stáhnul jsem špatnej program
Napsal: 15 čer 2015 21:50
Zdravím, dneska jsem stáhnul aplikaci ListenToYoutube, nejspíš to byl vir. Teď mi nejde chrome, počítač je pomalý.
Předem děkuji.
RSIT
Logfile of random's system information tool 1.10 (written by random/random)
Run by user at 2015-06-15 22:49:14
Microsoft Windows 8.1
System drive C: has 59 GB (6%) free of 954 GB
Total RAM: 8131 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:49:15, on 15. 6. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Program Files (x86)\Genius\Manticore\MTHid.exe
C:\Program Files (x86)\AVG\AVG2015\avgui.exe
C:\Program Files (x86)\Skillbrains\lightshot\5.2.0.17\Lightshot.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe
C:\Program Files (x86)\Steam\GameOverlayUI.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\user.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [Manticore] C:\Program Files (x86)\Genius\Manticore\MThid.exe
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [Lightshot] C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_4E874A737D5662A34EBBEADB3A9C4A09] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O8 - Extra context menu item: &NeoTrace It! - C:\PROGRA~2\NEOTRA~1\NTXcontext.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: NeoTrace It! - {9885224C-1217-4c5f-83C2-00002E6CEF2B} - C:\PROGRA~2\NEOTRA~1\NTXtoolbar.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - (no file)
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9707 bytes
======Listing Processes======
c:\PROGRA~2\AVG\AVG2015\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe /pipeName=c2feea3f-0200-0000-85f2-476e6ab43753 /binaryPath="C:\Program Files (x86)\AVG\AVG2015\"
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
dashost.exe {70211243-7fb7-4abf-9297fcc957f367e5}
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" a030db2e-6aa9-48cb-9b37-277094cf9e8d 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgemca.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-90293a02-212f-4610-97e8-9337fffd6289 -SystemEventPortName:HostProcess-11b9c791-7003-4257-8680-b2ecc2fc9569 -IoCancelEventPortName:HostProcess-8a84269d-d7ad-4dd6-b0a7-52dd16ecf58c -NonStateChangingEventPortName:HostProcess-4c212b7a-a281-4bda-95ac-23d0611f86e4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d4bdf2c9-bf75-4908-8113-1451bed112b3 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1c6359f7-36da-4ac4-a139-4fb32cfb85a3 -SystemEventPortName:HostProcess-5ebded91-3a5d-483f-95c4-de6653462326 -IoCancelEventPortName:HostProcess-ab7c9138-bdbc-4f4a-89c2-735168bb57c3 -NonStateChangingEventPortName:HostProcess-4cfcb3e7-9b21-49eb-adfa-82078c9b38c2 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:0ce69c24-3e58-4caa-8494-61e514ceb185 -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\Explorer.EXE
taskhostex.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\WINDOWS\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:\Program Files (x86)\Genius\Manticore\MTHid.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY
"C:\Program Files (x86)\Skillbrains\lightshot\5.2.0.17\Lightshot.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
ctfmon.exe
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Steam\Steam.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Users\user\AppData\Local\Steam\htmlcache" -steampid 5572 -buildid 1433977716 -steamid "76561198055584743" --disable-gpu-compositing --disable-gpu --enable-threaded-compositing --disable-pinch-virtual-viewport --process-per-tab --disable-spell-checking --enable-direct-write
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --enable-threaded-compositing --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-spell-checking --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=5792 --enable-delegated-renderer --num-raster-threads=2 --disable-gpu-compositing --channel="5792.0.786613115\422329525" /prefetch:673131151
"C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe" -steam -game cstrike
C:\Program Files (x86)\Steam\GameOverlayUI.exe -pid 3792 -manuallyclearframes 0
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --enable-threaded-compositing --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-spell-checking --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=5792 --enable-delegated-renderer --num-raster-threads=2 --disable-gpu-compositing --channel="5792.2.497020951\1977695259" /prefetch:673131151
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --enable-threaded-compositing --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-spell-checking --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=5792 --enable-delegated-renderer --num-raster-threads=2 --disable-gpu-compositing --channel="5792.3.1847644821\1490373251" /prefetch:673131151
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3988 CREDAT:267521 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3988 CREDAT:78849 /prefetch:2
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1175257845-2453519272-1601990809-10012_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1175257845-2453519272-1601990809-10012 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 576 580 588 65536 584
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3988 CREDAT:2757908 /prefetch:2
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\user\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\Bidaily Synchronize Task[973b].job - c:\programdata\{2a9eadfd-2c72-c225-2a9e-eadfd2c7b7f4}\tasty selection - episode #1 [best tasty electro house 2014 mix].exe --startup=1 --single
C:\WINDOWS\tasks\Norton Security Scan for user.job - C:\PROGRA~2\NORTON~2\Engine\410~1.28\Nss.exe /scan-quick /scheduled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-16 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-16 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-11-19 6846096]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-31 36352]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-04-09 2673296]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2015-04-09 1570672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-06-02 28787840]
"GoogleChromeAutoLaunch_4E874A737D5662A34EBBEADB3A9C4A09"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-06-05 813896]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2014-05-31 585048]
"Manticore"=C:\Program Files (x86)\Genius\Manticore\MThid.exe [2013-10-29 293376]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2015\avgui.exe [2015-06-05 3727824]
"Lightshot"=C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [2014-11-18 226560]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-04-30 334896]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"VIDC.FPS1"=frapsv64.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-06-15 22:30:55 ----D---- C:\rsit
2015-06-15 22:21:49 ----D---- C:\Program Files (x86)\PricceMinus
2015-06-15 22:21:19 ----D---- C:\ProgramData\dbbeaikmdologmaijpkocopadlbojncb
2015-06-15 22:20:43 ----D---- C:\ProgramData\{2a9eadfd-2c72-c225-2a9e-eadfd2c7b7f4}
2015-06-13 09:15:02 ----D---- C:\Program Files\Common Files\AV
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\invagent.dll
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\aepic.dll
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-06-10 06:37:05 ----A---- C:\WINDOWS\system32\devinv.dll
2015-06-10 06:37:05 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-06-10 06:37:05 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-06-10 06:36:52 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2015-06-10 06:36:52 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-06-10 06:36:52 ----A---- C:\WINDOWS\system32\localspl.dll
2015-06-10 06:36:51 ----A---- C:\WINDOWS\system32\compstui.dll
2015-06-10 06:36:36 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2015-06-10 06:36:36 ----A---- C:\WINDOWS\system32\UtcResources.dll
2015-06-10 06:36:36 ----A---- C:\WINDOWS\system32\rastapi.dll
2015-06-10 06:36:36 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-06-10 06:36:34 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll
2015-06-10 06:36:34 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-06-10 06:36:34 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\system32\tquery.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-06-10 06:34:22 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\system32\mssph.dll
2015-06-10 06:34:21 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-06-10 06:34:21 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-06-10 06:34:21 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2015-06-10 06:34:21 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2015-06-10 06:34:21 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-10 06:34:21 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-06-10 06:34:21 ----A---- C:\WINDOWS\system32\mssphtb.dll
2015-06-10 06:34:20 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-06-10 06:34:20 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-06-10 06:34:20 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2015-06-10 06:34:20 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-10 06:34:20 ----A---- C:\WINDOWS\system32\authz.dll
2015-06-10 06:34:19 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2015-06-10 06:34:19 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-06-10 06:34:16 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-06-10 06:34:16 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-06-10 06:34:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-06-10 06:34:14 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-06-10 06:34:14 ----A---- C:\WINDOWS\system32\wininet.dll
2015-06-10 06:34:13 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-06-10 06:34:12 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-06-10 06:34:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-06-10 06:34:11 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-06-10 06:34:10 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-06-10 06:34:10 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-06-10 06:34:10 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-06-10 06:34:09 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2015-06-10 06:34:09 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-06-10 06:34:09 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-06-10 06:34:08 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-06-10 06:34:08 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\system32\jscript.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\ieui.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-06-10 06:33:06 ----A---- C:\WINDOWS\system32\win32k.sys
2015-06-04 15:27:46 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-06-04 15:27:46 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-06-04 15:22:41 ----D---- C:\WINDOWS\Migration
2015-05-19 09:52:58 ----A---- C:\WINDOWS\system32\drivers\avgidsdrivera.sys
======List of files/folders modified in the last 1 month======
Předem děkuji.
RSIT
Logfile of random's system information tool 1.10 (written by random/random)
Run by user at 2015-06-15 22:49:14
Microsoft Windows 8.1
System drive C: has 59 GB (6%) free of 954 GB
Total RAM: 8131 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:49:15, on 15. 6. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Program Files (x86)\Genius\Manticore\MTHid.exe
C:\Program Files (x86)\AVG\AVG2015\avgui.exe
C:\Program Files (x86)\Skillbrains\lightshot\5.2.0.17\Lightshot.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe
C:\Program Files (x86)\Steam\GameOverlayUI.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\user.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [Manticore] C:\Program Files (x86)\Genius\Manticore\MThid.exe
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [Lightshot] C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_4E874A737D5662A34EBBEADB3A9C4A09] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O8 - Extra context menu item: &NeoTrace It! - C:\PROGRA~2\NEOTRA~1\NTXcontext.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: NeoTrace It! - {9885224C-1217-4c5f-83C2-00002E6CEF2B} - C:\PROGRA~2\NEOTRA~1\NTXtoolbar.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - (no file)
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9707 bytes
======Listing Processes======
c:\PROGRA~2\AVG\AVG2015\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe /pipeName=c2feea3f-0200-0000-85f2-476e6ab43753 /binaryPath="C:\Program Files (x86)\AVG\AVG2015\"
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
dashost.exe {70211243-7fb7-4abf-9297fcc957f367e5}
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" a030db2e-6aa9-48cb-9b37-277094cf9e8d 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgemca.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-90293a02-212f-4610-97e8-9337fffd6289 -SystemEventPortName:HostProcess-11b9c791-7003-4257-8680-b2ecc2fc9569 -IoCancelEventPortName:HostProcess-8a84269d-d7ad-4dd6-b0a7-52dd16ecf58c -NonStateChangingEventPortName:HostProcess-4c212b7a-a281-4bda-95ac-23d0611f86e4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d4bdf2c9-bf75-4908-8113-1451bed112b3 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1c6359f7-36da-4ac4-a139-4fb32cfb85a3 -SystemEventPortName:HostProcess-5ebded91-3a5d-483f-95c4-de6653462326 -IoCancelEventPortName:HostProcess-ab7c9138-bdbc-4f4a-89c2-735168bb57c3 -NonStateChangingEventPortName:HostProcess-4cfcb3e7-9b21-49eb-adfa-82078c9b38c2 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:0ce69c24-3e58-4caa-8494-61e514ceb185 -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\Explorer.EXE
taskhostex.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\WINDOWS\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:\Program Files (x86)\Genius\Manticore\MTHid.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY
"C:\Program Files (x86)\Skillbrains\lightshot\5.2.0.17\Lightshot.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
ctfmon.exe
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Steam\Steam.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Users\user\AppData\Local\Steam\htmlcache" -steampid 5572 -buildid 1433977716 -steamid "76561198055584743" --disable-gpu-compositing --disable-gpu --enable-threaded-compositing --disable-pinch-virtual-viewport --process-per-tab --disable-spell-checking --enable-direct-write
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --enable-threaded-compositing --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-spell-checking --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=5792 --enable-delegated-renderer --num-raster-threads=2 --disable-gpu-compositing --channel="5792.0.786613115\422329525" /prefetch:673131151
"C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe" -steam -game cstrike
C:\Program Files (x86)\Steam\GameOverlayUI.exe -pid 3792 -manuallyclearframes 0
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --enable-threaded-compositing --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-spell-checking --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=5792 --enable-delegated-renderer --num-raster-threads=2 --disable-gpu-compositing --channel="5792.2.497020951\1977695259" /prefetch:673131151
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --enable-threaded-compositing --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-spell-checking --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=5792 --enable-delegated-renderer --num-raster-threads=2 --disable-gpu-compositing --channel="5792.3.1847644821\1490373251" /prefetch:673131151
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3988 CREDAT:267521 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3988 CREDAT:78849 /prefetch:2
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1175257845-2453519272-1601990809-10012_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1175257845-2453519272-1601990809-10012 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 576 580 588 65536 584
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3988 CREDAT:2757908 /prefetch:2
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\user\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\Bidaily Synchronize Task[973b].job - c:\programdata\{2a9eadfd-2c72-c225-2a9e-eadfd2c7b7f4}\tasty selection - episode #1 [best tasty electro house 2014 mix].exe --startup=1 --single
C:\WINDOWS\tasks\Norton Security Scan for user.job - C:\PROGRA~2\NORTON~2\Engine\410~1.28\Nss.exe /scan-quick /scheduled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-16 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-16 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-11-19 6846096]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-31 36352]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-04-09 2673296]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2015-04-09 1570672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-06-02 28787840]
"GoogleChromeAutoLaunch_4E874A737D5662A34EBBEADB3A9C4A09"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-06-05 813896]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2014-05-31 585048]
"Manticore"=C:\Program Files (x86)\Genius\Manticore\MThid.exe [2013-10-29 293376]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2015\avgui.exe [2015-06-05 3727824]
"Lightshot"=C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [2014-11-18 226560]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-04-30 334896]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"VIDC.FPS1"=frapsv64.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-06-15 22:30:55 ----D---- C:\rsit
2015-06-15 22:21:49 ----D---- C:\Program Files (x86)\PricceMinus
2015-06-15 22:21:19 ----D---- C:\ProgramData\dbbeaikmdologmaijpkocopadlbojncb
2015-06-15 22:20:43 ----D---- C:\ProgramData\{2a9eadfd-2c72-c225-2a9e-eadfd2c7b7f4}
2015-06-13 09:15:02 ----D---- C:\Program Files\Common Files\AV
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\invagent.dll
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\aepic.dll
2015-06-10 06:37:06 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-06-10 06:37:05 ----A---- C:\WINDOWS\system32\devinv.dll
2015-06-10 06:37:05 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-06-10 06:37:05 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-06-10 06:36:52 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2015-06-10 06:36:52 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-06-10 06:36:52 ----A---- C:\WINDOWS\system32\localspl.dll
2015-06-10 06:36:51 ----A---- C:\WINDOWS\system32\compstui.dll
2015-06-10 06:36:36 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2015-06-10 06:36:36 ----A---- C:\WINDOWS\system32\UtcResources.dll
2015-06-10 06:36:36 ----A---- C:\WINDOWS\system32\rastapi.dll
2015-06-10 06:36:36 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-06-10 06:36:34 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll
2015-06-10 06:36:34 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-06-10 06:36:34 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\system32\tquery.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-06-10 06:34:22 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-06-10 06:34:22 ----A---- C:\WINDOWS\system32\mssph.dll
2015-06-10 06:34:21 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-06-10 06:34:21 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-06-10 06:34:21 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2015-06-10 06:34:21 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2015-06-10 06:34:21 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-10 06:34:21 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-06-10 06:34:21 ----A---- C:\WINDOWS\system32\mssphtb.dll
2015-06-10 06:34:20 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-06-10 06:34:20 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-06-10 06:34:20 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2015-06-10 06:34:20 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-10 06:34:20 ----A---- C:\WINDOWS\system32\authz.dll
2015-06-10 06:34:19 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2015-06-10 06:34:19 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-06-10 06:34:16 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-06-10 06:34:16 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-06-10 06:34:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-06-10 06:34:14 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-06-10 06:34:14 ----A---- C:\WINDOWS\system32\wininet.dll
2015-06-10 06:34:13 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-06-10 06:34:12 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-06-10 06:34:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-06-10 06:34:11 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-06-10 06:34:10 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-06-10 06:34:10 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-06-10 06:34:10 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-06-10 06:34:09 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2015-06-10 06:34:09 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-06-10 06:34:09 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-06-10 06:34:08 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-06-10 06:34:08 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\system32\jscript.dll
2015-06-10 06:34:07 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-06-10 06:34:06 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\ieui.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-06-10 06:34:05 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-06-10 06:33:06 ----A---- C:\WINDOWS\system32\win32k.sys
2015-06-04 15:27:46 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-06-04 15:27:46 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-06-04 15:22:41 ----D---- C:\WINDOWS\Migration
2015-05-19 09:52:58 ----A---- C:\WINDOWS\system32\drivers\avgidsdrivera.sys
======List of files/folders modified in the last 1 month======