windows\system32\xactengine2_2.dll
2015-05-02 20:37:37 ----A---- C:\Windows\system32\xactengine2_1.dll
2015-05-02 20:37:37 ----A---- C:\Windows\system32\xactengine2_0.dll
2015-05-02 20:37:37 ----A---- C:\Windows\system32\x3daudio1_0.dll
2015-05-02 20:37:37 ----A---- C:\Windows\system32\d3dx9_30.dll
2015-05-02 20:37:37 ----A---- C:\Windows\system32\d3dx9_29.dll
2015-05-02 20:37:36 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2015-05-02 20:37:36 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2015-05-02 20:37:36 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2015-05-02 20:37:36 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2015-05-02 20:37:36 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2015-05-02 20:37:36 ----A---- C:\Windows\system32\d3dx9_28.dll
2015-05-02 20:37:36 ----A---- C:\Windows\system32\d3dx9_27.dll
2015-05-02 20:37:36 ----A---- C:\Windows\system32\d3dx9_26.dll
2015-05-02 20:37:36 ----A---- C:\Windows\system32\d3dx9_25.dll
2015-05-02 20:37:36 ----A---- C:\Windows\system32\d3dx9_24.dll
2015-05-02 19:52:32 ----D---- C:\Users\Test\AppData\Roaming\DAEMON Tools Lite
2015-05-02 19:52:32 ----A---- C:\Windows\system32\drivers\dtlitescsibus.sys
2015-05-02 19:52:31 ----D---- C:\Program Files\DAEMON Tools Lite
2015-05-02 19:48:10 ----D---- C:\ProgramData\DAEMON Tools Lite
2015-05-02 19:45:40 ----D---- C:\Users\Test\AppData\Roaming\GHISLER
2015-05-02 19:45:40 ----D---- C:\totalcmd
2015-04-30 14:42:12 ----SHD---- C:\System Volume Information
2015-04-30 14:41:36 ----D---- C:\Windows\Panther
2015-04-30 14:15:19 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-04-30 14:14:44 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-04-30 14:14:44 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2015-04-30 14:14:44 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2015-04-30 14:14:44 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-04-30 14:14:44 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-04-30 14:14:44 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-04-30 14:14:39 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-04-30 14:14:39 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-04-30 14:14:39 ----A---- C:\Windows\system32\nvspcap64.dll
2015-04-30 14:14:39 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-04-30 14:14:31 ----D---- C:\ProgramData\NVIDIA
2015-04-30 14:14:22 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-04-30 14:14:18 ----A---- C:\Windows\system32\nvvsvc.exe
2015-04-30 14:14:18 ----A---- C:\Windows\system32\nvsvcr.dll
2015-04-30 14:14:18 ----A---- C:\Windows\system32\nvsvc64.dll
2015-04-30 14:14:18 ----A---- C:\Windows\system32\nvshext.dll
2015-04-30 14:14:18 ----A---- C:\Windows\system32\nvmctray.dll
2015-04-30 14:14:18 ----A---- C:\Windows\system32\nvcpl.dll
2015-04-30 14:14:13 ----D---- C:\ProgramData\NVIDIA Corporation
2015-04-30 14:14:11 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2015-04-30 14:13:45 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvopencl.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvoglv64.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvinitx.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\NvIFR64.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvhdap64.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\NvFBC64.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvdispgenco6435012.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvdispco6435012.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvcuvid.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvcuda.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvcompiler.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvaudcap64v.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\nvapi64.dll
2015-04-30 14:13:45 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2015-04-30 14:13:45 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-04-30 14:13:45 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2015-04-30 14:13:23 ----D---- C:\Program Files\NVIDIA Corporation
2015-04-30 14:13:11 ----D---- C:\NVIDIA
2015-04-30 14:07:13 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys
2015-04-30 14:07:07 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2015-04-30 14:07:07 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2015-04-30 14:06:27 ----D---- C:\Users\Test\AppData\Roaming\Intel Corporation
2015-04-30 14:06:07 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-04-30 14:06:07 ----D---- C:\Program Files\Realtek
2015-04-30 14:04:47 ----A---- C:\Windows\system32\WavesGUILib64.dll
2015-04-30 14:04:42 ----A---- C:\Windows\system32\SRSWOW64.dll
2015-04-30 14:04:41 ----A---- C:\Windows\system32\SRSTSX64.dll
2015-04-30 14:04:40 ----A---- C:\Windows\system32\SRSTSH64.dll
2015-04-30 14:04:39 ----A---- C:\Windows\system32\SRSHP64.dll
2015-04-30 14:04:22 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2015-04-30 14:04:11 ----A---- C:\Windows\system32\wups2.dll
2015-04-30 14:04:11 ----A---- C:\Windows\system32\wucltux.dll
2015-04-30 14:04:11 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-30 14:04:11 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-30 14:04:10 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-04-30 14:04:10 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-04-30 14:04:10 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-04-30 14:04:10 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-04-30 14:04:10 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-04-30 14:04:10 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-30 14:04:10 ----A---- C:\Windows\system32\wups.dll
2015-04-30 14:04:10 ----A---- C:\Windows\system32\wudriver.dll
2015-04-30 14:04:10 ----A---- C:\Windows\system32\wuapp.exe
2015-04-30 14:04:10 ----A---- C:\Windows\system32\wuapi.dll
2015-04-30 14:04:05 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2015-04-30 14:04:05 ----A---- C:\Windows\system32\RtkCfg64.dll
2015-04-30 14:04:04 ----A---- C:\Windows\system32\RtkAPO64.dll
2015-04-30 14:04:04 ----A---- C:\Windows\system32\RtkApi64.dll
2015-04-30 14:04:03 ----A---- C:\Windows\system32\RtPgEx64.dll
2015-04-30 14:04:03 ----A---- C:\Windows\system32\RtDataProc64.dll
2015-04-30 14:04:02 ----A---- C:\Windows\system32\RTCOM64.dll
2015-04-30 14:04:01 ----A---- C:\Windows\system32\RTEEP64A.dll
2015-04-30 14:04:01 ----A---- C:\Windows\system32\RTEEL64A.dll
2015-04-30 14:04:01 ----A---- C:\Windows\system32\RTEEG64A.dll
2015-04-30 14:04:01 ----A---- C:\Windows\system32\RTEED64A.dll
2015-04-30 14:04:01 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2015-04-30 14:04:00 ----A---- C:\Windows\system32\RP3DHT64.dll
2015-04-30 14:04:00 ----A---- C:\Windows\system32\RP3DAA64.dll
2015-04-30 14:04:00 ----A---- C:\Windows\system32\RCoInstII64.dll
2015-04-30 14:04:00 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2015-04-30 14:03:26 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2015-04-30 14:03:25 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-04-30 14:03:23 ----A---- C:\Windows\system32\MBWrp64.dll
2015-04-30 14:03:23 ----A---- C:\Windows\system32\MBppld64.dll
2015-04-30 14:03:23 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2015-04-30 14:03:22 ----A---- C:\Windows\system32\MBPPCn64.dll
2015-04-30 14:03:22 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2015-04-30 14:03:20 ----A---- C:\Windows\system32\MBAPO64.dll
2015-04-30 14:03:19 ----A---- C:\Windows\SYSWOW64\MBAPO32.dll
2015-04-30 14:03:16 ----A---- C:\Windows\system32\RTNUninst64.dll
2015-04-30 14:03:16 ----A---- C:\Windows\system32\RtNicProp64.dll
2015-04-30 14:02:57 ----A---- C:\Windows\system32\FMAPO64.dll
2015-04-30 14:02:48 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-04-30 14:02:44 ----A---- C:\Windows\system32\AERTAR64.dll
2015-04-30 14:02:43 ----HD---- C:\Program Files (x86)\Temp
2015-04-30 14:02:43 ----D---- C:\Program Files (x86)\Realtek
2015-04-30 14:02:43 ----A---- C:\Windows\system32\AERTAC64.dll
2015-04-30 14:02:39 ----R---- C:\Windows\RtlExUpd.dll
2015-04-30 14:02:26 ----A---- C:\Windows\SYSWOW64\OpenCL.DLL
2015-04-30 14:02:26 ----A---- C:\Windows\system32\OpenCL.DLL
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\IntelOpenCL32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\IntelCpHeciSvc.exe
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\Intel_OpenCL_ICD32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\iglhsip32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\iglhcp32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igfxexps32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igfxcmrt32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igfxcmjit32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igfx11cmrt32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igdusc32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igdumdim32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igdrcl32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igdmd32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igdfcl32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igdde32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igdbcl32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igdail32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\igd10iumd32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\SYSWOW64\ig75icd32.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\MetroIntelGenericUIFramework.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\IntelOpenCL64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\Intel_OpenCL_ICD64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\iglhsip64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\iglhcp64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxTray.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxOSP.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxLHMLibv2_0.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxLHMLib.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxLHM.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxHK.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxext.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxexps.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxEMLibv2_0.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxEMLib.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxEM.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxDTCM.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxDILibv2_0.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxDILib.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxDI.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxDHLibv2_0.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxDHLib.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxDH.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxCUIServicePS.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxCUIService.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxCoIn_v3540.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxcmrt64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfxcmjit64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igfx11cmrt64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igdusc64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igdumdim64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igdrcl64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igdmd64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igdfcl64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igdde64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igdbcl64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igdail64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\igd10iumd64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\ig75icd64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\IccLibDll_x64.dll
2015-04-30 14:02:20 ----A---- C:\Windows\system32\Gfxv4_0.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\Gfxv2_0.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\GfxUIEx.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\drivers\igdkmd64.sys
2015-04-30 14:02:20 ----A---- C:\Windows\system32\DPTopologyAppv2_0.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\DPTopologyApp.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\difx64.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\CustomModeAppv2_0.exe
2015-04-30 14:02:20 ----A---- C:\Windows\system32\CustomModeApp.exe
2015-04-30 14:01:05 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2015-04-30 14:00:55 ----A---- C:\Windows\system32\drivers\IntcDAud.sys
2015-04-30 14:00:53 ----D---- C:\ProgramData\Intel
2015-04-30 14:00:52 ----D---- C:\Program Files\Intel
2015-04-30 14:00:39 ----A---- C:\Windows\system32\Wdfres.dll
2015-04-30 14:00:39 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2015-04-30 14:00:39 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2015-04-30 14:00:35 ----A---- C:\Windows\system32\WdfCoInstaller01011.dll
2015-04-30 14:00:35 ----A---- C:\Windows\system32\drivers\TeeDriverx64.sys
2015-04-30 13:59:49 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-30 13:59:48 ----D---- C:\Users\Test\AppData\Roaming\InstallShield
2015-04-30 13:59:36 ----D---- C:\Program Files (x86)\Intel
2015-04-30 13:59:36 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2015-04-30 13:59:33 ----D---- C:\Intel
2015-04-30 13:58:42 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-04-30 13:58:21 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-04-30 13:58:19 ----SHD---- C:\Windows\Installer
2015-04-30 13:57:58 ----D---- C:\Program Files (x86)\Google
2015-04-30 13:57:20 ----A---- C:\Windows\GSetup.ini
2015-04-30 13:46:57 ----D---- C:\Users\Test\AppData\Roaming\Identities
2015-04-30 13:46:53 ----SD---- C:\Users\Test\AppData\Roaming\Microsoft
2015-04-30 13:46:53 ----D---- C:\Users\Test\AppData\Roaming\Media Center Programs
2015-04-30 13:46:52 ----SHD---- C:\Recovery
2015-04-30 13:46:51 ----D---- C:\Windows\SoftwareDistribution
2015-04-30 13:43:10 ----D---- C:\Windows\Prefetch
2015-04-30 13:43:04 ----ASH---- C:\pagefile.sys
2015-04-30 13:43:04 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2015-05-04 19:14:56 ----D---- C:\Windows\Temp
2015-05-04 19:14:54 ----RD---- C:\Program Files
2015-05-04 18:49:31 ----D---- C:\Windows\System32
2015-05-04 18:49:31 ----D---- C:\Windows\inf
2015-05-04 18:49:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-05-04 18:26:55 ----D---- C:\Windows\system32\drivers
2015-05-04 18:12:26 ----D---- C:\Windows
2015-05-04 17:58:20 ----D---- C:\Windows\system32\DriverStore
2015-05-04 17:58:20 ----D---- C:\Windows\system32\catroot
2015-05-04 17:58:18 ----HD---- C:\ProgramData
2015-05-04 17:58:17 ----RD---- C:\Program Files (x86)
2015-05-04 17:58:17 ----D---- C:\Windows\SysWOW64
2015-05-04 16:58:12 ----D---- C:\Windows\system32\config
2015-05-04 16:48:09 ----D---- C:\Windows\winsxs
2015-05-04 16:47:33 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-05-04 16:47:33 ----D---- C:\Windows\system32\sk-SK
2015-05-04 16:47:33 ----D---- C:\Program Files\Internet Explorer
2015-05-04 16:47:33 ----D---- C:\Program Files (x86)\Internet Explorer
2015-05-04 16:47:32 ----RSD---- C:\Windows\Fonts
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\zh-TW
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\zh-HK
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\zh-CN
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\tr-TR
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\sv-SE
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\ru-RU
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\pt-PT
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\pt-BR
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\pl-PL
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\nl-NL
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\nb-NO
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\migration
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\ko-KR
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\ja-JP
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\it-IT
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\hu-HU
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\fr-FR
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\fi-FI
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\es-ES
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\en-US
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\el-GR
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\de-DE
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\da-DK
2015-05-04 16:47:32 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-05-04 16:47:32 ----D---- C:\Windows\system32\zh-TW
2015-05-04 16:47:32 ----D---- C:\Windows\system32\zh-HK
2015-05-04 16:47:32 ----D---- C:\Windows\system32\zh-CN
2015-05-04 16:47:32 ----D---- C:\Windows\system32\tr-TR
2015-05-04 16:47:32 ----D---- C:\Windows\system32\sv-SE
2015-05-04 16:47:32 ----D---- C:\Windows\system32\ru-RU
2015-05-04 16:47:32 ----D---- C:\Windows\system32\pt-PT
2015-05-04 16:47:32 ----D---- C:\Windows\system32\pt-BR
2015-05-04 16:47:32 ----D---- C:\Windows\system32\pl-PL
2015-05-04 16:47:32 ----D---- C:\Windows\system32\nl-NL
2015-05-04 16:47:32 ----D---- C:\Windows\system32\nb-NO
2015-05-04 16:47:32 ----D---- C:\Windows\system32\migration
2015-05-04 16:47:32 ----D---- C:\Windows\system32\ko-KR
2015-05-04 16:47:32 ----D---- C:\Windows\system32\ja-JP
2015-05-04 16:47:32 ----D---- C:\Windows\system32\it-IT
2015-05-04 16:47:32 ----D---- C:\Windows\system32\hu-HU
2015-05-04 16:47:32 ----D---- C:\Windows\system32\fr-FR
2015-05-04 16:47:32 ----D---- C:\Windows\system32\fi-FI
2015-05-04 16:47:32 ----D---- C:\Windows\system32\es-ES
2015-05-04 16:47:32 ----D---- C:\Windows\system32\en-US
2015-05-04 16:47:32 ----D---- C:\Windows\system32\el-GR
2015-05-04 16:47:32 ----D---- C:\Windows\system32\de-DE
2015-05-04 16:47:32 ----D---- C:\Windows\system32\da-DK
2015-05-04 16:47:32 ----D---- C:\Windows\system32\cs-CZ
2015-05-04 16:47:32 ----D---- C:\Windows\PolicyDefinitions
2015-05-04 16:47:32 ----D---- C:\Windows\AppPatch
2015-05-04 16:47:10 ----D---- C:\Windows\Logs
2015-05-04 16:46:39 ----D---- C:\Windows\system32\catroot2
2015-05-03 18:59:48 ----D---- C:\Windows\system32\wdi
2015-05-03 16:47:00 ----D---- C:\Windows\rescache
2015-05-03 15:04:01 ----D---- C:\Windows\debug
2015-05-03 14:43:31 ----D---- C:\Windows\Microsoft.NET
2015-05-02 20:37:37 ----RSD---- C:\Windows\assembly
2015-05-02 19:43:12 ----D---- C:\Windows\system32\LogFiles
2015-05-02 19:37:46 ----D---- C:\Windows\Tasks
2015-04-30 14:14:18 ----D---- C:\Windows\Help
2015-04-30 14:10:23 ----D---- C:\Windows\system32\wbem
2015-04-30 14:10:23 ----D---- C:\Windows\system32\drivers\en-US
2015-04-30 14:09:20 ----SD---- C:\ProgramData\Microsoft
2015-04-30 14:07:10 ----D---- C:\Program Files (x86)\Common Files
2015-04-30 14:02:52 ----D---- C:\Windows\system32\restore
2015-04-30 14:00:50 ----D---- C:\Program Files\Common Files\Microsoft Shared
2015-04-30 13:58:02 ----D---- C:\Windows\system32\Tasks
2015-04-30 13:55:14 ----D---- C:\Windows\system32\CodeIntegrity
2015-04-30 13:46:56 ----SHD---- C:\$Recycle.Bin
2015-04-30 13:46:53 ----RD---- C:\Users
2015-04-30 13:44:46 ----D---- C:\Windows\system32\sysprep
2015-04-30 13:43:32 ----D---- C:\Windows\system32\drivers\UMDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2014-04-11 645480]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2014-04-11 28008]
R0 iusb3hcs;Ovládač prepínača hostiteľského radiča Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-02-21 20464]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2015-05-02 30352]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-03-31 3785216]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-03-14 3896920]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iusb3hub;Ovládač rozbočovača Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2014-02-21 370672]
R3 iusb3xhc;Ovládač hostiteľského radiča Intel(R) USB 3.0 eXtensible; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-02-21 791024]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-04-14 25816]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-09-16 99288]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-04-09 195728]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-04-09 19600]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-04-09 38032]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-03-18 906968]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys []
S3 gfiark;gfiark; C:\Windows\system32\drivers\gfiark.sys [2013-05-23 41032]
S3 gfiutil;gfiutil; C:\Windows\system32\drivers\gfiutil.sys [2013-09-04 31264]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-04-14 63704]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-04-09 1152144]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2014-04-09 296432]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-16 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-16 390616]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-04-09 1878672]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-04-09 22995600]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-04-08 936264]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-04-08 410952]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-30 116648]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-04-14 1080120]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-30 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-04 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 SBAMSvc;STOPzilla!; C:\Program Files (x86)\STOPzilla\SBAMSvc.exe [2014-01-07 3937472]
S4 sz7;STOPzilla Service; C:\Program Files (x86)\STOPzilla\SZServer.exe [2015-04-06 1592624]

-----------------EOF-----------------

Re: Kontrola PC

Napsal: 05 kvě 2015 08:33
od altrok
Krasny den Vam preju :bye:


:arrow: STOPzilla - antivir se neucastni srovnavacich testu, takze na nej nemam ani kladny ani zaporny nazor, ale antivir zrovna neni oblast, ve ktere bych experimentoval. Nejsem si jist, zda jsou doinstalovane vsechny aktualizace operacniho systemu. Jinak je log cisty. Na zaklade poctu procesu nelze delat zavery.

Re: Kontrola PC

Napsal: 05 kvě 2015 14:29
od maba345
StopZILLA sa mi nedá kompletne odinštalovať zostalo po nej niekoľko stôp. Použil som Revo uninstaller zdá sa že to vyčistil no v services sú stále položky stopzilla....

Re: Kontrola PC

Napsal: 05 kvě 2015 19:04
od altrok
:arrow: Dejte log FRST.txt, prilozte i Addition.txt a kouknem na to rucne - http://forum.viry.cz/viewtopic.php?f=30&t=133101

Re: Kontrola PC

Napsal: 05 kvě 2015 21:26
od maba345
tu sú obe logy

Re: Kontrola PC

Napsal: 06 kvě 2015 10:24
od altrok
:arrow: Mate vypnutou funkci bodu obnoveni. Pred pouzitim fixlistu (viz nize) ji nejprve zapnete!

:arrow: Doporucuji zvysenou opatrnost pri pouzivani Ashampoo WinOptimizer.


  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu bude na plose ulozen fixlog, jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2673296 2015-04-09] (NVIDIA Corporation)
    HKU\S-1-5-21-1915849256-4225163708-1621856079-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [5583120 2015-02-27] (Disc Soft Ltd)
    HKU\S-1-5-21-1915849256-4225163708-1621856079-1000\...\MountPoints2: {0f1cc7ef-ef2e-11e4-9404-806e6f6e6963} - D:\Run.exe
    HKU\S-1-5-21-1915849256-4225163708-1621856079-1000\...\MountPoints2: {d38d63e1-f0f1-11e4-9642-fcaa14500743} - G:\Setup.exe
    
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    
    S3 gfiark; C:\Windows\System32\drivers\gfiark.sys [41032 2013-05-23] (ThreatTrack Security)
    S3 gfiutil; C:\Windows\System32\drivers\gfiutil.sys [31264 2013-09-04] (ThreatTrack Security)
    U3 DfSdkS; No ImagePath
    S3 gdrv; \??\C:\Windows\gdrv.sys [X]
    
    2015-05-05 20:59 - 2015-05-05 20:59 - 01222144 _____ () C:\Users\Test\Desktop\RSITx64.exe
    2015-05-05 14:01 - 2015-05-05 14:02 - 00000000 ____D () C:\AdwCleaner
    2015-05-04 19:14 - 2015-05-05 22:09 - 00000000 ____D () C:\Program Files\trend micro
    2015-05-04 19:14 - 2015-05-04 19:14 - 00000000 ____D () C:\rsit
    2015-05-04 18:01 - 2013-09-04 14:57 - 00031264 _____ (ThreatTrack Security) C:\Windows\system32\Drivers\gfiutil.sys
    2015-05-04 18:01 - 2013-05-23 08:39 - 00041032 _____ (ThreatTrack Security) C:\Windows\system32\Drivers\gfiark.sys
    2015-05-04 17:58 - 2015-05-04 18:26 - 00000000 ____D () C:\ProgramData\STOPzilla!
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    EmptyTemp:
    End
    

Re: Kontrola PC

Napsal: 06 kvě 2015 12:49
od maba345
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 06-05-2015
Ran by Test at 2015-05-06 13:45:06 Run:1
Running from C:\Users\Test\Desktop
Loaded Profiles: Test (Available profiles: Test)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2673296 2015-04-09] (NVIDIA Corporation)
HKU\S-1-5-21-1915849256-4225163708-1621856079-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [5583120 2015-02-27] (Disc Soft Ltd)
HKU\S-1-5-21-1915849256-4225163708-1621856079-1000\...\MountPoints2: {0f1cc7ef-ef2e-11e4-9404-806e6f6e6963} - D:\Run.exe
HKU\S-1-5-21-1915849256-4225163708-1621856079-1000\...\MountPoints2: {d38d63e1-f0f1-11e4-9642-fcaa14500743} - G:\Setup.exe

SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

S3 gfiark; C:\Windows\System32\drivers\gfiark.sys [41032 2013-05-23] (ThreatTrack Security)
S3 gfiutil; C:\Windows\System32\drivers\gfiutil.sys [31264 2013-09-04] (ThreatTrack Security)
U3 DfSdkS; No ImagePath
S3 gdrv; \??\C:\Windows\gdrv.sys [X]

2015-05-05 20:59 - 2015-05-05 20:59 - 01222144 _____ () C:\Users\Test\Desktop\RSITx64.exe
2015-05-05 14:01 - 2015-05-05 14:02 - 00000000 ____D () C:\AdwCleaner
2015-05-04 19:14 - 2015-05-05 22:09 - 00000000 ____D () C:\Program Files\trend micro
2015-05-04 19:14 - 2015-05-04 19:14 - 00000000 ____D () C:\rsit
2015-05-04 18:01 - 2013-09-04 14:57 - 00031264 _____ (ThreatTrack Security) C:\Windows\system32\Drivers\gfiutil.sys
2015-05-04 18:01 - 2013-05-23 08:39 - 00041032 _____ (ThreatTrack Security) C:\Windows\system32\Drivers\gfiark.sys
2015-05-04 17:58 - 2015-05-04 18:26 - 00000000 ____D () C:\ProgramData\STOPzilla!
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
EmptyTemp:
End
*****************

Processes closed successfully.
Error: (0) Failed to create a restore point.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NvBackend => value deleted successfully.
HKU\S-1-5-21-1915849256-4225163708-1621856079-1000\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
"HKU\S-1-5-21-1915849256-4225163708-1621856079-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0f1cc7ef-ef2e-11e4-9404-806e6f6e6963}" => Key deleted successfully.
HKCR\CLSID\{0f1cc7ef-ef2e-11e4-9404-806e6f6e6963} => Key not found.
"HKU\S-1-5-21-1915849256-4225163708-1621856079-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d38d63e1-f0f1-11e4-9642-fcaa14500743}" => Key deleted successfully.
HKCR\CLSID\{d38d63e1-f0f1-11e4-9642-fcaa14500743} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
gfiark => Service deleted successfully.
gfiutil => Service deleted successfully.
DfSdkS => Service deleted successfully.
gdrv => Service deleted successfully.
C:\Users\Test\Desktop\RSITx64.exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\rsit => Moved successfully.
C:\Windows\system32\Drivers\gfiutil.sys => Moved successfully.
C:\Windows\system32\Drivers\gfiark.sys => Moved successfully.
C:\ProgramData\STOPzilla! => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
EmptyTemp: => Removed 1 GB temporary data.


The system needed a reboot.

==== End of Fixlog 13:45:08 ====

Re: Kontrola PC

Napsal: 06 kvě 2015 13:22
od altrok
:arrow: Stale mate vypnute body obnoveni (pokud umyslne, tak ok).

:arrow: Nainstalujte antivir - Tatry03 nam serviruje srovnavaci testy, takze vyber je na Vas http://forum.viry.cz/viewtopic.php?p=1391782#p1391782


Pak jeste uklidime.
A pokud nejsou dotazy ci jine problemy, je to ode mne vse.