
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
prosím o kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
prosím o kontrolu
Dobrý den, chcel by som niekoho poprosiť o logu z môjho nb ktorý ma cca 2 mesiace no zdá sa mi že ide nejako pomaly a hlavne po štarte aj po uplynutí nejakej doby nevie dobre rozbehnúť. Ďakujem
Logfile of random's system information tool 1.08 (written by random/random)
Run by Tomáš at 2010-11-27 10:12:30
Microsoft Windows 7 Home Premium
System drive C: has 33 GB (28%) free of 119 GB
Total RAM: 3886 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:12:38, on 27. 11. 2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16671)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\ICQ7.2\ICQ.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\firefox.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\plugin-container.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pri prihlasovaní v konte Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Cyberlink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files (x86)\ICQ7.2\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-152861977-777876760-2695948699-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-152861977-777876760-2695948699-1000\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files (x86)\Stardock\ObjectDockFree\ObjectDock.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: FancyStart daemon.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia. - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13857 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
taskeng.exe {382A2D52-44E0-4AE0-B850-ECE0E73F1609}
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe"
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000784
\??\C:\Windows\system32\conhost.exe
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"
"C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe"
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
WLIDSvcM.exe 2812
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\ICQ7.2\ICQ.exe" silent loginmode=4
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
ATKOSD.exe
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
KBFiltr.exe
WDC.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Trend Micro\Internet Security\TmProxy.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\firefox.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Trend Micro\BM\TMBMSRV.exe" /service
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\plugin-container.exe" --channel=3316.fe7fbe0.870497959 "C:\Windows\system32\Macromed\Flash\NPSWF32.dll" "Mozilla.Firefox.4.0b7" -omnijar C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\omni.jar 3316 \\.\pipe\gecko-crash-server-pipe.3316 plugin
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\Users\Tomáš\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-23 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-09-22 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar BHO - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-10-10 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UfSeAgnt.exe"=C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe [2010-02-23 1022904]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-09-01 323584]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-08-25 161304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-08-25 386584]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-08-25 415256]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ICQ"=C:\Program Files (x86)\ICQ7.2\ICQ.exe [2010-10-27 133432]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-08-06 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS WebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDWare]
C:\Program Files\Elantech\ETDCtrl.exe [2009-09-30 621440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2010-09-08 421888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl9]
C:\Program Files (x86)\Cyberlink\PowerDVD9\PDVD9Serv.exe [2009-07-06 87336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-10 9643552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Program Files (x86)\uTorrent\uTorrent.exe [2010-10-27 328056]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-08-06 2429]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2010-11-10 281768]
"UpdatePSTShortCut"=C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe [2010-06-24 210216]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-01-13 7109248]
[HKEY_CURRENT_USER\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RGSC"=C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe
C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Stardock ObjectDock.lnk - C:\Program Files (x86)\Stardock\ObjectDockFree\ObjectDock.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-08-25 271360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-11-27 10:12:30 ----D---- C:\rsit
2010-11-26 22:00:32 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2010-11-24 21:12:26 ----D---- C:\Users\Tomáš\AppData\Roaming\DC++
2010-11-24 21:12:12 ----D---- C:\Program Files (x86)\DC++
2010-11-24 10:29:57 ----D---- C:\ProgramData\Electronic Arts
2010-11-24 10:29:57 ----D---- C:\ProgramData\EA Core
2010-11-24 10:08:57 ----D---- C:\Program Files (x86)\Electronic Arts
2010-11-24 10:08:55 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2010-11-24 10:08:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2010-11-24 10:08:55 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-11-24 10:08:55 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-11-24 10:08:54 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2010-11-24 10:08:54 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2010-11-24 10:08:54 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-11-24 10:08:54 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-11-24 10:08:52 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2010-11-24 10:08:52 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-11-24 10:08:51 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2010-11-24 10:08:51 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-11-24 10:08:50 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2010-11-24 10:08:50 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-11-24 10:08:48 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2010-11-24 10:08:48 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-11-24 10:08:47 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2010-11-24 10:08:47 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-11-24 10:08:46 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2010-11-24 10:08:46 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-11-24 10:08:45 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2010-11-24 10:08:45 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-11-24 10:08:43 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-11-24 10:08:43 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-11-24 10:08:41 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2010-11-24 10:08:41 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-11-24 10:08:39 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2010-11-24 10:08:39 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2010-11-24 10:08:39 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2010-11-24 10:08:39 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-11-24 10:08:39 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-11-24 10:08:39 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-11-24 10:08:38 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2010-11-24 10:08:38 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-11-24 10:08:36 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2010-11-24 10:08:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2010-11-24 10:08:36 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-11-24 10:08:36 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-11-24 10:08:34 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2010-11-24 10:08:34 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-11-24 10:08:33 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2010-11-24 10:08:33 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2010-11-24 10:08:33 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-11-24 10:08:33 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-11-24 10:08:32 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2010-11-24 10:08:32 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-11-24 10:08:31 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2010-11-24 10:08:31 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-11-24 10:08:30 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2010-11-24 10:08:30 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2010-11-24 10:08:30 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-11-24 10:08:30 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-11-24 10:08:29 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2010-11-24 10:08:29 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-11-24 10:08:28 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2010-11-24 10:08:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2010-11-24 10:08:28 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-11-24 10:08:28 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-11-24 10:08:25 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2010-11-24 10:08:25 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-11-24 10:08:24 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2010-11-24 10:08:24 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2010-11-24 10:08:24 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-11-24 10:08:24 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-11-24 10:08:23 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2010-11-24 10:08:23 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2010-11-24 10:08:23 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-11-24 10:08:23 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-11-24 10:08:21 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2010-11-24 10:08:21 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2010-11-24 10:08:21 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-11-24 10:08:21 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-11-24 10:08:19 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2010-11-24 10:08:19 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-11-24 10:08:18 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2010-11-24 10:08:18 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-11-24 10:08:17 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2010-11-24 10:08:17 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2010-11-24 10:08:17 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-11-24 10:08:17 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-11-24 10:08:15 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2010-11-24 10:08:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2010-11-24 10:08:15 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-11-24 10:08:15 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-11-24 10:08:13 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2010-11-24 10:08:13 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-11-24 10:08:12 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2010-11-24 10:08:12 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-11-24 10:08:10 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2010-11-24 10:08:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2010-11-24 10:08:10 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-11-24 10:08:10 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-11-24 10:08:08 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2010-11-24 10:08:08 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-11-24 10:08:07 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2010-11-24 10:08:07 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-11-24 10:08:06 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2010-11-24 10:08:06 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2010-11-24 10:08:06 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-11-24 10:08:06 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-11-24 10:08:04 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2010-11-24 10:08:04 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-11-24 10:08:03 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2010-11-24 10:08:03 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2010-11-24 10:08:03 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-11-24 10:08:03 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-11-24 09:56:57 ----D---- C:\ProgramData\Solidshield
2010-11-23 23:38:31 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2010-11-23 23:38:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2010-11-23 23:38:31 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-11-23 23:38:31 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-11-23 23:38:29 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2010-11-23 23:38:29 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-11-23 23:38:28 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2010-11-23 23:38:28 ----A---- C:\Windows\system32\xinput1_3.dll
2010-11-23 23:38:27 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2010-11-23 23:38:27 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-11-23 23:38:26 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2010-11-23 23:38:26 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2010-11-23 23:38:26 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-11-23 23:38:26 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-11-23 23:38:24 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2010-11-23 23:38:24 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-11-23 23:38:23 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2010-11-23 23:38:23 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-11-23 23:38:22 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2010-11-23 23:38:22 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-11-23 23:38:21 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2010-11-23 23:38:21 ----A---- C:\Windows\system32\d3dx10.dll
2010-11-23 23:38:20 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2010-11-23 23:38:20 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-11-23 23:38:18 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2010-11-23 23:38:18 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2010-11-23 23:38:18 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-11-23 23:38:18 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-11-23 23:38:17 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2010-11-23 23:38:17 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-11-23 23:38:16 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2010-11-23 23:38:16 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2010-11-23 23:38:16 ----A---- C:\Windows\system32\xinput1_2.dll
2010-11-23 23:38:16 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-11-23 23:38:14 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2010-11-23 23:38:14 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2010-11-23 23:38:14 ----A---- C:\Windows\system32\xinput1_1.dll
2010-11-23 23:38:14 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-11-23 23:38:13 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2010-11-23 23:38:13 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-11-23 23:38:01 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2010-11-23 23:38:01 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-11-23 23:38:00 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2010-11-23 23:38:00 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2010-11-23 23:38:00 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-11-23 23:38:00 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-11-23 23:37:59 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2010-11-23 23:37:59 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-11-23 23:37:56 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2010-11-23 23:37:56 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-11-23 23:37:54 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2010-11-23 23:37:54 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-11-23 23:37:52 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2010-11-23 23:37:52 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-11-23 23:37:50 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2010-11-23 23:37:50 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-11-23 23:37:48 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2010-11-23 23:37:48 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-11-23 23:37:22 ----A---- C:\Windows\game.ini
2010-11-23 23:28:49 ----D---- C:\Program Files (x86)\Activision
2010-11-16 14:19:17 ----D---- C:\ProgramData\GRAW2
2010-11-16 14:18:11 ----D---- C:\ProgramData\Media Center Programs
2010-11-16 14:12:42 ----D---- C:\Program Files (x86)\UBISOFT
2010-11-16 14:12:01 ----D---- C:\Users\Tomáš\AppData\Roaming\InstallShield
2010-11-15 22:42:04 ----D---- C:\Windows\system32\Service
2010-11-14 10:33:01 ----D---- C:\ProgramData\UDL
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\PICSDK2.dll
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\PICSDK.ini
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\PICSDK.dll
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\PICEntry.dll
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\EpPicPrt.dll
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\EPPicMgr.dll
2010-11-14 10:28:48 ----A---- C:\Windows\system32\E_IBCBBIE.DLL
2010-11-14 10:28:47 ----A---- C:\Windows\system32\E_ILMBIE.DLL
2010-11-14 10:28:43 ----D---- C:\Program Files\EPSON
2010-11-13 15:23:43 ----D---- C:\ProgramData\Symantec
2010-11-13 15:23:43 ----D---- C:\ProgramData\Norton
2010-11-13 15:23:41 ----D---- C:\ProgramData\NortonInstaller
2010-11-10 11:34:10 ----D---- C:\Users\Tomáš\AppData\Roaming\DivX
2010-11-10 11:33:42 ----D---- C:\Program Files\DivX
2010-11-10 11:30:24 ----D---- C:\Program Files (x86)\DivX
2010-11-10 11:29:29 ----D---- C:\ProgramData\DivX
2010-11-05 18:47:10 ----A---- C:\Windows\system32\E_GCINST.DLL
2010-11-04 21:11:24 ----D---- C:\Users\Tomáš\AppData\Roaming\Stardock
2010-11-04 21:11:10 ----HDC---- C:\ProgramData\{5486EA6B-AF91-4B4B-868E-F80AB4BCD83A}
2010-11-02 20:54:02 ----D---- C:\Program Files\Winamp
2010-11-02 20:50:58 ----D---- C:\Program Files (x86)\Winamp Detect
2010-11-02 20:50:34 ----D---- C:\Users\Tomáš\AppData\Roaming\Winamp
2010-11-02 16:14:30 ----D---- C:\Users\Tomáš\AppData\Roaming\EPSON
2010-11-02 16:11:54 ----D---- C:\Program Files (x86)\epson
2010-11-02 16:11:53 ----A---- C:\Windows\system32\esxcwiad.dll
2010-11-02 15:01:12 ----D---- C:\ProgramData\EPSON
2010-10-30 09:44:17 ----A---- C:\Windows\system32\drivers\ewusbnet.sys
2010-10-30 09:44:17 ----A---- C:\Windows\system32\drivers\ewusbmdm.sys
2010-10-30 09:44:17 ----A---- C:\Windows\system32\drivers\ewusbdev.sys
2010-10-30 09:44:17 ----A---- C:\Windows\system32\drivers\ewdcsc.sys
2010-10-30 09:43:37 ----D---- C:\Program Files (x86)\Mobile Partner
======List of files/folders modified in the last 1 months======
2010-11-27 10:12:38 ----D---- C:\Windows\Temp
2010-11-27 10:12:38 ----D---- C:\Windows\system32\drivers\etc
2010-11-27 10:12:38 ----D---- C:\Program Files\Trend Micro
2010-11-27 10:05:13 ----D---- C:\Users\Tomáš\AppData\Roaming\ICQ
2010-11-27 10:04:49 ----D---- C:\Windows\system32\config
2010-11-27 10:04:29 ----D---- C:\Windows\system32\Tasks
2010-11-27 10:04:22 ----A---- C:\Windows\SYSWOW64\log.txt
2010-11-26 22:00:33 ----SHD---- C:\Windows\Installer
2010-11-26 22:00:32 ----RD---- C:\Program Files (x86)
2010-11-26 10:08:01 ----D---- C:\Windows\System32
2010-11-26 10:08:01 ----D---- C:\Windows\inf
2010-11-26 10:08:01 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-11-26 10:05:46 ----D---- C:\Windows\Prefetch
2010-11-26 10:05:36 ----D---- C:\Windows\system32\wdi
2010-11-25 21:21:28 ----AD---- C:\ProgramData\Temp
2010-11-24 23:20:38 ----D---- C:\Program Files\Internet Explorer
2010-11-24 23:20:38 ----D---- C:\Program Files (x86)\Internet Explorer
2010-11-24 23:20:34 ----D---- C:\Windows\winsxs
2010-11-24 23:20:24 ----SHD---- C:\System Volume Information
2010-11-24 21:12:29 ----SD---- C:\Users\Tomáš\AppData\Roaming\Microsoft
2010-11-24 13:30:24 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-11-24 10:29:57 ----HD---- C:\ProgramData
2010-11-24 10:08:56 ----D---- C:\Windows\SysWOW64
2010-11-24 10:07:47 ----RSD---- C:\Windows\assembly
2010-11-24 09:59:00 ----D---- C:\Windows\system32\catroot
2010-11-23 23:37:31 ----D---- C:\Windows
2010-11-23 19:31:43 ----D---- C:\Program Files (x86)\Steam
2010-11-21 13:00:46 ----D---- C:\Program Files (x86)\WinRAR
2010-11-19 21:47:12 ----D---- C:\Windows\system32\drivers
2010-11-19 21:47:09 ----D---- C:\Windows\Tasks
2010-11-19 21:16:59 ----D---- C:\Program Files (x86)\JDownloader
2010-11-17 16:52:38 ----D---- C:\Program Files (x86)\Common Files
2010-11-17 10:10:09 ----A---- C:\Windows\system32\acovcnt.exe
2010-11-15 23:09:11 ----D---- C:\Windows\system32\catroot2
2010-11-15 23:08:38 ----D---- C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6
2010-11-15 23:02:43 ----D---- C:\Windows\debug
2010-11-15 21:15:27 ----D---- C:\Users\Tomáš\AppData\Roaming\Skype
2010-11-15 21:11:20 ----D---- C:\Users\Tomáš\AppData\Roaming\skypePM
2010-11-14 10:28:58 ----D---- C:\Windows\system32\DriverStore
2010-11-14 10:28:43 ----RD---- C:\Program Files
2010-11-12 16:14:39 ----D---- C:\Windows\pss
2010-11-10 16:44:22 ----D---- C:\ProgramData\Microsoft Help
2010-11-10 16:41:16 ----A---- C:\Windows\system32\MRT.exe
2010-11-10 11:40:27 ----A---- C:\Windows\system32\AutoRunFilter.ini
2010-11-08 18:04:06 ----D---- C:\Windows\system32\drivers\UMDF
2010-11-07 12:43:33 ----D---- C:\Program Files (x86)\Counter-Strike 1.6 V40
2010-11-02 20:51:06 ----D---- C:\Program Files (x86)\Winamp
2010-11-02 16:11:53 ----D---- C:\Windows\twain_32
2010-11-02 15:22:26 ----A---- C:\Windows\system32\ServiceFilter.ini
2010-11-02 15:20:55 ----D---- C:\Windows\SYSWOW64\NV
2010-11-02 15:20:55 ----D---- C:\Windows\system32\NV
2010-10-31 20:09:47 ----D---- C:\Users\Tomáš\AppData\Roaming\Gearbox Software
2010-10-31 19:56:25 ----D---- C:\Program Files (x86)\Adobe
2010-10-31 19:34:44 ----D---- C:\Users\Tomáš\AppData\Roaming\Adobe
2010-10-31 19:28:20 ----D---- C:\ProgramData\Adobe
2010-10-31 19:18:43 ----D---- C:\Users\Tomáš\AppData\Roaming\uTorrent
2010-10-31 19:16:48 ----D---- C:\Program Files (x86)\ICQ7.2
2010-10-30 16:34:28 ----A---- C:\Windows\ATKPF.ini
2010-10-30 12:38:10 ----D---- C:\Windows\system32\wbem
2010-10-30 12:37:24 ----D---- C:\ProgramData\FLEXnet
2010-10-30 12:37:24 ----D---- C:\Program Files\DIFX
2010-10-30 12:37:24 ----D---- C:\Program Files (x86)\uTorrent
2010-10-30 12:37:24 ----D---- C:\Program Files (x86)\PC Connectivity Solution
2010-10-30 12:37:24 ----D---- C:\Program Files (x86)\Nokia
2010-10-30 12:37:23 ----D---- C:\Windows\AppPatch
2010-10-30 12:37:23 ----D---- C:\Windows\AppCompat
2010-10-30 12:37:23 ----D---- C:\Users\Tomáš\AppData\Roaming\GHISLER
2010-10-30 12:37:23 ----D---- C:\ProgramData\P4G
2010-10-30 12:37:22 ----D---- C:\Windows\system32\CodeIntegrity
2010-10-30 12:37:22 ----D---- C:\Windows\servicing
2010-10-30 12:37:22 ----D---- C:\Windows\rescache
2010-10-30 12:37:22 ----D---- C:\Windows\ehome
2010-10-30 12:37:21 ----D---- C:\Windows\system32\NDF
2010-10-30 12:37:16 ----D---- C:\Windows\registration
2010-10-30 12:27:48 ----D---- C:\Windows\system32\wfp
2010-10-30 09:47:53 ----D---- C:\Windows\ModemLogs
2010-10-28 09:13:05 ----D---- C:\Windows\Microsoft.NET
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-12-17 538136]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-08-06 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-10-08 834544]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2010-03-02 116568]
R1 tmtdi;Trend Micro TDI Driver; C:\Windows\system32\DRIVERS\tmtdi.sys [2010-02-23 107536]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2010-11-22 83120]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-10-08 42696]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2009-11-16 47632]
R2 tmpreflt;tmpreflt; C:\Windows\system32\DRIVERS\tmpreflt.sys [2010-07-30 42576]
R2 tmxpflt;tmxpflt; C:\Windows\system32\DRIVERS\tmxpflt.sys [2010-07-30 309840]
R2 vsapint;vsapint; C:\Windows\system32\DRIVERS\vsapint.sys [2010-07-30 1988176]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-10-15 117760]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2010-02-03 33856]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2010-08-25 10611552]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-10 2222624]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-21 15416]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-09-04 62464]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2009-10-27 75264]
R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2009-10-27 176640]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-08-20 1800192]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-10-08 310984]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
S3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-22 48488]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-09-10 117248]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys [2009-10-12 114304]
S3 KMWDFILTER;HIDServiceDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2009-04-29 30208]
S3 nmwcdcx64;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbox64.sys [2009-02-09 25088]
S3 nmwcdx64;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmbx64.sys [2009-02-09 18944]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2009-02-09 8192]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltx64j.sys [2009-02-09 8192]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-17 359552]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2010-11-10 267944]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2010-11-10 135336]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-02 864032]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2010-03-30 1823112]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-10-01 262144]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2010-06-22 159336]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2010-06-22 1616488]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136]
R2 SfCtlCom;Trend Micro Central Control Component; C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe [2010-09-06 859712]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2314240]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2010-04-06 244904]
R3 TMBMServer;Trend Micro Unauthorized Change Prevention Service; C:\Program Files\Trend Micro\BM\TMBMSRV.exe [2010-02-23 570632]
R3 TmProxy;Trend Micro Proxy Service; C:\Program Files\Trend Micro\Internet Security\TmProxy.exe [2010-02-23 917768]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-06 135664]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-22 1493352]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2009-06-02 637952]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2010-11-17 403240]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-10-07 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------
Logfile of random's system information tool 1.08 (written by random/random)
Run by Tomáš at 2010-11-27 10:12:30
Microsoft Windows 7 Home Premium
System drive C: has 33 GB (28%) free of 119 GB
Total RAM: 3886 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:12:38, on 27. 11. 2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16671)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\ICQ7.2\ICQ.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\firefox.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\plugin-container.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pri prihlasovaní v konte Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Cyberlink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files (x86)\ICQ7.2\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-152861977-777876760-2695948699-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-152861977-777876760-2695948699-1000\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files (x86)\Stardock\ObjectDockFree\ObjectDock.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: FancyStart daemon.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia. - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13857 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
taskeng.exe {382A2D52-44E0-4AE0-B850-ECE0E73F1609}
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe"
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000784
\??\C:\Windows\system32\conhost.exe
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"
"C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe"
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
WLIDSvcM.exe 2812
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\ICQ7.2\ICQ.exe" silent loginmode=4
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
ATKOSD.exe
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
KBFiltr.exe
WDC.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Trend Micro\Internet Security\TmProxy.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\firefox.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Trend Micro\BM\TMBMSRV.exe" /service
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\plugin-container.exe" --channel=3316.fe7fbe0.870497959 "C:\Windows\system32\Macromed\Flash\NPSWF32.dll" "Mozilla.Firefox.4.0b7" -omnijar C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6\omni.jar 3316 \\.\pipe\gecko-crash-server-pipe.3316 plugin
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\Users\Tomáš\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-23 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-09-22 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar BHO - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-10-10 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UfSeAgnt.exe"=C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe [2010-02-23 1022904]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-09-01 323584]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-08-25 161304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-08-25 386584]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-08-25 415256]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ICQ"=C:\Program Files (x86)\ICQ7.2\ICQ.exe [2010-10-27 133432]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-08-06 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS WebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDWare]
C:\Program Files\Elantech\ETDCtrl.exe [2009-09-30 621440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2010-09-08 421888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl9]
C:\Program Files (x86)\Cyberlink\PowerDVD9\PDVD9Serv.exe [2009-07-06 87336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-10 9643552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Program Files (x86)\uTorrent\uTorrent.exe [2010-10-27 328056]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-08-06 2429]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2010-11-10 281768]
"UpdatePSTShortCut"=C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe [2010-06-24 210216]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-01-13 7109248]
[HKEY_CURRENT_USER\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RGSC"=C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe
C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Stardock ObjectDock.lnk - C:\Program Files (x86)\Stardock\ObjectDockFree\ObjectDock.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-08-25 271360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-11-27 10:12:30 ----D---- C:\rsit
2010-11-26 22:00:32 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2010-11-24 21:12:26 ----D---- C:\Users\Tomáš\AppData\Roaming\DC++
2010-11-24 21:12:12 ----D---- C:\Program Files (x86)\DC++
2010-11-24 10:29:57 ----D---- C:\ProgramData\Electronic Arts
2010-11-24 10:29:57 ----D---- C:\ProgramData\EA Core
2010-11-24 10:08:57 ----D---- C:\Program Files (x86)\Electronic Arts
2010-11-24 10:08:55 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2010-11-24 10:08:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2010-11-24 10:08:55 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-11-24 10:08:55 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-11-24 10:08:54 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2010-11-24 10:08:54 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2010-11-24 10:08:54 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-11-24 10:08:54 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-11-24 10:08:52 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2010-11-24 10:08:52 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-11-24 10:08:51 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2010-11-24 10:08:51 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-11-24 10:08:50 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2010-11-24 10:08:50 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-11-24 10:08:48 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2010-11-24 10:08:48 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-11-24 10:08:47 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2010-11-24 10:08:47 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-11-24 10:08:46 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2010-11-24 10:08:46 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-11-24 10:08:45 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2010-11-24 10:08:45 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-11-24 10:08:43 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-11-24 10:08:43 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-11-24 10:08:41 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2010-11-24 10:08:41 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-11-24 10:08:39 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2010-11-24 10:08:39 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2010-11-24 10:08:39 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2010-11-24 10:08:39 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-11-24 10:08:39 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-11-24 10:08:39 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-11-24 10:08:38 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2010-11-24 10:08:38 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-11-24 10:08:36 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2010-11-24 10:08:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2010-11-24 10:08:36 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-11-24 10:08:36 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-11-24 10:08:34 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2010-11-24 10:08:34 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-11-24 10:08:33 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2010-11-24 10:08:33 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2010-11-24 10:08:33 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-11-24 10:08:33 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-11-24 10:08:32 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2010-11-24 10:08:32 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-11-24 10:08:31 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2010-11-24 10:08:31 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-11-24 10:08:30 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2010-11-24 10:08:30 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2010-11-24 10:08:30 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-11-24 10:08:30 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-11-24 10:08:29 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2010-11-24 10:08:29 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-11-24 10:08:28 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2010-11-24 10:08:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2010-11-24 10:08:28 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-11-24 10:08:28 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-11-24 10:08:25 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2010-11-24 10:08:25 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-11-24 10:08:24 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2010-11-24 10:08:24 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2010-11-24 10:08:24 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-11-24 10:08:24 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-11-24 10:08:23 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2010-11-24 10:08:23 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2010-11-24 10:08:23 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-11-24 10:08:23 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-11-24 10:08:21 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2010-11-24 10:08:21 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2010-11-24 10:08:21 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-11-24 10:08:21 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-11-24 10:08:19 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2010-11-24 10:08:19 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-11-24 10:08:18 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2010-11-24 10:08:18 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-11-24 10:08:17 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2010-11-24 10:08:17 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2010-11-24 10:08:17 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-11-24 10:08:17 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-11-24 10:08:15 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2010-11-24 10:08:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2010-11-24 10:08:15 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-11-24 10:08:15 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-11-24 10:08:13 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2010-11-24 10:08:13 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-11-24 10:08:12 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2010-11-24 10:08:12 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-11-24 10:08:10 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2010-11-24 10:08:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2010-11-24 10:08:10 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-11-24 10:08:10 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-11-24 10:08:08 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2010-11-24 10:08:08 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-11-24 10:08:07 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2010-11-24 10:08:07 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-11-24 10:08:06 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2010-11-24 10:08:06 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2010-11-24 10:08:06 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-11-24 10:08:06 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-11-24 10:08:04 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2010-11-24 10:08:04 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-11-24 10:08:03 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2010-11-24 10:08:03 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2010-11-24 10:08:03 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-11-24 10:08:03 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-11-24 09:56:57 ----D---- C:\ProgramData\Solidshield
2010-11-23 23:38:31 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2010-11-23 23:38:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2010-11-23 23:38:31 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-11-23 23:38:31 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-11-23 23:38:29 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2010-11-23 23:38:29 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-11-23 23:38:28 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2010-11-23 23:38:28 ----A---- C:\Windows\system32\xinput1_3.dll
2010-11-23 23:38:27 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2010-11-23 23:38:27 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-11-23 23:38:26 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2010-11-23 23:38:26 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2010-11-23 23:38:26 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-11-23 23:38:26 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-11-23 23:38:24 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2010-11-23 23:38:24 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-11-23 23:38:23 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2010-11-23 23:38:23 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-11-23 23:38:22 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2010-11-23 23:38:22 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-11-23 23:38:21 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2010-11-23 23:38:21 ----A---- C:\Windows\system32\d3dx10.dll
2010-11-23 23:38:20 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2010-11-23 23:38:20 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-11-23 23:38:18 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2010-11-23 23:38:18 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2010-11-23 23:38:18 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-11-23 23:38:18 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-11-23 23:38:17 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2010-11-23 23:38:17 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-11-23 23:38:16 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2010-11-23 23:38:16 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2010-11-23 23:38:16 ----A---- C:\Windows\system32\xinput1_2.dll
2010-11-23 23:38:16 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-11-23 23:38:14 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2010-11-23 23:38:14 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2010-11-23 23:38:14 ----A---- C:\Windows\system32\xinput1_1.dll
2010-11-23 23:38:14 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-11-23 23:38:13 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2010-11-23 23:38:13 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-11-23 23:38:01 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2010-11-23 23:38:01 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-11-23 23:38:00 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2010-11-23 23:38:00 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2010-11-23 23:38:00 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-11-23 23:38:00 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-11-23 23:37:59 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2010-11-23 23:37:59 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-11-23 23:37:56 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2010-11-23 23:37:56 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-11-23 23:37:54 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2010-11-23 23:37:54 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-11-23 23:37:52 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2010-11-23 23:37:52 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-11-23 23:37:50 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2010-11-23 23:37:50 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-11-23 23:37:48 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2010-11-23 23:37:48 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-11-23 23:37:22 ----A---- C:\Windows\game.ini
2010-11-23 23:28:49 ----D---- C:\Program Files (x86)\Activision
2010-11-16 14:19:17 ----D---- C:\ProgramData\GRAW2
2010-11-16 14:18:11 ----D---- C:\ProgramData\Media Center Programs
2010-11-16 14:12:42 ----D---- C:\Program Files (x86)\UBISOFT
2010-11-16 14:12:01 ----D---- C:\Users\Tomáš\AppData\Roaming\InstallShield
2010-11-15 22:42:04 ----D---- C:\Windows\system32\Service
2010-11-14 10:33:01 ----D---- C:\ProgramData\UDL
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\PICSDK2.dll
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\PICSDK.ini
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\PICSDK.dll
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\PICEntry.dll
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\EpPicPrt.dll
2010-11-14 10:29:47 ----A---- C:\Windows\SYSWOW64\EPPicMgr.dll
2010-11-14 10:28:48 ----A---- C:\Windows\system32\E_IBCBBIE.DLL
2010-11-14 10:28:47 ----A---- C:\Windows\system32\E_ILMBIE.DLL
2010-11-14 10:28:43 ----D---- C:\Program Files\EPSON
2010-11-13 15:23:43 ----D---- C:\ProgramData\Symantec
2010-11-13 15:23:43 ----D---- C:\ProgramData\Norton
2010-11-13 15:23:41 ----D---- C:\ProgramData\NortonInstaller
2010-11-10 11:34:10 ----D---- C:\Users\Tomáš\AppData\Roaming\DivX
2010-11-10 11:33:42 ----D---- C:\Program Files\DivX
2010-11-10 11:30:24 ----D---- C:\Program Files (x86)\DivX
2010-11-10 11:29:29 ----D---- C:\ProgramData\DivX
2010-11-05 18:47:10 ----A---- C:\Windows\system32\E_GCINST.DLL
2010-11-04 21:11:24 ----D---- C:\Users\Tomáš\AppData\Roaming\Stardock
2010-11-04 21:11:10 ----HDC---- C:\ProgramData\{5486EA6B-AF91-4B4B-868E-F80AB4BCD83A}
2010-11-02 20:54:02 ----D---- C:\Program Files\Winamp
2010-11-02 20:50:58 ----D---- C:\Program Files (x86)\Winamp Detect
2010-11-02 20:50:34 ----D---- C:\Users\Tomáš\AppData\Roaming\Winamp
2010-11-02 16:14:30 ----D---- C:\Users\Tomáš\AppData\Roaming\EPSON
2010-11-02 16:11:54 ----D---- C:\Program Files (x86)\epson
2010-11-02 16:11:53 ----A---- C:\Windows\system32\esxcwiad.dll
2010-11-02 15:01:12 ----D---- C:\ProgramData\EPSON
2010-10-30 09:44:17 ----A---- C:\Windows\system32\drivers\ewusbnet.sys
2010-10-30 09:44:17 ----A---- C:\Windows\system32\drivers\ewusbmdm.sys
2010-10-30 09:44:17 ----A---- C:\Windows\system32\drivers\ewusbdev.sys
2010-10-30 09:44:17 ----A---- C:\Windows\system32\drivers\ewdcsc.sys
2010-10-30 09:43:37 ----D---- C:\Program Files (x86)\Mobile Partner
======List of files/folders modified in the last 1 months======
2010-11-27 10:12:38 ----D---- C:\Windows\Temp
2010-11-27 10:12:38 ----D---- C:\Windows\system32\drivers\etc
2010-11-27 10:12:38 ----D---- C:\Program Files\Trend Micro
2010-11-27 10:05:13 ----D---- C:\Users\Tomáš\AppData\Roaming\ICQ
2010-11-27 10:04:49 ----D---- C:\Windows\system32\config
2010-11-27 10:04:29 ----D---- C:\Windows\system32\Tasks
2010-11-27 10:04:22 ----A---- C:\Windows\SYSWOW64\log.txt
2010-11-26 22:00:33 ----SHD---- C:\Windows\Installer
2010-11-26 22:00:32 ----RD---- C:\Program Files (x86)
2010-11-26 10:08:01 ----D---- C:\Windows\System32
2010-11-26 10:08:01 ----D---- C:\Windows\inf
2010-11-26 10:08:01 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-11-26 10:05:46 ----D---- C:\Windows\Prefetch
2010-11-26 10:05:36 ----D---- C:\Windows\system32\wdi
2010-11-25 21:21:28 ----AD---- C:\ProgramData\Temp
2010-11-24 23:20:38 ----D---- C:\Program Files\Internet Explorer
2010-11-24 23:20:38 ----D---- C:\Program Files (x86)\Internet Explorer
2010-11-24 23:20:34 ----D---- C:\Windows\winsxs
2010-11-24 23:20:24 ----SHD---- C:\System Volume Information
2010-11-24 21:12:29 ----SD---- C:\Users\Tomáš\AppData\Roaming\Microsoft
2010-11-24 13:30:24 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-11-24 10:29:57 ----HD---- C:\ProgramData
2010-11-24 10:08:56 ----D---- C:\Windows\SysWOW64
2010-11-24 10:07:47 ----RSD---- C:\Windows\assembly
2010-11-24 09:59:00 ----D---- C:\Windows\system32\catroot
2010-11-23 23:37:31 ----D---- C:\Windows
2010-11-23 19:31:43 ----D---- C:\Program Files (x86)\Steam
2010-11-21 13:00:46 ----D---- C:\Program Files (x86)\WinRAR
2010-11-19 21:47:12 ----D---- C:\Windows\system32\drivers
2010-11-19 21:47:09 ----D---- C:\Windows\Tasks
2010-11-19 21:16:59 ----D---- C:\Program Files (x86)\JDownloader
2010-11-17 16:52:38 ----D---- C:\Program Files (x86)\Common Files
2010-11-17 10:10:09 ----A---- C:\Windows\system32\acovcnt.exe
2010-11-15 23:09:11 ----D---- C:\Windows\system32\catroot2
2010-11-15 23:08:38 ----D---- C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 6
2010-11-15 23:02:43 ----D---- C:\Windows\debug
2010-11-15 21:15:27 ----D---- C:\Users\Tomáš\AppData\Roaming\Skype
2010-11-15 21:11:20 ----D---- C:\Users\Tomáš\AppData\Roaming\skypePM
2010-11-14 10:28:58 ----D---- C:\Windows\system32\DriverStore
2010-11-14 10:28:43 ----RD---- C:\Program Files
2010-11-12 16:14:39 ----D---- C:\Windows\pss
2010-11-10 16:44:22 ----D---- C:\ProgramData\Microsoft Help
2010-11-10 16:41:16 ----A---- C:\Windows\system32\MRT.exe
2010-11-10 11:40:27 ----A---- C:\Windows\system32\AutoRunFilter.ini
2010-11-08 18:04:06 ----D---- C:\Windows\system32\drivers\UMDF
2010-11-07 12:43:33 ----D---- C:\Program Files (x86)\Counter-Strike 1.6 V40
2010-11-02 20:51:06 ----D---- C:\Program Files (x86)\Winamp
2010-11-02 16:11:53 ----D---- C:\Windows\twain_32
2010-11-02 15:22:26 ----A---- C:\Windows\system32\ServiceFilter.ini
2010-11-02 15:20:55 ----D---- C:\Windows\SYSWOW64\NV
2010-11-02 15:20:55 ----D---- C:\Windows\system32\NV
2010-10-31 20:09:47 ----D---- C:\Users\Tomáš\AppData\Roaming\Gearbox Software
2010-10-31 19:56:25 ----D---- C:\Program Files (x86)\Adobe
2010-10-31 19:34:44 ----D---- C:\Users\Tomáš\AppData\Roaming\Adobe
2010-10-31 19:28:20 ----D---- C:\ProgramData\Adobe
2010-10-31 19:18:43 ----D---- C:\Users\Tomáš\AppData\Roaming\uTorrent
2010-10-31 19:16:48 ----D---- C:\Program Files (x86)\ICQ7.2
2010-10-30 16:34:28 ----A---- C:\Windows\ATKPF.ini
2010-10-30 12:38:10 ----D---- C:\Windows\system32\wbem
2010-10-30 12:37:24 ----D---- C:\ProgramData\FLEXnet
2010-10-30 12:37:24 ----D---- C:\Program Files\DIFX
2010-10-30 12:37:24 ----D---- C:\Program Files (x86)\uTorrent
2010-10-30 12:37:24 ----D---- C:\Program Files (x86)\PC Connectivity Solution
2010-10-30 12:37:24 ----D---- C:\Program Files (x86)\Nokia
2010-10-30 12:37:23 ----D---- C:\Windows\AppPatch
2010-10-30 12:37:23 ----D---- C:\Windows\AppCompat
2010-10-30 12:37:23 ----D---- C:\Users\Tomáš\AppData\Roaming\GHISLER
2010-10-30 12:37:23 ----D---- C:\ProgramData\P4G
2010-10-30 12:37:22 ----D---- C:\Windows\system32\CodeIntegrity
2010-10-30 12:37:22 ----D---- C:\Windows\servicing
2010-10-30 12:37:22 ----D---- C:\Windows\rescache
2010-10-30 12:37:22 ----D---- C:\Windows\ehome
2010-10-30 12:37:21 ----D---- C:\Windows\system32\NDF
2010-10-30 12:37:16 ----D---- C:\Windows\registration
2010-10-30 12:27:48 ----D---- C:\Windows\system32\wfp
2010-10-30 09:47:53 ----D---- C:\Windows\ModemLogs
2010-10-28 09:13:05 ----D---- C:\Windows\Microsoft.NET
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-12-17 538136]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-08-06 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-10-08 834544]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2010-03-02 116568]
R1 tmtdi;Trend Micro TDI Driver; C:\Windows\system32\DRIVERS\tmtdi.sys [2010-02-23 107536]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2010-11-22 83120]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-10-08 42696]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2009-11-16 47632]
R2 tmpreflt;tmpreflt; C:\Windows\system32\DRIVERS\tmpreflt.sys [2010-07-30 42576]
R2 tmxpflt;tmxpflt; C:\Windows\system32\DRIVERS\tmxpflt.sys [2010-07-30 309840]
R2 vsapint;vsapint; C:\Windows\system32\DRIVERS\vsapint.sys [2010-07-30 1988176]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-10-15 117760]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2010-02-03 33856]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2010-08-25 10611552]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-10 2222624]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-21 15416]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-09-04 62464]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2009-10-27 75264]
R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2009-10-27 176640]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-08-20 1800192]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-10-08 310984]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
S3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-22 48488]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-09-10 117248]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys [2009-10-12 114304]
S3 KMWDFILTER;HIDServiceDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2009-04-29 30208]
S3 nmwcdcx64;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbox64.sys [2009-02-09 25088]
S3 nmwcdx64;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmbx64.sys [2009-02-09 18944]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2009-02-09 8192]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltx64j.sys [2009-02-09 8192]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-17 359552]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2010-11-10 267944]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2010-11-10 135336]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-02 864032]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2010-03-30 1823112]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-10-01 262144]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2010-06-22 159336]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2010-06-22 1616488]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136]
R2 SfCtlCom;Trend Micro Central Control Component; C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe [2010-09-06 859712]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2314240]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2010-04-06 244904]
R3 TMBMServer;Trend Micro Unauthorized Change Prevention Service; C:\Program Files\Trend Micro\BM\TMBMSRV.exe [2010-02-23 570632]
R3 TmProxy;Trend Micro Proxy Service; C:\Program Files\Trend Micro\Internet Security\TmProxy.exe [2010-02-23 917768]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-06 135664]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-22 1493352]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2009-06-02 637952]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2010-11-17 403240]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-10-07 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------
Re: prosím o kontrolu
Dobrý večer
Z mého podpisu stahněte Ccleaner
- nainstalujte, při výběru, co se má nainstalovat, dejte pryč fajfku u instalace yahoo toolbaru
záložka čistič
-nechejte v levém sloupečku zatrhnuté vše jak je, klikněte na analyzovat
-po analýze klikněte na Spustit Ccleaner
záložka Registry
- klikněte na hledej problémy
- pak klikněte na opravit vybrané problémy -- udělat zálohu registrů - nemusíte
- kliknete opravit všechny problémy
ok
zavřít
Záložka Nástroje
- zde můžete odinstalovat programy. Je to důkladnější odinstalace než u přidat/odebrat programy ve Windows.
Ccleaner - čistič doporučuji používat, krásně pročistí pc od dočasných souborů.
Registry pročistí třeba po odinstalaci nějakého programu.
Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.


- nainstalujte, při výběru, co se má nainstalovat, dejte pryč fajfku u instalace yahoo toolbaru

-nechejte v levém sloupečku zatrhnuté vše jak je, klikněte na analyzovat
-po analýze klikněte na Spustit Ccleaner

- klikněte na hledej problémy
- pak klikněte na opravit vybrané problémy -- udělat zálohu registrů - nemusíte
- kliknete opravit všechny problémy



- zde můžete odinstalovat programy. Je to důkladnější odinstalace než u přidat/odebrat programy ve Windows.
Ccleaner - čistič doporučuji používat, krásně pročistí pc od dočasných souborů.
Registry pročistí třeba po odinstalaci nějakého programu.

-Nainstalujte,dejte úplný sken
NIC NEMAZAT

-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: prosím o kontrolu
Dobrý deň, Ccleaner používam pravidelne, a tu je ten log
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Verzia databázy: 5204
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
28. 11. 2010 12:14:19
mbam-log-2010-11-28 (12-14-19).txt
Typ kontroly: Úplná kontrola (C:\|D:\|)
Objektov kontrolovaných: 361990
Uplynulý čas: 1 hod, 23 min, 54 sek
Infikované služby pamäte: 0
Infikované moduly pamäte: 0
Infikované registračné kľúče: 0
Infikované registračné hodnoty: 0
Infikované položky registračných dát: 0
Infikované priečinky: 0
Infikované súbory: 1
Infikované služby pamäte:
(Škodlivé položky neboli zistené)
Infikované moduly pamäte:
(Škodlivé položky neboli zistené)
Infikované registračné kľúče:
(Škodlivé položky neboli zistené)
Infikované registračné hodnoty:
(Škodlivé položky neboli zistené)
Infikované položky registračných dát:
(Škodlivé položky neboli zistené)
Infikované priečinky:
(Škodlivé položky neboli zistené)
Infikované súbory:
D:\Instal\Your unistaller PRO 2008\Your_Uninstaller_2008_PRO_v6.1.1233\Keygen\Keygen.exe (Trojan.Dropper.PGen) -> No action taken.

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Verzia databázy: 5204
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
28. 11. 2010 12:14:19
mbam-log-2010-11-28 (12-14-19).txt
Typ kontroly: Úplná kontrola (C:\|D:\|)
Objektov kontrolovaných: 361990
Uplynulý čas: 1 hod, 23 min, 54 sek
Infikované služby pamäte: 0
Infikované moduly pamäte: 0
Infikované registračné kľúče: 0
Infikované registračné hodnoty: 0
Infikované položky registračných dát: 0
Infikované priečinky: 0
Infikované súbory: 1
Infikované služby pamäte:
(Škodlivé položky neboli zistené)
Infikované moduly pamäte:
(Škodlivé položky neboli zistené)
Infikované registračné kľúče:
(Škodlivé položky neboli zistené)
Infikované registračné hodnoty:
(Škodlivé položky neboli zistené)
Infikované položky registračných dát:
(Škodlivé položky neboli zistené)
Infikované priečinky:
(Škodlivé položky neboli zistené)
Infikované súbory:
D:\Instal\Your unistaller PRO 2008\Your_Uninstaller_2008_PRO_v6.1.1233\Keygen\Keygen.exe (Trojan.Dropper.PGen) -> No action taken.
Re: prosím o kontrolu


http://www.bleepingcomputer.com/combofi ... t-combofix
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: prosím o kontrolu
zdravím, ospravedlnujem sa za takmer mesačné meškanie no mam toho vela
- tak chcel som sa pustiť do toho combofixu ale hned ako som ho otvoril mi napísalo že nemam opravnenie na spustenie toho programu, čo teraz robiť? mam win 7
- tak chcel som sa pustiť do toho combofixu ale hned ako som ho otvoril mi napísalo že nemam opravnenie na spustenie toho programu, čo teraz robiť? mam win 7
Re: prosím o kontrolu
Spouštíte ho pod admin. právy? Zkuste ho spustit v nouzovém režimu
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: prosím o kontrolu
ComboFix 10-12-25.02 - Tomáš . 12. 2010 20:09:31.1.4 - x64 MINIMAL
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.421.1051.18.3886.2678 [GMT 1:00]
Running from: c:\users\Tomáš\Desktop\ComboFix.exe
AV: AntiVir Desktop *Enabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
FW: COMODO Firewall *Enabled* {5F676F4C-DD6D-A47C-12D6-C449366C71EE}
SP: AntiVir Desktop *Enabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: COMODO Defense+ *Enabled/Updated* {DC3D0F8D-B138-AAAA-0339-560EB3387C28}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\programdata\FullRemove.exe
c:\windows\system32\service
c:\windows\SysWow64\Packet.dll
c:\windows\SysWow64\pthreadVC.dll
c:\windows\SysWow64\wpcap.dll
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_NPF
-------\Service_npf
((((((((((((((((((((((((( Files Created from 2010-11-26 to 2010-12-26 )))))))))))))))))))))))))))))))
.
2010-12-26 19:06 . 2010-12-26 19:07 -------- d-----w- C:\32788R22FWJFW
2010-12-21 16:30 . 2010-12-23 12:27 -------- d-----w- c:\users\Tomáš\AppData\Roaming\vlc
2010-12-21 16:30 . 2010-12-21 16:30 -------- d-----w- c:\program files (x86)\VideoLAN
2010-12-19 16:29 . 2010-12-19 16:29 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Thunderbird
2010-12-19 16:29 . 2010-12-19 16:29 -------- d-----w- c:\users\Tomáš\AppData\Local\Thunderbird
2010-12-19 16:28 . 2010-12-19 16:28 -------- d-----w- c:\program files (x86)\Mozilla Thunderbird
2010-12-18 17:12 . 2010-12-19 11:51 -------- d-----w- c:\users\Tomáš\Nový priečinok
2010-12-18 13:08 . 2010-12-21 14:32 -------- d-----w- c:\users\Tomáš\it
2010-12-16 20:04 . 2010-12-25 19:35 -------- d-----r- c:\users\Tomáš\Videos
2010-12-16 18:42 . 2010-10-27 04:32 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2010-12-16 18:42 . 2010-11-02 04:40 496128 ----a-w- c:\windows\SysWow64\taskschd.dll
2010-12-16 18:42 . 2010-11-02 04:40 305152 ----a-w- c:\windows\SysWow64\taskcomp.dll
2010-12-16 18:42 . 2010-11-02 04:34 192000 ----a-w- c:\windows\SysWow64\taskeng.exe
2010-12-16 18:42 . 2010-11-02 04:34 179712 ----a-w- c:\windows\SysWow64\schtasks.exe
2010-12-16 18:41 . 2010-10-20 02:58 294400 ----a-w- c:\windows\SysWow64\atmfd.dll
2010-12-16 18:41 . 2010-10-20 04:54 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2010-12-16 18:41 . 2010-10-16 04:36 314368 ----a-w- c:\windows\SysWow64\webio.dll
2010-12-16 18:41 . 2010-10-12 05:05 35328 ----a-w- c:\program files\Windows Mail\wabfind.dll
2010-12-16 18:41 . 2010-10-12 05:00 516096 ----a-w- c:\program files\Windows Mail\wab.exe
2010-12-16 18:41 . 2010-10-12 04:25 516096 ----a-w- c:\program files (x86)\Windows Mail\wab.exe
2010-12-16 18:41 . 2010-11-04 06:31 1013248 ----a-w- c:\program files\Internet Explorer\iedvtool.dll
2010-12-16 15:30 . 2010-12-21 16:35 -------- d-----w- c:\users\Tomáš\ikony
2010-12-16 15:28 . 2010-12-26 08:47 -------- d-----r- c:\users\Tomáš\Desktop
2010-12-11 15:38 . 2010-12-11 15:38 -------- d-----w- c:\program files (x86)\Common Files\Skype
2010-12-11 10:33 . 2010-03-15 10:31 165376 ----a-w- c:\windows\SysWow64\unrar.dll
2010-12-11 10:33 . 2010-11-03 19:08 237568 ----a-w- c:\windows\SysWow64\yv12vfw.dll
2010-12-11 10:33 . 2010-06-08 17:10 790528 ----a-w- c:\windows\SysWow64\xvidcore.dll
2010-12-11 10:33 . 2010-01-17 16:18 151552 ----a-w- c:\windows\SysWow64\ac3acm.acm
2010-12-11 10:33 . 2008-09-24 19:41 839680 ----a-w- c:\windows\SysWow64\lameACM.acm
2010-12-11 10:33 . 2010-11-24 08:00 108032 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2010-12-11 10:33 . 2010-06-08 17:10 134144 ----a-w- c:\windows\SysWow64\xvidvfw.dll
2010-12-11 10:32 . 2010-12-11 10:33 -------- d-----w- c:\program files (x86)\K-Lite Codec Pack
2010-12-11 10:29 . 2010-12-21 16:31 -------- d-----w- c:\users\Tomáš\AppData\Roaming\BSplayer PRO
2010-12-11 10:29 . 2010-12-11 10:29 -------- d-----w- c:\program files (x86)\Webteh
2010-12-10 20:08 . 2010-12-10 20:08 -------- d-----w- C:\VritualRoot
2010-12-10 16:50 . 2010-12-10 16:50 -------- d-----w- c:\program files\COMODO
2010-12-10 16:26 . 2010-12-10 16:53 -------- d-----w- c:\programdata\Comodo
2010-12-10 16:26 . 2010-12-10 16:26 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Comodo
2010-12-10 16:24 . 2010-12-10 16:24 -------- d-----w- c:\program files (x86)\Comodo
2010-12-08 17:34 . 2010-12-08 17:35 -------- d-----w- c:\users\Tomáš\AppData\Local\NFS Underground 2
2010-12-07 14:21 . 2010-12-07 14:21 -------- d-----w- c:\users\Tomáš\AppData\Roaming\NVIDIA
2010-12-07 14:20 . 2010-06-02 03:55 74072 ----a-w- c:\windows\SysWow64\XAPOFX1_5.dll
2010-12-07 14:20 . 2010-06-02 03:55 527192 ----a-w- c:\windows\SysWow64\XAudio2_7.dll
2010-12-07 14:20 . 2010-06-02 03:55 239960 ----a-w- c:\windows\SysWow64\xactengine3_7.dll
2010-12-07 14:20 . 2010-05-26 10:41 2106216 ----a-w- c:\windows\SysWow64\D3DCompiler_43.dll
2010-12-07 14:20 . 2010-05-26 10:41 248672 ----a-w- c:\windows\SysWow64\d3dx11_43.dll
2010-12-07 14:20 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\SysWow64\d3dcsx_43.dll
2010-12-07 14:20 . 2010-05-26 10:41 470880 ----a-w- c:\windows\SysWow64\d3dx10_43.dll
2010-12-07 14:20 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\SysWow64\D3DX9_43.dll
2010-12-07 14:16 . 2010-12-07 14:16 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2010-12-05 12:41 . 2010-12-05 12:43 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Download Manager
2010-12-03 23:28 . 2010-12-03 23:28 66872 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2010-12-03 23:28 . 2010-12-04 07:56 183112 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2010-12-03 23:27 . 2010-12-03 23:27 -------- d-----w- c:\users\Tomáš\AppData\Local\PunkBuster
2010-12-03 23:24 . 2010-12-03 23:24 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Leadertech
2010-12-03 23:05 . 2010-12-16 16:05 -------- d-----w- c:\program files (x86)\EA Games
2010-12-01 22:32 . 2010-12-01 22:34 -------- d-----w- c:\program files\FlatOut2
2010-11-30 21:41 . 2010-12-25 19:56 -------- d-----r- c:\users\Tomáš\Music
2010-11-30 21:03 . 2010-12-01 09:06 -------- d-----w- c:\program files (x86)\MagicISO
2010-11-30 17:14 . 2010-11-30 17:14 -------- d-----w- c:\program files\Totalcmd
2010-11-28 08:41 . 2010-11-28 08:41 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Malwarebytes
2010-11-28 08:41 . 2010-11-28 08:41 -------- d-----w- c:\programdata\Malwarebytes
2010-11-27 15:47 . 2010-11-27 15:47 -------- d-----w- c:\users\Tomáš\AppData\Local\Activision
2010-11-27 15:25 . 2010-12-16 16:05 -------- d-----w- c:\program files (x86)\Activision
2010-11-26 21:00 . 2010-11-26 21:00 -------- d-----w- c:\program files (x86)\SystemRequirementsLab
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-11-17 18:55 . 2010-11-17 18:55 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2010-11-17 18:55 . 2010-11-17 18:55 458048 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-10-10 07:40 . 2010-10-10 07:40 411368 ----a-w- c:\windows\SysWow64\deploytk.dll
2010-10-09 19:23 . 2010-10-09 19:23 26112 ----a-r- c:\windows\LgUninst.exe
2009-04-08 17:31 . 2009-04-08 17:31 106496 ----a-w- c:\program files (x86)\Common Files\CPInstallAction.dll
2008-08-12 04:45 . 2008-08-12 04:45 155648 ----a-w- c:\program files (x86)\Common Files\MSIactionall.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ICQ"="c:\program files (x86)\ICQ7.2\ICQ.exe" [2010-10-27 133432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Boingo Wi-Fi"="c:\program files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk" [2010-08-06 2429]
"HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2010-11-10 281768]
"UpdatePSTShortCut"="c:\program files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe" [2010-06-24 210216]
"UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-09-23 35760]
"ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2010-01-05 170624]
"ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2010-01-13 7109248]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer2"=wdmaud.drv
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-08-06 135664]
R3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
R3 DlinkUDSMBus;DlinkUDSMBus;SysWOW64\Drivers\DlinkUDSMBus.sys [x]
R3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\DRIVERS\ewusbdev.sys [2009-10-12 114304]
R3 nmwcdcx64;Nokia USB Generic;c:\windows\system32\drivers\ccdcmbox64.sys [2009-02-09 25088]
R3 nmwcdx64;Nokia USB Phone Parent;c:\windows\system32\drivers\ccdcmbx64.sys [2009-02-09 18944]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2010-10-07 1255736]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S0 lullaby;lullaby;c:\windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-10-08 834544]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [2010-09-10 249496]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [2010-09-10 33208]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [2009-09-17 359552]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2010-11-10 135336]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
S2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2010-03-30 1823112]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2010-06-22 1616488]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2314240]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2009-10-15 117760]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller (NDIS 6.20);c:\windows\system32\DRIVERS\L1C62x64.sys [2009-09-04 62464]
S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2009-10-27 75264]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2009-10-27 176640]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
Contents of the 'Scheduled Tasks' folder
2010-12-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-08-06 07:48]
2010-12-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-08-06 07:48]
.
--------- x86-64 -----------
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"combofix"="c:\combofix\CF4751.cfxxe" [X]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-09-01 323584]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-08-25 161304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-08-25 386584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-08-25 415256]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-09-30 621440]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2010-09-10 8892360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Supplementary Scan -------
.
uStart Page = hxxp://start.icq.com/
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovať do programu Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
TCP: {2DD3CDE1-5D1C-406C-AE42-AC0B3F08673D} = 156.154.70.25,156.154.71.25
TCP: {72D6557E-C735-4515-9432-03E28228B055} = 156.154.70.25,156.154.71.25
TCP: 46C696E6B6F57657563747 = 156.154.70.25,156.154.71.25
FF - ProfilePath - c:\users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\3gok8wbb.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
.
- - - - ORPHANS REMOVED - - - -
Toolbar-Locked - (no file)
Toolbar-Locked - (no file)
HKLM-Run-Setwallpaper - c:\programdata\SetWallpaper.cmd
AddRemove-ASUS_N_Series_Screensaver - c:\windows\system32\ASUS_N_Series_Screensaver.scr
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-152861977-777876760-2695948699-1001\Software\SecuROM\License information*]
"datasecu"=hex:91,ac,25,60,90,1d,7c,a9,a1,15,75,f8,0d,c3,e2,7c,ce,02,5c,98,b5,
f5,be,e2,22,27,c8,7d,49,d9,9c,f3,57,98,45,3e,52,64,77,74,4f,4b,dd,13,3e,ab,\
"rkeysecu"=hex:7d,46,3e,8c,71,02,80,a9,b7,9f,9e,ac,d1,23,d8,eb
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\ASUS\SmartLogon\sensorsrv.exe
c:\program files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
c:\program files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
c:\program files (x86)\CyberLink\Shared files\RichVideo.exe
c:\windows\AsScrPro.exe
c:\program files (x86)\CyberLink\Power2Go\CLMLSvc.exe
.
**************************************************************************
.
Completion time: 2010-12-26 20:22:13 - machine was rebooted
ComboFix-quarantined-files.txt 2010-12-26 19:22
Pre-Run: 40 294 305 792 bytes free
Post-Run: 39 828 848 640 bytes free
- - End Of File - - C310E2124F7CCBBFEB6C20CAF02DDF49
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.421.1051.18.3886.2678 [GMT 1:00]
Running from: c:\users\Tomáš\Desktop\ComboFix.exe
AV: AntiVir Desktop *Enabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
FW: COMODO Firewall *Enabled* {5F676F4C-DD6D-A47C-12D6-C449366C71EE}
SP: AntiVir Desktop *Enabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: COMODO Defense+ *Enabled/Updated* {DC3D0F8D-B138-AAAA-0339-560EB3387C28}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\programdata\FullRemove.exe
c:\windows\system32\service
c:\windows\SysWow64\Packet.dll
c:\windows\SysWow64\pthreadVC.dll
c:\windows\SysWow64\wpcap.dll
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_NPF
-------\Service_npf
((((((((((((((((((((((((( Files Created from 2010-11-26 to 2010-12-26 )))))))))))))))))))))))))))))))
.
2010-12-26 19:06 . 2010-12-26 19:07 -------- d-----w- C:\32788R22FWJFW
2010-12-21 16:30 . 2010-12-23 12:27 -------- d-----w- c:\users\Tomáš\AppData\Roaming\vlc
2010-12-21 16:30 . 2010-12-21 16:30 -------- d-----w- c:\program files (x86)\VideoLAN
2010-12-19 16:29 . 2010-12-19 16:29 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Thunderbird
2010-12-19 16:29 . 2010-12-19 16:29 -------- d-----w- c:\users\Tomáš\AppData\Local\Thunderbird
2010-12-19 16:28 . 2010-12-19 16:28 -------- d-----w- c:\program files (x86)\Mozilla Thunderbird
2010-12-18 17:12 . 2010-12-19 11:51 -------- d-----w- c:\users\Tomáš\Nový priečinok
2010-12-18 13:08 . 2010-12-21 14:32 -------- d-----w- c:\users\Tomáš\it
2010-12-16 20:04 . 2010-12-25 19:35 -------- d-----r- c:\users\Tomáš\Videos
2010-12-16 18:42 . 2010-10-27 04:32 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2010-12-16 18:42 . 2010-11-02 04:40 496128 ----a-w- c:\windows\SysWow64\taskschd.dll
2010-12-16 18:42 . 2010-11-02 04:40 305152 ----a-w- c:\windows\SysWow64\taskcomp.dll
2010-12-16 18:42 . 2010-11-02 04:34 192000 ----a-w- c:\windows\SysWow64\taskeng.exe
2010-12-16 18:42 . 2010-11-02 04:34 179712 ----a-w- c:\windows\SysWow64\schtasks.exe
2010-12-16 18:41 . 2010-10-20 02:58 294400 ----a-w- c:\windows\SysWow64\atmfd.dll
2010-12-16 18:41 . 2010-10-20 04:54 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2010-12-16 18:41 . 2010-10-16 04:36 314368 ----a-w- c:\windows\SysWow64\webio.dll
2010-12-16 18:41 . 2010-10-12 05:05 35328 ----a-w- c:\program files\Windows Mail\wabfind.dll
2010-12-16 18:41 . 2010-10-12 05:00 516096 ----a-w- c:\program files\Windows Mail\wab.exe
2010-12-16 18:41 . 2010-10-12 04:25 516096 ----a-w- c:\program files (x86)\Windows Mail\wab.exe
2010-12-16 18:41 . 2010-11-04 06:31 1013248 ----a-w- c:\program files\Internet Explorer\iedvtool.dll
2010-12-16 15:30 . 2010-12-21 16:35 -------- d-----w- c:\users\Tomáš\ikony
2010-12-16 15:28 . 2010-12-26 08:47 -------- d-----r- c:\users\Tomáš\Desktop
2010-12-11 15:38 . 2010-12-11 15:38 -------- d-----w- c:\program files (x86)\Common Files\Skype
2010-12-11 10:33 . 2010-03-15 10:31 165376 ----a-w- c:\windows\SysWow64\unrar.dll
2010-12-11 10:33 . 2010-11-03 19:08 237568 ----a-w- c:\windows\SysWow64\yv12vfw.dll
2010-12-11 10:33 . 2010-06-08 17:10 790528 ----a-w- c:\windows\SysWow64\xvidcore.dll
2010-12-11 10:33 . 2010-01-17 16:18 151552 ----a-w- c:\windows\SysWow64\ac3acm.acm
2010-12-11 10:33 . 2008-09-24 19:41 839680 ----a-w- c:\windows\SysWow64\lameACM.acm
2010-12-11 10:33 . 2010-11-24 08:00 108032 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2010-12-11 10:33 . 2010-06-08 17:10 134144 ----a-w- c:\windows\SysWow64\xvidvfw.dll
2010-12-11 10:32 . 2010-12-11 10:33 -------- d-----w- c:\program files (x86)\K-Lite Codec Pack
2010-12-11 10:29 . 2010-12-21 16:31 -------- d-----w- c:\users\Tomáš\AppData\Roaming\BSplayer PRO
2010-12-11 10:29 . 2010-12-11 10:29 -------- d-----w- c:\program files (x86)\Webteh
2010-12-10 20:08 . 2010-12-10 20:08 -------- d-----w- C:\VritualRoot
2010-12-10 16:50 . 2010-12-10 16:50 -------- d-----w- c:\program files\COMODO
2010-12-10 16:26 . 2010-12-10 16:53 -------- d-----w- c:\programdata\Comodo
2010-12-10 16:26 . 2010-12-10 16:26 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Comodo
2010-12-10 16:24 . 2010-12-10 16:24 -------- d-----w- c:\program files (x86)\Comodo
2010-12-08 17:34 . 2010-12-08 17:35 -------- d-----w- c:\users\Tomáš\AppData\Local\NFS Underground 2
2010-12-07 14:21 . 2010-12-07 14:21 -------- d-----w- c:\users\Tomáš\AppData\Roaming\NVIDIA
2010-12-07 14:20 . 2010-06-02 03:55 74072 ----a-w- c:\windows\SysWow64\XAPOFX1_5.dll
2010-12-07 14:20 . 2010-06-02 03:55 527192 ----a-w- c:\windows\SysWow64\XAudio2_7.dll
2010-12-07 14:20 . 2010-06-02 03:55 239960 ----a-w- c:\windows\SysWow64\xactengine3_7.dll
2010-12-07 14:20 . 2010-05-26 10:41 2106216 ----a-w- c:\windows\SysWow64\D3DCompiler_43.dll
2010-12-07 14:20 . 2010-05-26 10:41 248672 ----a-w- c:\windows\SysWow64\d3dx11_43.dll
2010-12-07 14:20 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\SysWow64\d3dcsx_43.dll
2010-12-07 14:20 . 2010-05-26 10:41 470880 ----a-w- c:\windows\SysWow64\d3dx10_43.dll
2010-12-07 14:20 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\SysWow64\D3DX9_43.dll
2010-12-07 14:16 . 2010-12-07 14:16 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2010-12-05 12:41 . 2010-12-05 12:43 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Download Manager
2010-12-03 23:28 . 2010-12-03 23:28 66872 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2010-12-03 23:28 . 2010-12-04 07:56 183112 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2010-12-03 23:27 . 2010-12-03 23:27 -------- d-----w- c:\users\Tomáš\AppData\Local\PunkBuster
2010-12-03 23:24 . 2010-12-03 23:24 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Leadertech
2010-12-03 23:05 . 2010-12-16 16:05 -------- d-----w- c:\program files (x86)\EA Games
2010-12-01 22:32 . 2010-12-01 22:34 -------- d-----w- c:\program files\FlatOut2
2010-11-30 21:41 . 2010-12-25 19:56 -------- d-----r- c:\users\Tomáš\Music
2010-11-30 21:03 . 2010-12-01 09:06 -------- d-----w- c:\program files (x86)\MagicISO
2010-11-30 17:14 . 2010-11-30 17:14 -------- d-----w- c:\program files\Totalcmd
2010-11-28 08:41 . 2010-11-28 08:41 -------- d-----w- c:\users\Tomáš\AppData\Roaming\Malwarebytes
2010-11-28 08:41 . 2010-11-28 08:41 -------- d-----w- c:\programdata\Malwarebytes
2010-11-27 15:47 . 2010-11-27 15:47 -------- d-----w- c:\users\Tomáš\AppData\Local\Activision
2010-11-27 15:25 . 2010-12-16 16:05 -------- d-----w- c:\program files (x86)\Activision
2010-11-26 21:00 . 2010-11-26 21:00 -------- d-----w- c:\program files (x86)\SystemRequirementsLab
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-11-17 18:55 . 2010-11-17 18:55 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2010-11-17 18:55 . 2010-11-17 18:55 458048 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-10-10 07:40 . 2010-10-10 07:40 411368 ----a-w- c:\windows\SysWow64\deploytk.dll
2010-10-09 19:23 . 2010-10-09 19:23 26112 ----a-r- c:\windows\LgUninst.exe
2009-04-08 17:31 . 2009-04-08 17:31 106496 ----a-w- c:\program files (x86)\Common Files\CPInstallAction.dll
2008-08-12 04:45 . 2008-08-12 04:45 155648 ----a-w- c:\program files (x86)\Common Files\MSIactionall.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ICQ"="c:\program files (x86)\ICQ7.2\ICQ.exe" [2010-10-27 133432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Boingo Wi-Fi"="c:\program files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk" [2010-08-06 2429]
"HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2010-11-10 281768]
"UpdatePSTShortCut"="c:\program files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe" [2010-06-24 210216]
"UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-09-23 35760]
"ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2010-01-05 170624]
"ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2010-01-13 7109248]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer2"=wdmaud.drv
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-08-06 135664]
R3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
R3 DlinkUDSMBus;DlinkUDSMBus;SysWOW64\Drivers\DlinkUDSMBus.sys [x]
R3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\DRIVERS\ewusbdev.sys [2009-10-12 114304]
R3 nmwcdcx64;Nokia USB Generic;c:\windows\system32\drivers\ccdcmbox64.sys [2009-02-09 25088]
R3 nmwcdx64;Nokia USB Phone Parent;c:\windows\system32\drivers\ccdcmbx64.sys [2009-02-09 18944]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2010-10-07 1255736]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S0 lullaby;lullaby;c:\windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-10-08 834544]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [2010-09-10 249496]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [2010-09-10 33208]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [2009-09-17 359552]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2010-11-10 135336]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
S2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2010-03-30 1823112]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2010-06-22 1616488]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2314240]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2009-10-15 117760]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller (NDIS 6.20);c:\windows\system32\DRIVERS\L1C62x64.sys [2009-09-04 62464]
S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2009-10-27 75264]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2009-10-27 176640]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
Contents of the 'Scheduled Tasks' folder
2010-12-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-08-06 07:48]
2010-12-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-08-06 07:48]
.
--------- x86-64 -----------
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"combofix"="c:\combofix\CF4751.cfxxe" [X]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-09-01 323584]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-08-25 161304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-08-25 386584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-08-25 415256]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-09-30 621440]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2010-09-10 8892360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Supplementary Scan -------
.
uStart Page = hxxp://start.icq.com/
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovať do programu Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
TCP: {2DD3CDE1-5D1C-406C-AE42-AC0B3F08673D} = 156.154.70.25,156.154.71.25
TCP: {72D6557E-C735-4515-9432-03E28228B055} = 156.154.70.25,156.154.71.25
TCP: 46C696E6B6F57657563747 = 156.154.70.25,156.154.71.25
FF - ProfilePath - c:\users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\3gok8wbb.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
.
- - - - ORPHANS REMOVED - - - -
Toolbar-Locked - (no file)
Toolbar-Locked - (no file)
HKLM-Run-Setwallpaper - c:\programdata\SetWallpaper.cmd
AddRemove-ASUS_N_Series_Screensaver - c:\windows\system32\ASUS_N_Series_Screensaver.scr
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-152861977-777876760-2695948699-1001\Software\SecuROM\License information*]
"datasecu"=hex:91,ac,25,60,90,1d,7c,a9,a1,15,75,f8,0d,c3,e2,7c,ce,02,5c,98,b5,
f5,be,e2,22,27,c8,7d,49,d9,9c,f3,57,98,45,3e,52,64,77,74,4f,4b,dd,13,3e,ab,\
"rkeysecu"=hex:7d,46,3e,8c,71,02,80,a9,b7,9f,9e,ac,d1,23,d8,eb
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\ASUS\SmartLogon\sensorsrv.exe
c:\program files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
c:\program files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
c:\program files (x86)\CyberLink\Shared files\RichVideo.exe
c:\windows\AsScrPro.exe
c:\program files (x86)\CyberLink\Power2Go\CLMLSvc.exe
.
**************************************************************************
.
Completion time: 2010-12-26 20:22:13 - machine was rebooted
ComboFix-quarantined-files.txt 2010-12-26 19:22
Pre-Run: 40 294 305 792 bytes free
Post-Run: 39 828 848 640 bytes free
- - End Of File - - C310E2124F7CCBBFEB6C20CAF02DDF49
Re: prosím o kontrolu
Otestujte na www.virustotal.com
c:\windows\SysWOW64\nvinit.dll
c:\windows\SysWOW64\nvinit.dll
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: prosím o kontrolu
neviem či je to to čo ste chceli ...
File name:
8736103F689452558EA401A3BDEB7B0000230F97.dll
Submission date:
2010-10-08 08:49:17 (UTC)
Current status:
finished
Result:
0 /43 (0.0%)
File name:
8736103F689452558EA401A3BDEB7B0000230F97.dll
Submission date:
2010-10-08 08:49:17 (UTC)
Current status:
finished
Result:
0 /43 (0.0%)
Re: prosím o kontrolu
řekla bych, že není
-Na virustotalu dáte procházet, a do spodního okénka nakopírujete přímo cestu k souboru a dáte odeslat
-z prohlížeče zkopírujete adresu ke stránce s výsledky
-pokud se Vás zeptá, dejte soubor otestovat znovu, tak aby to byl soubor z Vašeho počítače

-Na virustotalu dáte procházet, a do spodního okénka nakopírujete přímo cestu k souboru a dáte odeslat
-z prohlížeče zkopírujete adresu ke stránce s výsledky
-pokud se Vás zeptá, dejte soubor otestovat znovu, tak aby to byl soubor z Vašeho počítače
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: prosím o kontrolu
dejte reanalyse.
Já Vás pěkně trápím,co
Já Vás pěkně trápím,co

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: prosím o kontrolu
dúfam že to už je správne 
http://www.virustotal.com/file-scan/rep ... 1293479543
- ani niee, len ja som nejaký nechápavý

http://www.virustotal.com/file-scan/rep ... 1293479543
- ani niee, len ja som nejaký nechápavý

Re: prosím o kontrolu
Fajn, co počítač?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: prosím o kontrolu
no tak ten internet pri štarte je stale na tom istom, ale notebook sa trocha zrýchlil mám pocit