
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
log - (použit ComboFix) - poraďte - nerozumim
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
log - (použit ComboFix) - poraďte - nerozumim
ComboFix 15-08-01.01 - PC 02.08.2015 7:44.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2814.1695 [GMT 2:00]
Spuštěný z: c:\users\PC\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-02 do 2015-08-02 )))))))))))))))))))))))))))))))
.
.
2015-08-02 05:56 . 2015-08-02 05:56 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-08-01 04:52 . 2015-08-01 04:52 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{873B21F6-7537-474D-B4C3-FCCB88D477C0}\offreg.1004.dll
2015-07-31 12:13 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{873B21F6-7537-474D-B4C3-FCCB88D477C0}\mpengine.dll
2015-07-29 11:06 . 2015-07-29 11:06 -------- d-----w- c:\windows\Migration
2015-07-29 10:57 . 2015-07-29 10:57 -------- d-----w- c:\program files\7-Zip
2015-07-29 10:39 . 2011-03-12 21:55 876032 ----a-w- c:\windows\system32\XpsPrint.dll
2015-07-29 10:39 . 2015-07-03 05:19 474624 ----a-w- c:\program files\Internet Explorer\ieinstal.exe
2015-07-29 10:39 . 2015-07-03 05:18 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-29 08:30 . 2015-07-29 08:30 -------- d-----w- c:\program files\Windows Portable Devices
2015-07-29 08:24 . 2015-01-29 01:35 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2015-07-29 08:22 . 2015-01-29 01:35 975360 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-07-29 08:21 . 2015-06-25 02:57 2066432 ----a-w- c:\windows\system32\win32k.sys
2015-07-29 08:18 . 2015-07-14 16:02 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-29 08:18 . 2015-07-14 14:23 296960 ----a-w- c:\windows\system32\atmfd.dll
2015-07-29 08:17 . 2015-07-03 16:04 1316864 ----a-w- c:\windows\system32\ole32.dll
2015-07-29 08:01 . 2014-06-26 22:17 99480 ----a-w- c:\windows\system32\infocardapi.dll
2015-07-29 08:01 . 2014-06-26 22:17 8856 ----a-w- c:\windows\system32\icardres.dll
2015-07-29 08:01 . 2014-06-26 22:17 619664 ----a-w- c:\windows\system32\icardagt.exe
2015-07-29 08:01 . 2014-06-06 04:28 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-07-29 08:00 . 2015-03-09 01:01 1249280 ----a-w- c:\windows\system32\msxml3.dll
2015-07-29 08:00 . 2014-08-27 00:55 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-07-29 07:59 . 2014-06-15 22:18 1131664 ----a-w- c:\windows\system32\dfshim.dll
2015-07-29 07:59 . 2014-06-13 18:22 81560 ----a-w- c:\windows\system32\mscories.dll
2015-07-29 07:59 . 2014-06-13 18:22 156824 ----a-w- c:\windows\system32\mscorier.dll
2015-07-29 07:51 . 2015-06-17 16:50 2264576 ----a-w- c:\windows\system32\msi.dll
2015-07-29 07:51 . 2015-06-17 15:09 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-07-29 07:51 . 2014-06-02 10:31 332800 ----a-w- c:\windows\system32\msihnd.dll
2015-07-29 07:51 . 2014-06-02 10:30 1993728 ----a-w- c:\windows\system32\authui.dll
2015-07-29 07:51 . 2014-06-02 10:30 33280 ----a-w- c:\windows\system32\appinfo.dll
2015-07-29 07:51 . 2014-06-02 08:56 82432 ----a-w- c:\windows\system32\consent.exe
2015-07-29 07:44 . 2014-10-10 01:00 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-29 07:44 . 2014-10-09 23:22 619520 ----a-w- c:\windows\system32\adtschema.dll
2015-07-29 07:44 . 2014-10-10 01:01 449536 ----a-w- c:\windows\system32\termsrv.dll
2015-07-29 07:42 . 2014-12-19 00:25 115200 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2015-07-29 07:41 . 2015-06-12 16:01 298496 ----a-w- c:\windows\system32\gdi32.dll
2015-07-29 07:40 . 2014-11-04 00:19 2048 ----a-w- c:\windows\system32\tzres.dll
2015-07-29 07:35 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2015-07-29 07:35 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2015-07-29 07:35 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2015-07-29 07:24 . 2015-04-24 15:54 532480 ----a-w- c:\windows\system32\comctl32.dll
2015-07-29 07:10 . 2015-03-05 02:32 244152 ----a-w- c:\windows\system32\clfs.sys
2015-07-29 07:10 . 2015-03-05 02:23 57344 ----a-w- c:\windows\system32\clfsw32.dll
2015-07-29 07:09 . 2015-03-14 02:21 1205168 ----a-w- c:\windows\system32\ntdll.dll
2015-07-29 07:09 . 2015-01-09 02:04 49152 ----a-w- c:\windows\system32\csrsrv.dll
2015-07-29 07:09 . 2015-01-09 00:18 64000 ----a-w- c:\windows\system32\smss.exe
2015-07-29 07:09 . 2015-03-13 01:51 3604920 ----a-w- c:\windows\system32\ntkrnlpa.exe
2015-07-29 07:09 . 2015-03-13 01:51 3552184 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-07-29 07:07 . 2014-10-24 01:04 67072 ----a-w- c:\windows\system32\packager.dll
2015-07-29 06:57 . 2015-04-19 21:24 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2015-07-29 06:57 . 2015-04-19 21:24 189952 ----a-w- c:\windows\system32\d3d10core.dll
2015-07-29 06:57 . 2015-04-19 21:24 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2015-07-29 06:57 . 2015-04-19 20:18 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2015-07-29 06:57 . 2015-04-19 20:13 682496 ----a-w- c:\windows\system32\d2d1.dll
2015-07-29 06:57 . 2015-04-19 21:24 1029120 ----a-w- c:\windows\system32\d3d10.dll
2015-07-29 06:57 . 2015-04-19 20:19 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2015-07-29 06:57 . 2015-04-19 20:12 1072640 ----a-w- c:\windows\system32\DWrite.dll
2015-07-29 06:57 . 2015-04-19 20:12 801792 ----a-w- c:\windows\system32\FntCache.dll
2015-07-29 06:56 . 2014-11-26 02:05 564224 ----a-w- c:\windows\system32\oleaut32.dll
2015-07-29 06:50 . 2015-06-12 14:27 305152 ----a-w- c:\program files\Internet Explorer\ieuser.exe
2015-07-29 06:48 . 2015-04-30 13:14 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 06:44 . 2012-02-01 13:58 47104 ----a-w- c:\program files\Windows Journal\PDIALOG.exe
2015-07-29 06:44 . 2015-04-08 01:11 939008 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2015-07-29 06:44 . 2015-04-07 23:35 1850880 ----a-w- c:\program files\Windows Journal\Journal.exe
2015-07-29 06:44 . 2012-02-01 15:10 1404928 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\InkObj.dll
2015-07-29 06:44 . 2015-04-08 01:11 1219584 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2015-07-29 06:44 . 2015-04-08 01:11 985088 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2015-07-29 06:44 . 2015-04-08 01:11 967168 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2015-07-29 06:38 . 2015-01-21 02:02 807936 ----a-w- c:\windows\system32\msctf.dll
2015-07-29 06:37 . 2014-08-12 02:25 729600 ----a-w- c:\windows\system32\IMJP10K.DLL
2015-07-29 06:33 . 2015-07-29 06:33 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2015-07-29 06:32 . 2015-07-29 06:32 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2015-07-29 06:32 . 2015-07-29 06:32 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2015-07-29 06:19 . 2014-10-03 01:18 274432 ----a-w- c:\windows\system32\AUDIOKSE.dll
2015-07-29 06:19 . 2014-10-03 01:17 170496 ----a-w- c:\windows\system32\EncDump.dll
2015-07-29 06:19 . 2014-10-03 01:17 396800 ----a-w- c:\windows\system32\AudioEng.dll
2015-07-29 06:19 . 2014-10-03 01:17 316928 ----a-w- c:\windows\system32\audiosrv.dll
2015-07-29 06:13 . 2014-12-06 03:14 48640 ----a-w- c:\windows\system32\nlaapi.dll
2015-07-29 06:13 . 2014-12-06 03:14 174080 ----a-w- c:\windows\system32\nlasvc.dll
2015-07-29 06:13 . 2014-12-06 03:14 93184 ----a-w- c:\windows\system32\ncsi.dll
2015-07-27 17:38 . 2015-05-31 08:11 225792 ----a-w- c:\windows\system32\cewmdm.dll
2015-07-27 17:32 . 2015-04-10 23:22 279552 ----a-w- c:\windows\system32\services.exe
2015-07-27 17:19 . 2015-06-27 14:21 217088 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-27 17:19 . 2015-06-27 14:21 81408 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-27 17:19 . 2015-01-09 00:17 107008 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-07-27 17:19 . 2015-06-27 16:02 218112 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-27 17:19 . 2015-06-27 16:03 783872 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-27 17:19 . 2015-06-27 16:02 501248 ----a-w- c:\windows\system32\kerberos.dll
2015-07-27 17:19 . 2015-06-27 16:01 801280 ----a-w- c:\windows\system32\advapi32.dll
2015-07-27 17:19 . 2015-06-12 13:13 440768 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-27 17:19 . 2015-04-30 16:03 279040 ----a-w- c:\windows\system32\schannel.dll
2015-07-27 17:19 . 2014-10-10 01:00 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-27 17:18 . 2014-09-04 23:27 143360 ----a-w- c:\windows\system32\drivers\fastfat.sys
2015-07-27 17:12 . 2014-12-08 01:59 306176 ----a-w- c:\windows\system32\scesrv.dll
2015-07-27 17:11 . 2012-07-26 02:46 9728 ----a-w- c:\windows\system32\Wdfres.dll
2015-07-27 17:11 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll
2015-07-27 17:11 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll
2015-07-27 17:11 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2015-07-27 17:11 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2015-07-27 17:11 . 2009-07-14 12:12 16896 ----a-w- c:\windows\system32\winusb.dll
2015-07-27 17:11 . 2012-07-26 03:39 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2015-07-27 17:11 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe
2015-07-27 17:11 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll
2015-07-27 17:11 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2015-07-27 17:10 . 2015-05-04 22:50 7680 ----a-w- c:\windows\system32\spwmp.dll
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\msdxm.ocx
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\dxmasf.dll
2015-07-27 17:10 . 2015-05-04 21:21 107520 ----a-w- c:\program files\Windows Media Player\wmpconfig.exe
2015-07-27 17:10 . 2015-05-04 21:21 168960 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2015-07-27 17:10 . 2015-05-04 21:21 107520 ----a-w- c:\program files\Windows Media Player\wmpshare.exe
2015-07-27 17:10 . 2015-05-04 21:21 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2015-07-27 16:47 . 2014-12-06 03:14 153600 ----a-w- c:\windows\system32\profsvc.dll
2015-07-27 16:45 . 2012-06-05 16:47 708608 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2015-07-27 16:45 . 2011-02-22 14:13 288768 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2015-07-27 16:44 . 2011-08-25 16:15 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2015-07-27 16:44 . 2011-08-25 16:14 238080 ----a-w- c:\windows\system32\oleacc.dll
2015-07-27 16:44 . 2011-08-25 13:31 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2015-07-27 16:44 . 2013-06-29 02:07 197632 ----a-w- c:\windows\system32\drivers\usbhub.sys
2015-07-27 16:44 . 2013-06-29 02:07 226304 ----a-w- c:\windows\system32\drivers\usbport.sys
2015-07-27 16:44 . 2013-06-29 02:06 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2015-07-27 16:44 . 2011-05-05 13:54 39936 ----a-w- c:\windows\system32\drivers\usbehci.sys
2015-07-27 16:44 . 2011-05-05 13:54 19456 ----a-w- c:\windows\system32\drivers\usbohci.sys
2015-07-27 16:44 . 2014-03-10 01:22 1401344 ----a-w- c:\windows\system32\msxml6.dll
2015-07-27 16:43 . 2013-10-22 07:19 158208 ----a-w- c:\windows\system32\imagehlp.dll
2015-07-27 16:43 . 2012-02-29 15:11 5120 ----a-w- c:\windows\system32\wmi.dll
2015-07-27 16:43 . 2012-02-29 13:32 12800 ----a-w- c:\windows\system32\drivers\fs_rec.sys
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-02 04:56 . 2008-09-10 05:59 45056 ----a-w- c:\windows\system32\acovcnt.exe
2015-07-29 06:34 . 2015-07-29 06:34 203776 ----a-w- c:\windows\system32\webcheck.dll
2015-07-29 06:33 . 2015-07-29 06:33 4096 ----a-w- c:\windows\system32\drivers\cs-CZ\dxgkrnl.sys.mui
2015-06-12 16:01 . 2015-07-29 06:50 54272 ----a-w- c:\windows\apppatch\iebrshim.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-07-19 12:11 692512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2008-07-15 7651328]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-07-19 6109776]
"Windows Mobile-based device management"="c:\windows\WindowsMobile\wmdSync.exe" [2008-01-21 215552]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-5-27 752168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2008-01-11 20:16 39792 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-09-10 05:55 47672 ----a-w- c:\windows\AsScrProlog.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-09-10 05:56 33136 ----a-w- c:\windows\ASScrPro.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-07-19 02:52 104936 ----a-w- c:\program files\CyberLink\Power2Go\CLMLSvc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2015-07-19 14:14 116648 ----atw- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
2008-01-12 05:40 98304 ----a-w- c:\program files\ATK Hotkey\HControlUser.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-06-09 17:16 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
2008-06-14 01:11 210216 ----a-w- c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2008-06-13 05:52 6183456 ----a-w- c:\windows\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
2007-11-20 10:15 1826816 ----a-w- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2008-01-21 19:17 61440 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
2007-12-07 02:12 1029416 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 17:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
2015-08-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.asus.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.0.0.138
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
SafeBoot-WudfPf
SafeBoot-WudfRd
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2015-08-02 07:56
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
C:\ADSM_PData_0150
.
sken byl úspešně dokončen
skryté soubory: 1
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
Celkový čas: 2015-08-02 07:59:58
ComboFix-quarantined-files.txt 2015-08-02 05:59
.
Před spuštěním: Volných bajtů: 92 767 092 736
Po spuštění: Volných bajtů: 93 052 874 752
.
- - End Of File - - 6F4F710DF1EDF8748BE88B743C70A45B
64B1E91C5C6C2157642651010728F90F
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2814.1695 [GMT 2:00]
Spuštěný z: c:\users\PC\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msvcr71.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-02 do 2015-08-02 )))))))))))))))))))))))))))))))
.
.
2015-08-02 05:56 . 2015-08-02 05:56 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-08-01 04:52 . 2015-08-01 04:52 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{873B21F6-7537-474D-B4C3-FCCB88D477C0}\offreg.1004.dll
2015-07-31 12:13 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{873B21F6-7537-474D-B4C3-FCCB88D477C0}\mpengine.dll
2015-07-29 11:06 . 2015-07-29 11:06 -------- d-----w- c:\windows\Migration
2015-07-29 10:57 . 2015-07-29 10:57 -------- d-----w- c:\program files\7-Zip
2015-07-29 10:39 . 2011-03-12 21:55 876032 ----a-w- c:\windows\system32\XpsPrint.dll
2015-07-29 10:39 . 2015-07-03 05:19 474624 ----a-w- c:\program files\Internet Explorer\ieinstal.exe
2015-07-29 10:39 . 2015-07-03 05:18 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-29 08:30 . 2015-07-29 08:30 -------- d-----w- c:\program files\Windows Portable Devices
2015-07-29 08:24 . 2015-01-29 01:35 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2015-07-29 08:22 . 2015-01-29 01:35 975360 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-07-29 08:21 . 2015-06-25 02:57 2066432 ----a-w- c:\windows\system32\win32k.sys
2015-07-29 08:18 . 2015-07-14 16:02 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-29 08:18 . 2015-07-14 14:23 296960 ----a-w- c:\windows\system32\atmfd.dll
2015-07-29 08:17 . 2015-07-03 16:04 1316864 ----a-w- c:\windows\system32\ole32.dll
2015-07-29 08:01 . 2014-06-26 22:17 99480 ----a-w- c:\windows\system32\infocardapi.dll
2015-07-29 08:01 . 2014-06-26 22:17 8856 ----a-w- c:\windows\system32\icardres.dll
2015-07-29 08:01 . 2014-06-26 22:17 619664 ----a-w- c:\windows\system32\icardagt.exe
2015-07-29 08:01 . 2014-06-06 04:28 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-07-29 08:00 . 2015-03-09 01:01 1249280 ----a-w- c:\windows\system32\msxml3.dll
2015-07-29 08:00 . 2014-08-27 00:55 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-07-29 07:59 . 2014-06-15 22:18 1131664 ----a-w- c:\windows\system32\dfshim.dll
2015-07-29 07:59 . 2014-06-13 18:22 81560 ----a-w- c:\windows\system32\mscories.dll
2015-07-29 07:59 . 2014-06-13 18:22 156824 ----a-w- c:\windows\system32\mscorier.dll
2015-07-29 07:51 . 2015-06-17 16:50 2264576 ----a-w- c:\windows\system32\msi.dll
2015-07-29 07:51 . 2015-06-17 15:09 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-07-29 07:51 . 2014-06-02 10:31 332800 ----a-w- c:\windows\system32\msihnd.dll
2015-07-29 07:51 . 2014-06-02 10:30 1993728 ----a-w- c:\windows\system32\authui.dll
2015-07-29 07:51 . 2014-06-02 10:30 33280 ----a-w- c:\windows\system32\appinfo.dll
2015-07-29 07:51 . 2014-06-02 08:56 82432 ----a-w- c:\windows\system32\consent.exe
2015-07-29 07:44 . 2014-10-10 01:00 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-29 07:44 . 2014-10-09 23:22 619520 ----a-w- c:\windows\system32\adtschema.dll
2015-07-29 07:44 . 2014-10-10 01:01 449536 ----a-w- c:\windows\system32\termsrv.dll
2015-07-29 07:42 . 2014-12-19 00:25 115200 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2015-07-29 07:41 . 2015-06-12 16:01 298496 ----a-w- c:\windows\system32\gdi32.dll
2015-07-29 07:40 . 2014-11-04 00:19 2048 ----a-w- c:\windows\system32\tzres.dll
2015-07-29 07:35 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2015-07-29 07:35 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2015-07-29 07:35 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2015-07-29 07:24 . 2015-04-24 15:54 532480 ----a-w- c:\windows\system32\comctl32.dll
2015-07-29 07:10 . 2015-03-05 02:32 244152 ----a-w- c:\windows\system32\clfs.sys
2015-07-29 07:10 . 2015-03-05 02:23 57344 ----a-w- c:\windows\system32\clfsw32.dll
2015-07-29 07:09 . 2015-03-14 02:21 1205168 ----a-w- c:\windows\system32\ntdll.dll
2015-07-29 07:09 . 2015-01-09 02:04 49152 ----a-w- c:\windows\system32\csrsrv.dll
2015-07-29 07:09 . 2015-01-09 00:18 64000 ----a-w- c:\windows\system32\smss.exe
2015-07-29 07:09 . 2015-03-13 01:51 3604920 ----a-w- c:\windows\system32\ntkrnlpa.exe
2015-07-29 07:09 . 2015-03-13 01:51 3552184 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-07-29 07:07 . 2014-10-24 01:04 67072 ----a-w- c:\windows\system32\packager.dll
2015-07-29 06:57 . 2015-04-19 21:24 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2015-07-29 06:57 . 2015-04-19 21:24 189952 ----a-w- c:\windows\system32\d3d10core.dll
2015-07-29 06:57 . 2015-04-19 21:24 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2015-07-29 06:57 . 2015-04-19 20:18 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2015-07-29 06:57 . 2015-04-19 20:13 682496 ----a-w- c:\windows\system32\d2d1.dll
2015-07-29 06:57 . 2015-04-19 21:24 1029120 ----a-w- c:\windows\system32\d3d10.dll
2015-07-29 06:57 . 2015-04-19 20:19 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2015-07-29 06:57 . 2015-04-19 20:12 1072640 ----a-w- c:\windows\system32\DWrite.dll
2015-07-29 06:57 . 2015-04-19 20:12 801792 ----a-w- c:\windows\system32\FntCache.dll
2015-07-29 06:56 . 2014-11-26 02:05 564224 ----a-w- c:\windows\system32\oleaut32.dll
2015-07-29 06:50 . 2015-06-12 14:27 305152 ----a-w- c:\program files\Internet Explorer\ieuser.exe
2015-07-29 06:48 . 2015-04-30 13:14 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 06:44 . 2012-02-01 13:58 47104 ----a-w- c:\program files\Windows Journal\PDIALOG.exe
2015-07-29 06:44 . 2015-04-08 01:11 939008 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2015-07-29 06:44 . 2015-04-07 23:35 1850880 ----a-w- c:\program files\Windows Journal\Journal.exe
2015-07-29 06:44 . 2012-02-01 15:10 1404928 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\InkObj.dll
2015-07-29 06:44 . 2015-04-08 01:11 1219584 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2015-07-29 06:44 . 2015-04-08 01:11 985088 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2015-07-29 06:44 . 2015-04-08 01:11 967168 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2015-07-29 06:38 . 2015-01-21 02:02 807936 ----a-w- c:\windows\system32\msctf.dll
2015-07-29 06:37 . 2014-08-12 02:25 729600 ----a-w- c:\windows\system32\IMJP10K.DLL
2015-07-29 06:33 . 2015-07-29 06:33 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2015-07-29 06:32 . 2015-07-29 06:32 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2015-07-29 06:32 . 2015-07-29 06:32 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2015-07-29 06:19 . 2014-10-03 01:18 274432 ----a-w- c:\windows\system32\AUDIOKSE.dll
2015-07-29 06:19 . 2014-10-03 01:17 170496 ----a-w- c:\windows\system32\EncDump.dll
2015-07-29 06:19 . 2014-10-03 01:17 396800 ----a-w- c:\windows\system32\AudioEng.dll
2015-07-29 06:19 . 2014-10-03 01:17 316928 ----a-w- c:\windows\system32\audiosrv.dll
2015-07-29 06:13 . 2014-12-06 03:14 48640 ----a-w- c:\windows\system32\nlaapi.dll
2015-07-29 06:13 . 2014-12-06 03:14 174080 ----a-w- c:\windows\system32\nlasvc.dll
2015-07-29 06:13 . 2014-12-06 03:14 93184 ----a-w- c:\windows\system32\ncsi.dll
2015-07-27 17:38 . 2015-05-31 08:11 225792 ----a-w- c:\windows\system32\cewmdm.dll
2015-07-27 17:32 . 2015-04-10 23:22 279552 ----a-w- c:\windows\system32\services.exe
2015-07-27 17:19 . 2015-06-27 14:21 217088 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-27 17:19 . 2015-06-27 14:21 81408 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-27 17:19 . 2015-01-09 00:17 107008 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-07-27 17:19 . 2015-06-27 16:02 218112 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-27 17:19 . 2015-06-27 16:03 783872 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-27 17:19 . 2015-06-27 16:02 501248 ----a-w- c:\windows\system32\kerberos.dll
2015-07-27 17:19 . 2015-06-27 16:01 801280 ----a-w- c:\windows\system32\advapi32.dll
2015-07-27 17:19 . 2015-06-12 13:13 440768 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-27 17:19 . 2015-04-30 16:03 279040 ----a-w- c:\windows\system32\schannel.dll
2015-07-27 17:19 . 2014-10-10 01:00 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-27 17:18 . 2014-09-04 23:27 143360 ----a-w- c:\windows\system32\drivers\fastfat.sys
2015-07-27 17:12 . 2014-12-08 01:59 306176 ----a-w- c:\windows\system32\scesrv.dll
2015-07-27 17:11 . 2012-07-26 02:46 9728 ----a-w- c:\windows\system32\Wdfres.dll
2015-07-27 17:11 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll
2015-07-27 17:11 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll
2015-07-27 17:11 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2015-07-27 17:11 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2015-07-27 17:11 . 2009-07-14 12:12 16896 ----a-w- c:\windows\system32\winusb.dll
2015-07-27 17:11 . 2012-07-26 03:39 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2015-07-27 17:11 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe
2015-07-27 17:11 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll
2015-07-27 17:11 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2015-07-27 17:10 . 2015-05-04 22:50 7680 ----a-w- c:\windows\system32\spwmp.dll
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\msdxm.ocx
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\dxmasf.dll
2015-07-27 17:10 . 2015-05-04 21:21 107520 ----a-w- c:\program files\Windows Media Player\wmpconfig.exe
2015-07-27 17:10 . 2015-05-04 21:21 168960 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2015-07-27 17:10 . 2015-05-04 21:21 107520 ----a-w- c:\program files\Windows Media Player\wmpshare.exe
2015-07-27 17:10 . 2015-05-04 21:21 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2015-07-27 16:47 . 2014-12-06 03:14 153600 ----a-w- c:\windows\system32\profsvc.dll
2015-07-27 16:45 . 2012-06-05 16:47 708608 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2015-07-27 16:45 . 2011-02-22 14:13 288768 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2015-07-27 16:44 . 2011-08-25 16:15 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2015-07-27 16:44 . 2011-08-25 16:14 238080 ----a-w- c:\windows\system32\oleacc.dll
2015-07-27 16:44 . 2011-08-25 13:31 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2015-07-27 16:44 . 2013-06-29 02:07 197632 ----a-w- c:\windows\system32\drivers\usbhub.sys
2015-07-27 16:44 . 2013-06-29 02:07 226304 ----a-w- c:\windows\system32\drivers\usbport.sys
2015-07-27 16:44 . 2013-06-29 02:06 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2015-07-27 16:44 . 2011-05-05 13:54 39936 ----a-w- c:\windows\system32\drivers\usbehci.sys
2015-07-27 16:44 . 2011-05-05 13:54 19456 ----a-w- c:\windows\system32\drivers\usbohci.sys
2015-07-27 16:44 . 2014-03-10 01:22 1401344 ----a-w- c:\windows\system32\msxml6.dll
2015-07-27 16:43 . 2013-10-22 07:19 158208 ----a-w- c:\windows\system32\imagehlp.dll
2015-07-27 16:43 . 2012-02-29 15:11 5120 ----a-w- c:\windows\system32\wmi.dll
2015-07-27 16:43 . 2012-02-29 13:32 12800 ----a-w- c:\windows\system32\drivers\fs_rec.sys
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-02 04:56 . 2008-09-10 05:59 45056 ----a-w- c:\windows\system32\acovcnt.exe
2015-07-29 06:34 . 2015-07-29 06:34 203776 ----a-w- c:\windows\system32\webcheck.dll
2015-07-29 06:33 . 2015-07-29 06:33 4096 ----a-w- c:\windows\system32\drivers\cs-CZ\dxgkrnl.sys.mui
2015-06-12 16:01 . 2015-07-29 06:50 54272 ----a-w- c:\windows\apppatch\iebrshim.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-07-19 12:11 692512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2008-07-15 7651328]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-07-19 6109776]
"Windows Mobile-based device management"="c:\windows\WindowsMobile\wmdSync.exe" [2008-01-21 215552]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-5-27 752168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2008-01-11 20:16 39792 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-09-10 05:55 47672 ----a-w- c:\windows\AsScrProlog.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-09-10 05:56 33136 ----a-w- c:\windows\ASScrPro.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-07-19 02:52 104936 ----a-w- c:\program files\CyberLink\Power2Go\CLMLSvc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2015-07-19 14:14 116648 ----atw- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
2008-01-12 05:40 98304 ----a-w- c:\program files\ATK Hotkey\HControlUser.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-06-09 17:16 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
2008-06-14 01:11 210216 ----a-w- c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2008-06-13 05:52 6183456 ----a-w- c:\windows\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
2007-11-20 10:15 1826816 ----a-w- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2008-01-21 19:17 61440 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
2007-12-07 02:12 1029416 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 17:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
2015-08-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.asus.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.0.0.138
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
SafeBoot-WudfPf
SafeBoot-WudfRd
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2015-08-02 07:56
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
C:\ADSM_PData_0150
.
sken byl úspešně dokončen
skryté soubory: 1
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
Celkový čas: 2015-08-02 07:59:58
ComboFix-quarantined-files.txt 2015-08-02 05:59
.
Před spuštěním: Volných bajtů: 92 767 092 736
Po spuštění: Volných bajtů: 93 052 874 752
.
- - End Of File - - 6F4F710DF1EDF8748BE88B743C70A45B
64B1E91C5C6C2157642651010728F90F
Re: log - (použit ComboFix) - poraďte - nerozumim
Zdravim 
Cemu nerozumite?
Jaky je problem?
Kdo a proc spoustel ComboFix?!?
Cemu nerozumite?
Jaky je problem?
Kdo a proc spoustel ComboFix?!?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: log - (použit ComboFix) - poraďte - nerozumim
Zdravím marty84, tak si sypu popel na hlavu.
Zoufalé ženy dělají zoufalé věci. Jasně, teď taky vidím, že sem ......
Jenže člověk si myslí, že všechno zvládne a nemá čas číst hodiny informace a detaily.
Takže největší problém včera byl, že se mi po zapnutí PC nechtěl ani za nic spustit antivir, PC běželo děsně pomalu...no a upřímně..nevim přesně co ještě. (Dělala jsem to za pochodu - prostě u toho vařila
a tak podobně.) Tak sem zabrouzdala na viry.cz, do oka padl ten CF a bylo.
Ovšem je fakt, že teď se PC zdá ok. Antivir jsem musela odinstalovat a zase nainstalovat a teď šlape. Jsem poučena a děkuji za slušné zacházení - mohla jsem si vykoledovat i poslání někam
Tak díky.
Log předkládám:
Logfile of random's system information tool 1.10 (written by random/random)
Run by PC at 2015-08-03 06:11:04
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 87 GB (73%) free of 119 GB
Total RAM: 2814 MB (57% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:11:24, on 3.8.2015
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16669)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Windows\WindowsMobile\wmdSync.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Users\PC\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\PC\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\PC\Desktop\RSIT.exe
C:\Program Files\trend micro\PC.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: AMD Safely Remove Disk Drive (SafeRemove) - AMD - C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
--
End of file - 3982 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job - C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job - C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-02 559624]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2008-07-15 7651328]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2008-01-21 215552]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-08-02 6109776]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\AsScrProlog.exe [2008-09-10 47672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2008-09-10 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 116648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
C:\Program Files\ATK Hotkey\HcontrolUser.exe [2008-01-12 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-06-14 210216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2008-06-13 6183456]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
C:\Windows\Skytel.exe [2007-11-20 1826816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-07 1029416]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.l3codecp"=l3codecp.acm
"wave5"=serwvdrv.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-08-03 06:11:04 ----D---- C:\rsit
2015-08-03 06:11:04 ----D---- C:\Program Files\trend micro
2015-08-02 10:00:46 ----D---- C:\snapshots
2015-08-02 09:46:33 ----D---- C:\Users\PC\AppData\Roaming\AVAST Software
2015-08-02 09:06:46 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2015-08-02 09:06:46 ----A---- C:\Windows\system32\drivers\aswStmXP.sys
2015-08-02 09:06:45 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2015-08-02 09:06:45 ----A---- C:\Windows\system32\drivers\aswSP.sys
2015-08-02 09:06:44 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2015-08-02 09:06:44 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2015-08-02 09:06:43 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2015-08-02 09:06:43 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2015-08-02 09:06:41 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2015-08-02 09:06:40 ----A---- C:\Windows\system32\drivers\ngvss.sys
2015-08-02 09:06:38 ----A---- C:\Windows\system32\aswBoot.exe
2015-08-02 09:06:27 ----A---- C:\Windows\avastSS.scr
2015-08-02 08:54:46 ----D---- C:\Program Files\AVAST Software
2015-08-02 08:00:08 ----SHD---- C:\$RECYCLE.BIN
2015-08-02 07:59:59 ----A---- C:\ComboFix.txt
2015-08-02 07:56:23 ----D---- C:\Windows\temp
2015-08-02 07:42:18 ----A---- C:\Windows\zip.exe
2015-08-02 07:42:18 ----A---- C:\Windows\SWSC.exe
2015-08-02 07:42:18 ----A---- C:\Windows\SWREG.exe
2015-08-02 07:42:18 ----A---- C:\Windows\sed.exe
2015-08-02 07:42:18 ----A---- C:\Windows\PEV.exe
2015-08-02 07:42:18 ----A---- C:\Windows\NIRCMD.exe
2015-08-02 07:42:18 ----A---- C:\Windows\MBR.exe
2015-08-02 07:42:18 ----A---- C:\Windows\grep.exe
2015-08-02 07:42:11 ----D---- C:\ComboFix
2015-08-02 07:42:05 ----D---- C:\Qoobox
2015-08-02 07:36:13 ----D---- C:\Windows\erdnt
2015-08-02 06:55:31 ----ASH---- C:\hiberfil.sys
2015-08-02 06:54:35 ----D---- C:\Windows\pss
2015-08-02 06:44:52 ----A---- C:\Windows\ntbtlog.txt
2015-07-29 13:06:05 ----D---- C:\Windows\Migration
2015-07-29 12:57:17 ----D---- C:\Program Files\7-Zip
2015-07-29 12:39:19 ----A---- C:\Windows\system32\XpsPrint.dll
2015-07-29 12:39:17 ----A---- C:\Windows\system32\mshtml.dll
2015-07-29 10:30:11 ----D---- C:\Program Files\Windows Portable Devices
2015-07-29 10:24:29 ----A---- C:\Windows\system32\WMPhoto.dll
2015-07-29 10:22:16 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-07-29 10:21:01 ----A---- C:\Windows\system32\win32k.sys
2015-07-29 10:18:54 ----A---- C:\Windows\system32\atmlib.dll
2015-07-29 10:18:54 ----A---- C:\Windows\system32\atmfd.dll
2015-07-29 10:17:47 ----A---- C:\Windows\system32\ole32.dll
2015-07-29 10:01:54 ----A---- C:\Windows\system32\infocardapi.dll
2015-07-29 10:01:54 ----A---- C:\Windows\system32\icardres.dll
2015-07-29 10:01:54 ----A---- C:\Windows\system32\icardagt.exe
2015-07-29 10:01:48 ----A---- C:\Windows\system32\TsWpfWrp.exe
2015-07-29 10:00:30 ----A---- C:\Windows\system32\msxml3r.dll
2015-07-29 10:00:30 ----A---- C:\Windows\system32\msxml3.dll
2015-07-29 09:59:05 ----A---- C:\Windows\system32\mscories.dll
2015-07-29 09:59:05 ----A---- C:\Windows\system32\mscorier.dll
2015-07-29 09:59:05 ----A---- C:\Windows\system32\dfshim.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\msihnd.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\msiexec.exe
2015-07-29 09:51:55 ----A---- C:\Windows\system32\msi.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\consent.exe
2015-07-29 09:51:55 ----A---- C:\Windows\system32\authui.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\appinfo.dll
2015-07-29 09:44:02 ----A---- C:\Windows\system32\msaudite.dll
2015-07-29 09:44:01 ----A---- C:\Windows\system32\adtschema.dll
2015-07-29 09:44:00 ----A---- C:\Windows\system32\termsrv.dll
2015-07-29 09:42:57 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-07-29 09:41:56 ----A---- C:\Windows\system32\gdi32.dll
2015-07-29 09:40:34 ----A---- C:\Windows\system32\tzres.dll
2015-07-29 09:35:31 ----A---- C:\Windows\system32\UIAnimation.dll
2015-07-29 09:35:30 ----A---- C:\Windows\system32\UIRibbonRes.dll
2015-07-29 09:35:30 ----A---- C:\Windows\system32\UIRibbon.dll
2015-07-29 09:33:16 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2015-07-29 09:33:16 ----A---- C:\Windows\system32\wpdbusenum.dll
2015-07-29 09:33:16 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2015-07-29 09:33:13 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WPDSp.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\wpdshext.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WpdMtpUS.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WpdMtp.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WpdConns.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\wpd_ci.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\drivers\WpdUsb.sys
2015-07-29 09:24:10 ----A---- C:\Windows\system32\comctl32.dll
2015-07-29 09:10:41 ----A---- C:\Windows\system32\clfsw32.dll
2015-07-29 09:10:41 ----A---- C:\Windows\system32\clfs.sys
2015-07-29 09:09:27 ----A---- C:\Windows\system32\smss.exe
2015-07-29 09:09:27 ----A---- C:\Windows\system32\ntdll.dll
2015-07-29 09:09:27 ----A---- C:\Windows\system32\csrsrv.dll
2015-07-29 09:09:26 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-07-29 09:09:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-07-29 09:07:55 ----A---- C:\Windows\system32\packager.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10level9.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10core.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10_1core.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10_1.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d2d1.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\FntCache.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\DWrite.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\d3d10warp.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\d3d10.dll
2015-07-29 08:56:29 ----A---- C:\Windows\system32\oleaut32.dll
2015-07-29 08:48:01 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 08:38:46 ----A---- C:\Windows\system32\msctf.dll
2015-07-29 08:37:36 ----A---- C:\Windows\system32\IMJP10K.DLL
2015-07-29 08:34:59 ----A---- C:\Windows\system32\wininet.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\urlmon.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\msrating.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\msls31.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\jsproxy.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\iertutil.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2015-07-29 08:34:58 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2015-07-29 08:34:58 ----A---- C:\Windows\system32\mshtmler.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\ieui.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\iesysprep.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\ieframe.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\url.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\iesetup.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\iernonce.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\iedkcs32.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\ieapfltr.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\ieapfltr.dat
2015-07-29 08:34:57 ----A---- C:\Windows\system32\ie4uinit.exe
2015-07-29 08:34:57 ----A---- C:\Windows\system32\icardie.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\dxtmsft.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\wextract.exe
2015-07-29 08:34:56 ----A---- C:\Windows\system32\webcheck.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\licmgr10.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\inseng.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\iexpress.exe
2015-07-29 08:34:55 ----A---- C:\Windows\system32\vbscript.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\pngfilt.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\occache.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\mshta.exe
2015-07-29 08:34:54 ----A---- C:\Windows\system32\jscript9.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\jscript.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\ieUnatt.exe
2015-07-29 08:34:54 ----A---- C:\Windows\system32\ieakui.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\ieaksie.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\admparse.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\msfeedssync.exe
2015-07-29 08:34:53 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\imgutil.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\iepeers.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\ieakeng.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\IEAdvpack.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\advpack.dll
2015-07-29 08:33:55 ----A---- C:\Windows\system32\MFHEAACdec.dll
2015-07-29 08:33:55 ----A---- C:\Windows\system32\MFH264Dec.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\shdocvw.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfreadwrite.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfps.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfplat.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfmp4src.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mf.dll
2015-07-29 08:33:53 ----A---- C:\Windows\system32\stobject.dll
2015-07-29 08:33:50 ----A---- C:\Windows\system32\XpsRasterService.dll
2015-07-29 08:33:48 ----A---- C:\Windows\system32\dxgi.dll
2015-07-29 08:33:47 ----A---- C:\Windows\system32\xpsservices.dll
2015-07-29 08:33:47 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2015-07-29 08:33:47 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2015-07-29 08:33:47 ----A---- C:\Windows\system32\OpcServices.dll
2015-07-29 08:33:00 ----A---- C:\Windows\system32\dxdiagn.dll
2015-07-29 08:33:00 ----A---- C:\Windows\system32\dxdiag.exe
2015-07-29 08:33:00 ----A---- C:\Windows\system32\d3d11.dll
2015-07-29 08:32:59 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2015-07-29 08:32:59 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\EncDump.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\audiosrv.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\AudioEng.dll
2015-07-29 08:13:59 ----A---- C:\Windows\system32\nlasvc.dll
2015-07-29 08:13:59 ----A---- C:\Windows\system32\nlaapi.dll
2015-07-29 08:13:59 ----A---- C:\Windows\system32\ncsi.dll
2015-07-29 08:13:05 ----A---- C:\Windows\system32\shell32.dll
2015-07-27 20:31:21 ----A---- C:\Windows\ATKPF.ini
2015-07-27 19:38:59 ----A---- C:\Windows\system32\cewmdm.dll
2015-07-27 19:32:18 ----A---- C:\Windows\system32\services.exe
2015-07-27 19:19:11 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-27 19:19:11 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-27 19:19:11 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-27 19:19:10 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-27 19:19:09 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\schannel.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\lsasrv.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\kerberos.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-07-27 19:19:08 ----A---- C:\Windows\system32\advapi32.dll
2015-07-27 19:18:55 ----A---- C:\Windows\system32\kernel32.dll
2015-07-27 19:18:35 ----A---- C:\Windows\system32\drivers\fastfat.sys
2015-07-27 19:12:40 ----A---- C:\Windows\system32\scesrv.dll
2015-07-27 19:11:31 ----A---- C:\Windows\system32\Wdfres.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\WUDFSvc.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\WUDFPlatform.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\winusb.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2015-07-27 19:11:29 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2015-07-27 19:11:28 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2015-07-27 19:11:27 ----A---- C:\Windows\system32\WUDFx.dll
2015-07-27 19:11:27 ----A---- C:\Windows\system32\WUDFHost.exe
2015-07-27 19:11:27 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2015-07-27 19:10:33 ----A---- C:\Windows\system32\spwmp.dll
2015-07-27 19:10:30 ----A---- C:\Windows\system32\dxmasf.dll
2015-07-27 19:10:29 ----A---- C:\Windows\system32\wmploc.DLL
2015-07-27 19:10:28 ----A---- C:\Windows\system32\wmp.dll
2015-07-27 18:47:42 ----A---- C:\Windows\system32\profsvc.dll
2015-07-27 18:45:43 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2015-07-27 18:44:39 ----A---- C:\Windows\system32\UIAutomationCore.dll
2015-07-27 18:44:39 ----A---- C:\Windows\system32\oleaccrc.dll
2015-07-27 18:44:39 ----A---- C:\Windows\system32\oleacc.dll
2015-07-27 18:44:27 ----A---- C:\Windows\system32\netapi32.dll
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-07-27 18:44:22 ----A---- C:\Windows\system32\msxml6.dll
2015-07-27 18:43:56 ----A---- C:\Windows\system32\wmi.dll
2015-07-27 18:43:56 ----A---- C:\Windows\system32\imagehlp.dll
2015-07-27 18:43:56 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2015-07-27 18:43:53 ----A---- C:\Windows\system32\mstscax.dll
2015-07-27 18:43:48 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2015-07-27 18:43:48 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-07-27 18:43:06 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-07-27 18:42:41 ----A---- C:\Windows\system32\SysFxUI.dll
2015-07-27 18:42:41 ----A---- C:\Windows\system32\drivers\portcls.sys
2015-07-27 18:42:41 ----A---- C:\Windows\system32\drivers\drmk.sys
2015-07-27 18:42:40 ----A---- C:\Windows\system32\icaapi.dll
2015-07-27 18:42:40 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2015-07-27 18:42:36 ----A---- C:\Windows\system32\drivers\ntfs.sys
2015-07-27 18:42:34 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2015-07-27 18:42:33 ----A---- C:\Windows\system32\qedit.dll
2015-07-27 18:42:32 ----A---- C:\Windows\system32\drivers\afd.sys
2015-07-27 18:42:15 ----A---- C:\Windows\system32\certutil.exe
2015-07-27 18:42:14 ----A---- C:\Windows\system32\certenc.dll
2015-07-27 18:42:05 ----A---- C:\Windows\system32\localspl.dll
2015-07-27 18:41:59 ----A---- C:\Windows\system32\msshsq.dll
2015-07-27 18:41:58 ----A---- C:\Windows\system32\drivers\volsnap.sys
2015-07-27 18:41:57 ----A---- C:\Windows\system32\quartz.dll
2015-07-27 18:41:54 ----A---- C:\Windows\system32\shlwapi.dll
2015-07-27 18:41:53 ----A---- C:\Windows\system32\EncDec.dll
2015-07-27 18:41:52 ----A---- C:\Windows\system32\msvcrt.dll
2015-07-27 18:41:50 ----A---- C:\Windows\system32\rdpencom.dll
2015-07-27 18:41:42 ----A---- C:\Windows\system32\winsrv.dll
2015-07-27 18:41:41 ----A---- C:\Windows\system32\ncrypt.dll
2015-07-27 18:41:40 ----A---- C:\Windows\system32\win32spl.dll
2015-07-27 18:41:40 ----A---- C:\Windows\system32\printcom.dll
2015-07-27 18:41:37 ----A---- C:\Windows\system32\qdvd.dll
2015-07-27 18:41:30 ----A---- C:\Windows\system32\wshcon.dll
2015-07-27 18:41:30 ----A---- C:\Windows\system32\wscript.exe
2015-07-27 18:41:30 ----A---- C:\Windows\system32\scrrun.dll
2015-07-27 18:41:30 ----A---- C:\Windows\system32\cscript.exe
2015-07-27 18:41:28 ----A---- C:\Windows\system32\themeui.dll
2015-07-27 18:41:27 ----A---- C:\Windows\system32\xmllite.dll
2015-07-27 18:41:22 ----A---- C:\Windows\system32\cryptdlg.dll
2015-07-27 18:41:16 ----A---- C:\Windows\system32\drivers\hidparse.sys
2015-07-27 18:41:14 ----A---- C:\Windows\system32\drivers\partmgr.sys
2015-07-27 18:41:13 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2015-07-27 18:41:11 ----A---- C:\Windows\system32\secur32.dll
2015-07-27 18:41:11 ----A---- C:\Windows\system32\lsass.exe
2015-07-27 18:41:06 ----A---- C:\Windows\system32\cdd.dll
2015-07-27 18:41:05 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2015-07-27 18:40:53 ----A---- C:\Windows\system32\psisdecd.dll
2015-07-27 18:40:39 ----A---- C:\Windows\system32\crypt32.dll
2015-07-27 18:40:27 ----A---- C:\Windows\system32\dpnsvr.exe
2015-07-27 18:40:27 ----A---- C:\Windows\system32\dpnet.dll
2015-07-27 18:40:15 ----A---- C:\Windows\system32\synceng.dll
2015-07-27 18:40:13 ----A---- C:\Windows\system32\winmm.dll
2015-07-27 18:40:13 ----A---- C:\Windows\system32\mciseq.dll
2015-07-27 18:40:12 ----A---- C:\Windows\system32\WMVDECOD.DLL
2015-07-27 18:40:10 ----A---- C:\Windows\system32\winhttp.dll
2015-07-27 18:40:08 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2015-07-27 18:40:01 ----A---- C:\Windows\system32\usp10.dll
2015-07-27 18:39:58 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-07-27 18:39:58 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-07-27 18:39:20 ----A---- C:\Windows\system32\drivers\usb8023x.sys
2015-07-27 18:39:20 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-07-27 17:59:11 ----A---- C:\Windows\system32\wintrust.dll
2015-07-27 17:59:11 ----A---- C:\Windows\system32\cryptsvc.dll
2015-07-27 17:59:11 ----A---- C:\Windows\system32\cryptnet.dll
2015-07-27 17:57:16 ----A---- C:\Windows\system32\wer.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wups2.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wucltux.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wuaueng.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wuauclt.exe
2015-07-27 16:16:12 ----A---- C:\Windows\system32\wups.dll
2015-07-27 16:16:12 ----A---- C:\Windows\system32\wudriver.dll
2015-07-27 16:16:12 ----A---- C:\Windows\system32\wuapi.dll
2015-07-27 16:16:07 ----A---- C:\Windows\system32\wuwebv.dll
2015-07-27 16:16:07 ----A---- C:\Windows\system32\wuapp.exe
2015-07-26 14:19:15 ----D---- C:\Windows\system32\vi-VN
2015-07-26 14:19:15 ----D---- C:\Windows\system32\eu-ES
2015-07-26 14:19:15 ----D---- C:\Windows\system32\ca-ES
2015-07-26 12:37:41 ----D---- C:\Windows\system32\EventProviders
2015-07-26 12:37:38 ----D---- C:\a5a49092c7030ed075ff40e67867
2015-07-26 12:34:23 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2015-07-26 12:34:19 ----A---- C:\Windows\system32\SLsvc.exe
2015-07-26 12:34:19 ----A---- C:\Windows\system32\SLCExt.dll
2015-07-26 12:34:17 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2015-07-26 12:34:17 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2015-07-26 12:34:14 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2015-07-26 12:34:12 ----A---- C:\Windows\system32\mssrch.dll
2015-07-26 12:34:10 ----A---- C:\Windows\system32\drivers\spsys.sys
2015-07-26 12:34:09 ----A---- C:\Windows\system32\tquery.dll
2015-07-26 12:34:08 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2015-07-26 12:34:07 ----A---- C:\Windows\system32\scavenge.dll
2015-07-26 12:34:07 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2015-07-26 12:34:04 ----A---- C:\Windows\system32\WscEapPr.dll
2015-07-26 12:34:04 ----A---- C:\Windows\system32\wcnwiz2.dll
2015-07-26 12:34:04 ----A---- C:\Windows\system32\sysmain.dll
2015-07-26 12:34:04 ----A---- C:\Windows\system32\imapi2fs.dll
2015-07-26 12:34:01 ----A---- C:\Windows\system32\EhStorShell.dll
2015-07-26 12:34:01 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2015-07-26 12:34:00 ----A---- C:\Windows\system32\spreview.exe
2015-07-26 12:34:00 ----A---- C:\Windows\system32\spinstall.exe
2015-07-26 12:34:00 ----A---- C:\Windows\system32\drmv2clt.dll
2015-07-26 12:33:58 ----A---- C:\Windows\system32\spwizui.dll
2015-07-26 12:33:58 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2015-07-26 12:33:56 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-07-26 12:33:56 ----A---- C:\Windows\system32\p2psvc.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\mssvp.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\mssphtb.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\mssph.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2015-07-26 12:33:54 ----A---- C:\Windows\system32\sdohlp.dll
2015-07-26 12:33:54 ----A---- C:\Windows\system32\imapi2.dll
2015-07-26 12:33:53 ----A---- C:\Windows\system32\esent.dll
2015-07-26 12:33:53 ----A---- C:\Windows\system32\DevicePairing.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\wevtsvc.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\sperror.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\SLC.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\korwbrkr.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\drivers\rfcomm.sys
2015-07-26 12:33:48 ----A---- C:\Windows\system32\msjet40.dll
2015-07-26 12:33:48 ----A---- C:\Windows\system32\MPSSVC.dll
2015-07-26 12:33:47 ----A---- C:\Windows\system32\Query.dll
2015-07-26 12:33:46 ----A---- C:\Windows\system32\qmgr.dll
2015-07-26 12:33:46 ----A---- C:\Windows\system32\msexch40.dll
2015-07-26 12:33:46 ----A---- C:\Windows\system32\diagperf.dll
2015-07-26 12:33:45 ----A---- C:\Windows\system32\srchadmin.dll
2015-07-26 12:33:45 ----A---- C:\Windows\system32\P2PGraph.dll
2015-07-26 12:33:45 ----A---- C:\Windows\system32\IasMigReader.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\winload.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\uDWM.dll
2015-07-26 12:33:44 ----A---- C:\Windows\system32\mmc.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\mblctr.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\dfsr.exe
2015-07-26 12:33:43 ----A---- C:\Windows\system32\riched20.dll
2015-07-26 12:33:43 ----A---- C:\Windows\system32\RacEngn.dll
2015-07-26 12:33:43 ----A---- C:\Windows\system32\IasMigPlugin.dll
2015-07-26 12:33:43 ----A---- C:\Windows\system32\fdBth.dll
2015-07-26 12:33:42 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-07-26 12:33:42 ----A---- C:\Windows\system32\SearchFilterHost.exe
2015-07-26 12:33:42 ----A---- C:\Windows\system32\milcore.dll
2015-07-26 12:33:41 ----A---- C:\Windows\system32\spoolss.dll
2015-07-26 12:33:41 ----A---- C:\Windows\system32\EhStorAPI.dll
2015-07-26 12:33:41 ----A---- C:\Windows\system32\CertEnroll.dll
2015-07-26 12:33:40 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2015-07-26 12:33:40 ----A---- C:\Windows\system32\msjtes40.dll
2015-07-26 12:33:40 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2015-07-26 12:33:39 ----A---- C:\Windows\system32\msvcp60.dll
2015-07-26 12:33:39 ----A---- C:\Windows\system32\gpedit.dll
2015-07-26 12:33:39 ----A---- C:\Windows\system32\fsquirt.exe
2015-07-26 12:33:38 ----A---- C:\Windows\system32\WinSAT.exe
2015-07-26 12:33:38 ----A---- C:\Windows\system32\es.dll
2015-07-26 12:33:37 ----A---- C:\Windows\system32\PresentationSettings.exe
2015-07-26 12:33:37 ----A---- C:\Windows\system32\Magnify.exe
2015-07-26 12:33:37 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2015-07-26 12:33:36 ----A---- C:\Windows\system32\mstext40.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\WebClnt.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\vssapi.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\slwmi.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\msxbde40.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\msexcl40.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\comsvcs.dll
2015-07-26 12:33:33 ----A---- C:\Windows\system32\NetProjW.dll
2015-07-26 12:33:32 ----A---- C:\Windows\system32\propsys.dll
2015-07-26 12:33:32 ----A---- C:\Windows\system32\newdev.dll
2015-07-26 12:33:32 ----A---- C:\Windows\system32\msrepl40.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\setupapi.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\rpcss.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\iasrecst.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\gpsvc.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\eudcedit.exe
2015-07-26 12:33:31 ----A---- C:\Windows\explorer.exe
2015-07-26 12:33:30 ----A---- C:\Windows\system32\mspbde40.dll
2015-07-26 12:33:30 ----A---- C:\Windows\system32\d3d9.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\msrd3x40.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\msltus40.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\msdtctm.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\EhStorAuthn.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\davclnt.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\wevtapi.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\photowiz.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\nlhtml.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\browseui.dll
2015-07-26 12:33:27 ----A---- C:\Windows\system32\user32.dll
2015-07-26 12:33:26 ----A---- C:\Windows\system32\samsrv.dll
2015-07-26 12:33:26 ----A---- C:\Windows\system32\ci.dll
2015-07-26 12:33:25 ----A---- C:\Windows\system32\WcnNetsh.dll
2015-07-26 12:33:25 ----A---- C:\Windows\system32\SLCommDlg.dll
2015-07-26 12:33:24 ----A---- C:\Windows\system32\netshell.dll
2015-07-26 12:33:24 ----A---- C:\Windows\system32\drivers\rdbss.sys
2015-07-26 12:33:24 ----A---- C:\Windows\system32\compcln.exe
2015-07-26 12:33:24 ----A---- C:\Windows\system32\apds.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\xmlfilter.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\mswstr10.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\emdmgmt.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\drivers\netio.sys
2015-07-26 12:33:22 ----A---- C:\Windows\system32\VSSVC.exe
2015-07-26 12:33:22 ----A---- C:\Windows\system32\QAGENTRT.DLL
2015-07-26 12:33:21 ----A---- C:\Windows\system32\SLUI.exe
2015-07-26 12:33:21 ----A---- C:\Windows\system32\eapphost.dll
2015-07-26 12:33:20 ----A---- C:\Windows\system32\sqlsrv32.dll
2015-07-26 12:33:20 ----A---- C:\Windows\system32\msrd2x40.dll
2015-07-26 12:33:20 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2015-07-26 12:33:19 ----A---- C:\Windows\system32\winresume.exe
2015-07-26 12:33:19 ----A---- C:\Windows\system32\propdefs.dll
2015-07-26 12:33:18 ----A---- C:\Windows\system32\wevtutil.exe
2015-07-26 12:33:18 ----A---- C:\Windows\system32\dbgeng.dll
2015-07-26 12:33:17 ----A---- C:\Windows\system32\swprv.dll
2015-07-26 12:33:17 ----A---- C:\Windows\system32\mssitlb.dll
2015-07-26 12:33:16 ----A---- C:\Windows\system32\vds.exe
2015-07-26 12:33:16 ----A---- C:\Windows\system32\mmcndmgr.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\netlogon.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\msctfp.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\fdBthProxy.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\drvinst.exe
2015-07-26 12:33:15 ----A---- C:\Windows\system32\devmgr.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\Wldap32.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\wcnwiz.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\msscb.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\evr.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\BFE.DLL
2015-07-26 12:33:14 ----A---- C:\Windows\system32\adsldpc.dll
2015-07-26 12:33:13 ----A---- C:\Windows\system32\WMVSDECD.DLL
2015-07-26 12:33:12 ----A---- C:\Windows\system32\wercon.exe
2015-07-26 12:33:12 ----A---- C:\Windows\system32\wcncsvc.dll
2015-07-26 12:33:12 ----A---- C:\Windows\system32\mimefilt.dll
2015-07-26 12:33:12 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2015-07-26 12:33:12 ----A---- C:\Windows\system32\comdlg32.dll
2015-07-26 12:33:12 ----A---- C:\Windows\system32\certcli.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\mswdat10.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\msjter40.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\msdtcprx.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\ipsmsnap.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\WMNetMgr.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\w32time.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\umpnpmgr.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\rtffilt.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\reg.exe
2015-07-26 12:33:09 ----A---- C:\Windows\system32\rsaenh.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2015-07-26 12:33:09 ----A---- C:\Windows\system32\msshooks.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\msscntrs.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\IPSECSVC.DLL
2015-07-26 12:33:09 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-07-26 12:33:09 ----A---- C:\Windows\system32\bthserv.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\bcrypt.dll
2015-07-26 12:33:08 ----A---- C:\Windows\system32\msstrc.dll
2015-07-26 12:33:08 ----A---- C:\Windows\system32\MMDevAPI.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\mtxclu.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\inetpp.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\hidserv.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\fundisc.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\wdc.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\imapi.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\chsbrkr.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\drivers\pci.sys
2015-07-26 12:33:05 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2015-07-26 12:33:04 ----A---- C:\Windows\system32\rasmans.dll
2015-07-26 12:33:04 ----A---- C:\Windows\system32\pnidui.dll
2015-07-26 12:33:04 ----A---- C:\Windows\system32\iassdo.dll
2015-07-26 12:33:04 ----A---- C:\Windows\system32\drivers\termdd.sys
2015-07-26 12:33:04 ----A---- C:\Windows\system32\autofmt.exe
2015-07-26 12:33:03 ----A---- C:\Windows\system32\wersvc.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\slmgr.vbs
2015-07-26 12:33:03 ----A---- C:\Windows\system32\PSHED.DLL
2015-07-26 12:33:03 ----A---- C:\Windows\system32\pdh.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\Storport.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\ataport.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\acpi.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\dhcpcsvc.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\CertEnrollUI.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\azroles.dll
2015-07-26 12:33:01 ----A---- C:\Windows\system32\winlogon.exe
2015-07-26 12:33:01 ----A---- C:\Windows\system32\pidgenx.dll
2015-07-26 12:33:00 ----A---- C:\Windows\system32\SyncCenter.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\spp.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\SLUINotify.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\sethc.exe
2015-07-26 12:32:59 ----A---- C:\Windows\system32\msjetoledb40.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\kd1394.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\iassam.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\drivers\mup.sys
2015-07-26 12:32:59 ----A---- C:\Windows\system32\drivers\disk.sys
2015-07-26 12:32:59 ----A---- C:\Windows\system32\comuid.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\certmgr.dll
2015-07-26 12:32:58 ----A---- C:\Windows\system32\wisptis.exe
2015-07-26 12:32:58 ----A---- C:\Windows\system32\untfs.dll
2015-07-26 12:32:58 ----A---- C:\Windows\system32\scrobj.dll
2015-07-26 12:32:58 ----A---- C:\Windows\system32\dwm.exe
2015-07-26 12:32:58 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2015-07-26 12:32:58 ----A---- C:\Windows\system32\drivers\pciidex.sys
2015-07-26 12:32:58 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-07-26 12:32:58 ----A---- C:\Windows\system32\autochk.exe
2015-07-26 12:32:57 ----A---- C:\Windows\system32\printui.dll
2015-07-26 12:32:57 ----A---- C:\Windows\system32\iasnap.dll
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\pciide.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\msrpc.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\ecache.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\autoconv.exe
2015-07-26 12:32:56 ----A---- C:\Windows\system32\wow32.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\userenv.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\osk.exe
2015-07-26 12:32:56 ----A---- C:\Windows\system32\onex.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\kdcom.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\drivers\Dumpata.sys
2015-07-26 12:32:56 ----A---- C:\Windows\system32\basecsp.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\audiodg.exe
2015-07-26 12:32:55 ----A---- C:\Windows\system32\RelMon.dll
2015-07-26 12:32:55 ----A---- C:\Windows\system32\mswsock.dll
2015-07-26 12:32:55 ----A---- C:\Windows\system32\kdusb.dll
2015-07-26 12:32:55 ----A---- C:\Windows\system32\drivers\atapi.sys
2015-07-26 12:32:54 ----A---- C:\Windows\system32\WinSCard.dll
2015-07-26 12:32:54 ----A---- C:\Windows\system32\WerFaultSecure.exe
2015-07-26 12:32:54 ----A---- C:\Windows\system32\spcmsg.dll
2015-07-26 12:32:54 ----A---- C:\Windows\system32\msftedit.dll
2015-07-26 12:32:54 ----A---- C:\Windows\system32\drivers\netbt.sys
2015-07-26 12:32:53 ----A---- C:\Windows\system32\Utilman.exe
2015-07-26 12:32:53 ----A---- C:\Windows\system32\offfilt.dll
2015-07-26 12:32:53 ----A---- C:\Windows\system32\drivers\bthenum.sys
2015-07-26 12:32:52 ----A---- C:\Windows\system32\wsepno.dll
2015-07-26 12:32:52 ----A---- C:\Windows\system32\WerFault.exe
2015-07-26 12:32:52 ----A---- C:\Windows\system32\SndVol.exe
2015-07-26 12:32:52 ----A---- C:\Windows\system32\mscms.dll
2015-07-26 12:32:52 ----A---- C:\Windows\system32\mcmde.dll
2015-07-26 12:32:52 ----A---- C:\Windows\system32\diskraid.exe
2015-07-26 12:32:52 ----A---- C:\Windows\system32\apphelp.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\wiaservc.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\ulib.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\sysclass.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\prnntfy.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\odbccp32.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\msnetobj.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\iasdatastore.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\adsmsext.dll
2015-07-26 12:32:50 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2015-07-26 12:32:50 ----A---- C:\Windows\system32\dsound.dll
2015-07-26 12:32:50 ----A---- C:\Windows\system32\cryptui.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\wscntfy.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\rastapi.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\pnpsetup.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\fdProxy.dll
2015-07-26 12:32:47 ----A---- C:\Windows\system32\ipsecsnp.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\wscsvc.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\WMVENCOD.DLL
2015-07-26 12:32:46 ----A---- C:\Windows\system32\wlangpui.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\vdsdyn.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\rasapi32.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\logman.exe
2015-07-26 12:32:46 ----A---- C:\Windows\system32\iashlpr.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\gpapi.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\diskpart.exe
2015-07-26 12:32:46 ----A---- C:\Windows\system32\brcpl.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\zipfldr.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\wusa.exe
2015-07-26 12:32:45 ----A---- C:\Windows\system32\wshext.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\wpccpl.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\regsvc.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\ntprint.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\iasrad.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\findstr.exe
2015-07-26 12:32:44 ----A---- C:\Windows\system32\rasdlg.dll
2015-07-26 12:32:44 ----A---- C:\Windows\system32\netcenter.dll
2015-07-26 12:32:44 ----A---- C:\Windows\system32\iassvcs.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\wsnmp32.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\uxsms.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\themecpl.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\mssprxy.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\slcc.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\scansetting.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\powrprof.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\ntmarta.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\msutb.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\mstlsapi.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\iasads.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\drivers\ks.sys
2015-07-26 12:32:42 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2015-07-26 12:32:41 ----A---- C:\Windows\system32\powercpl.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\newdev.exe
2015-07-26 12:32:41 ----A---- C:\Windows\system32\networkmap.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\iasacct.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\authz.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\systemcpl.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\sud.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\pcaui.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2015-07-26 12:32:40 ----A---- C:\Windows\system32\dot3svc.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\connect.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\usercpl.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\samlib.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\mmci.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\drivers\sdbus.sys
2015-07-26 12:32:39 ----A---- C:\Windows\system32\autoplay.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\accessibilitycpl.dll
2015-07-26 12:32:38 ----A---- C:\Windows\system32\wlanpref.dll
2015-07-26 12:32:38 ----A---- C:\Windows\system32\rpchttp.dll
2015-07-26 12:32:38 ----A---- C:\Windows\system32\regapi.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\wpcao.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\vdsutil.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\tapisrv.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\scksp.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\oleprn.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\msinfo32.exe
2015-07-26 12:32:37 ----A---- C:\Windows\system32\mpr.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\imm32.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\feclient.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\drivers\exfat.sys
2015-07-26 12:32:37 ----A---- C:\Windows\system32\dot3msm.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\AudioSes.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\wscisvif.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\rekeywiz.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\pnpui.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\perfdisk.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\ncryptui.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\iaspolcy.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\hdwwiz.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\Faultrep.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\dpapimig.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\DeviceEject.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\certreq.exe
2015-07-26 12:32:35 ----A---- C:\Windows\system32\TSTheme.exe
2015-07-26 12:32:35 ----A---- C:\Windows\system32\tcpipcfg.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\spwinsat.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\scecli.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\rasplap.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\rasgcw.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\PnPUnattend.exe
2015-07-26 12:32:35 ----A---- C:\Windows\system32\fdWSD.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\cmmon32.exe
2015-07-26 12:32:34 ----A---- C:\Windows\system32\whealogr.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\tcpmon.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\srcore.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\SnippingTool.exe
2015-07-26 12:32:34 ----A---- C:\Windows\system32\SCardSvr.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2015-07-26 12:32:34 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2015-07-26 12:32:34 ----A---- C:\Windows\system32\conime.exe
2015-07-26 12:32:34 ----A---- C:\Windows\system32\cmdial32.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\wlanui.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\wiaaut.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\raschap.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\MSVidCtl.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\fontext.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\drivers\npfs.sys
2015-07-26 12:32:32 ----A---- C:\Windows\system32\WMVXENCD.DLL
2015-07-26 12:32:32 ----A---- C:\Windows\system32\shwebsvc.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\rasppp.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\PnPutil.exe
2015-07-26 12:32:32 ----A---- C:\Windows\system32\oobefldr.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\dsprop.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-07-26 12:32:32 ----A---- C:\Windows\system32\dimsroam.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\shsetup.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\rasmontr.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\mscandui.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\modemui.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\chtbrkr.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\drivers\pacer.sys
2015-07-26 12:32:30 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\wlgpclnt.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\rdpwsx.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\dataclen.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\credui.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\blackbox.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\WSDMon.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\wmpeffects.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\netplwiz.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-07-26 12:32:29 ----A---- C:\Windows\system32\drivers\ohci1394.sys
2015-07-26 12:32:29 ----A---- C:\Windows\system32\certprop.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\wscapi.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\wpcsvc.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\thawbrkr.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\networkexplorer.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\msscp.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\msimtf.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\logagent.exe
2015-07-26 12:32:28 ----A---- C:\Windows\system32\InkEd.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\ifmon.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\gpresult.exe
2015-07-26 12:32:28 ----A---- C:\Windows\system32\drivers\watchdog.sys
2015-07-26 12:32:28 ----A---- C:\Windows\system32\cipher.exe
2015-07-26 12:32:27 ----A---- C:\Windows\system32\softkbd.dll
2015-07-26 12:32:27 ----A---- C:\Windows\system32\sendmail.dll
2015-07-26 12:32:27 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2015-07-26 12:32:26 ----A---- C:\Windows\system32\msctfui.dll
2015-07-26 12:32:26 ----A---- C:\Windows\system32\drivers\smb.sys
2015-07-26 12:32:26 ----A---- C:\Windows\system32\drivers\hidusb.sys
2015-07-26 12:32:25 ----A---- C:\Windows\system32\puiapi.dll
2015-07-26 12:32:25 ----A---- C:\Windows\system32\olepro32.dll
2015-07-26 12:32:25 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-07-26 12:32:25 ----A---- C:\Windows\system32\drivers\udfs.sys
2015-07-26 12:32:25 ----A---- C:\Windows\system32\dmsynth.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\wshbth.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\version.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\SLLUA.exe
2015-07-26 12:32:24 ----A---- C:\Windows\system32\msisip.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\mprapi.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\input.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\fc.exe
2015-07-26 12:32:24 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\msjint40.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\l2nacp.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\ftp.exe
2015-07-26 12:32:23 ----A---- C:\Windows\system32\fdSSDP.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\eapp3hst.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2015-07-26 12:32:23 ----A---- C:\Windows\system32\dmusic.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\cscdll.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\cscapi.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\wsdchngr.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\Storprop.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\SMBHelperClass.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\rasdial.exe
2015-07-26 12:32:22 ----A---- C:\Windows\system32\rasdiag.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\ipconfig.exe
2015-07-26 12:32:22 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\fdWCN.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\eappcfg.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\drivers\rassstp.sys
2015-07-26 12:32:22 ----A---- C:\Windows\system32\dot3cfg.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\bthudtask.exe
2015-07-26 12:32:22 ----A---- C:\Windows\system32\bthci.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\slcinst.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\ocsetup.exe
2015-07-26 12:32:21 ----A---- C:\Windows\system32\nslookup.exe
2015-07-26 12:32:21 ----A---- C:\Windows\system32\networkitemfactory.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\hbaapi.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\fdeploy.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\eappgnui.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\drivers\hidclass.sys
2015-07-26 12:32:20 ----A---- C:\Windows\system32\PNPXAssoc.dll
2015-07-26 12:32:20 ----A---- C:\Windows\system32\mmcico.dll
2015-07-26 12:32:20 ----A---- C:\Windows\system32\gpupdate.exe
2015-07-26 12:32:20 ----A---- C:\Windows\system32\drivers\nwifi.sys
2015-07-26 12:32:20 ----A---- C:\Windows\system32\drivers\cdrom.sys
2015-07-26 12:32:20 ----A---- C:\Windows\system32\csrstub.exe
2015-07-26 12:32:20 ----A---- C:\Windows\system32\cbsra.exe
2015-07-26 12:32:19 ----A---- C:\Windows\system32\NcdProp.dll
2015-07-26 12:32:19 ----A---- C:\Windows\system32\iscsilog.dll
2015-07-26 12:32:19 ----A---- C:\Windows\system32\bitsigd.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\winrnr.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\vdmdbg.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\slwga.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\odbcconf.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\inetppui.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\drivers\dxg.sys
2015-07-26 12:32:18 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2015-07-26 12:32:17 ----A---- C:\Windows\system32\midimap.dll
2015-07-26 12:32:17 ----A---- C:\Windows\system32\drivers\stream.sys
2015-07-26 12:32:16 ----A---- C:\Windows\system32\drivers\rndismpx.sys
2015-07-26 12:32:16 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2015-07-26 12:32:16 ----A---- C:\Windows\system32\drivers\bridge.sys
2015-07-26 12:32:15 ----A---- C:\Windows\system32\drivers\raspppoe.sys
2015-07-26 12:32:14 ----A---- C:\Windows\system32\msimsg.dll
2015-07-26 12:32:14 ----A---- C:\Windows\system32\f3ahvoas.dll
2015-07-26 12:31:29 ----A---- C:\Windows\system32\SmiEngine.dll
2015-07-26 12:31:13 ----A---- C:\Windows\system32\wdscore.dll
2015-07-26 12:31:13 ----A---- C:\Windows\system32\PkgMgr.exe
2015-07-26 12:30:24 ----A---- C:\Windows\system32\drvstore.dll
2015-07-21 09:37:31 ----D---- C:\Users\PC\AppData\Roaming\vlc
2015-07-20 22:21:17 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2015-07-20 22:21:17 ----A---- C:\Windows\system32\PresentationHost.exe
2015-07-20 22:21:17 ----A---- C:\Windows\system32\netfxperf.dll
2015-07-20 22:21:17 ----A---- C:\Windows\system32\mscoree.dll
2015-07-20 21:57:40 ----A---- C:\Windows\system32\srvsvc.dll
2015-07-20 21:57:40 ----A---- C:\Windows\system32\netevent.dll
2015-07-19 17:36:11 ----D---- C:\Windows\system32\WindowsPowerShell
2015-07-19 16:58:52 ----D---- C:\Windows\system32\MRT
2015-07-19 15:28:24 ----A---- C:\Windows\system32\nshhttp.dll
2015-07-19 15:28:22 ----A---- C:\Windows\system32\httpapi.dll
2015-07-19 15:28:22 ----A---- C:\Windows\system32\drivers\http.sys
2015-07-19 15:25:11 ----A---- C:\Windows\system32\winrsmgr.dll
2015-07-19 15:25:03 ----A---- C:\Windows\system32\wsmprovhost.exe
2015-07-19 15:25:03 ----A---- C:\Windows\system32\wsmplpxy.dll
2015-07-19 15:25:03 ----A---- C:\Windows\system32\winrssrv.dll
2015-07-19 15:25:03 ----A---- C:\Windows\system32\winrshost.exe
2015-07-19 15:25:03 ----A---- C:\Windows\system32\winrs.exe
2015-07-19 15:25:02 ----A---- C:\Windows\system32\WsmRes.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wevtfwd.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wecutil.exe
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wecsvc.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wecapi.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\pwrshplugin.dll
2015-07-19 15:24:59 ----A---- C:\Windows\system32\winrm.vbs
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WsmWmiPl.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WsmSvc.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WsmAuto.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2015-07-19 15:24:58 ----A---- C:\Windows\system32\winrscmd.dll
2015-07-19 15:22:58 ----A---- C:\Windows\system32\wdigest.dll
2015-07-19 15:22:52 ----A---- C:\Windows\system32\gameux.dll
2015-07-19 15:22:51 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2015-07-19 15:22:51 ----A---- C:\Windows\system32\Apphlpdm.dll
2015-07-19 15:22:03 ----A---- C:\Windows\system32\odbc32.dll
2015-07-19 15:21:58 ----A---- C:\Windows\system32\iphlpsvc.dll
2015-07-19 15:21:58 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-07-19 15:21:53 ----A---- C:\Windows\system32\WMVCORE.DLL
2015-07-19 15:21:51 ----A---- C:\Windows\system32\rrinstaller.exe
2015-07-19 15:21:51 ----A---- C:\Windows\system32\mfpmp.exe
2015-07-19 15:21:51 ----A---- C:\Windows\system32\mferror.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlansvc.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlansec.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlanmsm.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlanhlp.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlanapi.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\L2SecHC.dll
2015-07-19 15:21:46 ----A---- C:\Windows\system32\asycfilt.dll
2015-07-19 15:21:45 ----A---- C:\Windows\system32\lpk.dll
2015-07-19 15:21:45 ----A---- C:\Windows\system32\fontsub.dll
2015-07-19 15:21:44 ----A---- C:\Windows\system32\dciman32.dll
2015-07-19 15:21:40 ----A---- C:\Windows\system32\drivers\bowser.sys
2015-07-19 15:21:28 ----A---- C:\Windows\system32\mfc40u.dll
2015-07-19 15:21:28 ----A---- C:\Windows\system32\mfc40.dll
2015-07-19 15:21:16 ----A---- C:\Windows\system32\shsvcs.dll
2015-07-19 15:21:07 ----A---- C:\Windows\system32\sdclt.exe
2015-07-19 15:21:05 ----A---- C:\Windows\system32\wkssvc.dll
2015-07-19 15:21:00 ----A---- C:\Windows\system32\rtutils.dll
2015-07-19 15:20:49 ----A---- C:\Windows\system32\inetcomm.dll
2015-07-19 15:20:47 ----A---- C:\Windows\system32\MP4SDECD.DLL
2015-07-19 15:20:10 ----A---- C:\Windows\system32\iccvid.dll
2015-07-19 15:20:03 ----A---- C:\Windows\system32\netiohlp.dll
2015-07-19 15:20:02 ----A---- C:\Windows\system32\TCPSVCS.EXE
2015-07-19 15:20:02 ----A---- C:\Windows\system32\NETSTAT.EXE
2015-07-19 15:20:02 ----A---- C:\Windows\system32\ARP.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\ROUTE.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\MRINFO.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\HOSTNAME.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\finger.exe
2015-07-19 15:18:11 ----A---- C:\Windows\system32\drivers\srv.sys
2015-07-19 15:18:09 ----A---- C:\Windows\system32\spoolsv.exe
2015-07-19 15:17:50 ----A---- C:\Windows\system32\drivers\srvnet.sys
2015-07-19 15:17:50 ----A---- C:\Windows\system32\drivers\srv2.sys
2015-07-19 15:17:42 ----A---- C:\Windows\system32\t2embed.dll
2015-07-19 15:17:38 ----A---- C:\Windows\system32\sbe.dll
2015-07-19 15:17:37 ----A---- C:\Windows\system32\sbeio.dll
2015-07-19 15:17:33 ----A---- C:\Windows\system32\mfc42.dll
2015-07-19 15:17:32 ----A---- C:\Windows\system32\mfc42u.dll
2015-07-19 15:17:00 ----A---- C:\Windows\system32\dnsrslvr.dll
2015-07-19 15:17:00 ----A---- C:\Windows\system32\dnscacheugc.exe
2015-07-19 15:17:00 ----A---- C:\Windows\system32\dnsapi.dll
2015-07-19 15:16:51 ----A---- C:\Windows\system32\wmpmde.dll
2015-07-19 15:16:49 ----A---- C:\Windows\system32\atl.dll
2015-07-19 15:16:43 ----A---- C:\Windows\system32\drivers\dfsc.sys
2015-07-19 15:06:48 ----D---- C:\Windows\system32\vbox
2015-07-19 14:57:04 ----A---- C:\Windows\system32\taskschd.dll
2015-07-19 14:57:04 ----A---- C:\Windows\system32\schedsvc.dll
2015-07-19 14:57:03 ----A---- C:\Windows\system32\wmicmiplugin.dll
2015-07-19 14:57:03 ----A---- C:\Windows\system32\taskeng.exe
2015-07-19 14:57:03 ----A---- C:\Windows\system32\taskcomp.dll
2015-07-19 14:57:00 ----A---- C:\Windows\system32\RMActivate_isv.exe
2015-07-19 14:57:00 ----A---- C:\Windows\system32\RMActivate.exe
2015-07-19 14:56:59 ----A---- C:\Windows\system32\secproc_isv.dll
2015-07-19 14:56:59 ----A---- C:\Windows\system32\secproc.dll
2015-07-19 14:56:59 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2015-07-19 14:56:59 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2015-07-19 14:56:59 ----A---- C:\Windows\system32\msdrm.dll
2015-07-19 14:56:58 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2015-07-19 14:56:58 ----A---- C:\Windows\system32\secproc_ssp.dll
2015-07-19 14:56:48 ----A---- C:\Windows\system32\wmpdxm.dll
2015-07-19 14:50:42 ----A---- C:\Windows\system32\msasn1.dll
2015-07-19 14:50:35 ----A---- C:\Windows\system32\tsgqec.dll
2015-07-19 14:50:35 ----A---- C:\Windows\system32\tscupgrd.exe
2015-07-19 14:50:35 ----A---- C:\Windows\system32\mstsc.exe
2015-07-19 14:50:35 ----A---- C:\Windows\system32\aaclient.dll
2015-07-19 14:49:51 ----N---- C:\Windows\system32\MpSigStub.exe
2015-07-19 14:32:42 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2015-07-19 14:32:39 ----A---- C:\Windows\system32\rastls.dll
2015-07-19 14:32:36 ----A---- C:\Windows\system32\WSDApi.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\tsbyuv.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\msyuv.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\msvidc32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\msrle32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\mciavi32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\iyuv_32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\avifil32.dll
2015-07-19 14:32:22 ----A---- C:\Windows\system32\msvfw32.dll
2015-07-19 14:32:09 ----A---- C:\Windows\system32\unregmp2.exe
2015-07-19 14:31:46 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2015-07-19 14:16:02 ----A---- C:\Windows\system32\cabview.dll
2015-07-19 13:53:57 ----D---- C:\ProgramData\AVAST Software
2015-07-19 13:18:39 ----D---- C:\Users\PC\AppData\Roaming\Adobe
2015-07-19 06:51:36 ----A---- C:\Pass.txt
2015-07-19 05:53:44 ----ASH---- C:\pagefile.sys
2015-07-18 21:15:16 ----D---- C:\Users\PC\AppData\Roaming\ATI
2015-07-18 21:15:08 ----D---- C:\Users\PC\AppData\Roaming\Symantec
2015-07-18 21:14:48 ----D---- C:\Users\PC\AppData\Roaming\Macromedia
2015-07-18 21:14:22 ----D---- C:\Users\PC\AppData\Roaming\Identities
2015-07-18 21:11:54 ----D---- C:\ProgramData\Adobe
2015-07-18 21:11:46 ----D---- C:\Program Files\Common Files\Adobe
2015-07-18 21:11:46 ----D---- C:\Program Files\Adobe
2015-07-18 21:07:42 ----SD---- C:\Users\PC\AppData\Roaming\Microsoft
2015-07-18 21:07:42 ----D---- C:\Users\PC\AppData\Roaming\Media Center Programs
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Templates
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Start Menu
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Favorites
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Documents
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Desktop
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Application Data
2015-07-18 21:01:05 ----SHD---- C:\Documents and Settings
2015-07-18 21:00:21 ----SHD---- C:\System Volume Information
======List of files/folders modified in the last 1 month======
2015-08-03 06:11:17 ----D---- C:\Windows\Prefetch
2015-08-03 06:11:04 ----RD---- C:\Program Files
2015-08-02 09:45:44 ----A---- C:\Windows\system32\acovcnt.exe
2015-08-02 09:07:07 ----D---- C:\Windows\system32\Tasks
2015-08-02 09:06:46 ----D---- C:\Windows\system32\drivers
2015-08-02 09:06:38 ----D---- C:\Windows\System32
2015-08-02 09:06:36 ----D---- C:\Windows
2015-08-02 07:56:40 ----A---- C:\Windows\system.ini
2015-08-02 07:56:26 ----D---- C:\Windows\system32\drivers\etc
2015-08-02 07:48:56 ----D---- C:\Windows\AppPatch
2015-08-02 07:48:51 ----D---- C:\Program Files\Common Files
2015-08-02 06:52:10 ----SD---- C:\ProgramData\Microsoft
2015-08-01 06:30:16 ----D---- C:\Windows\inf
2015-08-01 06:30:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-30 13:04:45 ----SHD---- C:\Windows\Installer
2015-07-30 12:25:16 ----D---- C:\Windows\Microsoft.NET
2015-07-29 19:55:24 ----D---- C:\Windows\rescache
2015-07-29 13:19:46 ----D---- C:\Windows\system32\catroot
2015-07-29 13:18:16 ----D---- C:\Windows\winsxs
2015-07-29 13:06:38 ----D---- C:\Windows\system32\en-US
2015-07-29 13:02:45 ----D---- C:\Windows\system32\catroot2
2015-07-29 12:39:31 ----D---- C:\Program Files\Internet Explorer
2015-07-29 11:20:07 ----RSD---- C:\Windows\assembly
2015-07-29 10:30:13 ----D---- C:\Windows\system32\cs-CZ
2015-07-29 10:30:10 ----D---- C:\Windows\system32\wbem
2015-07-29 10:30:09 ----D---- C:\Windows\system32\tr-TR
2015-07-29 10:30:09 ----D---- C:\Windows\system32\pt-PT
2015-07-29 10:30:09 ----D---- C:\Windows\system32\fr-FR
2015-07-29 10:30:09 ----D---- C:\Windows\system32\el-GR
2015-07-29 10:30:09 ----D---- C:\Windows\system32\de-DE
2015-07-29 10:30:08 ----D---- C:\Windows\system32\zh-TW
2015-07-29 10:30:08 ----D---- C:\Windows\system32\zh-HK
2015-07-29 10:30:08 ----D---- C:\Windows\system32\zh-CN
2015-07-29 10:30:08 ----D---- C:\Windows\system32\uk-UA
2015-07-29 10:30:08 ----D---- C:\Windows\system32\th-TH
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sv-SE
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sr-Latn-CS
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sl-SI
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sk-SK
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ru-RU
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ro-RO
2015-07-29 10:30:08 ----D---- C:\Windows\system32\pt-BR
2015-07-29 10:30:08 ----D---- C:\Windows\system32\pl-PL
2015-07-29 10:30:08 ----D---- C:\Windows\system32\nl-NL
2015-07-29 10:30:08 ----D---- C:\Windows\system32\nb-NO
2015-07-29 10:30:08 ----D---- C:\Windows\system32\lv-LV
2015-07-29 10:30:08 ----D---- C:\Windows\system32\lt-LT
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ko-KR
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ja-JP
2015-07-29 10:30:08 ----D---- C:\Windows\system32\it-IT
2015-07-29 10:30:08 ----D---- C:\Windows\system32\hu-HU
2015-07-29 10:30:08 ----D---- C:\Windows\system32\hr-HR
2015-07-29 10:30:08 ----D---- C:\Windows\system32\he-IL
2015-07-29 10:30:08 ----D---- C:\Windows\system32\fi-FI
2015-07-29 10:30:08 ----D---- C:\Windows\system32\et-EE
2015-07-29 10:30:08 ----D---- C:\Windows\system32\es-ES
2015-07-29 10:30:08 ----D---- C:\Windows\system32\da-DK
2015-07-29 10:30:08 ----D---- C:\Windows\system32\bg-BG
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ar-SA
2015-07-29 10:30:02 ----D---- C:\Windows\system32\XPSViewer
2015-07-29 10:30:02 ----D---- C:\Program Files\Windows Journal
2015-07-29 10:30:01 ----RSD---- C:\Windows\Fonts
2015-07-29 10:29:59 ----RD---- C:\Windows\Offline Web Pages
2015-07-29 10:29:59 ----D---- C:\Windows\system32\migration
2015-07-29 10:29:59 ----D---- C:\Windows\PolicyDefinitions
2015-07-29 10:29:58 ----SD---- C:\Windows\Downloaded Program Files
2015-07-29 10:29:57 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-07-29 10:29:34 ----D---- C:\Windows\system32\drivers\UMDF
2015-07-29 10:29:07 ----D---- C:\Windows\system32\RTCOM
2015-07-29 08:35:25 ----D---- C:\Windows\Logs
2015-07-29 08:12:17 ----D---- C:\Windows\ehome
2015-07-28 04:42:37 ----D---- C:\Program Files\Windows Mail
2015-07-28 04:42:33 ----D---- C:\Program Files\Windows Media Player
2015-07-28 04:42:33 ----D---- C:\Program Files\Common Files\System
2015-07-26 15:00:08 ----D---- C:\Program Files\Microsoft.NET
2015-07-26 14:26:50 ----D---- C:\Boot
2015-07-26 14:19:40 ----D---- C:\Program Files\Windows Sidebar
2015-07-26 14:19:40 ----D---- C:\Program Files\Windows Calendar
2015-07-26 14:19:40 ----D---- C:\Program Files\Movie Maker
2015-07-26 14:19:39 ----D---- C:\Program Files\Windows Photo Gallery
2015-07-26 14:19:39 ----D---- C:\Program Files\Windows Collaboration
2015-07-26 14:19:37 ----D---- C:\Windows\servicing
2015-07-26 14:19:37 ----D---- C:\Program Files\Windows Defender
2015-07-26 14:19:34 ----D---- C:\Windows\system32\oobe
2015-07-26 14:19:34 ----D---- C:\Windows\IME
2015-07-26 14:19:33 ----D---- C:\Windows\system32\setup
2015-07-26 14:19:33 ----D---- C:\Windows\system32\cs
2015-07-26 14:19:33 ----D---- C:\Windows\system32\AdvancedInstallers
2015-07-26 14:19:32 ----D---- C:\Windows\system32\SLUI
2015-07-26 14:19:31 ----D---- C:\Windows\system32\manifeststore
2015-07-26 14:19:30 ----D---- C:\Windows\system32\migwiz
2015-07-26 14:19:15 ----D---- C:\Windows\system32\Boot
2015-07-26 14:07:10 ----A---- C:\Windows\fonts\GlobalUserInterface.CompositeFont
2015-07-26 12:13:42 ----D---- C:\Windows\WindowsMobile
2015-07-24 22:05:11 ----D---- C:\Windows\system32\NDF
2015-07-20 22:29:52 ----D---- C:\Windows\system32\en
2015-07-20 22:29:52 ----D---- C:\Windows\en-US
2015-07-20 22:29:46 ----D---- C:\Windows\system32\drivers\en-US
2015-07-20 06:32:24 ----D---- C:\Windows\system32\WDI
2015-07-19 16:58:52 ----D---- C:\Windows\Debug
2015-07-19 16:20:31 ----D---- C:\Windows\Tasks
2015-07-19 13:59:07 ----D---- C:\Windows\SoftwareDistribution
2015-07-19 13:53:57 ----D---- C:\ProgramData
2015-07-19 13:14:29 ----D---- C:\Program Files\Common Files\Symantec Shared
2015-07-19 13:08:54 ----D---- C:\ProgramData\Symantec
2015-07-18 21:07:41 ----RD---- C:\Users
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ahcix86s;ahcix86s; C:\Windows\system32\DRIVERS\ahcix86s.sys [2008-05-27 173576]
R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2007-08-11 29752]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-08-02 49776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-08-02 208664]
R0 AtiPcie;ATI PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2008-04-28 14352]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2008-05-29 15416]
R0 ngvss;ngvss; C:\Windows\system32\drivers\ngvss.sys [2015-08-02 95112]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2015-08-02 55200]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-08-02 788784]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-08-02 433264]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-08-02 24016]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-08-02 76000]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2008-02-16 46592]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-08-02 220752]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-03-21 1203776]
R3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2015-08-02 161472]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-01-13 954368]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-04-30 3551232]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-06-17 30208]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-05-13 81960]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2008-05-13 100392]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2008-01-29 29736]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2008-05-13 17320]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-06-17 2153688]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-06-03 15928]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-21 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-15 7680]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-02 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-07 196400]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2015-08-02 57888]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-21 508416]
S3 catchme;catchme; \??\C:\Users\PC\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-05-02 122368]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2007-05-18 73728]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2008-03-18 13312]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-03 94208]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-04-29 671744]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-08-02 146600]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-05-27 522792]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 SafeRemove;AMD Safely Remove Disk Drive; C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe [2008-07-07 147456]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-08-02 3218624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-27 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2014-04-11 772296]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Zoufalé ženy dělají zoufalé věci. Jasně, teď taky vidím, že sem ......
Jenže člověk si myslí, že všechno zvládne a nemá čas číst hodiny informace a detaily.
Takže největší problém včera byl, že se mi po zapnutí PC nechtěl ani za nic spustit antivir, PC běželo děsně pomalu...no a upřímně..nevim přesně co ještě. (Dělala jsem to za pochodu - prostě u toho vařila
Ovšem je fakt, že teď se PC zdá ok. Antivir jsem musela odinstalovat a zase nainstalovat a teď šlape. Jsem poučena a děkuji za slušné zacházení - mohla jsem si vykoledovat i poslání někam
Log předkládám:
Logfile of random's system information tool 1.10 (written by random/random)
Run by PC at 2015-08-03 06:11:04
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 87 GB (73%) free of 119 GB
Total RAM: 2814 MB (57% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:11:24, on 3.8.2015
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16669)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Windows\WindowsMobile\wmdSync.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Users\PC\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\PC\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\PC\Desktop\RSIT.exe
C:\Program Files\trend micro\PC.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: AMD Safely Remove Disk Drive (SafeRemove) - AMD - C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
--
End of file - 3982 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job - C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job - C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-02 559624]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2008-07-15 7651328]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2008-01-21 215552]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-08-02 6109776]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\AsScrProlog.exe [2008-09-10 47672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2008-09-10 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 116648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
C:\Program Files\ATK Hotkey\HcontrolUser.exe [2008-01-12 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-06-14 210216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2008-06-13 6183456]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
C:\Windows\Skytel.exe [2007-11-20 1826816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-07 1029416]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.l3codecp"=l3codecp.acm
"wave5"=serwvdrv.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-08-03 06:11:04 ----D---- C:\rsit
2015-08-03 06:11:04 ----D---- C:\Program Files\trend micro
2015-08-02 10:00:46 ----D---- C:\snapshots
2015-08-02 09:46:33 ----D---- C:\Users\PC\AppData\Roaming\AVAST Software
2015-08-02 09:06:46 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2015-08-02 09:06:46 ----A---- C:\Windows\system32\drivers\aswStmXP.sys
2015-08-02 09:06:45 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2015-08-02 09:06:45 ----A---- C:\Windows\system32\drivers\aswSP.sys
2015-08-02 09:06:44 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2015-08-02 09:06:44 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2015-08-02 09:06:43 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2015-08-02 09:06:43 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2015-08-02 09:06:41 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2015-08-02 09:06:40 ----A---- C:\Windows\system32\drivers\ngvss.sys
2015-08-02 09:06:38 ----A---- C:\Windows\system32\aswBoot.exe
2015-08-02 09:06:27 ----A---- C:\Windows\avastSS.scr
2015-08-02 08:54:46 ----D---- C:\Program Files\AVAST Software
2015-08-02 08:00:08 ----SHD---- C:\$RECYCLE.BIN
2015-08-02 07:59:59 ----A---- C:\ComboFix.txt
2015-08-02 07:56:23 ----D---- C:\Windows\temp
2015-08-02 07:42:18 ----A---- C:\Windows\zip.exe
2015-08-02 07:42:18 ----A---- C:\Windows\SWSC.exe
2015-08-02 07:42:18 ----A---- C:\Windows\SWREG.exe
2015-08-02 07:42:18 ----A---- C:\Windows\sed.exe
2015-08-02 07:42:18 ----A---- C:\Windows\PEV.exe
2015-08-02 07:42:18 ----A---- C:\Windows\NIRCMD.exe
2015-08-02 07:42:18 ----A---- C:\Windows\MBR.exe
2015-08-02 07:42:18 ----A---- C:\Windows\grep.exe
2015-08-02 07:42:11 ----D---- C:\ComboFix
2015-08-02 07:42:05 ----D---- C:\Qoobox
2015-08-02 07:36:13 ----D---- C:\Windows\erdnt
2015-08-02 06:55:31 ----ASH---- C:\hiberfil.sys
2015-08-02 06:54:35 ----D---- C:\Windows\pss
2015-08-02 06:44:52 ----A---- C:\Windows\ntbtlog.txt
2015-07-29 13:06:05 ----D---- C:\Windows\Migration
2015-07-29 12:57:17 ----D---- C:\Program Files\7-Zip
2015-07-29 12:39:19 ----A---- C:\Windows\system32\XpsPrint.dll
2015-07-29 12:39:17 ----A---- C:\Windows\system32\mshtml.dll
2015-07-29 10:30:11 ----D---- C:\Program Files\Windows Portable Devices
2015-07-29 10:24:29 ----A---- C:\Windows\system32\WMPhoto.dll
2015-07-29 10:22:16 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-07-29 10:21:01 ----A---- C:\Windows\system32\win32k.sys
2015-07-29 10:18:54 ----A---- C:\Windows\system32\atmlib.dll
2015-07-29 10:18:54 ----A---- C:\Windows\system32\atmfd.dll
2015-07-29 10:17:47 ----A---- C:\Windows\system32\ole32.dll
2015-07-29 10:01:54 ----A---- C:\Windows\system32\infocardapi.dll
2015-07-29 10:01:54 ----A---- C:\Windows\system32\icardres.dll
2015-07-29 10:01:54 ----A---- C:\Windows\system32\icardagt.exe
2015-07-29 10:01:48 ----A---- C:\Windows\system32\TsWpfWrp.exe
2015-07-29 10:00:30 ----A---- C:\Windows\system32\msxml3r.dll
2015-07-29 10:00:30 ----A---- C:\Windows\system32\msxml3.dll
2015-07-29 09:59:05 ----A---- C:\Windows\system32\mscories.dll
2015-07-29 09:59:05 ----A---- C:\Windows\system32\mscorier.dll
2015-07-29 09:59:05 ----A---- C:\Windows\system32\dfshim.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\msihnd.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\msiexec.exe
2015-07-29 09:51:55 ----A---- C:\Windows\system32\msi.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\consent.exe
2015-07-29 09:51:55 ----A---- C:\Windows\system32\authui.dll
2015-07-29 09:51:55 ----A---- C:\Windows\system32\appinfo.dll
2015-07-29 09:44:02 ----A---- C:\Windows\system32\msaudite.dll
2015-07-29 09:44:01 ----A---- C:\Windows\system32\adtschema.dll
2015-07-29 09:44:00 ----A---- C:\Windows\system32\termsrv.dll
2015-07-29 09:42:57 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-07-29 09:41:56 ----A---- C:\Windows\system32\gdi32.dll
2015-07-29 09:40:34 ----A---- C:\Windows\system32\tzres.dll
2015-07-29 09:35:31 ----A---- C:\Windows\system32\UIAnimation.dll
2015-07-29 09:35:30 ----A---- C:\Windows\system32\UIRibbonRes.dll
2015-07-29 09:35:30 ----A---- C:\Windows\system32\UIRibbon.dll
2015-07-29 09:33:16 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2015-07-29 09:33:16 ----A---- C:\Windows\system32\wpdbusenum.dll
2015-07-29 09:33:16 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2015-07-29 09:33:13 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WPDSp.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\wpdshext.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WpdMtpUS.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WpdMtp.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\WpdConns.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\wpd_ci.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2015-07-29 09:33:12 ----A---- C:\Windows\system32\drivers\WpdUsb.sys
2015-07-29 09:24:10 ----A---- C:\Windows\system32\comctl32.dll
2015-07-29 09:10:41 ----A---- C:\Windows\system32\clfsw32.dll
2015-07-29 09:10:41 ----A---- C:\Windows\system32\clfs.sys
2015-07-29 09:09:27 ----A---- C:\Windows\system32\smss.exe
2015-07-29 09:09:27 ----A---- C:\Windows\system32\ntdll.dll
2015-07-29 09:09:27 ----A---- C:\Windows\system32\csrsrv.dll
2015-07-29 09:09:26 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-07-29 09:09:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-07-29 09:07:55 ----A---- C:\Windows\system32\packager.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10level9.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10core.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10_1core.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d3d10_1.dll
2015-07-29 08:57:53 ----A---- C:\Windows\system32\d2d1.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\FntCache.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\DWrite.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\d3d10warp.dll
2015-07-29 08:57:52 ----A---- C:\Windows\system32\d3d10.dll
2015-07-29 08:56:29 ----A---- C:\Windows\system32\oleaut32.dll
2015-07-29 08:48:01 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 08:38:46 ----A---- C:\Windows\system32\msctf.dll
2015-07-29 08:37:36 ----A---- C:\Windows\system32\IMJP10K.DLL
2015-07-29 08:34:59 ----A---- C:\Windows\system32\wininet.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\urlmon.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\msrating.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\msls31.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\jsproxy.dll
2015-07-29 08:34:59 ----A---- C:\Windows\system32\iertutil.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2015-07-29 08:34:58 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2015-07-29 08:34:58 ----A---- C:\Windows\system32\mshtmler.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\ieui.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\iesysprep.dll
2015-07-29 08:34:58 ----A---- C:\Windows\system32\ieframe.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\url.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\iesetup.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\iernonce.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\iedkcs32.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\ieapfltr.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\ieapfltr.dat
2015-07-29 08:34:57 ----A---- C:\Windows\system32\ie4uinit.exe
2015-07-29 08:34:57 ----A---- C:\Windows\system32\icardie.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-29 08:34:57 ----A---- C:\Windows\system32\dxtmsft.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\wextract.exe
2015-07-29 08:34:56 ----A---- C:\Windows\system32\webcheck.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\licmgr10.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\inseng.dll
2015-07-29 08:34:56 ----A---- C:\Windows\system32\iexpress.exe
2015-07-29 08:34:55 ----A---- C:\Windows\system32\vbscript.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\pngfilt.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\occache.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\mshta.exe
2015-07-29 08:34:54 ----A---- C:\Windows\system32\jscript9.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\jscript.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\ieUnatt.exe
2015-07-29 08:34:54 ----A---- C:\Windows\system32\ieakui.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\ieaksie.dll
2015-07-29 08:34:54 ----A---- C:\Windows\system32\admparse.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\msfeedssync.exe
2015-07-29 08:34:53 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\imgutil.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\iepeers.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\ieakeng.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\IEAdvpack.dll
2015-07-29 08:34:53 ----A---- C:\Windows\system32\advpack.dll
2015-07-29 08:33:55 ----A---- C:\Windows\system32\MFHEAACdec.dll
2015-07-29 08:33:55 ----A---- C:\Windows\system32\MFH264Dec.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\shdocvw.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfreadwrite.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfps.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfplat.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mfmp4src.dll
2015-07-29 08:33:54 ----A---- C:\Windows\system32\mf.dll
2015-07-29 08:33:53 ----A---- C:\Windows\system32\stobject.dll
2015-07-29 08:33:50 ----A---- C:\Windows\system32\XpsRasterService.dll
2015-07-29 08:33:48 ----A---- C:\Windows\system32\dxgi.dll
2015-07-29 08:33:47 ----A---- C:\Windows\system32\xpsservices.dll
2015-07-29 08:33:47 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2015-07-29 08:33:47 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2015-07-29 08:33:47 ----A---- C:\Windows\system32\OpcServices.dll
2015-07-29 08:33:00 ----A---- C:\Windows\system32\dxdiagn.dll
2015-07-29 08:33:00 ----A---- C:\Windows\system32\dxdiag.exe
2015-07-29 08:33:00 ----A---- C:\Windows\system32\d3d11.dll
2015-07-29 08:32:59 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2015-07-29 08:32:59 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\EncDump.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\audiosrv.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-07-29 08:19:28 ----A---- C:\Windows\system32\AudioEng.dll
2015-07-29 08:13:59 ----A---- C:\Windows\system32\nlasvc.dll
2015-07-29 08:13:59 ----A---- C:\Windows\system32\nlaapi.dll
2015-07-29 08:13:59 ----A---- C:\Windows\system32\ncsi.dll
2015-07-29 08:13:05 ----A---- C:\Windows\system32\shell32.dll
2015-07-27 20:31:21 ----A---- C:\Windows\ATKPF.ini
2015-07-27 19:38:59 ----A---- C:\Windows\system32\cewmdm.dll
2015-07-27 19:32:18 ----A---- C:\Windows\system32\services.exe
2015-07-27 19:19:11 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-27 19:19:11 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-27 19:19:11 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-27 19:19:10 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-27 19:19:09 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\schannel.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\lsasrv.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\kerberos.dll
2015-07-27 19:19:08 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-07-27 19:19:08 ----A---- C:\Windows\system32\advapi32.dll
2015-07-27 19:18:55 ----A---- C:\Windows\system32\kernel32.dll
2015-07-27 19:18:35 ----A---- C:\Windows\system32\drivers\fastfat.sys
2015-07-27 19:12:40 ----A---- C:\Windows\system32\scesrv.dll
2015-07-27 19:11:31 ----A---- C:\Windows\system32\Wdfres.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\WUDFSvc.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\WUDFPlatform.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\winusb.dll
2015-07-27 19:11:29 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2015-07-27 19:11:29 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2015-07-27 19:11:28 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2015-07-27 19:11:27 ----A---- C:\Windows\system32\WUDFx.dll
2015-07-27 19:11:27 ----A---- C:\Windows\system32\WUDFHost.exe
2015-07-27 19:11:27 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2015-07-27 19:10:33 ----A---- C:\Windows\system32\spwmp.dll
2015-07-27 19:10:30 ----A---- C:\Windows\system32\dxmasf.dll
2015-07-27 19:10:29 ----A---- C:\Windows\system32\wmploc.DLL
2015-07-27 19:10:28 ----A---- C:\Windows\system32\wmp.dll
2015-07-27 18:47:42 ----A---- C:\Windows\system32\profsvc.dll
2015-07-27 18:45:43 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2015-07-27 18:44:39 ----A---- C:\Windows\system32\UIAutomationCore.dll
2015-07-27 18:44:39 ----A---- C:\Windows\system32\oleaccrc.dll
2015-07-27 18:44:39 ----A---- C:\Windows\system32\oleacc.dll
2015-07-27 18:44:27 ----A---- C:\Windows\system32\netapi32.dll
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-07-27 18:44:25 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-07-27 18:44:22 ----A---- C:\Windows\system32\msxml6.dll
2015-07-27 18:43:56 ----A---- C:\Windows\system32\wmi.dll
2015-07-27 18:43:56 ----A---- C:\Windows\system32\imagehlp.dll
2015-07-27 18:43:56 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2015-07-27 18:43:53 ----A---- C:\Windows\system32\mstscax.dll
2015-07-27 18:43:48 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2015-07-27 18:43:48 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-07-27 18:43:06 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-07-27 18:42:41 ----A---- C:\Windows\system32\SysFxUI.dll
2015-07-27 18:42:41 ----A---- C:\Windows\system32\drivers\portcls.sys
2015-07-27 18:42:41 ----A---- C:\Windows\system32\drivers\drmk.sys
2015-07-27 18:42:40 ----A---- C:\Windows\system32\icaapi.dll
2015-07-27 18:42:40 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2015-07-27 18:42:36 ----A---- C:\Windows\system32\drivers\ntfs.sys
2015-07-27 18:42:34 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2015-07-27 18:42:33 ----A---- C:\Windows\system32\qedit.dll
2015-07-27 18:42:32 ----A---- C:\Windows\system32\drivers\afd.sys
2015-07-27 18:42:15 ----A---- C:\Windows\system32\certutil.exe
2015-07-27 18:42:14 ----A---- C:\Windows\system32\certenc.dll
2015-07-27 18:42:05 ----A---- C:\Windows\system32\localspl.dll
2015-07-27 18:41:59 ----A---- C:\Windows\system32\msshsq.dll
2015-07-27 18:41:58 ----A---- C:\Windows\system32\drivers\volsnap.sys
2015-07-27 18:41:57 ----A---- C:\Windows\system32\quartz.dll
2015-07-27 18:41:54 ----A---- C:\Windows\system32\shlwapi.dll
2015-07-27 18:41:53 ----A---- C:\Windows\system32\EncDec.dll
2015-07-27 18:41:52 ----A---- C:\Windows\system32\msvcrt.dll
2015-07-27 18:41:50 ----A---- C:\Windows\system32\rdpencom.dll
2015-07-27 18:41:42 ----A---- C:\Windows\system32\winsrv.dll
2015-07-27 18:41:41 ----A---- C:\Windows\system32\ncrypt.dll
2015-07-27 18:41:40 ----A---- C:\Windows\system32\win32spl.dll
2015-07-27 18:41:40 ----A---- C:\Windows\system32\printcom.dll
2015-07-27 18:41:37 ----A---- C:\Windows\system32\qdvd.dll
2015-07-27 18:41:30 ----A---- C:\Windows\system32\wshcon.dll
2015-07-27 18:41:30 ----A---- C:\Windows\system32\wscript.exe
2015-07-27 18:41:30 ----A---- C:\Windows\system32\scrrun.dll
2015-07-27 18:41:30 ----A---- C:\Windows\system32\cscript.exe
2015-07-27 18:41:28 ----A---- C:\Windows\system32\themeui.dll
2015-07-27 18:41:27 ----A---- C:\Windows\system32\xmllite.dll
2015-07-27 18:41:22 ----A---- C:\Windows\system32\cryptdlg.dll
2015-07-27 18:41:16 ----A---- C:\Windows\system32\drivers\hidparse.sys
2015-07-27 18:41:14 ----A---- C:\Windows\system32\drivers\partmgr.sys
2015-07-27 18:41:13 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2015-07-27 18:41:11 ----A---- C:\Windows\system32\secur32.dll
2015-07-27 18:41:11 ----A---- C:\Windows\system32\lsass.exe
2015-07-27 18:41:06 ----A---- C:\Windows\system32\cdd.dll
2015-07-27 18:41:05 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2015-07-27 18:40:53 ----A---- C:\Windows\system32\psisdecd.dll
2015-07-27 18:40:39 ----A---- C:\Windows\system32\crypt32.dll
2015-07-27 18:40:27 ----A---- C:\Windows\system32\dpnsvr.exe
2015-07-27 18:40:27 ----A---- C:\Windows\system32\dpnet.dll
2015-07-27 18:40:15 ----A---- C:\Windows\system32\synceng.dll
2015-07-27 18:40:13 ----A---- C:\Windows\system32\winmm.dll
2015-07-27 18:40:13 ----A---- C:\Windows\system32\mciseq.dll
2015-07-27 18:40:12 ----A---- C:\Windows\system32\WMVDECOD.DLL
2015-07-27 18:40:10 ----A---- C:\Windows\system32\winhttp.dll
2015-07-27 18:40:08 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2015-07-27 18:40:01 ----A---- C:\Windows\system32\usp10.dll
2015-07-27 18:39:58 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-07-27 18:39:58 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-07-27 18:39:20 ----A---- C:\Windows\system32\drivers\usb8023x.sys
2015-07-27 18:39:20 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-07-27 17:59:11 ----A---- C:\Windows\system32\wintrust.dll
2015-07-27 17:59:11 ----A---- C:\Windows\system32\cryptsvc.dll
2015-07-27 17:59:11 ----A---- C:\Windows\system32\cryptnet.dll
2015-07-27 17:57:16 ----A---- C:\Windows\system32\wer.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wups2.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wucltux.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wuaueng.dll
2015-07-27 16:16:29 ----A---- C:\Windows\system32\wuauclt.exe
2015-07-27 16:16:12 ----A---- C:\Windows\system32\wups.dll
2015-07-27 16:16:12 ----A---- C:\Windows\system32\wudriver.dll
2015-07-27 16:16:12 ----A---- C:\Windows\system32\wuapi.dll
2015-07-27 16:16:07 ----A---- C:\Windows\system32\wuwebv.dll
2015-07-27 16:16:07 ----A---- C:\Windows\system32\wuapp.exe
2015-07-26 14:19:15 ----D---- C:\Windows\system32\vi-VN
2015-07-26 14:19:15 ----D---- C:\Windows\system32\eu-ES
2015-07-26 14:19:15 ----D---- C:\Windows\system32\ca-ES
2015-07-26 12:37:41 ----D---- C:\Windows\system32\EventProviders
2015-07-26 12:37:38 ----D---- C:\a5a49092c7030ed075ff40e67867
2015-07-26 12:34:23 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2015-07-26 12:34:19 ----A---- C:\Windows\system32\SLsvc.exe
2015-07-26 12:34:19 ----A---- C:\Windows\system32\SLCExt.dll
2015-07-26 12:34:17 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2015-07-26 12:34:17 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2015-07-26 12:34:14 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2015-07-26 12:34:12 ----A---- C:\Windows\system32\mssrch.dll
2015-07-26 12:34:10 ----A---- C:\Windows\system32\drivers\spsys.sys
2015-07-26 12:34:09 ----A---- C:\Windows\system32\tquery.dll
2015-07-26 12:34:08 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2015-07-26 12:34:07 ----A---- C:\Windows\system32\scavenge.dll
2015-07-26 12:34:07 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2015-07-26 12:34:04 ----A---- C:\Windows\system32\WscEapPr.dll
2015-07-26 12:34:04 ----A---- C:\Windows\system32\wcnwiz2.dll
2015-07-26 12:34:04 ----A---- C:\Windows\system32\sysmain.dll
2015-07-26 12:34:04 ----A---- C:\Windows\system32\imapi2fs.dll
2015-07-26 12:34:01 ----A---- C:\Windows\system32\EhStorShell.dll
2015-07-26 12:34:01 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2015-07-26 12:34:00 ----A---- C:\Windows\system32\spreview.exe
2015-07-26 12:34:00 ----A---- C:\Windows\system32\spinstall.exe
2015-07-26 12:34:00 ----A---- C:\Windows\system32\drmv2clt.dll
2015-07-26 12:33:58 ----A---- C:\Windows\system32\spwizui.dll
2015-07-26 12:33:58 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2015-07-26 12:33:56 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-07-26 12:33:56 ----A---- C:\Windows\system32\p2psvc.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\mssvp.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\mssphtb.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\mssph.dll
2015-07-26 12:33:55 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2015-07-26 12:33:54 ----A---- C:\Windows\system32\sdohlp.dll
2015-07-26 12:33:54 ----A---- C:\Windows\system32\imapi2.dll
2015-07-26 12:33:53 ----A---- C:\Windows\system32\esent.dll
2015-07-26 12:33:53 ----A---- C:\Windows\system32\DevicePairing.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\wevtsvc.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\sperror.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\SLC.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\korwbrkr.dll
2015-07-26 12:33:51 ----A---- C:\Windows\system32\drivers\rfcomm.sys
2015-07-26 12:33:48 ----A---- C:\Windows\system32\msjet40.dll
2015-07-26 12:33:48 ----A---- C:\Windows\system32\MPSSVC.dll
2015-07-26 12:33:47 ----A---- C:\Windows\system32\Query.dll
2015-07-26 12:33:46 ----A---- C:\Windows\system32\qmgr.dll
2015-07-26 12:33:46 ----A---- C:\Windows\system32\msexch40.dll
2015-07-26 12:33:46 ----A---- C:\Windows\system32\diagperf.dll
2015-07-26 12:33:45 ----A---- C:\Windows\system32\srchadmin.dll
2015-07-26 12:33:45 ----A---- C:\Windows\system32\P2PGraph.dll
2015-07-26 12:33:45 ----A---- C:\Windows\system32\IasMigReader.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\winload.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\uDWM.dll
2015-07-26 12:33:44 ----A---- C:\Windows\system32\mmc.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\mblctr.exe
2015-07-26 12:33:44 ----A---- C:\Windows\system32\dfsr.exe
2015-07-26 12:33:43 ----A---- C:\Windows\system32\riched20.dll
2015-07-26 12:33:43 ----A---- C:\Windows\system32\RacEngn.dll
2015-07-26 12:33:43 ----A---- C:\Windows\system32\IasMigPlugin.dll
2015-07-26 12:33:43 ----A---- C:\Windows\system32\fdBth.dll
2015-07-26 12:33:42 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-07-26 12:33:42 ----A---- C:\Windows\system32\SearchFilterHost.exe
2015-07-26 12:33:42 ----A---- C:\Windows\system32\milcore.dll
2015-07-26 12:33:41 ----A---- C:\Windows\system32\spoolss.dll
2015-07-26 12:33:41 ----A---- C:\Windows\system32\EhStorAPI.dll
2015-07-26 12:33:41 ----A---- C:\Windows\system32\CertEnroll.dll
2015-07-26 12:33:40 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2015-07-26 12:33:40 ----A---- C:\Windows\system32\msjtes40.dll
2015-07-26 12:33:40 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2015-07-26 12:33:39 ----A---- C:\Windows\system32\msvcp60.dll
2015-07-26 12:33:39 ----A---- C:\Windows\system32\gpedit.dll
2015-07-26 12:33:39 ----A---- C:\Windows\system32\fsquirt.exe
2015-07-26 12:33:38 ----A---- C:\Windows\system32\WinSAT.exe
2015-07-26 12:33:38 ----A---- C:\Windows\system32\es.dll
2015-07-26 12:33:37 ----A---- C:\Windows\system32\PresentationSettings.exe
2015-07-26 12:33:37 ----A---- C:\Windows\system32\Magnify.exe
2015-07-26 12:33:37 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2015-07-26 12:33:36 ----A---- C:\Windows\system32\mstext40.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\WebClnt.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\vssapi.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\slwmi.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\msxbde40.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\msexcl40.dll
2015-07-26 12:33:34 ----A---- C:\Windows\system32\comsvcs.dll
2015-07-26 12:33:33 ----A---- C:\Windows\system32\NetProjW.dll
2015-07-26 12:33:32 ----A---- C:\Windows\system32\propsys.dll
2015-07-26 12:33:32 ----A---- C:\Windows\system32\newdev.dll
2015-07-26 12:33:32 ----A---- C:\Windows\system32\msrepl40.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\setupapi.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\rpcss.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\iasrecst.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\gpsvc.dll
2015-07-26 12:33:31 ----A---- C:\Windows\system32\eudcedit.exe
2015-07-26 12:33:31 ----A---- C:\Windows\explorer.exe
2015-07-26 12:33:30 ----A---- C:\Windows\system32\mspbde40.dll
2015-07-26 12:33:30 ----A---- C:\Windows\system32\d3d9.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\msrd3x40.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\msltus40.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\msdtctm.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\EhStorAuthn.dll
2015-07-26 12:33:29 ----A---- C:\Windows\system32\davclnt.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\wevtapi.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\photowiz.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\nlhtml.dll
2015-07-26 12:33:28 ----A---- C:\Windows\system32\browseui.dll
2015-07-26 12:33:27 ----A---- C:\Windows\system32\user32.dll
2015-07-26 12:33:26 ----A---- C:\Windows\system32\samsrv.dll
2015-07-26 12:33:26 ----A---- C:\Windows\system32\ci.dll
2015-07-26 12:33:25 ----A---- C:\Windows\system32\WcnNetsh.dll
2015-07-26 12:33:25 ----A---- C:\Windows\system32\SLCommDlg.dll
2015-07-26 12:33:24 ----A---- C:\Windows\system32\netshell.dll
2015-07-26 12:33:24 ----A---- C:\Windows\system32\drivers\rdbss.sys
2015-07-26 12:33:24 ----A---- C:\Windows\system32\compcln.exe
2015-07-26 12:33:24 ----A---- C:\Windows\system32\apds.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\xmlfilter.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\mswstr10.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\emdmgmt.dll
2015-07-26 12:33:23 ----A---- C:\Windows\system32\drivers\netio.sys
2015-07-26 12:33:22 ----A---- C:\Windows\system32\VSSVC.exe
2015-07-26 12:33:22 ----A---- C:\Windows\system32\QAGENTRT.DLL
2015-07-26 12:33:21 ----A---- C:\Windows\system32\SLUI.exe
2015-07-26 12:33:21 ----A---- C:\Windows\system32\eapphost.dll
2015-07-26 12:33:20 ----A---- C:\Windows\system32\sqlsrv32.dll
2015-07-26 12:33:20 ----A---- C:\Windows\system32\msrd2x40.dll
2015-07-26 12:33:20 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2015-07-26 12:33:19 ----A---- C:\Windows\system32\winresume.exe
2015-07-26 12:33:19 ----A---- C:\Windows\system32\propdefs.dll
2015-07-26 12:33:18 ----A---- C:\Windows\system32\wevtutil.exe
2015-07-26 12:33:18 ----A---- C:\Windows\system32\dbgeng.dll
2015-07-26 12:33:17 ----A---- C:\Windows\system32\swprv.dll
2015-07-26 12:33:17 ----A---- C:\Windows\system32\mssitlb.dll
2015-07-26 12:33:16 ----A---- C:\Windows\system32\vds.exe
2015-07-26 12:33:16 ----A---- C:\Windows\system32\mmcndmgr.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\netlogon.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\msctfp.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\fdBthProxy.dll
2015-07-26 12:33:15 ----A---- C:\Windows\system32\drvinst.exe
2015-07-26 12:33:15 ----A---- C:\Windows\system32\devmgr.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\Wldap32.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\wcnwiz.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\msscb.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\evr.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2015-07-26 12:33:14 ----A---- C:\Windows\system32\BFE.DLL
2015-07-26 12:33:14 ----A---- C:\Windows\system32\adsldpc.dll
2015-07-26 12:33:13 ----A---- C:\Windows\system32\WMVSDECD.DLL
2015-07-26 12:33:12 ----A---- C:\Windows\system32\wercon.exe
2015-07-26 12:33:12 ----A---- C:\Windows\system32\wcncsvc.dll
2015-07-26 12:33:12 ----A---- C:\Windows\system32\mimefilt.dll
2015-07-26 12:33:12 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2015-07-26 12:33:12 ----A---- C:\Windows\system32\comdlg32.dll
2015-07-26 12:33:12 ----A---- C:\Windows\system32\certcli.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\mswdat10.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\msjter40.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\msdtcprx.dll
2015-07-26 12:33:11 ----A---- C:\Windows\system32\ipsmsnap.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\WMNetMgr.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\w32time.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\umpnpmgr.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\rtffilt.dll
2015-07-26 12:33:10 ----A---- C:\Windows\system32\reg.exe
2015-07-26 12:33:09 ----A---- C:\Windows\system32\rsaenh.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2015-07-26 12:33:09 ----A---- C:\Windows\system32\msshooks.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\msscntrs.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\IPSECSVC.DLL
2015-07-26 12:33:09 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-07-26 12:33:09 ----A---- C:\Windows\system32\bthserv.dll
2015-07-26 12:33:09 ----A---- C:\Windows\system32\bcrypt.dll
2015-07-26 12:33:08 ----A---- C:\Windows\system32\msstrc.dll
2015-07-26 12:33:08 ----A---- C:\Windows\system32\MMDevAPI.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\mtxclu.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\inetpp.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\hidserv.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\fundisc.dll
2015-07-26 12:33:07 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\wdc.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\imapi.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\chsbrkr.dll
2015-07-26 12:33:05 ----A---- C:\Windows\system32\drivers\pci.sys
2015-07-26 12:33:05 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2015-07-26 12:33:04 ----A---- C:\Windows\system32\rasmans.dll
2015-07-26 12:33:04 ----A---- C:\Windows\system32\pnidui.dll
2015-07-26 12:33:04 ----A---- C:\Windows\system32\iassdo.dll
2015-07-26 12:33:04 ----A---- C:\Windows\system32\drivers\termdd.sys
2015-07-26 12:33:04 ----A---- C:\Windows\system32\autofmt.exe
2015-07-26 12:33:03 ----A---- C:\Windows\system32\wersvc.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\slmgr.vbs
2015-07-26 12:33:03 ----A---- C:\Windows\system32\PSHED.DLL
2015-07-26 12:33:03 ----A---- C:\Windows\system32\pdh.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\Storport.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\ataport.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\drivers\acpi.sys
2015-07-26 12:33:03 ----A---- C:\Windows\system32\dhcpcsvc.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\CertEnrollUI.dll
2015-07-26 12:33:03 ----A---- C:\Windows\system32\azroles.dll
2015-07-26 12:33:01 ----A---- C:\Windows\system32\winlogon.exe
2015-07-26 12:33:01 ----A---- C:\Windows\system32\pidgenx.dll
2015-07-26 12:33:00 ----A---- C:\Windows\system32\SyncCenter.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\spp.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\SLUINotify.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\sethc.exe
2015-07-26 12:32:59 ----A---- C:\Windows\system32\msjetoledb40.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\kd1394.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\iassam.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\drivers\mup.sys
2015-07-26 12:32:59 ----A---- C:\Windows\system32\drivers\disk.sys
2015-07-26 12:32:59 ----A---- C:\Windows\system32\comuid.dll
2015-07-26 12:32:59 ----A---- C:\Windows\system32\certmgr.dll
2015-07-26 12:32:58 ----A---- C:\Windows\system32\wisptis.exe
2015-07-26 12:32:58 ----A---- C:\Windows\system32\untfs.dll
2015-07-26 12:32:58 ----A---- C:\Windows\system32\scrobj.dll
2015-07-26 12:32:58 ----A---- C:\Windows\system32\dwm.exe
2015-07-26 12:32:58 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2015-07-26 12:32:58 ----A---- C:\Windows\system32\drivers\pciidex.sys
2015-07-26 12:32:58 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-07-26 12:32:58 ----A---- C:\Windows\system32\autochk.exe
2015-07-26 12:32:57 ----A---- C:\Windows\system32\printui.dll
2015-07-26 12:32:57 ----A---- C:\Windows\system32\iasnap.dll
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\pciide.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\msrpc.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\drivers\ecache.sys
2015-07-26 12:32:57 ----A---- C:\Windows\system32\autoconv.exe
2015-07-26 12:32:56 ----A---- C:\Windows\system32\wow32.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\userenv.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\osk.exe
2015-07-26 12:32:56 ----A---- C:\Windows\system32\onex.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\kdcom.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\drivers\Dumpata.sys
2015-07-26 12:32:56 ----A---- C:\Windows\system32\basecsp.dll
2015-07-26 12:32:56 ----A---- C:\Windows\system32\audiodg.exe
2015-07-26 12:32:55 ----A---- C:\Windows\system32\RelMon.dll
2015-07-26 12:32:55 ----A---- C:\Windows\system32\mswsock.dll
2015-07-26 12:32:55 ----A---- C:\Windows\system32\kdusb.dll
2015-07-26 12:32:55 ----A---- C:\Windows\system32\drivers\atapi.sys
2015-07-26 12:32:54 ----A---- C:\Windows\system32\WinSCard.dll
2015-07-26 12:32:54 ----A---- C:\Windows\system32\WerFaultSecure.exe
2015-07-26 12:32:54 ----A---- C:\Windows\system32\spcmsg.dll
2015-07-26 12:32:54 ----A---- C:\Windows\system32\msftedit.dll
2015-07-26 12:32:54 ----A---- C:\Windows\system32\drivers\netbt.sys
2015-07-26 12:32:53 ----A---- C:\Windows\system32\Utilman.exe
2015-07-26 12:32:53 ----A---- C:\Windows\system32\offfilt.dll
2015-07-26 12:32:53 ----A---- C:\Windows\system32\drivers\bthenum.sys
2015-07-26 12:32:52 ----A---- C:\Windows\system32\wsepno.dll
2015-07-26 12:32:52 ----A---- C:\Windows\system32\WerFault.exe
2015-07-26 12:32:52 ----A---- C:\Windows\system32\SndVol.exe
2015-07-26 12:32:52 ----A---- C:\Windows\system32\mscms.dll
2015-07-26 12:32:52 ----A---- C:\Windows\system32\mcmde.dll
2015-07-26 12:32:52 ----A---- C:\Windows\system32\diskraid.exe
2015-07-26 12:32:52 ----A---- C:\Windows\system32\apphelp.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\wiaservc.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\ulib.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\sysclass.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\prnntfy.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\odbccp32.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\msnetobj.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\iasdatastore.dll
2015-07-26 12:32:51 ----A---- C:\Windows\system32\adsmsext.dll
2015-07-26 12:32:50 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2015-07-26 12:32:50 ----A---- C:\Windows\system32\dsound.dll
2015-07-26 12:32:50 ----A---- C:\Windows\system32\cryptui.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\wscntfy.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\rastapi.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\pnpsetup.dll
2015-07-26 12:32:49 ----A---- C:\Windows\system32\fdProxy.dll
2015-07-26 12:32:47 ----A---- C:\Windows\system32\ipsecsnp.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\wscsvc.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\WMVENCOD.DLL
2015-07-26 12:32:46 ----A---- C:\Windows\system32\wlangpui.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\vdsdyn.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\rasapi32.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\logman.exe
2015-07-26 12:32:46 ----A---- C:\Windows\system32\iashlpr.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\gpapi.dll
2015-07-26 12:32:46 ----A---- C:\Windows\system32\diskpart.exe
2015-07-26 12:32:46 ----A---- C:\Windows\system32\brcpl.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\zipfldr.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\wusa.exe
2015-07-26 12:32:45 ----A---- C:\Windows\system32\wshext.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\wpccpl.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\regsvc.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\ntprint.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\iasrad.dll
2015-07-26 12:32:45 ----A---- C:\Windows\system32\findstr.exe
2015-07-26 12:32:44 ----A---- C:\Windows\system32\rasdlg.dll
2015-07-26 12:32:44 ----A---- C:\Windows\system32\netcenter.dll
2015-07-26 12:32:44 ----A---- C:\Windows\system32\iassvcs.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\wsnmp32.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\uxsms.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\themecpl.dll
2015-07-26 12:32:43 ----A---- C:\Windows\system32\mssprxy.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\slcc.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\scansetting.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\powrprof.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\ntmarta.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\msutb.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\mstlsapi.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\iasads.dll
2015-07-26 12:32:42 ----A---- C:\Windows\system32\drivers\ks.sys
2015-07-26 12:32:42 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2015-07-26 12:32:41 ----A---- C:\Windows\system32\powercpl.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\newdev.exe
2015-07-26 12:32:41 ----A---- C:\Windows\system32\networkmap.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\iasacct.dll
2015-07-26 12:32:41 ----A---- C:\Windows\system32\authz.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\systemcpl.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\sud.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\pcaui.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2015-07-26 12:32:40 ----A---- C:\Windows\system32\dot3svc.dll
2015-07-26 12:32:40 ----A---- C:\Windows\system32\connect.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\usercpl.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\samlib.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\mmci.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\drivers\sdbus.sys
2015-07-26 12:32:39 ----A---- C:\Windows\system32\autoplay.dll
2015-07-26 12:32:39 ----A---- C:\Windows\system32\accessibilitycpl.dll
2015-07-26 12:32:38 ----A---- C:\Windows\system32\wlanpref.dll
2015-07-26 12:32:38 ----A---- C:\Windows\system32\rpchttp.dll
2015-07-26 12:32:38 ----A---- C:\Windows\system32\regapi.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\wpcao.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\vdsutil.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\tapisrv.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\scksp.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\oleprn.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\msinfo32.exe
2015-07-26 12:32:37 ----A---- C:\Windows\system32\mpr.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\imm32.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\feclient.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\drivers\exfat.sys
2015-07-26 12:32:37 ----A---- C:\Windows\system32\dot3msm.dll
2015-07-26 12:32:37 ----A---- C:\Windows\system32\AudioSes.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\wscisvif.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\rekeywiz.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\pnpui.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\perfdisk.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\ncryptui.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\iaspolcy.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\hdwwiz.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\Faultrep.dll
2015-07-26 12:32:36 ----A---- C:\Windows\system32\dpapimig.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\DeviceEject.exe
2015-07-26 12:32:36 ----A---- C:\Windows\system32\certreq.exe
2015-07-26 12:32:35 ----A---- C:\Windows\system32\TSTheme.exe
2015-07-26 12:32:35 ----A---- C:\Windows\system32\tcpipcfg.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\spwinsat.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\scecli.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\rasplap.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\rasgcw.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\PnPUnattend.exe
2015-07-26 12:32:35 ----A---- C:\Windows\system32\fdWSD.dll
2015-07-26 12:32:35 ----A---- C:\Windows\system32\cmmon32.exe
2015-07-26 12:32:34 ----A---- C:\Windows\system32\whealogr.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\tcpmon.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\srcore.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\SnippingTool.exe
2015-07-26 12:32:34 ----A---- C:\Windows\system32\SCardSvr.dll
2015-07-26 12:32:34 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2015-07-26 12:32:34 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2015-07-26 12:32:34 ----A---- C:\Windows\system32\conime.exe
2015-07-26 12:32:34 ----A---- C:\Windows\system32\cmdial32.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\wlanui.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\wiaaut.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\raschap.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\MSVidCtl.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\fontext.dll
2015-07-26 12:32:33 ----A---- C:\Windows\system32\drivers\npfs.sys
2015-07-26 12:32:32 ----A---- C:\Windows\system32\WMVXENCD.DLL
2015-07-26 12:32:32 ----A---- C:\Windows\system32\shwebsvc.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\rasppp.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\PnPutil.exe
2015-07-26 12:32:32 ----A---- C:\Windows\system32\oobefldr.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\dsprop.dll
2015-07-26 12:32:32 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-07-26 12:32:32 ----A---- C:\Windows\system32\dimsroam.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\shsetup.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\rasmontr.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\mscandui.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\modemui.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\chtbrkr.dll
2015-07-26 12:32:31 ----A---- C:\Windows\system32\drivers\pacer.sys
2015-07-26 12:32:30 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\wlgpclnt.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\rdpwsx.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\dataclen.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\credui.dll
2015-07-26 12:32:30 ----A---- C:\Windows\system32\blackbox.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\WSDMon.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\wmpeffects.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\netplwiz.dll
2015-07-26 12:32:29 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-07-26 12:32:29 ----A---- C:\Windows\system32\drivers\ohci1394.sys
2015-07-26 12:32:29 ----A---- C:\Windows\system32\certprop.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\wscapi.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\wpcsvc.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\thawbrkr.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\networkexplorer.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\msscp.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\msimtf.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\logagent.exe
2015-07-26 12:32:28 ----A---- C:\Windows\system32\InkEd.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\ifmon.dll
2015-07-26 12:32:28 ----A---- C:\Windows\system32\gpresult.exe
2015-07-26 12:32:28 ----A---- C:\Windows\system32\drivers\watchdog.sys
2015-07-26 12:32:28 ----A---- C:\Windows\system32\cipher.exe
2015-07-26 12:32:27 ----A---- C:\Windows\system32\softkbd.dll
2015-07-26 12:32:27 ----A---- C:\Windows\system32\sendmail.dll
2015-07-26 12:32:27 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2015-07-26 12:32:26 ----A---- C:\Windows\system32\msctfui.dll
2015-07-26 12:32:26 ----A---- C:\Windows\system32\drivers\smb.sys
2015-07-26 12:32:26 ----A---- C:\Windows\system32\drivers\hidusb.sys
2015-07-26 12:32:25 ----A---- C:\Windows\system32\puiapi.dll
2015-07-26 12:32:25 ----A---- C:\Windows\system32\olepro32.dll
2015-07-26 12:32:25 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-07-26 12:32:25 ----A---- C:\Windows\system32\drivers\udfs.sys
2015-07-26 12:32:25 ----A---- C:\Windows\system32\dmsynth.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\wshbth.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\version.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\SLLUA.exe
2015-07-26 12:32:24 ----A---- C:\Windows\system32\msisip.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\mprapi.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\input.dll
2015-07-26 12:32:24 ----A---- C:\Windows\system32\fc.exe
2015-07-26 12:32:24 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\msjint40.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\l2nacp.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\ftp.exe
2015-07-26 12:32:23 ----A---- C:\Windows\system32\fdSSDP.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\eapp3hst.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2015-07-26 12:32:23 ----A---- C:\Windows\system32\dmusic.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\cscdll.dll
2015-07-26 12:32:23 ----A---- C:\Windows\system32\cscapi.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\wsdchngr.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\Storprop.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\SMBHelperClass.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\rasdial.exe
2015-07-26 12:32:22 ----A---- C:\Windows\system32\rasdiag.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\ipconfig.exe
2015-07-26 12:32:22 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\fdWCN.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\eappcfg.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\drivers\rassstp.sys
2015-07-26 12:32:22 ----A---- C:\Windows\system32\dot3cfg.dll
2015-07-26 12:32:22 ----A---- C:\Windows\system32\bthudtask.exe
2015-07-26 12:32:22 ----A---- C:\Windows\system32\bthci.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\slcinst.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\ocsetup.exe
2015-07-26 12:32:21 ----A---- C:\Windows\system32\nslookup.exe
2015-07-26 12:32:21 ----A---- C:\Windows\system32\networkitemfactory.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\hbaapi.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\fdeploy.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\eappgnui.dll
2015-07-26 12:32:21 ----A---- C:\Windows\system32\drivers\hidclass.sys
2015-07-26 12:32:20 ----A---- C:\Windows\system32\PNPXAssoc.dll
2015-07-26 12:32:20 ----A---- C:\Windows\system32\mmcico.dll
2015-07-26 12:32:20 ----A---- C:\Windows\system32\gpupdate.exe
2015-07-26 12:32:20 ----A---- C:\Windows\system32\drivers\nwifi.sys
2015-07-26 12:32:20 ----A---- C:\Windows\system32\drivers\cdrom.sys
2015-07-26 12:32:20 ----A---- C:\Windows\system32\csrstub.exe
2015-07-26 12:32:20 ----A---- C:\Windows\system32\cbsra.exe
2015-07-26 12:32:19 ----A---- C:\Windows\system32\NcdProp.dll
2015-07-26 12:32:19 ----A---- C:\Windows\system32\iscsilog.dll
2015-07-26 12:32:19 ----A---- C:\Windows\system32\bitsigd.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\winrnr.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\vdmdbg.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\slwga.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\odbcconf.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\inetppui.dll
2015-07-26 12:32:18 ----A---- C:\Windows\system32\drivers\dxg.sys
2015-07-26 12:32:18 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2015-07-26 12:32:17 ----A---- C:\Windows\system32\midimap.dll
2015-07-26 12:32:17 ----A---- C:\Windows\system32\drivers\stream.sys
2015-07-26 12:32:16 ----A---- C:\Windows\system32\drivers\rndismpx.sys
2015-07-26 12:32:16 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2015-07-26 12:32:16 ----A---- C:\Windows\system32\drivers\bridge.sys
2015-07-26 12:32:15 ----A---- C:\Windows\system32\drivers\raspppoe.sys
2015-07-26 12:32:14 ----A---- C:\Windows\system32\msimsg.dll
2015-07-26 12:32:14 ----A---- C:\Windows\system32\f3ahvoas.dll
2015-07-26 12:31:29 ----A---- C:\Windows\system32\SmiEngine.dll
2015-07-26 12:31:13 ----A---- C:\Windows\system32\wdscore.dll
2015-07-26 12:31:13 ----A---- C:\Windows\system32\PkgMgr.exe
2015-07-26 12:30:24 ----A---- C:\Windows\system32\drvstore.dll
2015-07-21 09:37:31 ----D---- C:\Users\PC\AppData\Roaming\vlc
2015-07-20 22:21:17 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2015-07-20 22:21:17 ----A---- C:\Windows\system32\PresentationHost.exe
2015-07-20 22:21:17 ----A---- C:\Windows\system32\netfxperf.dll
2015-07-20 22:21:17 ----A---- C:\Windows\system32\mscoree.dll
2015-07-20 21:57:40 ----A---- C:\Windows\system32\srvsvc.dll
2015-07-20 21:57:40 ----A---- C:\Windows\system32\netevent.dll
2015-07-19 17:36:11 ----D---- C:\Windows\system32\WindowsPowerShell
2015-07-19 16:58:52 ----D---- C:\Windows\system32\MRT
2015-07-19 15:28:24 ----A---- C:\Windows\system32\nshhttp.dll
2015-07-19 15:28:22 ----A---- C:\Windows\system32\httpapi.dll
2015-07-19 15:28:22 ----A---- C:\Windows\system32\drivers\http.sys
2015-07-19 15:25:11 ----A---- C:\Windows\system32\winrsmgr.dll
2015-07-19 15:25:03 ----A---- C:\Windows\system32\wsmprovhost.exe
2015-07-19 15:25:03 ----A---- C:\Windows\system32\wsmplpxy.dll
2015-07-19 15:25:03 ----A---- C:\Windows\system32\winrssrv.dll
2015-07-19 15:25:03 ----A---- C:\Windows\system32\winrshost.exe
2015-07-19 15:25:03 ----A---- C:\Windows\system32\winrs.exe
2015-07-19 15:25:02 ----A---- C:\Windows\system32\WsmRes.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wevtfwd.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wecutil.exe
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wecsvc.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\wecapi.dll
2015-07-19 15:25:02 ----A---- C:\Windows\system32\pwrshplugin.dll
2015-07-19 15:24:59 ----A---- C:\Windows\system32\winrm.vbs
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WsmWmiPl.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WsmSvc.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WsmAuto.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2015-07-19 15:24:58 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2015-07-19 15:24:58 ----A---- C:\Windows\system32\winrscmd.dll
2015-07-19 15:22:58 ----A---- C:\Windows\system32\wdigest.dll
2015-07-19 15:22:52 ----A---- C:\Windows\system32\gameux.dll
2015-07-19 15:22:51 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2015-07-19 15:22:51 ----A---- C:\Windows\system32\Apphlpdm.dll
2015-07-19 15:22:03 ----A---- C:\Windows\system32\odbc32.dll
2015-07-19 15:21:58 ----A---- C:\Windows\system32\iphlpsvc.dll
2015-07-19 15:21:58 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-07-19 15:21:53 ----A---- C:\Windows\system32\WMVCORE.DLL
2015-07-19 15:21:51 ----A---- C:\Windows\system32\rrinstaller.exe
2015-07-19 15:21:51 ----A---- C:\Windows\system32\mfpmp.exe
2015-07-19 15:21:51 ----A---- C:\Windows\system32\mferror.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlansvc.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlansec.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlanmsm.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlanhlp.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\wlanapi.dll
2015-07-19 15:21:48 ----A---- C:\Windows\system32\L2SecHC.dll
2015-07-19 15:21:46 ----A---- C:\Windows\system32\asycfilt.dll
2015-07-19 15:21:45 ----A---- C:\Windows\system32\lpk.dll
2015-07-19 15:21:45 ----A---- C:\Windows\system32\fontsub.dll
2015-07-19 15:21:44 ----A---- C:\Windows\system32\dciman32.dll
2015-07-19 15:21:40 ----A---- C:\Windows\system32\drivers\bowser.sys
2015-07-19 15:21:28 ----A---- C:\Windows\system32\mfc40u.dll
2015-07-19 15:21:28 ----A---- C:\Windows\system32\mfc40.dll
2015-07-19 15:21:16 ----A---- C:\Windows\system32\shsvcs.dll
2015-07-19 15:21:07 ----A---- C:\Windows\system32\sdclt.exe
2015-07-19 15:21:05 ----A---- C:\Windows\system32\wkssvc.dll
2015-07-19 15:21:00 ----A---- C:\Windows\system32\rtutils.dll
2015-07-19 15:20:49 ----A---- C:\Windows\system32\inetcomm.dll
2015-07-19 15:20:47 ----A---- C:\Windows\system32\MP4SDECD.DLL
2015-07-19 15:20:10 ----A---- C:\Windows\system32\iccvid.dll
2015-07-19 15:20:03 ----A---- C:\Windows\system32\netiohlp.dll
2015-07-19 15:20:02 ----A---- C:\Windows\system32\TCPSVCS.EXE
2015-07-19 15:20:02 ----A---- C:\Windows\system32\NETSTAT.EXE
2015-07-19 15:20:02 ----A---- C:\Windows\system32\ARP.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\ROUTE.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\MRINFO.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\HOSTNAME.EXE
2015-07-19 15:20:01 ----A---- C:\Windows\system32\finger.exe
2015-07-19 15:18:11 ----A---- C:\Windows\system32\drivers\srv.sys
2015-07-19 15:18:09 ----A---- C:\Windows\system32\spoolsv.exe
2015-07-19 15:17:50 ----A---- C:\Windows\system32\drivers\srvnet.sys
2015-07-19 15:17:50 ----A---- C:\Windows\system32\drivers\srv2.sys
2015-07-19 15:17:42 ----A---- C:\Windows\system32\t2embed.dll
2015-07-19 15:17:38 ----A---- C:\Windows\system32\sbe.dll
2015-07-19 15:17:37 ----A---- C:\Windows\system32\sbeio.dll
2015-07-19 15:17:33 ----A---- C:\Windows\system32\mfc42.dll
2015-07-19 15:17:32 ----A---- C:\Windows\system32\mfc42u.dll
2015-07-19 15:17:00 ----A---- C:\Windows\system32\dnsrslvr.dll
2015-07-19 15:17:00 ----A---- C:\Windows\system32\dnscacheugc.exe
2015-07-19 15:17:00 ----A---- C:\Windows\system32\dnsapi.dll
2015-07-19 15:16:51 ----A---- C:\Windows\system32\wmpmde.dll
2015-07-19 15:16:49 ----A---- C:\Windows\system32\atl.dll
2015-07-19 15:16:43 ----A---- C:\Windows\system32\drivers\dfsc.sys
2015-07-19 15:06:48 ----D---- C:\Windows\system32\vbox
2015-07-19 14:57:04 ----A---- C:\Windows\system32\taskschd.dll
2015-07-19 14:57:04 ----A---- C:\Windows\system32\schedsvc.dll
2015-07-19 14:57:03 ----A---- C:\Windows\system32\wmicmiplugin.dll
2015-07-19 14:57:03 ----A---- C:\Windows\system32\taskeng.exe
2015-07-19 14:57:03 ----A---- C:\Windows\system32\taskcomp.dll
2015-07-19 14:57:00 ----A---- C:\Windows\system32\RMActivate_isv.exe
2015-07-19 14:57:00 ----A---- C:\Windows\system32\RMActivate.exe
2015-07-19 14:56:59 ----A---- C:\Windows\system32\secproc_isv.dll
2015-07-19 14:56:59 ----A---- C:\Windows\system32\secproc.dll
2015-07-19 14:56:59 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2015-07-19 14:56:59 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2015-07-19 14:56:59 ----A---- C:\Windows\system32\msdrm.dll
2015-07-19 14:56:58 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2015-07-19 14:56:58 ----A---- C:\Windows\system32\secproc_ssp.dll
2015-07-19 14:56:48 ----A---- C:\Windows\system32\wmpdxm.dll
2015-07-19 14:50:42 ----A---- C:\Windows\system32\msasn1.dll
2015-07-19 14:50:35 ----A---- C:\Windows\system32\tsgqec.dll
2015-07-19 14:50:35 ----A---- C:\Windows\system32\tscupgrd.exe
2015-07-19 14:50:35 ----A---- C:\Windows\system32\mstsc.exe
2015-07-19 14:50:35 ----A---- C:\Windows\system32\aaclient.dll
2015-07-19 14:49:51 ----N---- C:\Windows\system32\MpSigStub.exe
2015-07-19 14:32:42 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2015-07-19 14:32:39 ----A---- C:\Windows\system32\rastls.dll
2015-07-19 14:32:36 ----A---- C:\Windows\system32\WSDApi.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\tsbyuv.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\msyuv.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\msvidc32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\msrle32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\mciavi32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\iyuv_32.dll
2015-07-19 14:32:23 ----A---- C:\Windows\system32\avifil32.dll
2015-07-19 14:32:22 ----A---- C:\Windows\system32\msvfw32.dll
2015-07-19 14:32:09 ----A---- C:\Windows\system32\unregmp2.exe
2015-07-19 14:31:46 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2015-07-19 14:16:02 ----A---- C:\Windows\system32\cabview.dll
2015-07-19 13:53:57 ----D---- C:\ProgramData\AVAST Software
2015-07-19 13:18:39 ----D---- C:\Users\PC\AppData\Roaming\Adobe
2015-07-19 06:51:36 ----A---- C:\Pass.txt
2015-07-19 05:53:44 ----ASH---- C:\pagefile.sys
2015-07-18 21:15:16 ----D---- C:\Users\PC\AppData\Roaming\ATI
2015-07-18 21:15:08 ----D---- C:\Users\PC\AppData\Roaming\Symantec
2015-07-18 21:14:48 ----D---- C:\Users\PC\AppData\Roaming\Macromedia
2015-07-18 21:14:22 ----D---- C:\Users\PC\AppData\Roaming\Identities
2015-07-18 21:11:54 ----D---- C:\ProgramData\Adobe
2015-07-18 21:11:46 ----D---- C:\Program Files\Common Files\Adobe
2015-07-18 21:11:46 ----D---- C:\Program Files\Adobe
2015-07-18 21:07:42 ----SD---- C:\Users\PC\AppData\Roaming\Microsoft
2015-07-18 21:07:42 ----D---- C:\Users\PC\AppData\Roaming\Media Center Programs
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Templates
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Start Menu
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Favorites
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Documents
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Desktop
2015-07-18 21:01:06 ----SHD---- C:\ProgramData\Application Data
2015-07-18 21:01:05 ----SHD---- C:\Documents and Settings
2015-07-18 21:00:21 ----SHD---- C:\System Volume Information
======List of files/folders modified in the last 1 month======
2015-08-03 06:11:17 ----D---- C:\Windows\Prefetch
2015-08-03 06:11:04 ----RD---- C:\Program Files
2015-08-02 09:45:44 ----A---- C:\Windows\system32\acovcnt.exe
2015-08-02 09:07:07 ----D---- C:\Windows\system32\Tasks
2015-08-02 09:06:46 ----D---- C:\Windows\system32\drivers
2015-08-02 09:06:38 ----D---- C:\Windows\System32
2015-08-02 09:06:36 ----D---- C:\Windows
2015-08-02 07:56:40 ----A---- C:\Windows\system.ini
2015-08-02 07:56:26 ----D---- C:\Windows\system32\drivers\etc
2015-08-02 07:48:56 ----D---- C:\Windows\AppPatch
2015-08-02 07:48:51 ----D---- C:\Program Files\Common Files
2015-08-02 06:52:10 ----SD---- C:\ProgramData\Microsoft
2015-08-01 06:30:16 ----D---- C:\Windows\inf
2015-08-01 06:30:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-30 13:04:45 ----SHD---- C:\Windows\Installer
2015-07-30 12:25:16 ----D---- C:\Windows\Microsoft.NET
2015-07-29 19:55:24 ----D---- C:\Windows\rescache
2015-07-29 13:19:46 ----D---- C:\Windows\system32\catroot
2015-07-29 13:18:16 ----D---- C:\Windows\winsxs
2015-07-29 13:06:38 ----D---- C:\Windows\system32\en-US
2015-07-29 13:02:45 ----D---- C:\Windows\system32\catroot2
2015-07-29 12:39:31 ----D---- C:\Program Files\Internet Explorer
2015-07-29 11:20:07 ----RSD---- C:\Windows\assembly
2015-07-29 10:30:13 ----D---- C:\Windows\system32\cs-CZ
2015-07-29 10:30:10 ----D---- C:\Windows\system32\wbem
2015-07-29 10:30:09 ----D---- C:\Windows\system32\tr-TR
2015-07-29 10:30:09 ----D---- C:\Windows\system32\pt-PT
2015-07-29 10:30:09 ----D---- C:\Windows\system32\fr-FR
2015-07-29 10:30:09 ----D---- C:\Windows\system32\el-GR
2015-07-29 10:30:09 ----D---- C:\Windows\system32\de-DE
2015-07-29 10:30:08 ----D---- C:\Windows\system32\zh-TW
2015-07-29 10:30:08 ----D---- C:\Windows\system32\zh-HK
2015-07-29 10:30:08 ----D---- C:\Windows\system32\zh-CN
2015-07-29 10:30:08 ----D---- C:\Windows\system32\uk-UA
2015-07-29 10:30:08 ----D---- C:\Windows\system32\th-TH
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sv-SE
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sr-Latn-CS
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sl-SI
2015-07-29 10:30:08 ----D---- C:\Windows\system32\sk-SK
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ru-RU
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ro-RO
2015-07-29 10:30:08 ----D---- C:\Windows\system32\pt-BR
2015-07-29 10:30:08 ----D---- C:\Windows\system32\pl-PL
2015-07-29 10:30:08 ----D---- C:\Windows\system32\nl-NL
2015-07-29 10:30:08 ----D---- C:\Windows\system32\nb-NO
2015-07-29 10:30:08 ----D---- C:\Windows\system32\lv-LV
2015-07-29 10:30:08 ----D---- C:\Windows\system32\lt-LT
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ko-KR
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ja-JP
2015-07-29 10:30:08 ----D---- C:\Windows\system32\it-IT
2015-07-29 10:30:08 ----D---- C:\Windows\system32\hu-HU
2015-07-29 10:30:08 ----D---- C:\Windows\system32\hr-HR
2015-07-29 10:30:08 ----D---- C:\Windows\system32\he-IL
2015-07-29 10:30:08 ----D---- C:\Windows\system32\fi-FI
2015-07-29 10:30:08 ----D---- C:\Windows\system32\et-EE
2015-07-29 10:30:08 ----D---- C:\Windows\system32\es-ES
2015-07-29 10:30:08 ----D---- C:\Windows\system32\da-DK
2015-07-29 10:30:08 ----D---- C:\Windows\system32\bg-BG
2015-07-29 10:30:08 ----D---- C:\Windows\system32\ar-SA
2015-07-29 10:30:02 ----D---- C:\Windows\system32\XPSViewer
2015-07-29 10:30:02 ----D---- C:\Program Files\Windows Journal
2015-07-29 10:30:01 ----RSD---- C:\Windows\Fonts
2015-07-29 10:29:59 ----RD---- C:\Windows\Offline Web Pages
2015-07-29 10:29:59 ----D---- C:\Windows\system32\migration
2015-07-29 10:29:59 ----D---- C:\Windows\PolicyDefinitions
2015-07-29 10:29:58 ----SD---- C:\Windows\Downloaded Program Files
2015-07-29 10:29:57 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-07-29 10:29:34 ----D---- C:\Windows\system32\drivers\UMDF
2015-07-29 10:29:07 ----D---- C:\Windows\system32\RTCOM
2015-07-29 08:35:25 ----D---- C:\Windows\Logs
2015-07-29 08:12:17 ----D---- C:\Windows\ehome
2015-07-28 04:42:37 ----D---- C:\Program Files\Windows Mail
2015-07-28 04:42:33 ----D---- C:\Program Files\Windows Media Player
2015-07-28 04:42:33 ----D---- C:\Program Files\Common Files\System
2015-07-26 15:00:08 ----D---- C:\Program Files\Microsoft.NET
2015-07-26 14:26:50 ----D---- C:\Boot
2015-07-26 14:19:40 ----D---- C:\Program Files\Windows Sidebar
2015-07-26 14:19:40 ----D---- C:\Program Files\Windows Calendar
2015-07-26 14:19:40 ----D---- C:\Program Files\Movie Maker
2015-07-26 14:19:39 ----D---- C:\Program Files\Windows Photo Gallery
2015-07-26 14:19:39 ----D---- C:\Program Files\Windows Collaboration
2015-07-26 14:19:37 ----D---- C:\Windows\servicing
2015-07-26 14:19:37 ----D---- C:\Program Files\Windows Defender
2015-07-26 14:19:34 ----D---- C:\Windows\system32\oobe
2015-07-26 14:19:34 ----D---- C:\Windows\IME
2015-07-26 14:19:33 ----D---- C:\Windows\system32\setup
2015-07-26 14:19:33 ----D---- C:\Windows\system32\cs
2015-07-26 14:19:33 ----D---- C:\Windows\system32\AdvancedInstallers
2015-07-26 14:19:32 ----D---- C:\Windows\system32\SLUI
2015-07-26 14:19:31 ----D---- C:\Windows\system32\manifeststore
2015-07-26 14:19:30 ----D---- C:\Windows\system32\migwiz
2015-07-26 14:19:15 ----D---- C:\Windows\system32\Boot
2015-07-26 14:07:10 ----A---- C:\Windows\fonts\GlobalUserInterface.CompositeFont
2015-07-26 12:13:42 ----D---- C:\Windows\WindowsMobile
2015-07-24 22:05:11 ----D---- C:\Windows\system32\NDF
2015-07-20 22:29:52 ----D---- C:\Windows\system32\en
2015-07-20 22:29:52 ----D---- C:\Windows\en-US
2015-07-20 22:29:46 ----D---- C:\Windows\system32\drivers\en-US
2015-07-20 06:32:24 ----D---- C:\Windows\system32\WDI
2015-07-19 16:58:52 ----D---- C:\Windows\Debug
2015-07-19 16:20:31 ----D---- C:\Windows\Tasks
2015-07-19 13:59:07 ----D---- C:\Windows\SoftwareDistribution
2015-07-19 13:53:57 ----D---- C:\ProgramData
2015-07-19 13:14:29 ----D---- C:\Program Files\Common Files\Symantec Shared
2015-07-19 13:08:54 ----D---- C:\ProgramData\Symantec
2015-07-18 21:07:41 ----RD---- C:\Users
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ahcix86s;ahcix86s; C:\Windows\system32\DRIVERS\ahcix86s.sys [2008-05-27 173576]
R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2007-08-11 29752]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-08-02 49776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-08-02 208664]
R0 AtiPcie;ATI PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2008-04-28 14352]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2008-05-29 15416]
R0 ngvss;ngvss; C:\Windows\system32\drivers\ngvss.sys [2015-08-02 95112]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2015-08-02 55200]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-08-02 788784]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-08-02 433264]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-08-02 24016]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-08-02 76000]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2008-02-16 46592]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-08-02 220752]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-03-21 1203776]
R3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2015-08-02 161472]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-01-13 954368]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-04-30 3551232]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-06-17 30208]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-05-13 81960]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2008-05-13 100392]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2008-01-29 29736]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2008-05-13 17320]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-06-17 2153688]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-06-03 15928]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-21 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-15 7680]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-02 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-07 196400]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2015-08-02 57888]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-21 508416]
S3 catchme;catchme; \??\C:\Users\PC\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-05-02 122368]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2007-05-18 73728]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2008-03-18 13312]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-03 94208]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-04-29 671744]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-08-02 146600]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-05-27 522792]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 SafeRemove;AMD Safely Remove Disk Drive; C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe [2008-07-07 147456]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-08-02 3218624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-27 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2014-04-11 772296]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Re: log - (použit ComboFix) - poraďte - nerozumim
Příště (teda doufám, že nebude žádné příště - tedy žádný problém) poučena budu vzorná tazatelka s detailním popisem mé neschopnosti. 
Re: log - (použit ComboFix) - poraďte - nerozumim
V klidu, zas to nemusite s tou sebekritikou tak prehanet
Nejste zdaleka prvni ani posledni, kdo nejdriv konal a az pak zjistil, ze existuji lepsi moznosti
Dulezite je se poucit a nedelat stejne chyby. Stava se to zridka, ale CF muze zborit system 
Mrknem mu na zoubek, nebo sroubek
Nekde se muze neco skryvat, kdyz to odpalilo antivir.
Stahnete crystal disk info http://sourceforge.jp/projects/crystald ... 5_0_0.zip/
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)
Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) http://forum.viry.cz/viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Mrknem mu na zoubek, nebo sroubek
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: log - (použit ComboFix) - poraďte - nerozumim
Zdravím, už jsem to..
tak CrystalDiskInfo - stáhnuto, zapnuto a... píše jen: Disk nenalezen
.............................................................................................................................................
AdwCleaner :
# AdwCleaner v4.208 - Log vytvořen 05/08/2015 v 06:55:12
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-08-01.1 [Server]
# Operační system : Windows Vista (TM) Home Premium Service Pack 2 (x86)
# Uživatelské jméno : PC - PC-PC
# Spuštěno z : C:\Users\PC\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění
***** [ Služby ] *****
***** [ Soubory / Složky ] *****
***** [ Naplánované úlohy ] *****
***** [ Zástupci ] *****
***** [ Registry ] *****
Klíč Smazáno : HKLM\SOFTWARE\DeviceVM
***** [ Prohlížeče ] *****
-\\ Internet Explorer v9.0.8112.16669
-\\ Google Chrome v
*************************
AdwCleaner[R0].txt - [786 bytů] - [05/08/2015 06:52:35]
AdwCleaner[S0].txt - [711 bytů] - [05/08/2015 06:55:12]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [768 bytů] ##########
.............................................................................................................................................
Malwarebytes Anti-Malware :
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 5.8.2015
Čas skenování: 9:32:22
Protokol: log.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.08.05.02
Databáze rootkitů: v2015.08.04.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows Vista Service Pack 2
CPU: x86
Souborový systém: NTFS
Uživatel: PC
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 455857
Uplynulý čas: 2 hod, 3 min, 14 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
tak CrystalDiskInfo - stáhnuto, zapnuto a... píše jen: Disk nenalezen
.............................................................................................................................................
AdwCleaner :
# AdwCleaner v4.208 - Log vytvořen 05/08/2015 v 06:55:12
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-08-01.1 [Server]
# Operační system : Windows Vista (TM) Home Premium Service Pack 2 (x86)
# Uživatelské jméno : PC - PC-PC
# Spuštěno z : C:\Users\PC\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění
***** [ Služby ] *****
***** [ Soubory / Složky ] *****
***** [ Naplánované úlohy ] *****
***** [ Zástupci ] *****
***** [ Registry ] *****
Klíč Smazáno : HKLM\SOFTWARE\DeviceVM
***** [ Prohlížeče ] *****
-\\ Internet Explorer v9.0.8112.16669
-\\ Google Chrome v
*************************
AdwCleaner[R0].txt - [786 bytů] - [05/08/2015 06:52:35]
AdwCleaner[S0].txt - [711 bytů] - [05/08/2015 06:55:12]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [768 bytů] ##########
.............................................................................................................................................
Malwarebytes Anti-Malware :
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 5.8.2015
Čas skenování: 9:32:22
Protokol: log.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.08.05.02
Databáze rootkitů: v2015.08.04.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows Vista Service Pack 2
CPU: x86
Souborový systém: NTFS
Uživatel: PC
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 455857
Uplynulý čas: 2 hod, 3 min, 14 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Re: log - (použit ComboFix) - poraďte - nerozumim
Kód: Vybrat vše
KillAll::
Registry::
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
Reboot::Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev CFScript a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Pretahntete mysi tento vytvoreny textovy dokument nad ikonu ComboFix a pustte.
ComboFix by se mel spustit a vykonat prikazy.
Az skonci (muze dojit k restartu pc), mel by se objevit novy log, ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: log - (použit ComboFix) - poraďte - nerozumim
ComboFix 15-08-03.01 - PC 05.08.2015 20:52:51.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2814.1929 [GMT 2:00]
Spuštěný z: c:\users\PC\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\PC\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-05 do 2015-08-05 )))))))))))))))))))))))))))))))
.
.
2015-08-05 19:03 . 2015-08-05 19:03 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-08-05 11:24 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{21F19F52-4F79-4EFD-8059-D6EFA3AF2BF6}\mpengine.dll
2015-08-05 10:13 . 2015-08-05 10:27 -------- d-----w- C:\snapshots
2015-08-05 05:14 . 2015-08-05 05:14 -------- d-----w- c:\programdata\Malwarebytes
2015-08-05 04:52 . 2015-08-05 04:55 -------- d-----w- C:\AdwCleaner
2015-08-03 04:11 . 2015-08-03 04:11 -------- d-----w- C:\rsit
2015-08-03 04:11 . 2015-08-03 04:11 -------- d-----w- c:\program files\trend micro
2015-08-02 07:06 . 2015-08-02 07:06 57888 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2015-08-02 07:06 . 2015-08-02 07:06 161472 ----a-w- c:\windows\system32\drivers\aswStmXP.sys
2015-08-02 07:06 . 2015-08-02 07:06 433264 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-08-02 07:06 . 2015-08-02 07:06 208664 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-08-02 07:06 . 2015-08-02 07:06 76000 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-08-02 07:06 . 2015-08-02 07:06 49776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-08-02 07:06 . 2015-08-02 07:06 55200 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2015-08-02 07:06 . 2015-08-02 07:06 24016 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-08-02 07:06 . 2015-08-02 07:06 788784 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-08-02 07:06 . 2015-08-02 07:06 95112 ----a-w- c:\windows\system32\drivers\ngvss.sys
2015-08-02 07:06 . 2015-08-02 07:06 313472 ----a-w- c:\windows\system32\aswBoot.exe
2015-08-02 07:06 . 2015-08-02 07:06 43112 ----a-w- c:\windows\avastSS.scr
2015-08-02 06:54 . 2015-08-02 06:54 -------- d-----w- c:\program files\AVAST Software
2015-07-29 11:06 . 2015-07-29 11:06 -------- d-----w- c:\windows\Migration
2015-07-29 10:57 . 2015-07-29 10:57 -------- d-----w- c:\program files\7-Zip
2015-07-29 10:39 . 2011-03-12 21:55 876032 ----a-w- c:\windows\system32\XpsPrint.dll
2015-07-29 10:39 . 2015-07-03 05:19 474624 ----a-w- c:\program files\Internet Explorer\ieinstal.exe
2015-07-29 10:39 . 2015-07-03 05:18 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-29 08:30 . 2015-07-29 08:30 -------- d-----w- c:\program files\Windows Portable Devices
2015-07-29 08:24 . 2015-01-29 01:35 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2015-07-29 08:22 . 2015-01-29 01:35 975360 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-07-29 08:21 . 2015-06-25 02:57 2066432 ----a-w- c:\windows\system32\win32k.sys
2015-07-29 08:18 . 2015-07-14 16:02 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-29 08:18 . 2015-07-14 14:23 296960 ----a-w- c:\windows\system32\atmfd.dll
2015-07-29 08:17 . 2015-07-03 16:04 1316864 ----a-w- c:\windows\system32\ole32.dll
2015-07-29 08:01 . 2014-06-26 22:17 99480 ----a-w- c:\windows\system32\infocardapi.dll
2015-07-29 08:01 . 2014-06-26 22:17 8856 ----a-w- c:\windows\system32\icardres.dll
2015-07-29 08:01 . 2014-06-26 22:17 619664 ----a-w- c:\windows\system32\icardagt.exe
2015-07-29 08:01 . 2014-06-06 04:28 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-07-29 08:00 . 2015-03-09 01:01 1249280 ----a-w- c:\windows\system32\msxml3.dll
2015-07-29 08:00 . 2014-08-27 00:55 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-07-29 07:59 . 2014-06-15 22:18 1131664 ----a-w- c:\windows\system32\dfshim.dll
2015-07-29 07:59 . 2014-06-13 18:22 81560 ----a-w- c:\windows\system32\mscories.dll
2015-07-29 07:59 . 2014-06-13 18:22 156824 ----a-w- c:\windows\system32\mscorier.dll
2015-07-29 07:51 . 2015-06-17 16:50 2264576 ----a-w- c:\windows\system32\msi.dll
2015-07-29 07:51 . 2015-06-17 15:09 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-07-29 07:51 . 2014-06-02 10:31 332800 ----a-w- c:\windows\system32\msihnd.dll
2015-07-29 07:51 . 2014-06-02 10:30 1993728 ----a-w- c:\windows\system32\authui.dll
2015-07-29 07:51 . 2014-06-02 10:30 33280 ----a-w- c:\windows\system32\appinfo.dll
2015-07-29 07:51 . 2014-06-02 08:56 82432 ----a-w- c:\windows\system32\consent.exe
2015-07-29 07:44 . 2014-10-10 01:00 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-29 07:44 . 2014-10-09 23:22 619520 ----a-w- c:\windows\system32\adtschema.dll
2015-07-29 07:44 . 2014-10-10 01:01 449536 ----a-w- c:\windows\system32\termsrv.dll
2015-07-29 07:42 . 2014-12-19 00:25 115200 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2015-07-29 07:41 . 2015-06-12 16:01 298496 ----a-w- c:\windows\system32\gdi32.dll
2015-07-29 07:40 . 2014-11-04 00:19 2048 ----a-w- c:\windows\system32\tzres.dll
2015-07-29 07:35 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2015-07-29 07:35 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2015-07-29 07:35 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2015-07-29 07:24 . 2015-04-24 15:54 532480 ----a-w- c:\windows\system32\comctl32.dll
2015-07-29 07:10 . 2015-03-05 02:32 244152 ----a-w- c:\windows\system32\clfs.sys
2015-07-29 07:10 . 2015-03-05 02:23 57344 ----a-w- c:\windows\system32\clfsw32.dll
2015-07-29 07:09 . 2015-03-14 02:21 1205168 ----a-w- c:\windows\system32\ntdll.dll
2015-07-29 07:09 . 2015-01-09 02:04 49152 ----a-w- c:\windows\system32\csrsrv.dll
2015-07-29 07:09 . 2015-01-09 00:18 64000 ----a-w- c:\windows\system32\smss.exe
2015-07-29 07:09 . 2015-03-13 01:51 3604920 ----a-w- c:\windows\system32\ntkrnlpa.exe
2015-07-29 07:09 . 2015-03-13 01:51 3552184 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-07-29 07:07 . 2014-10-24 01:04 67072 ----a-w- c:\windows\system32\packager.dll
2015-07-29 06:57 . 2015-04-19 21:24 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2015-07-29 06:57 . 2015-04-19 21:24 189952 ----a-w- c:\windows\system32\d3d10core.dll
2015-07-29 06:57 . 2015-04-19 21:24 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2015-07-29 06:57 . 2015-04-19 20:18 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2015-07-29 06:57 . 2015-04-19 20:13 682496 ----a-w- c:\windows\system32\d2d1.dll
2015-07-29 06:57 . 2015-04-19 21:24 1029120 ----a-w- c:\windows\system32\d3d10.dll
2015-07-29 06:57 . 2015-04-19 20:19 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2015-07-29 06:57 . 2015-04-19 20:12 1072640 ----a-w- c:\windows\system32\DWrite.dll
2015-07-29 06:57 . 2015-04-19 20:12 801792 ----a-w- c:\windows\system32\FntCache.dll
2015-07-29 06:56 . 2014-11-26 02:05 564224 ----a-w- c:\windows\system32\oleaut32.dll
2015-07-29 06:50 . 2015-06-12 14:27 305152 ----a-w- c:\program files\Internet Explorer\ieuser.exe
2015-07-29 06:48 . 2015-04-30 13:14 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 06:44 . 2012-02-01 13:58 47104 ----a-w- c:\program files\Windows Journal\PDIALOG.exe
2015-07-29 06:44 . 2015-04-08 01:11 939008 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2015-07-29 06:44 . 2015-04-07 23:35 1850880 ----a-w- c:\program files\Windows Journal\Journal.exe
2015-07-29 06:44 . 2012-02-01 15:10 1404928 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\InkObj.dll
2015-07-29 06:44 . 2015-04-08 01:11 1219584 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2015-07-29 06:44 . 2015-04-08 01:11 985088 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2015-07-29 06:44 . 2015-04-08 01:11 967168 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2015-07-29 06:38 . 2015-01-21 02:02 807936 ----a-w- c:\windows\system32\msctf.dll
2015-07-29 06:37 . 2014-08-12 02:25 729600 ----a-w- c:\windows\system32\IMJP10K.DLL
2015-07-29 06:33 . 2015-07-29 06:33 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2015-07-29 06:32 . 2015-07-29 06:32 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2015-07-29 06:32 . 2015-07-29 06:32 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2015-07-29 06:19 . 2014-10-03 01:18 274432 ----a-w- c:\windows\system32\AUDIOKSE.dll
2015-07-29 06:19 . 2014-10-03 01:17 170496 ----a-w- c:\windows\system32\EncDump.dll
2015-07-29 06:19 . 2014-10-03 01:17 396800 ----a-w- c:\windows\system32\AudioEng.dll
2015-07-29 06:19 . 2014-10-03 01:17 316928 ----a-w- c:\windows\system32\audiosrv.dll
2015-07-29 06:13 . 2014-12-06 03:14 48640 ----a-w- c:\windows\system32\nlaapi.dll
2015-07-29 06:13 . 2014-12-06 03:14 174080 ----a-w- c:\windows\system32\nlasvc.dll
2015-07-29 06:13 . 2014-12-06 03:14 93184 ----a-w- c:\windows\system32\ncsi.dll
2015-07-27 17:38 . 2015-05-31 08:11 225792 ----a-w- c:\windows\system32\cewmdm.dll
2015-07-27 17:32 . 2015-04-10 23:22 279552 ----a-w- c:\windows\system32\services.exe
2015-07-27 17:19 . 2015-06-27 14:21 217088 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-27 17:19 . 2015-06-27 14:21 81408 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-27 17:19 . 2015-01-09 00:17 107008 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-07-27 17:19 . 2015-06-27 16:02 218112 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-27 17:19 . 2015-06-27 16:03 783872 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-27 17:19 . 2015-06-27 16:02 501248 ----a-w- c:\windows\system32\kerberos.dll
2015-07-27 17:19 . 2015-06-27 16:01 801280 ----a-w- c:\windows\system32\advapi32.dll
2015-07-27 17:19 . 2015-06-12 13:13 440768 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-27 17:19 . 2015-04-30 16:03 279040 ----a-w- c:\windows\system32\schannel.dll
2015-07-27 17:19 . 2014-10-10 01:00 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-27 17:18 . 2014-09-04 23:27 143360 ----a-w- c:\windows\system32\drivers\fastfat.sys
2015-07-27 17:12 . 2014-12-08 01:59 306176 ----a-w- c:\windows\system32\scesrv.dll
2015-07-27 17:11 . 2012-07-26 02:46 9728 ----a-w- c:\windows\system32\Wdfres.dll
2015-07-27 17:11 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll
2015-07-27 17:11 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll
2015-07-27 17:11 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2015-07-27 17:11 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2015-07-27 17:11 . 2009-07-14 12:12 16896 ----a-w- c:\windows\system32\winusb.dll
2015-07-27 17:11 . 2012-07-26 03:39 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2015-07-27 17:11 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe
2015-07-27 17:11 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll
2015-07-27 17:11 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2015-07-27 17:10 . 2015-05-04 22:50 7680 ----a-w- c:\windows\system32\spwmp.dll
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\msdxm.ocx
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\dxmasf.dll
2015-07-27 17:10 . 2015-05-04 21:21 107520 ----a-w- c:\program files\Windows Media Player\wmpconfig.exe
2015-07-27 17:10 . 2015-05-04 21:21 168960 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-05 19:06 . 2008-09-10 05:59 45056 ----a-w- c:\windows\system32\acovcnt.exe
2015-07-29 06:34 . 2015-07-29 06:34 203776 ----a-w- c:\windows\system32\webcheck.dll
2015-07-29 06:33 . 2015-07-29 06:33 4096 ----a-w- c:\windows\system32\drivers\cs-CZ\dxgkrnl.sys.mui
2015-06-12 16:01 . 2015-07-29 06:50 54272 ----a-w- c:\windows\apppatch\iebrshim.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-08-02 07:06 695096 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2008-07-15 7651328]
"Windows Mobile-based device management"="c:\windows\WindowsMobile\wmdSync.exe" [2008-01-21 215552]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-08-02 6109776]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-5-27 752168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-09-10 05:55 47672 ----a-w- c:\windows\AsScrProlog.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-09-10 05:56 33136 ----a-w- c:\windows\ASScrPro.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-07-19 02:52 104936 ----a-w- c:\program files\CyberLink\Power2Go\CLMLSvc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
2008-01-12 05:40 98304 ----a-w- c:\program files\ATK Hotkey\HControlUser.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
2008-06-14 01:11 210216 ----a-w- c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2008-06-13 05:52 6183456 ----a-w- c:\windows\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
2007-11-20 10:15 1826816 ----a-w- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2008-01-21 19:17 61440 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
2007-12-07 02:12 1029416 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 17:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
2015-08-05 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.asus.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.0.0.138
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2015-08-05 21:07
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
c:\windows\TEMP\_avast_\unp209760181.tmp 828104 bytes executable
C:\ADSM_PData_0150
.
sken byl úspešně dokončen
skryté soubory: 2
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(3832)
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\ASUS\SmartLogon\sensorsrv.exe
c:\windows\system32\agrsmsvc.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\ASUS\ASUS CopyProtect\aspg.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\windows\System32\ACEngSvr.exe
c:\program files\AMD\Safely Remove Disk\SafeRemoveService.exe
c:\program files\ASUS\NB Probe\SPM\spmgr.exe
c:\windows\system32\SafeRemoveDialog.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\ATK Hotkey\WDC.exe
c:\windows\servicing\TrustedInstaller.exe
c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
c:\windows\system32\conime.exe
c:\windows\system32\wbem\unsecapp.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Celkový čas: 2015-08-05 21:13:16 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-08-05 19:13
ComboFix2.txt 2015-08-02 05:59
.
Před spuštěním: Volných bajtů: 89 898 233 856
Po spuštění: Volných bajtů: 90 003 197 952
.
- - End Of File - - 2873FD28265993CD09D469ACE4021606
64B1E91C5C6C2157642651010728F90F
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2814.1929 [GMT 2:00]
Spuštěný z: c:\users\PC\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\PC\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-07-05 do 2015-08-05 )))))))))))))))))))))))))))))))
.
.
2015-08-05 19:03 . 2015-08-05 19:03 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-08-05 11:24 . 2015-07-15 01:33 9252608 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{21F19F52-4F79-4EFD-8059-D6EFA3AF2BF6}\mpengine.dll
2015-08-05 10:13 . 2015-08-05 10:27 -------- d-----w- C:\snapshots
2015-08-05 05:14 . 2015-08-05 05:14 -------- d-----w- c:\programdata\Malwarebytes
2015-08-05 04:52 . 2015-08-05 04:55 -------- d-----w- C:\AdwCleaner
2015-08-03 04:11 . 2015-08-03 04:11 -------- d-----w- C:\rsit
2015-08-03 04:11 . 2015-08-03 04:11 -------- d-----w- c:\program files\trend micro
2015-08-02 07:06 . 2015-08-02 07:06 57888 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2015-08-02 07:06 . 2015-08-02 07:06 161472 ----a-w- c:\windows\system32\drivers\aswStmXP.sys
2015-08-02 07:06 . 2015-08-02 07:06 433264 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-08-02 07:06 . 2015-08-02 07:06 208664 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-08-02 07:06 . 2015-08-02 07:06 76000 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-08-02 07:06 . 2015-08-02 07:06 49776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-08-02 07:06 . 2015-08-02 07:06 55200 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2015-08-02 07:06 . 2015-08-02 07:06 24016 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-08-02 07:06 . 2015-08-02 07:06 788784 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-08-02 07:06 . 2015-08-02 07:06 95112 ----a-w- c:\windows\system32\drivers\ngvss.sys
2015-08-02 07:06 . 2015-08-02 07:06 313472 ----a-w- c:\windows\system32\aswBoot.exe
2015-08-02 07:06 . 2015-08-02 07:06 43112 ----a-w- c:\windows\avastSS.scr
2015-08-02 06:54 . 2015-08-02 06:54 -------- d-----w- c:\program files\AVAST Software
2015-07-29 11:06 . 2015-07-29 11:06 -------- d-----w- c:\windows\Migration
2015-07-29 10:57 . 2015-07-29 10:57 -------- d-----w- c:\program files\7-Zip
2015-07-29 10:39 . 2011-03-12 21:55 876032 ----a-w- c:\windows\system32\XpsPrint.dll
2015-07-29 10:39 . 2015-07-03 05:19 474624 ----a-w- c:\program files\Internet Explorer\ieinstal.exe
2015-07-29 10:39 . 2015-07-03 05:18 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2015-07-29 08:30 . 2015-07-29 08:30 -------- d-----w- c:\program files\Windows Portable Devices
2015-07-29 08:24 . 2015-01-29 01:35 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2015-07-29 08:22 . 2015-01-29 01:35 975360 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-07-29 08:21 . 2015-06-25 02:57 2066432 ----a-w- c:\windows\system32\win32k.sys
2015-07-29 08:18 . 2015-07-14 16:02 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-07-29 08:18 . 2015-07-14 14:23 296960 ----a-w- c:\windows\system32\atmfd.dll
2015-07-29 08:17 . 2015-07-03 16:04 1316864 ----a-w- c:\windows\system32\ole32.dll
2015-07-29 08:01 . 2014-06-26 22:17 99480 ----a-w- c:\windows\system32\infocardapi.dll
2015-07-29 08:01 . 2014-06-26 22:17 8856 ----a-w- c:\windows\system32\icardres.dll
2015-07-29 08:01 . 2014-06-26 22:17 619664 ----a-w- c:\windows\system32\icardagt.exe
2015-07-29 08:01 . 2014-06-06 04:28 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-07-29 08:00 . 2015-03-09 01:01 1249280 ----a-w- c:\windows\system32\msxml3.dll
2015-07-29 08:00 . 2014-08-27 00:55 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-07-29 07:59 . 2014-06-15 22:18 1131664 ----a-w- c:\windows\system32\dfshim.dll
2015-07-29 07:59 . 2014-06-13 18:22 81560 ----a-w- c:\windows\system32\mscories.dll
2015-07-29 07:59 . 2014-06-13 18:22 156824 ----a-w- c:\windows\system32\mscorier.dll
2015-07-29 07:51 . 2015-06-17 16:50 2264576 ----a-w- c:\windows\system32\msi.dll
2015-07-29 07:51 . 2015-06-17 15:09 73216 ----a-w- c:\windows\system32\msiexec.exe
2015-07-29 07:51 . 2014-06-02 10:31 332800 ----a-w- c:\windows\system32\msihnd.dll
2015-07-29 07:51 . 2014-06-02 10:30 1993728 ----a-w- c:\windows\system32\authui.dll
2015-07-29 07:51 . 2014-06-02 10:30 33280 ----a-w- c:\windows\system32\appinfo.dll
2015-07-29 07:51 . 2014-06-02 08:56 82432 ----a-w- c:\windows\system32\consent.exe
2015-07-29 07:44 . 2014-10-10 01:00 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-07-29 07:44 . 2014-10-09 23:22 619520 ----a-w- c:\windows\system32\adtschema.dll
2015-07-29 07:44 . 2014-10-10 01:01 449536 ----a-w- c:\windows\system32\termsrv.dll
2015-07-29 07:42 . 2014-12-19 00:25 115200 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2015-07-29 07:41 . 2015-06-12 16:01 298496 ----a-w- c:\windows\system32\gdi32.dll
2015-07-29 07:40 . 2014-11-04 00:19 2048 ----a-w- c:\windows\system32\tzres.dll
2015-07-29 07:35 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2015-07-29 07:35 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2015-07-29 07:35 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2015-07-29 07:24 . 2015-04-24 15:54 532480 ----a-w- c:\windows\system32\comctl32.dll
2015-07-29 07:10 . 2015-03-05 02:32 244152 ----a-w- c:\windows\system32\clfs.sys
2015-07-29 07:10 . 2015-03-05 02:23 57344 ----a-w- c:\windows\system32\clfsw32.dll
2015-07-29 07:09 . 2015-03-14 02:21 1205168 ----a-w- c:\windows\system32\ntdll.dll
2015-07-29 07:09 . 2015-01-09 02:04 49152 ----a-w- c:\windows\system32\csrsrv.dll
2015-07-29 07:09 . 2015-01-09 00:18 64000 ----a-w- c:\windows\system32\smss.exe
2015-07-29 07:09 . 2015-03-13 01:51 3604920 ----a-w- c:\windows\system32\ntkrnlpa.exe
2015-07-29 07:09 . 2015-03-13 01:51 3552184 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-07-29 07:07 . 2014-10-24 01:04 67072 ----a-w- c:\windows\system32\packager.dll
2015-07-29 06:57 . 2015-04-19 21:24 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2015-07-29 06:57 . 2015-04-19 21:24 189952 ----a-w- c:\windows\system32\d3d10core.dll
2015-07-29 06:57 . 2015-04-19 21:24 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2015-07-29 06:57 . 2015-04-19 20:18 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2015-07-29 06:57 . 2015-04-19 20:13 682496 ----a-w- c:\windows\system32\d2d1.dll
2015-07-29 06:57 . 2015-04-19 21:24 1029120 ----a-w- c:\windows\system32\d3d10.dll
2015-07-29 06:57 . 2015-04-19 20:19 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2015-07-29 06:57 . 2015-04-19 20:12 1072640 ----a-w- c:\windows\system32\DWrite.dll
2015-07-29 06:57 . 2015-04-19 20:12 801792 ----a-w- c:\windows\system32\FntCache.dll
2015-07-29 06:56 . 2014-11-26 02:05 564224 ----a-w- c:\windows\system32\oleaut32.dll
2015-07-29 06:50 . 2015-06-12 14:27 305152 ----a-w- c:\program files\Internet Explorer\ieuser.exe
2015-07-29 06:48 . 2015-04-30 13:14 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 06:44 . 2012-02-01 13:58 47104 ----a-w- c:\program files\Windows Journal\PDIALOG.exe
2015-07-29 06:44 . 2015-04-08 01:11 939008 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2015-07-29 06:44 . 2015-04-07 23:35 1850880 ----a-w- c:\program files\Windows Journal\Journal.exe
2015-07-29 06:44 . 2012-02-01 15:10 1404928 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\InkObj.dll
2015-07-29 06:44 . 2015-04-08 01:11 1219584 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2015-07-29 06:44 . 2015-04-08 01:11 985088 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2015-07-29 06:44 . 2015-04-08 01:11 967168 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2015-07-29 06:38 . 2015-01-21 02:02 807936 ----a-w- c:\windows\system32\msctf.dll
2015-07-29 06:37 . 2014-08-12 02:25 729600 ----a-w- c:\windows\system32\IMJP10K.DLL
2015-07-29 06:33 . 2015-07-29 06:33 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2015-07-29 06:32 . 2015-07-29 06:32 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2015-07-29 06:32 . 2015-07-29 06:32 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2015-07-29 06:19 . 2014-10-03 01:18 274432 ----a-w- c:\windows\system32\AUDIOKSE.dll
2015-07-29 06:19 . 2014-10-03 01:17 170496 ----a-w- c:\windows\system32\EncDump.dll
2015-07-29 06:19 . 2014-10-03 01:17 396800 ----a-w- c:\windows\system32\AudioEng.dll
2015-07-29 06:19 . 2014-10-03 01:17 316928 ----a-w- c:\windows\system32\audiosrv.dll
2015-07-29 06:13 . 2014-12-06 03:14 48640 ----a-w- c:\windows\system32\nlaapi.dll
2015-07-29 06:13 . 2014-12-06 03:14 174080 ----a-w- c:\windows\system32\nlasvc.dll
2015-07-29 06:13 . 2014-12-06 03:14 93184 ----a-w- c:\windows\system32\ncsi.dll
2015-07-27 17:38 . 2015-05-31 08:11 225792 ----a-w- c:\windows\system32\cewmdm.dll
2015-07-27 17:32 . 2015-04-10 23:22 279552 ----a-w- c:\windows\system32\services.exe
2015-07-27 17:19 . 2015-06-27 14:21 217088 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2015-07-27 17:19 . 2015-06-27 14:21 81408 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2015-07-27 17:19 . 2015-01-09 00:17 107008 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2015-07-27 17:19 . 2015-06-27 16:02 218112 ----a-w- c:\windows\system32\msv1_0.dll
2015-07-27 17:19 . 2015-06-27 16:03 783872 ----a-w- c:\windows\system32\rpcrt4.dll
2015-07-27 17:19 . 2015-06-27 16:02 501248 ----a-w- c:\windows\system32\kerberos.dll
2015-07-27 17:19 . 2015-06-27 16:01 801280 ----a-w- c:\windows\system32\advapi32.dll
2015-07-27 17:19 . 2015-06-12 13:13 440768 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-07-27 17:19 . 2015-04-30 16:03 279040 ----a-w- c:\windows\system32\schannel.dll
2015-07-27 17:19 . 2014-10-10 01:00 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2015-07-27 17:18 . 2014-09-04 23:27 143360 ----a-w- c:\windows\system32\drivers\fastfat.sys
2015-07-27 17:12 . 2014-12-08 01:59 306176 ----a-w- c:\windows\system32\scesrv.dll
2015-07-27 17:11 . 2012-07-26 02:46 9728 ----a-w- c:\windows\system32\Wdfres.dll
2015-07-27 17:11 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll
2015-07-27 17:11 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll
2015-07-27 17:11 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2015-07-27 17:11 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2015-07-27 17:11 . 2009-07-14 12:12 16896 ----a-w- c:\windows\system32\winusb.dll
2015-07-27 17:11 . 2012-07-26 03:39 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2015-07-27 17:11 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe
2015-07-27 17:11 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll
2015-07-27 17:11 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2015-07-27 17:10 . 2015-05-04 22:50 7680 ----a-w- c:\windows\system32\spwmp.dll
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\msdxm.ocx
2015-07-27 17:10 . 2015-05-04 22:50 4096 ----a-w- c:\windows\system32\dxmasf.dll
2015-07-27 17:10 . 2015-05-04 21:21 107520 ----a-w- c:\program files\Windows Media Player\wmpconfig.exe
2015-07-27 17:10 . 2015-05-04 21:21 168960 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-05 19:06 . 2008-09-10 05:59 45056 ----a-w- c:\windows\system32\acovcnt.exe
2015-07-29 06:34 . 2015-07-29 06:34 203776 ----a-w- c:\windows\system32\webcheck.dll
2015-07-29 06:33 . 2015-07-29 06:33 4096 ----a-w- c:\windows\system32\drivers\cs-CZ\dxgkrnl.sys.mui
2015-06-12 16:01 . 2015-07-29 06:50 54272 ----a-w- c:\windows\apppatch\iebrshim.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-08-02 07:06 695096 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2008-07-15 7651328]
"Windows Mobile-based device management"="c:\windows\WindowsMobile\wmdSync.exe" [2008-01-21 215552]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-08-02 6109776]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-5-27 752168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-09-10 05:55 47672 ----a-w- c:\windows\AsScrProlog.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-09-10 05:56 33136 ----a-w- c:\windows\ASScrPro.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-07-19 02:52 104936 ----a-w- c:\program files\CyberLink\Power2Go\CLMLSvc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
2008-01-12 05:40 98304 ----a-w- c:\program files\ATK Hotkey\HControlUser.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
2008-06-14 01:11 210216 ----a-w- c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2008-06-13 05:52 6183456 ----a-w- c:\windows\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
2007-11-20 10:15 1826816 ----a-w- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2008-01-21 19:17 61440 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
2007-12-07 02:12 1029416 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 17:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
2015-08-05 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job
- c:\users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-07-19 14:14]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.asus.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.0.0.138
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2015-08-05 21:07
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
c:\windows\TEMP\_avast_\unp209760181.tmp 828104 bytes executable
C:\ADSM_PData_0150
.
sken byl úspešně dokončen
skryté soubory: 2
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(3832)
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\ASUS\SmartLogon\sensorsrv.exe
c:\windows\system32\agrsmsvc.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\ASUS\ASUS CopyProtect\aspg.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\windows\System32\ACEngSvr.exe
c:\program files\AMD\Safely Remove Disk\SafeRemoveService.exe
c:\program files\ASUS\NB Probe\SPM\spmgr.exe
c:\windows\system32\SafeRemoveDialog.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\ATK Hotkey\WDC.exe
c:\windows\servicing\TrustedInstaller.exe
c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
c:\windows\system32\conime.exe
c:\windows\system32\wbem\unsecapp.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Celkový čas: 2015-08-05 21:13:16 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-08-05 19:13
ComboFix2.txt 2015-08-02 05:59
.
Před spuštěním: Volných bajtů: 89 898 233 856
Po spuštění: Volných bajtů: 90 003 197 952
.
- - End Of File - - 2873FD28265993CD09D469ACE4021606
64B1E91C5C6C2157642651010728F90F
Re: log - (použit ComboFix) - poraďte - nerozumim
Tak a je to.
Re: log - (použit ComboFix) - poraďte - nerozumim
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: log - (použit ComboFix) - poraďte - nerozumim
Prý mám víc než 10000 znaků - tak se to nevejde, tak jsem to ZIPla
Re: log - (použit ComboFix) - poraďte - nerozumim
A tady je ten Addition.txt
Re: log - (použit ComboFix) - poraďte - nerozumim
Kód: Vybrat vše
Start
CloseProcesses:
CreateRestorePoint:
ShellIconOverlayIdentifiers: [ADSMOverlayIcon] -> {A825576B-0042-4F0F-8FB0-93CE0F054E69} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll [2007-06-15] ()
ShellIconOverlayIdentifiers: [ADSMOverlayIcon1] -> {A8D448F4-0431-45AC-9F5E-E1B434AB2249} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll [2007-06-02] ()
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
2015-08-05 07:14 - 2015-08-05 07:14 - 00000000 ____D C:\ProgramData\Malwarebytes
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
EndKliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev fixlist a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Spustte FRST jako spravce, kliknete na napis Fix a program vykona prikazy.
Po restartu pc by se mel objevit novy log - s nazvem fixlog, ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: log - (použit ComboFix) - poraďte - nerozumim
Fix result of Farbar Recovery Scan Tool (x86) Version:02-08-2015 01
Ran by PC (2015-08-06 15:50:28) Run:1
Running from C:\Users\PC\Desktop
Loaded Profiles: PC (Available Profiles: PC)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
ShellIconOverlayIdentifiers: [ADSMOverlayIcon] -> {A825576B-0042-4F0F-8FB0-93CE0F054E69} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll [2007-06-15] ()
ShellIconOverlayIdentifiers: [ADSMOverlayIcon1] -> {A8D448F4-0431-45AC-9F5E-E1B434AB2249} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll [2007-06-02] ()
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
2015-08-05 07:14 - 2015-08-05 07:14 - 00000000 ____D C:\ProgramData\Malwarebytes
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Restore point was successfully created.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ADSMOverlayIcon" => key removed successfully.
"HKCR\CLSID\{A825576B-0042-4F0F-8FB0-93CE0F054E69}" => key removed successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ADSMOverlayIcon1" => key removed successfully.
"HKCR\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}" => key removed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
"HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page => value removed successfully.
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page => value removed successfully.
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
catchme => service removed successfully.
MBAMSwissArmy => service removed successfully.
C:\ProgramData\Malwarebytes => moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job => moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job => moved successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully.
Hosts restored successfully.
EmptyTemp: => 776.6 MB temporary data Removed.
The system needed a reboot.
==== End of Fixlog 15:53:16 ====
Ran by PC (2015-08-06 15:50:28) Run:1
Running from C:\Users\PC\Desktop
Loaded Profiles: PC (Available Profiles: PC)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
ShellIconOverlayIdentifiers: [ADSMOverlayIcon] -> {A825576B-0042-4F0F-8FB0-93CE0F054E69} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll [2007-06-15] ()
ShellIconOverlayIdentifiers: [ADSMOverlayIcon1] -> {A8D448F4-0431-45AC-9F5E-E1B434AB2249} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll [2007-06-02] ()
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
2015-08-05 07:14 - 2015-08-05 07:14 - 00000000 ____D C:\ProgramData\Malwarebytes
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job => C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Restore point was successfully created.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ADSMOverlayIcon" => key removed successfully.
"HKCR\CLSID\{A825576B-0042-4F0F-8FB0-93CE0F054E69}" => key removed successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ADSMOverlayIcon1" => key removed successfully.
"HKCR\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}" => key removed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
"HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page => value removed successfully.
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page => value removed successfully.
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKU\S-1-5-21-3485984343-1835211758-3072924041-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
catchme => service removed successfully.
MBAMSwissArmy => service removed successfully.
C:\ProgramData\Malwarebytes => moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000Core.job => moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3485984343-1835211758-3072924041-1000UA.job => moved successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully.
Hosts restored successfully.
EmptyTemp: => 776.6 MB temporary data Removed.
The system needed a reboot.
==== End of Fixlog 15:53:16 ====
Re: log - (použit ComboFix) - poraďte - nerozumim
Jo a tu velikost
velikost : 58,4 MB (61 320 003 bajtů)
velikost na disku: 58,6 MB (61 505 536 bajtů)
velikost : 58,4 MB (61 320 003 bajtů)
velikost na disku: 58,6 MB (61 505 536 bajtů)


Přispějete na provoz fóra?